▲ | ATechGuy 3 days ago | ||||||||||||||||
That's what the author is claiming. Practically, VM-level strong fault isolation cannot be achieved without isolation support from the hardware aka virtualization. | |||||||||||||||||
▲ | eqvinox 3 days ago | parent [-] | ||||||||||||||||
Hardware without something like SR-IOV is straight up going to be unshareable for the foreseeable future; things like ring buffers would need a whole bunch of coordination between kernels to share. SR-IOV (or equivalent) makes it workable, an IOMMU (or equivalent) then provides isolation. | |||||||||||||||||
|