Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

support tailoring and building linux kernel for kuasar security container #98

Merged
merged 1 commit into from
Jan 12, 2024

Conversation

flyflypeng
Copy link
Member

fix #97

provide developers with a simple and automatic method to tailor the kernel on demand to meet the different scenarios of kuasar secure container.

@flyflypeng flyflypeng requested review from a team as code owners November 25, 2023 02:35
Copy link
Member

@Burning1020 Burning1020 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Some typos. LGTM.

The characteristic of this scenario is that the applications are typically standard linux monolithic applications with complex functionality and high performance requirements, such as multi-tenant AI training/inference scenarios. To reduce performance loss, accelerator hardware devices need to be directly passthrough to secure containers. In addition, the device driver module can be loaded and complex networking modes can be supported.
**The requirements for the kernel in these scenarios are advanced capabilities, including support for hardware device pass-through, multiple network modes, and loadable kernel modules.**

Based on the directory structure of kernel features output by the `make menuconfig` command and combined with the typical scenarios of security container, the kernel features can be divided into the following categories::
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
Based on the directory structure of kernel features output by the `make menuconfig` command and combined with the typical scenarios of security container, the kernel features can be divided into the following categories::
Based on the directory structure of kernel features output by the `make menuconfig` command and combined with the typical scenarios of security container, the kernel features can be divided into the following categories:

…y container

reason: provide developers with a simple and automatical method to tailor the kernel
on demand to meet the different scenarios of kuasar secure container.

Signed-off-by: flyflypeng <[email protected]>
@flyflypeng flyflypeng force-pushed the support-guest-kernel-tailor branch from b5fe1fd to 89f8c94 Compare January 10, 2024 08:34
@Burning1020 Burning1020 merged commit b800363 into kuasar-io:main Jan 12, 2024
15 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Provide developers with a simple and automatic method to tailor the kernel
2 participants