Re: [openstack-dev] Regarding cache-based cross-VM side channel attacks in OpenStack

2018-08-24 Thread Adam Heczko
Hi Darshan, I believe you are referring to the recent Foreshadow / l1tf vulnerability? If that's the case OpenStack compute workloads are protected with all relevant to the specific hypervisor type mechanisms. AFAIK OpenStack at this moment supports KVM-Qemu, Xen, vSphere/ESXI and Hyper-V

[openstack-dev] Regarding cache-based cross-VM side channel attacks in OpenStack

2018-08-23 Thread Darshan Tank
Dear Sir, I would like to know, whether cache-based cross-VM side channel attacks are possible in OpenStack VM or not ? If the answer of above question is no, then what are the mechanisms employed in OpenStack to prevent or to mitigate such types of security threats? I'm looking forward to