Uploaded image for project: 'OpenShift Virtualization'
  1. OpenShift Virtualization
  2. CNV-54553

passt enhancement: file system CAP_NET_ADMIN PoC

XMLWordPrintable

    • Icon: Task Task
    • Resolution: Done
    • Icon: Undefined Undefined
    • None
    • None
    • CNV Network
    • 3
    • False
    • Hide

      None

      Show
      None
    • False
    • None
    • ---
    • ---
    • CNV Network Core 43
    • None

      In order to support TCP live migration, passt binary needs to be granted CAP_NET_ADMIN capabilities and CAP_NET_RAW in order to support non TCP/UDP protocols.

      virt-handle will add/remove the capabilities, to the passt binary file, in runtime, using setcap command (see example) in VMs that have interfaces with passt bindings.

      virt-chroot will be enhanced to support those operations.

      A PoC will be conducted to validate the approach

              rh-ee-ndothan Nir Dothan
              rh-ee-ndothan Nir Dothan
              Yossi Segev Yossi Segev
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: