Christopher Clark
Christopher Clark is a software consultant working on Open Source virtualization and security technologies with Xen, OpenXT and Linux. He is the maintainer of the Argo inter-domain communication subsystem of the Xen hypervisor, Xen's recipes in the Yocto meta-virtualization layer and a member of the OpenEmbedded Project.
Session
Surrounded by legacy requirements and motivated attackers, can you use mainline kernels for new security protections, without risking application compatibility? Yocto Project’s meta-virtualization layer maintains hypervisors that can isolate bare-metal kernels from workload-tailored, virtual-hardware kernels.
Virtualization enables strong isolation via robust, narrow interfaces, to run efficient, multi-layered systems on hardware and software platforms from diverse sources.
We show how to assemble fully integrated systems with YP, with multiple hypervisors -- Xen, KVM and ACRN -- as interchangeable components under build configuration control, with a selection of from-source and binary-distro guests, to run on hardware from Intel, AMD and Arm.