Version 48.0 of the Cloud Hypervisor has been released, developed based on components from the Rust-VMM project, which is supported by Intel, Alibaba, Amazon, Google, and Red Hat. Rust-VMM is written in Rust and allows for the creation of hypervisors tailored for specific tasks. Cloud Hypervisor is one such hypervisor that provides a high-level virtual machine monitor (VMM) operating on top of KVM or MSHV, optimized for cloud-related workloads. The project's code is available under Apache 2.0 and BSD licenses. The hypervisor was initially created by Intel and transferred under the auspices of the Linux Foundation, after which companies such as Alibaba, AMD, Ampere, ARM, ByteDance, Cyberus Technology, Microsoft, and Tencent Cloud joined the development.
Cloud Hypervisor focuses on running modern Linux distributions using paravirtualized devices based on virtio. Key tasks include: high responsiveness, low memory consumption, high performance, simplified setup, and reducing potential attack vectors. It features the ability to directly boot the OS kernel without intermediate bootloaders, allowing for very rapid virtual machine startups (less than 100 ms elapse before control is passed to user-space applications).
Emulation support is minimized and paravirtualization is emphasized. The project supports x86_64, AArch64, and RISC-V architectures. It supports 64-bit builds of Linux and Windows 10/Windows Server 2019 as guest systems, and it allows using Cloud Hypervisor to run containers in virtual machines using the Kata Containers toolkit. Live migration of virtual machines between servers and managing the lifecycle of virtual machines through HTTP API.
NĂ« versionin e ri:
- Janar rregullat për përdorimin e mjeteve AI në zhvillim, duke ndaluar pranimin e kodit të gjeneruar me ndihmën e modeleve të mëdha të gjuhës dhe asistentëve AI si ChatGPT, Gemini, Claude dhe GitHub Copilot. Arsyeja për këtë është dëshira për të shmangur paqartësitë me përmbushjen e kërkesave të licencës (AI është trajnuar në kodin nën licenca të ndryshme dhe kodi i gjeneruar potencialisht mund të interpretohet si një punë e derivuar). Ndalimi i AI gjithashtu lidhet me dëshirën për të reduktuar ngarkesën për shoqëruesit, duke i çliruar ata nga analizimi i korrigjimeve pa kuptim, që janë krijuar me ndihmën e AI.
- ĂshtĂ« shtuar mbĂ«shtetje eksperimentale pĂ«r pajisjen fw_cfg (Firmware Configuration), e cila lejon tĂ« kalohen tĂ« dhĂ«nat dhe cilĂ«simet nga mjedisi i host-it nĂ« sistemin mysafir, siç janĂ« konfigurimi i ngecjes sĂ« makinĂ«s virtuale, informacioni pĂ«r ndarjen e memories nĂ« sistem dhe tabelat ACPI.
- ĂshtĂ« shtuar mbĂ«shtetje eksperimentale pĂ«r pajisjen ivshmem pĂ«r organizimin e aksesit tĂ« pĂ«rbashkĂ«t tĂ« disa sistemeve mysafire nĂ« njĂ« zonĂ« tĂ« pĂ«rbashkĂ«t memorjeje.
- ĂshtĂ« shtuar mbĂ«shtetje pĂ«r ngarkimin e sistemeve RISC-V pĂ«rmes kalimit tĂ« kontrollit nĂ« firmware (Firmware Boot) nĂ« vend tĂ« nisjes direkte tĂ« bĂ«rthamĂ«s sĂ« OS-sĂ«.
- Për host-et x86_64, që përdorin hipervizorin KVM, limiti i numrit të procesorëve virtualë të disponueshëm (vCPU) është rritur nga 254 në 8192.
- Në pajisjen virtio-blk është realizuar një optimizim që përdor grupimin dhe përpunimin në mënyrë të paketuar të kërkesave asinkrone të hyrje/daljeve. Ky ndryshim ka lejuar rritjen e performancës në punën me blloqe të vogla (<=16KB).
- ĂshtĂ« pĂ«rshpejtuar ekzekutimi i operacionit tĂ« pezullimit tĂ« punĂ«s makinat virtuale, qĂ« vĂ«rehet veçanĂ«risht nĂ« makinat virtuale me njĂ« numĂ«r tĂ« madh vCPU.
- ĂshtĂ« shtuar dokumentacioni pĂ«r nisjen e sistemeve mysafire me Windows 11 nĂ«n menaxhimin e Cloud Hypervisor.
- është ndërprerë mbështetja për teknologjinë Intel SGX (Software Guard Extensions).
Burimi: opennet.ru
