Cloud Hypervisor 41 Brings Performance Improvements & Landlock Sandboxing

Written by Michael Larabel in Virtualization on 16 August 2024 at 08:59 AM EDT. 1 Comment
VIRTUALIZATION
The Cloud Hypervisor open-source project that serves as a Rust-written VMM focused on security and started by Intel but now backed by a multitude of vendors is out with its newest feature release. Cloud Hypervisor 41 is the new feature release worked on by engineers at Intel, Google, Microsoft, Rivos, Tencent, Ant Group, and others for this cloud and security minded virtual machine monitor.

Cloud Hypervisor 41 introduces sandboxing support using the Linux kernel's Landlock API. New to this release is also experimental Pvmemcontrol support so guests can control its physical memory properties for better security and the possibility of performance optimizations.

There are also new performance optimizations in Cloud Hypervisor 41 to reduce heap allocations within VirtIO-Net, notification suppression support for VirtIO-Block that is able to yield a 60% improvement in single queue block throughput and IOPS performance, and correcting the size used for the status field within the virtio-block state.

Cloud Hypervisor logo


There are also bug fixes and other improvements to find in Cloud Hypervisor 41. Downloads and more details on this Rust VMM over on GitHub and CloudHypervisor.org.
Related News
About The Author
Michael Larabel

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.

Popular News This Week