From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mp0 ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by ms11 with LMTPS id kB1XMjaZ4l5EKQAA0tVLHw (envelope-from ) for ; Thu, 11 Jun 2020 20:51:02 +0000 Received: from aspmx1.migadu.com ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by mp0 with LMTPS id YP42LjaZ4l5DXgAA1q6Kng (envelope-from ) for ; Thu, 11 Jun 2020 20:51:02 +0000 Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by aspmx1.migadu.com (Postfix) with ESMTPS id 76E7F94036C for ; Thu, 11 Jun 2020 20:51:02 +0000 (UTC) Received: from localhost ([::1]:42480 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1jjUA9-0007Ed-FD for larch@yhetil.org; Thu, 11 Jun 2020 16:51:01 -0400 Received: from eggs.gnu.org ([2001:470:142:3::10]:34782) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1jjTOk-0007kS-4m for guix-patches@gnu.org; Thu, 11 Jun 2020 16:02:02 -0400 Received: from debbugs.gnu.org ([209.51.188.43]:54855) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1jjTOj-0004SR-OI for guix-patches@gnu.org; Thu, 11 Jun 2020 16:02:01 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1jjTOj-0006X5-Mi for guix-patches@gnu.org; Thu, 11 Jun 2020 16:02:01 -0400 X-Loop: help-debbugs@gnu.org Subject: [bug#41785] [PATCH] DRAFT services: Add 'hurd-in-vm service-type'. Resent-From: Marius Bakke Original-Sender: "Debbugs-submit" Resent-CC: guix-patches@gnu.org Resent-Date: Thu, 11 Jun 2020 20:02:01 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 41785 X-GNU-PR-Package: guix-patches X-GNU-PR-Keywords: patch To: Mathieu Othacehe , "Jan \(janneke\) Nieuwenhuizen" Cc: 41785@debbugs.gnu.org Received: via spool by 41785-submit@debbugs.gnu.org id=B41785.159190570325075 (code B ref 41785); Thu, 11 Jun 2020 20:02:01 +0000 Received: (at 41785) by debbugs.gnu.org; 11 Jun 2020 20:01:43 +0000 Received: from localhost ([127.0.0.1]:38168 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jjTOR-0006WN-2M for submit@debbugs.gnu.org; Thu, 11 Jun 2020 16:01:43 -0400 Received: from eggs.gnu.org ([209.51.188.92]:54714) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jjTOI-0006Vw-Vx for 41785@debbugs.gnu.org; Thu, 11 Jun 2020 16:01:42 -0400 Received: from fencepost.gnu.org ([2001:470:142:3::e]:40347) by eggs.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1jjTOD-0004NI-Jy; Thu, 11 Jun 2020 16:01:29 -0400 Received: from ti0006q161-2604.bb.online.no ([84.202.68.75]:50122 helo=localhost) by fencepost.gnu.org with esmtpsa (TLS1.2:RSA_AES_256_CBC_SHA1:256) (Exim 4.82) (envelope-from ) id 1jjTOC-0000dE-L8; Thu, 11 Jun 2020 16:01:29 -0400 From: Marius Bakke In-Reply-To: <87r1unm9xy.fsf@gnu.org> References: <20200610085441.890-1-janneke@gnu.org> <87r1unm9xy.fsf@gnu.org> Date: Thu, 11 Jun 2020 22:01:25 +0200 Message-ID: <87h7vhfk2y.fsf@gnu.org> MIME-Version: 1.0 Content-Type: multipart/signed; boundary="=-=-="; micalg=pgp-sha512; protocol="application/pgp-signature" X-Spam-Score: -2.3 (--) X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-Spam-Score: -3.3 (---) X-BeenThere: guix-patches@gnu.org List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+larch=yhetil.org@gnu.org Sender: "Guix-patches" X-Scanner: scn0 Authentication-Results: aspmx1.migadu.com; dkim=none; dmarc=none; spf=pass (aspmx1.migadu.com: domain of guix-patches-bounces@gnu.org designates 209.51.188.17 as permitted sender) smtp.mailfrom=guix-patches-bounces@gnu.org X-Spam-Score: -3.11 X-TUID: e6RxTslLr5cD --=-=-= Content-Type: text/plain Mathieu Othacehe writes: > So, I don't get why would we need to run a Hurd VM inside a VM. I've > been struggling a lot with running nested layers of virtualization (for > system generation before the recent patches), and the result is often > too slow to be really usable. Note that recent processors support nested layers of virtualization natively with little overhead, but it's disabled by default. For an Intel processor, it can be enabled by adding this to your system configuration: (kernel-arguments (cons "kvm_intel.nested=1" %default-kernel-arguments)) The corresponding AMD kernel module is called "kvm_amd". --=-=-= Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQEzBAEBCgAdFiEEu7At3yzq9qgNHeZDoqBt8qM6VPoFAl7ijZUACgkQoqBt8qM6 VPrZKggAw5jBvmJSnZkR+RCnKW/mSWf3bxteaO5RBGcXQuYHyZBRd0WviINXeGUr mVoPrZ5yXLZdSQgaLj6Cfcgr78k9DLau0FYOwODc28rz8wsGj62IJB3XJe16Svps TBsQHGluncnyBp5g0trO9acG2zKhaxF9tFX8e5ZT+hleNk0WcpXV7jY+ubrOjINQ yleXOQpGcUnSD2LzJCwkj9cTjwGPIXSg1MH+G2rXsBnHoVuvLM/Xo2W4Kf2Hl+gl +iMITdLfGDfHjbVOFtcJ7T7C7FerYA4sWcrIYwpOwfDXwnnVjf5zNrpbyjJpvelL UHBNlFxVoKJlmnq6g5rTl39Ly109lQ== =2aVn -----END PGP SIGNATURE----- --=-=-=--