From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mp2 ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by ms11 with LMTPS id uCvyOIQj415YGQAA0tVLHw (envelope-from ) for ; Fri, 12 Jun 2020 06:41:08 +0000 Received: from aspmx1.migadu.com ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by mp2 with LMTPS id IPPfNIQj414AOQAAB5/wlQ (envelope-from ) for ; Fri, 12 Jun 2020 06:41:08 +0000 Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by aspmx1.migadu.com (Postfix) with ESMTPS id 7CA5A9404C7 for ; Fri, 12 Jun 2020 06:41:07 +0000 (UTC) Received: from localhost ([::1]:39572 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1jjdNA-00017G-Tr for larch@yhetil.org; Fri, 12 Jun 2020 02:41:04 -0400 Received: from eggs.gnu.org ([2001:470:142:3::10]:35174) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1jjdN8-000179-Jb for guix-patches@gnu.org; Fri, 12 Jun 2020 02:41:02 -0400 Received: from debbugs.gnu.org ([209.51.188.43]:55450) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1jjdN8-00075F-94 for guix-patches@gnu.org; Fri, 12 Jun 2020 02:41:02 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1jjdN8-0007pR-66 for guix-patches@gnu.org; Fri, 12 Jun 2020 02:41:02 -0400 X-Loop: help-debbugs@gnu.org Subject: [bug#41785] [PATCH] DRAFT services: Add 'hurd-in-vm service-type'. Resent-From: Jan Nieuwenhuizen Original-Sender: "Debbugs-submit" Resent-CC: guix-patches@gnu.org Resent-Date: Fri, 12 Jun 2020 06:41:02 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 41785 X-GNU-PR-Package: guix-patches X-GNU-PR-Keywords: patch To: Marius Bakke Cc: Mathieu Othacehe , 41785@debbugs.gnu.org Received: via spool by 41785-submit@debbugs.gnu.org id=B41785.159194400430003 (code B ref 41785); Fri, 12 Jun 2020 06:41:02 +0000 Received: (at 41785) by debbugs.gnu.org; 12 Jun 2020 06:40:04 +0000 Received: from localhost ([127.0.0.1]:38763 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jjdMB-0007nq-Np for submit@debbugs.gnu.org; Fri, 12 Jun 2020 02:40:04 -0400 Received: from eggs.gnu.org ([209.51.188.92]:54894) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jjdM5-0007n8-30 for 41785@debbugs.gnu.org; Fri, 12 Jun 2020 02:40:02 -0400 Received: from fencepost.gnu.org ([2001:470:142:3::e]:48073) by eggs.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1jjdLz-0006oJ-7i; Fri, 12 Jun 2020 02:39:51 -0400 Received: from [2001:980:1b4f:1:42d2:832d:bb59:862] (port=59934 helo=dundal.peder.onsbrabantnet.nl) by fencepost.gnu.org with esmtpsa (TLS1.2:RSA_AES_256_CBC_SHA1:256) (Exim 4.82) (envelope-from ) id 1jjdLs-0007xj-HY; Fri, 12 Jun 2020 02:39:45 -0400 From: Jan Nieuwenhuizen Organization: AvatarAcademy.nl References: <20200610085441.890-1-janneke@gnu.org> <87r1unm9xy.fsf@gnu.org> <87h7vhfk2y.fsf@gnu.org> X-Url: http://AvatarAcademy.nl Date: Fri, 12 Jun 2020 08:39:41 +0200 In-Reply-To: <87h7vhfk2y.fsf@gnu.org> (Marius Bakke's message of "Thu, 11 Jun 2020 22:01:25 +0200") Message-ID: <87tuzgyehe.fsf@gnu.org> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/26.3 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable X-Spam-Score: -1.8 (-) X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-Spam-Score: -2.8 (--) X-BeenThere: guix-patches@gnu.org List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+larch=yhetil.org@gnu.org Sender: "Guix-patches" X-Scanner: scn0 Authentication-Results: aspmx1.migadu.com; dkim=none; dmarc=none; spf=pass (aspmx1.migadu.com: domain of guix-patches-bounces@gnu.org designates 209.51.188.17 as permitted sender) smtp.mailfrom=guix-patches-bounces@gnu.org X-Spam-Score: 0.49 X-TUID: 6xaqEcSY4RNx Marius Bakke writes: Hello, > Mathieu Othacehe writes: > >> So, I don't get why would we need to run a Hurd VM inside a VM. I've >> been struggling a lot with running nested layers of virtualization (for >> system generation before the recent patches), and the result is often >> too slow to be really usable. > > Note that recent processors support nested layers of virtualization > natively with little overhead, but it's disabled by default. Ah! > For an Intel processor, it can be enabled by adding this to your system > configuration: > > (kernel-arguments (cons "kvm_intel.nested=3D1" %default-kernel-argument= s)) Is there an obvious downside to enabling this? Great...So on the host I did --8<---------------cut here---------------start------------->8--- root@dundal ~# rmmod kvm_intel root@dundal ~# modprobe kvm_intel kvm_intel.nested=3D1 root@dundal ~# cat /sys/module/kvm_intel/parameters/nested Y --8<---------------cut here---------------end--------------->8--- and the interwebs told me that to start the VM, you have to add "-cpu host"; so I started it using --8<---------------cut here---------------start------------->8--- /gnu/store/k2b7nx34cwyi6yk49wgy4hg9mrwcmll5-run-vm.sh -cpu host -m 2G -devi= ce rtl8139,netdev=3Dnet0 -netdev user,id=3Dnet0,hostfwd=3Dtcp:127.0.0.1:100= 22-:2222,hostfwd=3Dtcp:127.0.0.1:25900-:25900 --8<---------------cut here---------------end--------------->8--- and trying to "ssh -p 20022 localhost" from inside the bare-bones VM now prints --8<---------------cut here---------------start------------->8--- qemu-system-i386: Slirp: Failed to send package, ret: -1 qemu-system-i386: Slirp: Failed to send package, ret: -1 qemu-system-i386: Slirp: Failed to send package, ret: -1 qemu-system-i386: Slirp: Failed to send package, ret: -1 qemu-system-i386: Slirp: Failed to send package, ret: -1 qemu-system-i386: Slirp: Failed to send package, ret: -1 key_exchange_identification: read: Connection reset by peer Connection reset by 127.0.0.1 port 20022 --8<---------------cut here---------------end--------------->8--- ...something networky with QEMU. Ideas? Janneke --=20 Jan Nieuwenhuizen | GNU LilyPond http://lilypond.org Freelance IT http://JoyofSource.com | Avatar=C2=AE http://AvatarAcademy.com