Feeds

Virtualisation for Beginners

It's not just for server jockeys, you know

  • alert
  • submit to reddit

The smart choice: opportunity from uncertainty

Apple users are familiar with the frustration of finding that some new appendage they've acquired is only supplied with software to communicate with Windows machines. Windows connection software for phones, cameras, or non-iPod MP3 devices should run well inside a Windows virtual machine, although the ultimate solution is to insist on hardware that embraces USB mass storage, and so can transfer data across all operating systems with no special software.

Virtualisation for Beginners

Parallels Desktop's Crystal Mode allows windows from the guest OS to float freely among the host OS' windows. Windows apps - marked with the orange Parallels symbol - are available from the Mac's Dock.

Do you need to power up the whole virtual machine just to run one small guest application? Yes, you do, but you can do this under the covers. Parallels Desktop's Crystal Mode allows windows from the guest operating system to float freely among those of the host operating system, and attaches the guest applications to the host's menuing system. VMWare Fusion takes the same approach with a similar facility called Unity.

In effect, this allows you to encapsulate the guest application and run it as if it were just another host app. If you can spare the memory, you can speed up the process having the guest operating system under the hypervisor ready-loaded at boot time.

The Downside of Hardware Virtualisation

“There is no software-visible bit whose setting indicates whether a logical processor is in VMX non-root operation. This fact may allow a VMM to prevent guest software from determining that it is running in a virtual machine” - Intel VTx specification.

Intel's VM hardware design means that it may be impossible for an operating system to know it's actually running as a guest, not as a host. This is useful, eg. for driver developers, but also allows for the mother and father of all rootkits.

It's been suggested that an operating system simply has to try to load a VM of its own, ie. launch its own hypervisor. If it can't then it's probably running as a VM itself. However, Joanna Rutkowska, the Polish security specialist who conceived the Blue Pill hypervisor rootkit, has shown that nested virtualisation is possible, and an OS capable of launching a hypervisor might still be running under an even higher privileged hypervisor.

In essence, this is the so-called God Problem. Key to atheist Richard Dawkins' argument for the non-existence of God, is the premise that "a world without God would be very different from a world with God". But need there be any detectable difference?

Securing Web Applications Made Simple and Scalable

More from The Register

next story
NO MORE ALL CAPS and other pleasures of Visual Studio 14
Unpicking a packed preview that breaks down ASP.NET
DARPA-derived secure microkernel goes open source tomorrow
Hacker-repelling, drone-protecting code will soon be yours to tweak as you see fit
Cheer up, Nokia fans. It can start making mobes again in 18 months
The real winner of the Nokia sale is *drumroll* ... Nokia
Put down that Oracle database patch: It could cost $23,000 per CPU
On-by-default INMEMORY tech a boon for developers ... as long as they can afford it
Google shows off new Chrome OS look
Athena springs full-grown from Chromium project's head
Apple: We'll unleash OS X Yosemite beta on the MASSES on 24 July
Starting today, regular fanbois will be guinea pigs, it tells Reg
HIDDEN packet sniffer spy tech in MILLIONS of iPhones, iPads – expert
Don't panic though – Apple's backdoor is not wide open to all, guru tells us
prev story

Whitepapers

Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Top 8 considerations to enable and simplify mobility
In this whitepaper learn how to successfully add mobile capabilities simply and cost effectively.
Seven Steps to Software Security
Seven practical steps you can begin to take today to secure your applications and prevent the damages a successful cyber-attack can cause.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.