Cloud Hypervisor 52 Now Supports Launching AMD SEV-SNP Confidential VMs With KVM

Cloud Hypervisor 52 was released on Thursday and most notable with this release is now having confidential virtual machine support when using Linux's KVM on AMD SEV-SNP capable EPYC processors. AMD SEV-SNP confidential VMs can now be launched on KVM via Cloud Hypervisor, in addition to supporting such CoCo VMs on Microsoft MSHV. This includes measured boot support and all similar functionality now wired up for a nice AMD Secure Encrypted Virtualization (Secure Nested Paging) experience.
In addition to the KVM SEV-SNP support, Cloud Hypervisor 52 has a fix for a use-after-free vulnerability in the VirtIO-Block async I/O path, VFIO device passthrough support via iommufd/vfio-cdev, multi-connection TCP live migration, async QCOW2 back-end with IO_uring support, and a new core scheduling option for vCPU threads.
There are also many smaller improvements in Cloud Hypervisor 52 among various fixes. Overall this is quite a feature-packed release with a lot of exciting improvements for this VMM targeting cloud workloads on Linux and Windows.
Cloud Hypervisor 52 downloads via GitHub. More details on this new feature release at CloudHypervisor.org.
Add A Comment
