Score:0

Remove "lspci" devices from guest VM - possibilities and limitations

ng flag

Prerequesites: some RedHat KVM hypevisor and Ubuntu server as guest.

So, I'm worryng about virtual pci devices, connected to my Linux VM (on VPS) by default. One of them is VGA device which lets anyone to access my VM directly via VNC (possibly vulnerability because of it's shared in control web panel via JS libraries, you know and of course, hosting provider can get access via hypervisor - I don't want it). And of course, here is some other default or custom devices connected too:

00:00.0 Host bridge: Intel Corporation 440FX - 82441FX PMC [Natoma] (rev 02)
00:01.0 ISA bridge: Intel Corporation 82371SB PIIX3 ISA [Natoma/Triton II]
00:01.1 IDE interface: Intel Corporation 82371SB PIIX3 IDE [Natoma/Triton II]
00:01.2 USB controller: Intel Corporation 82371SB PIIX3 USB [Natoma/Triton II] (                           rev 01)
00:01.3 Bridge: Intel Corporation 82371AB/EB/MB PIIX4 ACPI (rev 03)
00:02.0 VGA compatible controller: Device 1234:1111 (rev 02)
00:03.0 Ethernet controller: Red Hat, Inc. Virtio network device
00:04.0 SCSI storage controller: Red Hat, Inc. Virtio block device
00:05.0 Unclassified device [00ff]: Red Hat, Inc. Virtio memory balloon

Above is output of 'lspci'

Can anyone let me know about some of default devices and is it necessary (and why shortly).

vidarlo avatar
ar flag
Please do *not* [cross post](https://security.stackexchange.com/questions/269567/securing-kvm-redhat-vps) on different Stack exchange sites. In short: you are not in control of the VM's configuration. You can't change it, and you can't secure it against an malicious host.
agiAWjoa0za avatar
ng flag
thanks @vidarlo
I sit in a Tesla and translated this thread with Ai:

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.