acrn-hypervisor/hypervisor
wenshelx 265499c2f2 security: fortify source and format string check
"-O2 -D_FORTIFY_SOURCE=2":
GCC C-Compiler can analyze the source code to be compiled and detect
certain insecure sections, that might create a security problem. The
compiler will replace the insecure function calls with special hardened
code that will perform extra runtime checks while the process is
executed.
"-Wformat -Wformat-security":
It warns about calls to "printf" and "scanf" functions where the format
string is not a string literal and there are no format arguments, as in
"printf (foo);". This may be a security hole if the format string came
from untrusted input and contains %n.

Tracked-On: 224003
Signed-off-by: wenshelx <wenshengx.wang@intel.com>
2018-05-15 17:19:35 +08:00
..
Documentation initial import 2018-05-11 14:44:28 +08:00
arch/x86 decouple hv sw version and api version 2018-05-11 14:44:29 +08:00
boot initial import 2018-05-11 14:44:28 +08:00
bsp minor fix on acrn.conf 2018-05-11 14:44:30 +08:00
common decouple hv sw version and api version 2018-05-11 14:44:29 +08:00
debug initial import 2018-05-11 14:44:28 +08:00
include doc: update param spelling from VM to vm 2018-05-11 14:44:28 +08:00
lib initial import 2018-05-11 14:44:28 +08:00
MAINTAINERS update Maintainer list 2018-05-11 14:44:28 +08:00
Makefile security: fortify source and format string check 2018-05-15 17:19:35 +08:00
README.rst initial import 2018-05-11 14:44:28 +08:00
license_header initial import 2018-05-11 14:44:28 +08:00

README.rst

Embedded-Hypervisor
###################

This open source embedded hypervisor defines a software architecture for
running multiple software subsystems managed securely on a consolidated
system (by means of a virtual machine manager), and defines a reference
framework Device Model implementation for devices emulation

This embedded hypervisor is type-1 reference hypervisor, running
directly on the system hardware. It can be used for building software
defined cockpit (SDC) or In-Vehicle Experience (IVE) solutions running
on Intel Architecture Apollo Lake platforms. As a reference
implementation, it provides the basis for embedded hypervisor vendors to
build solutions with an open source reference I/O mediation solution,
and provides auto makers a reference software stack for SDC usage.

This embedded hypervisor is able to support both Linux* and Android* as
a Guest OS, managed by the hypervisor, where applications can run.

This embedded hypervisor is a partitioning hypervisor reference stack,
also suitable for non-automotive IoT & embedded device solutions. It
will be addressing the gap that currently exists between datacenter
hypervisors, hard partitioning hypervisors, and select industrial
applications.  Extending the scope of this open source embedded
hypervisor relies on the involvement of community developers like you!