Ahojte,
v ramci svojho homelabu - TrueNAS core som si chcel nainstalovat pre ziskanie nejakeho know-how pfSense.
Uz ten TrueNAS som si zapojil dvoma nezavislymi NIC, aby som to mal oddelene od LAN a DMZ. Ked som virtualizoval pfSense nad bhyve, tak som narazil na problem, ze by som mu musel bud dat dalsi port na routri (dalsi subnet) alebo ho virtualizovat aj so sietou nad OS a chcem ho mat oddelene od OS (TrueNAS).
Tak som si povedal, ze si dam do bhyve ubuntu, kde si porobim virtualne interfaces, nainstalujem Xen a pfsense bude DomU. No narazil som na problem
libxl: error: libxl_create.c:589:libxl__domain_make: domain creation fail: Invalid argument
libxl: error: libxl_create.c:964:initiate_domain_create: cannot make domain: -3
alebo este vacsi detail
libxl: debug: libxl_create.c:1671:do_domain_create: Domain 0:ao 0x563ca4384540: create: how=(nil) callback=(nil) poller=0x563ca43845d0
libxl: error: libxl_create.c:589:libxl__domain_make: domain creation fail: Invalid argument
libxl: error: libxl_create.c:964:initiate_domain_create: cannot make domain: -3
libxl: debug: libxl_event.c:1869:libxl__ao_complete: ao 0x563ca4384540: complete, rc=-3
libxl: debug: libxl_create.c:1708:do_domain_create: Domain 0:ao 0x563ca4384540: inprogress: poller=0x563ca43845d0, flags=ic
libxl: debug: libxl_event.c:1838:libxl__ao__destroy: ao 0x563ca4384540: destroy
xencall:buffer: debug: total allocations:12 total releases:12
xencall:buffer: debug: current allocations:0 maximum allocations:1
xencall:buffer: debug: cache current size:1
xencall:buffer: debug: cache hits:11 misses:1 toobig:0
xencall:buffer: debug: total allocations:0 total releases:0
xencall:buffer: debug: current allocations:0 maximum allocations:0
xencall:buffer: debug: cache current size:0
xencall:buffer: debug: cache hits:0 misses:0 toobig:0
alebo este
(XEN) parameter "placeholder" unknown!
(XEN) parameter "no-real-mode" unknown!
(XEN) parameter "edd" unknown!
(XEN) Xen version 4.11.4-pre (Ubuntu 4.11.3+24-g14b62ab3e5-1ubuntu2) (ubuntu-devel-discuss@lists.ubuntu.com) (gcc (Ubuntu 9.2.1-31ubuntu3) 9.2.1 20200306) debug=n Tue Mar 10 09:04:06 UTC 2020
(XEN) Bootloader: GRUB 2.04-1ubuntu44.2
(XEN) Command line: placeholder no-real-mode edd=off
(XEN) Xen image load base address: 0xbdc00000
(XEN) Video information:
(XEN) VGA is graphics mode 1920x1200, 32 bpp
(XEN) Disc information:
(XEN) Found 0 MBR signatures
(XEN) Found 1 EDD information structures
(XEN) EFI RAM map:
(XEN) 0000000000000000 - 00000000000a0000 (usable)
(XEN) 0000000000100000 - 00000000bea96000 (usable)
(XEN) 00000000bea96000 - 00000000bea98000 (reserved)
(XEN) 00000000bea98000 - 00000000bea9a000 (ACPI data)
(XEN) 00000000bea9a000 - 00000000beaa9000 (reserved)
(XEN) 00000000beaa9000 - 00000000bfb29000 (usable)
(XEN) 00000000bfb29000 - 00000000bfb7d000 (reserved)
(XEN) 00000000bfb7d000 - 00000000bfb82000 (usable)
(XEN) 00000000bfb82000 - 00000000bfb89000 (ACPI data)
(XEN) 00000000bfb89000 - 00000000bfb8d000 (ACPI NVS)
(XEN) 00000000bfb8d000 - 00000000bffd0000 (usable)
(XEN) 00000000bffd0000 - 00000000bfff0000 (reserved)
(XEN) 00000000bfff0000 - 00000000c0000000 (usable)
(XEN) 0000000100000000 - 0000000140000000 (usable)
(XEN) ACPI: RSDP BFB88014, 0024 (r2 BHYVE )
(XEN) ACPI: XSDT BFB870E8, 004C (r1 BHYVE BVFACP 1 1000013)
(XEN) ACPI: FACP BFB86000, 00F4 (r4 BHYVE BVFACP 1 BHYV 1)
(XEN) ACPI: DSDT BEA98000, 191A (r2 BHYVE BVDSDT 1 INTL 20200430)
(XEN) ACPI: FACS BFB8C000, 0040
(XEN) ACPI: HPET BFB85000, 0038 (r1 BHYVE BVHPET 1 BHYV 1)
(XEN) ACPI: APIC BFB84000, 0062 (r1 BHYVE BVMADT 1 BHYV 1)
(XEN) ACPI: MCFG BFB83000, 003C (r1 BHYVE BVMCFG 1 BHYV 1)
(XEN) ACPI: SPCR BFB82000, 0050 (r1 BHYVE BVSPCR 1 BHYV 1)
(XEN) System RAM: 4095MB (4193336kB)
(XEN) Domain heap initialised
(XEN) ACPI: 32/64X FACS address mismatch in FADT - bfb8c000/0000000000000000, using 32
(XEN) IOAPIC[0]: apic_id 4, version 17, address 0xfec00000, GSI 0-31
(XEN) Enabling APIC mode: Phys. Using 1 I/O APICs
(XEN) xstate: size: 0x340 and states: 0x7
(XEN) Speculative mitigation facilities:
(XEN) Hardware features: MD_CLEAR
(XEN) Compiled-in support: INDIRECT_THUNK SHADOW_PAGING
(XEN) Xen settings: BTI-Thunk RETPOLINE, SPEC_CTRL: No, Other: VERW
(XEN) L1TF: believed vulnerable, maxphysaddr L1D 46, CPUID 46, Safe address 300000000000
(XEN) Support for VMs: PV: RSB EAGER_FPU MD_CLEAR, HVM: RSB EAGER_FPU MD_CLEAR
(XEN) XPTI (64-bit PV only): Dom0 enabled, DomU enabled
(XEN) PV L1TF shadowing: Dom0 disabled, DomU enabled
(XEN) Using scheduler: SMP Credit Scheduler (credit)
(XEN) Platform timer is 16.777MHz HPET
(XEN) Detected 1795.748 MHz processor.
(XEN) Initing memory sharing.
(XEN) PCI: Not using MCFG for segment 0000 bus 00-ff
(XEN) I/O virtualisation disabled
(XEN) ENABLING IO-APIC IRQs
(XEN) -> Using new ACK method
(XEN) Allocated console ring of 16 KiB.
(XEN) Brought up 4 CPUs
(XEN) xenoprof: Initialization failed. Intel processor family 6 model 45 is not supported
(XEN) Dom0 has maximum 608 PIRQs
(XEN) Xen kernel: 64-bit, lsb, compat32
(XEN) Dom0 kernel: 64-bit, PAE, lsb, paddr 0x1000000 -> 0x3800000
(XEN) PHYSICAL MEMORY ARRANGEMENT:
(XEN) Dom0 alloc.: 0000000130000000->0000000134000000 (964839 pages to be allocated)
(XEN) Init. ramdisk: 000000013acd2000->000000013ffffbea
(XEN) VIRTUAL MEMORY ARRANGEMENT:
(XEN) Loaded kernel: ffffffff81000000->ffffffff83800000
(XEN) Init. ramdisk: 0000000000000000->0000000000000000
(XEN) Phys-Mach map: 0000008000000000->00000080007a60a8
(XEN) Start info: ffffffff83800000->ffffffff838004b8
(XEN) Xenstore ring: 0000000000000000->0000000000000000
(XEN) Console ring: 0000000000000000->0000000000000000
(XEN) Page tables: ffffffff83801000->ffffffff83822000
(XEN) Boot stack: ffffffff83822000->ffffffff83823000
(XEN) TOTAL: ffffffff80000000->ffffffff83c00000
(XEN) ENTRY ADDRESS: ffffffff829ae1c0
(XEN) Dom0 has maximum 4 VCPUs
(XEN) Initial low memory virq threshold set at 0x4000 pages.
(XEN) Scrubbing Free RAM on 1 nodes using 2 CPUs
(XEN) ....................done.
(XEN) Std. Loglevel: Errors and warnings
(XEN) Guest Loglevel: Nothing (Rate-limited: Errors and warnings)
(XEN) ***************************************************
(XEN) Booted on L1TF-vulnerable hardware with SMT/Hyperthreading
(XEN) enabled. Please assess your configuration and choose an
(XEN) explicit 'smt=<bool>' setting. See XSA-273.
(XEN) ***************************************************
(XEN) Booted on MLPDS/MFBDS-vulnerable hardware with SMT/Hyperthreading
(XEN) enabled. Mitigations will not be fully effective. Please
(XEN) choose an explicit smt=<bool> setting. See XSA-297.
(XEN) ***************************************************
(XEN) 3... 2... 1...
(XEN) Xen is relinquishing VGA console.
(XEN) *** Serial input -> DOM0 (type 'CTRL-a' three times to switch input to Xen)
(XEN) Freed 476kB init memory
Neviem, ci je problem, ze to chcem nad bhyve alebo nieco ine. Ma niekto skusenosti? Mozem poprosit o radu?
Pripadne, ake mam ine moznosti. Ci virtualbox do ubuntu nad bhyve alebo dopadnem rovnako.
Dakujem
m