agent-substrate / agent-substrate/substrate

GPU passthrough for micro-VM actors

未關閉
#762 4 則留言 0 個 reaction 已指派 1 人 已被 @eliranw 認領 在 GitHub 檢視
area/microVM kind/feature
主要語言
Go
星號
1.8k
分支
316
平均合併
2 天 43 分鐘
30 天內合併 PR
287

描述

GPU passthrough for gVisor actors is proposed in #502. Nothing equivalent exists for micro-VM actors, and that PR gates the combination: a `microvm` WorkerPool requesting `nvidia.com/gpu` is rejected at apply time, because the pod would otherwise schedule onto a GPU node and hold a device no actor could use.

The gVisor approach does not carry over. It injects the host driver into the sandbox via CDI, which relies on the actor sharing the host kernel. A micro-VM guest has its own kernel, so the device has to be passed through — VFIO PCI passthrough for the GPU, plus getting a matching driver and user-mode libraries into the guest.

Open questions:

- VFIO device binding and IOMMU requirements on the node, and whether that composes with the unprivileged worker posture
- How the guest gets a driver matching the host GPU, and how it stays version-matched
- Whether cloud-hypervisor's VFIO support covers what is needed here
- What this means for snapshot/restore, which for micro-VM captures guest memory

Filing so the design is tracked outside the gVisor PR.

Related: #627, #502

貢獻指南

開啟貢獻指南

評估

這個 Issue 還沒有評估資料。

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。