<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Virtuozzo 7 - Meltdown/Spectre (Microcode) Patch Performance desaster in Mobile and Desktop Processors</title>
    <link>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542659#M27963</link>
    <description>&lt;P&gt;Hey there,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I got massive Performance Problems with Meltdown/Spectre Patches for Virtuozzo Virtualization. (Container)&lt;/P&gt;&lt;P&gt;Since Meltdown/Spectre Patches the Performance dropped to unuseable levels. I patched one of our Root Servers which is running 1 (ONE) productive Container with EZ CMS (Apache 2.4.6, PHP 5.6.32) and MySQL/MariaDB DB (5.5.56) to latest VZ Kernel (3.10.0-693.11.6.vz7.40.4)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt; Root Server is HPE Gen9 Blade Server (Xeon CPU E5-2640 v3 @ 2.60GHz), Storage is Virtuozzo Storage running on SSD only (1-2GB/s Performance) - so rather good Hardware Specs ... ;-)&lt;P&gt;&lt;/P&gt;&lt;P&gt;So here what happened when I bootet to patched Kernel + CPU Microcode Update:&lt;/P&gt;&lt;A href="https://static.spiceworks.com/shared/post/0028/9646/vz.jpg"&gt;https://static.spiceworks.com/shared/post/0028/9646/vz.jpg&lt;/A&gt; &lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;  &lt;P&gt;completely unusable ... Load AVG spiked up to 150 and more (peaks up to over 200)&lt;/P&gt;&lt;P&gt;Disabling the Security Patches brings the Load down to normal:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;     tee /sys/kernel/debug/x86/*enabled &amp;lt;&amp;lt;&amp;lt; 0 &lt;P&gt;&lt;/P&gt;&lt;P&gt;Answer from Virtuozzo Support:&lt;/P&gt;&lt;P&gt;&lt;A href="https://static.spiceworks.com/shared/post/0028/9647/vz1.jpg"&gt;https://static.spiceworks.com/shared/post/0028/9647/vz1.jpg&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;  &lt;P&gt;Essentially this means I can either patch System against Spectre and cripple the Performance that much that the Server is unuseable - or I decide to not patch the Server - keep good Performance but stay vulnerable to Spectre ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;Both options not really satisfactory ...&lt;P&gt;&lt;/P&gt;&lt;P&gt;According to Virtuozzo Support this isn't correctable without another Microcode Update from intel_corp ... will there be optimizations that will help with those Problems? And if yes ... when to expect them?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thx, bye from sunny Austria&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt; Andreas Schnederle-Wagner</description>
    <pubDate>Mon, 15 Jan 2018 15:19:59 GMT</pubDate>
    <dc:creator>ASchn7</dc:creator>
    <dc:date>2018-01-15T15:19:59Z</dc:date>
    <item>
      <title>Virtuozzo 7 - Meltdown/Spectre (Microcode) Patch Performance desaster</title>
      <link>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542659#M27963</link>
      <description>&lt;P&gt;Hey there,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I got massive Performance Problems with Meltdown/Spectre Patches for Virtuozzo Virtualization. (Container)&lt;/P&gt;&lt;P&gt;Since Meltdown/Spectre Patches the Performance dropped to unuseable levels. I patched one of our Root Servers which is running 1 (ONE) productive Container with EZ CMS (Apache 2.4.6, PHP 5.6.32) and MySQL/MariaDB DB (5.5.56) to latest VZ Kernel (3.10.0-693.11.6.vz7.40.4)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt; Root Server is HPE Gen9 Blade Server (Xeon CPU E5-2640 v3 @ 2.60GHz), Storage is Virtuozzo Storage running on SSD only (1-2GB/s Performance) - so rather good Hardware Specs ... ;-)&lt;P&gt;&lt;/P&gt;&lt;P&gt;So here what happened when I bootet to patched Kernel + CPU Microcode Update:&lt;/P&gt;&lt;A href="https://static.spiceworks.com/shared/post/0028/9646/vz.jpg"&gt;https://static.spiceworks.com/shared/post/0028/9646/vz.jpg&lt;/A&gt; &lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;  &lt;P&gt;completely unusable ... Load AVG spiked up to 150 and more (peaks up to over 200)&lt;/P&gt;&lt;P&gt;Disabling the Security Patches brings the Load down to normal:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;     tee /sys/kernel/debug/x86/*enabled &amp;lt;&amp;lt;&amp;lt; 0 &lt;P&gt;&lt;/P&gt;&lt;P&gt;Answer from Virtuozzo Support:&lt;/P&gt;&lt;P&gt;&lt;A href="https://static.spiceworks.com/shared/post/0028/9647/vz1.jpg"&gt;https://static.spiceworks.com/shared/post/0028/9647/vz1.jpg&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;  &lt;P&gt;Essentially this means I can either patch System against Spectre and cripple the Performance that much that the Server is unuseable - or I decide to not patch the Server - keep good Performance but stay vulnerable to Spectre ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;Both options not really satisfactory ...&lt;P&gt;&lt;/P&gt;&lt;P&gt;According to Virtuozzo Support this isn't correctable without another Microcode Update from intel_corp ... will there be optimizations that will help with those Problems? And if yes ... when to expect them?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thx, bye from sunny Austria&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt; Andreas Schnederle-Wagner</description>
      <pubDate>Mon, 15 Jan 2018 15:19:59 GMT</pubDate>
      <guid>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542659#M27963</guid>
      <dc:creator>ASchn7</dc:creator>
      <dc:date>2018-01-15T15:19:59Z</dc:date>
    </item>
    <item>
      <title>Re: Virtuozzo 7 - Meltdown/Spectre (Microcode) Patch Performance desaster</title>
      <link>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542660#M27964</link>
      <description>&lt;P&gt;Hello  Futureweb,&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Thank you for joining the Processors Community. I am sorry to hear you are having issues with this matter. &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;From my end the full details on this topic can be found on this Intel public website: &lt;A href="https://www.intel.com/content/www/us/en/architecture-and-technology/facts-about-side-channel-analysis-and-intel-products.html"&gt;https://www.intel.com/content/www/us/en/architecture-and-technology/facts-about-side-channel-analysis-and-intel-products.html&lt;/A&gt; Side-Channel Analysis Facts and Intel® Products. The FAQ posted there should address your concern. &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Amy C.&lt;/P&gt;</description>
      <pubDate>Tue, 16 Jan 2018 15:20:36 GMT</pubDate>
      <guid>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542660#M27964</guid>
      <dc:creator>idata</dc:creator>
      <dc:date>2018-01-16T15:20:36Z</dc:date>
    </item>
    <item>
      <title>Re: Virtuozzo 7 - Meltdown/Spectre (Microcode) Patch Performance desaster</title>
      <link>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542661#M27965</link>
      <description>&lt;P&gt;Hello Amy, intel_corp,&lt;/P&gt;&lt;P&gt;unfortunately the FAQs doesn't address my concern.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;They don't cover anything about bringing Performance down from "fast" (Load Average ~4-5) to "unuseable" (Load Average ~200) with latest Microcode Update + Indirect Branch Restricted Speculation (ibrs) activated.&lt;/P&gt;&lt;P&gt;And they don't cover my Question (raised by Virtuozzo Support Staff) if there will me another modified Microcode Update with less massive Performance degradation regarding Indirect Branch Restricted Speculation (ibrs).&lt;/P&gt;&lt;P&gt;FAQ just cover Standard Marketing bla bla and leave us standing in the Rain ... &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;greetings from snowy Austria&lt;/P&gt;&lt;P&gt;Andreas&lt;/P&gt;</description>
      <pubDate>Tue, 16 Jan 2018 20:07:13 GMT</pubDate>
      <guid>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542661#M27965</guid>
      <dc:creator>ASchn7</dc:creator>
      <dc:date>2018-01-16T20:07:13Z</dc:date>
    </item>
    <item>
      <title>Re: Virtuozzo 7 - Meltdown/Spectre (Microcode) Patch Performance desaster</title>
      <link>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542662#M27966</link>
      <description>&lt;P&gt;Hi Andreas, &lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;I understand your concern, currently the information posted there is information that our investigation department is disclosing. I am aware that all new information will be posted here &lt;A href="https://newsroom.intel.com/"&gt;https://newsroom.intel.com/&lt;/A&gt; Intel Newsroom | Intel Official News and Information, hopefully once available it can address your concerns. My apologies.&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Amy C.&lt;/P&gt;</description>
      <pubDate>Wed, 17 Jan 2018 19:42:19 GMT</pubDate>
      <guid>https://community.intel.com/t5/Mobile-and-Desktop-Processors/Virtuozzo-7-Meltdown-Spectre-Microcode-Patch-Performance/m-p/542662#M27966</guid>
      <dc:creator>idata</dc:creator>
      <dc:date>2018-01-17T19:42:19Z</dc:date>
    </item>
  </channel>
</rss>

