Incus 7.3 adds easy GPU virtualization
10 hours ago
- Incus 7.3 fixes 13 security issues, including several critical CVEs such as argument injection, project restriction bypasses, and arbitrary file writes.
- New GPU sharing for virtual machines via DRM native context allows multiple VMs to share GPU acceleration using virglrenderer and virtio-gpu.
- UEFI variable management is now supported, allowing direct NVRAM read/write operations and a rebuild-nvram repair action.
- Instance port forwarding enables easy TCP service access from local listeners to instance ports.
- Authorization configuration has been reworked with a new authorization.* namespace and support for multiple drivers (allow, deny, openfga, scriptlet).
- The incus debug command has been renamed to incus low-level, with new subcommands for bitmap, nvram, and repair operations.
- BGP unnumbered support allows BGP peering over interfaces using IPv6 link-local addresses.
- Nested virtualization can now be controlled for VMs via security.nesting, defaulting to true.
- Incus list gained an --all-remotes flag to show instances from all configured remotes in a single view.
- Other improvements: improved VM agent handling, network allocations summary, I/O limits combined with byte/s and IOPS, storage pool metrics, ACME External Account Binding, CPU cluster reporting, and native Windows/macOS installers.