<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Sandboxing a virtual machine under Virtual PC</title><link>http://blogs.technet.com/megand/archive/2004/12/02/273900.aspx</link><description>Michael asked the following question about sandboxing a virtual machine. I thought it might be of general interest, so decided to post the answer, which Ben Armstrong, our resident Virtual PC guru has provided ( http://blogs.msdn.com/Virtual_PC_Guy ).</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>re: Sandboxing a virtual machine under Virtual PC</title><link>http://blogs.technet.com/megand/archive/2004/12/02/273900.aspx#273938</link><pubDate>Thu, 02 Dec 2004 20:58:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:273938</guid><dc:creator>CN</dc:creator><description>Isn't it quite unsafe to do this in the guest os? I mean, really ugly stuff could possibly re-enable those services?&lt;br&gt;&lt;br&gt;Is there any way to disable it at the host end?</description></item><item><title>re: Sandboxing a virtual machine under Virtual PC</title><link>http://blogs.technet.com/megand/archive/2004/12/02/273900.aspx#273977</link><pubDate>Thu, 02 Dec 2004 22:04:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:273977</guid><dc:creator>Virtual PC Guy</dc:creator><description>Hi There,&lt;br&gt;&lt;br&gt;No - there is no way to disable this on the host end today (this is something we should do).  However there are a couple things to know:&lt;br&gt;&lt;br&gt;1) If you want you can remove the files that back the services&lt;br&gt;2) The interfaces for these features are designed such they can only be accessed from kernel mode code, which means that if you run the guest as a non-Administrative account, then there will be no way to access these&lt;br&gt;3) The interfaces for integration are all designed to require host side interaction.  Nothing can be started solely from the virtual machine environment.&lt;br&gt;&lt;br&gt;Cheers,&lt;br&gt;Ben</description></item></channel></rss>