From: "Michał Leszczyński" <michal.leszczynski@cert.pl>
To: Jan Beulich <jbeulich@suse.com>
Cc: "Paul Durrant" <paul@xen.org>,
"Andrew Cooper" <andrew.cooper3@citrix.com>,
"Roger Pau Monné" <roger.pau@citrix.com>, "Wei Liu" <wl@xen.org>,
Xen-devel <xen-devel@lists.xenproject.org>
Subject: Re: [PATCH for-4.14] x86/msr: Disallow access to Processor Trace MSRs
Date: Fri, 19 Jun 2020 14:57:57 +0200 (CEST) [thread overview]
Message-ID: <893375527.10199950.1592571477991.JavaMail.zimbra@cert.pl> (raw)
In-Reply-To: <d6c7f9f8-9c9e-9648-1c51-43db38cb0b00@suse.com>
----- 19 cze 2020 o 14:49, Jan Beulich jbeulich@suse.com napisał(a):
> On 19.06.2020 14:10, Michał Leszczyński wrote:
>> ----- 19 cze 2020 o 13:58, Andrew Cooper andrew.cooper3@citrix.com napisał(a):
>>
>>> We do not expose the feature to guests, so should disallow access to the
>>> respective MSRs.
>>>
>>> Signed-off-by: Andrew Cooper <andrew.cooper3@citrix.com>
>>> ---
>>> CC: Jan Beulich <JBeulich@suse.com>
>>> CC: Wei Liu <wl@xen.org>
>>> CC: Roger Pau Monné <roger.pau@citrix.com>
>>> CC: Paul Durrant <paul@xen.org>
>>> CC: Michał Leszczyński <michal.leszczynski@cert.pl>
>>>
>>> Paul: For 4.14. This needs backporting to older trees as well.
>>>
>>> Michał: CC'ing, just to keep you in the loop. Xen has some dubious default
>>> MSR semantics which we're still in the middle of untangling in a backwards
>>> compatible way. Patches like this will eventually not be necessary, but they
>>> are for now.
>>
>>
>> As for external IPT monitoring, it would be best if the VM would think
>> that IPT is simply not supported at all by the underlying hypervisor.
>
> This is already the case, isn't it? Yet not reporting a feature may
> not keep a guest from trying to access the respective MSRs.
>
> Jan
Okay, understood :)
ml
next prev parent reply other threads:[~2020-06-19 12:59 UTC|newest]
Thread overview: 10+ messages / expand[flat|nested] mbox.gz Atom feed top
2020-06-19 11:58 [PATCH for-4.14] x86/msr: Disallow access to Processor Trace MSRs Andrew Cooper
2020-06-19 12:10 ` Michał Leszczyński
2020-06-19 12:49 ` Jan Beulich
2020-06-19 12:57 ` Michał Leszczyński [this message]
2020-06-19 13:26 ` Andrew Cooper
2020-06-19 12:48 ` Jan Beulich
2020-06-19 13:28 ` Andrew Cooper
2020-06-19 13:39 ` Jan Beulich
2020-06-22 17:16 ` Andrew Cooper
2020-06-23 8:21 ` Jan Beulich
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=893375527.10199950.1592571477991.JavaMail.zimbra@cert.pl \
--to=michal.leszczynski@cert.pl \
--cc=andrew.cooper3@citrix.com \
--cc=jbeulich@suse.com \
--cc=paul@xen.org \
--cc=roger.pau@citrix.com \
--cc=wl@xen.org \
--cc=xen-devel@lists.xenproject.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.