From: Sean Christopherson <seanjc@google.com>
To: Dave Hansen <dave.hansen@intel.com>
Cc: Pawan Gupta <pawan.kumar.gupta@linux.intel.com>,
Xi Ruoyao <xry111@xry111.site>,
Dave Hansen <dave.hansen@linux.intel.com>,
Michael Kelley <mhklinux@outlook.com>,
Andy Lutomirski <luto@kernel.org>,
Peter Zijlstra <peterz@infradead.org>,
Thomas Gleixner <tglx@linutronix.de>,
Ingo Molnar <mingo@redhat.com>, Borislav Petkov <bp@alien8.de>,
"H. Peter Anvin" <hpa@zytor.com>,
x86@kernel.org, linux-kernel@vger.kernel.org,
Andrew Cooper <andrew.cooper3@citrix.com>
Subject: Re: [PATCH v8 2/2] x86/mm: Don't disable PCID if the kernel is running on a hypervisor
Date: Wed, 17 Apr 2024 11:23:27 -0700 [thread overview]
Message-ID: <ZiATnwBHJThDNpxk@google.com> (raw)
In-Reply-To: <399bbc9d-ae75-4754-8ce9-af563df15a38@intel.com>
On Wed, Apr 17, 2024, Dave Hansen wrote:
> On 4/17/24 10:22, Pawan Gupta wrote:
> >>> static const struct x86_cpu_id invlpg_miss_ids[] = {
> >>> + /* Only bare-metal is affected. PCIDs in guests are OK. */
> >>> + {
> >>> + .vendor = X86_VENDOR_INTEL,
> >>> + .family = 6,
> >>> + .model = INTEL_FAM6_ANY,
Just in case we go this route (I hope we don't), this should probably be:
/* Only bare-metal is affected. PCIDs in guests are OK. */
{
.vendor = X86_VENDOR_ANY,
.feature = X86_FEATURE_HYPERVISOR,
.driver_data = 0,
},
to make it clear that the goal is to match only the feature. Matching Intel P6
suffices because that's what the other entries in the array all check, but it
makes subtle, confusing code even more subtle and confusing.
> >>> + .feature = X86_FEATURE_HYPERVISOR,
> >> Isn't this inverted? x86_match_cpu() will return NULL if the CPU doesn't have
> >> HYPERVISOR. We want it to return NULL if the CPU *does* have HYPERVISOR.
> > I think the implementation is correct, x86_match_cpu() will not return
> > NULL if the CPU doesn't have HYPERVISOR feature *and* matches one of the
> > CPUs below. It will only return NULL if none of the entries match.
Oooh, and because it's the first entry it will always be found even if a different
entry would match the FMS. Oof.
> I think I gave a crappy suggestion here.
>
> Let's just do the X86_FEATURE_HYPERVISOR explicitly in the code instead
> of trying to cram it into the invlpg_miss_ids[] check. It's way easier
> to understand with an explicit code check.
+1. And it doesn't rely on the HYPERVISOR entry being the first entry, which
is doubly evil.
next prev parent reply other threads:[~2024-04-17 18:23 UTC|newest]
Thread overview: 8+ messages / expand[flat|nested] mbox.gz Atom feed top
2024-04-13 4:41 [PATCH v8 1/2] x86/mm: Don't disable PCID if "incomplete Global INVLPG flushes" is fixed by microcode Xi Ruoyao
2024-04-13 4:41 ` [PATCH v8 2/2] x86/mm: Don't disable PCID if the kernel is running on a hypervisor Xi Ruoyao
2024-04-16 23:49 ` Sean Christopherson
2024-04-17 8:01 ` Xi Ruoyao
2024-04-17 17:22 ` Pawan Gupta
2024-04-17 17:25 ` Dave Hansen
2024-04-17 18:23 ` Sean Christopherson [this message]
2024-04-17 18:26 ` Xi Ruoyao
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=ZiATnwBHJThDNpxk@google.com \
--to=seanjc@google.com \
--cc=andrew.cooper3@citrix.com \
--cc=bp@alien8.de \
--cc=dave.hansen@intel.com \
--cc=dave.hansen@linux.intel.com \
--cc=hpa@zytor.com \
--cc=linux-kernel@vger.kernel.org \
--cc=luto@kernel.org \
--cc=mhklinux@outlook.com \
--cc=mingo@redhat.com \
--cc=pawan.kumar.gupta@linux.intel.com \
--cc=peterz@infradead.org \
--cc=tglx@linutronix.de \
--cc=x86@kernel.org \
--cc=xry111@xry111.site \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.