From: Steven Price <steven.price@arm.com>
To: Marc Zyngier <maz@kernel.org>
Cc: kvm@vger.kernel.org, kvmarm@lists.linux.dev,
Catalin Marinas <catalin.marinas@arm.com>,
Will Deacon <will@kernel.org>, James Morse <james.morse@arm.com>,
Oliver Upton <oliver.upton@linux.dev>,
Suzuki K Poulose <suzuki.poulose@arm.com>,
Zenghui Yu <yuzenghui@huawei.com>,
linux-arm-kernel@lists.infradead.org,
linux-kernel@vger.kernel.org, Joey Gouly <joey.gouly@arm.com>,
Alexandru Elisei <alexandru.elisei@arm.com>,
Christoffer Dall <christoffer.dall@arm.com>,
Fuad Tabba <tabba@google.com>,
linux-coco@lists.linux.dev,
Ganapatrao Kulkarni <gankulkarni@os.amperecomputing.com>,
Gavin Shan <gshan@redhat.com>,
Shanker Donthineni <sdonthineni@nvidia.com>,
Alper Gun <alpergun@google.com>,
"Aneesh Kumar K . V" <aneesh.kumar@kernel.org>,
Emi Kisanuki <fj0570is@fujitsu.com>,
Vishal Annapurve <vannapurve@google.com>,
WeiLin.Chang@arm.com, Lorenzo Pieralisi <lpieralisi@kernel.org>
Subject: Re: [PATCH v15 19/37] KVM: arm64: CCA: Activate realms on first vCPU run
Date: Mon, 3 Aug 2026 16:18:14 +0100 [thread overview]
Message-ID: <bb5ed17a-532f-4b05-8e8c-cbda3cb0433f@arm.com> (raw)
In-Reply-To: <8633wvcrqr.wl-maz@kernel.org>
On 03/08/2026 13:29, Marc Zyngier wrote:
> On Wed, 15 Jul 2026 15:28:21 +0100,
> Steven Price <steven.price@arm.com> wrote:
>>
>> Use kvm_arch_vcpu_run_pid_change() to check if this is the first time
>> the realm guest has run. If this is the first run then activate the
>> realm.
>>
>> Signed-off-by: Steven Price <steven.price@arm.com>
>>
>> ---
>> Changes since v12:
>> * Fix commit message
>> * Change realm_state checks to be >= REALM_STATE_ACTIVE to avoid a dead
>> guest being revived by kvm_activate_realm().
>> ---
>> arch/arm64/include/asm/kvm_rmi.h | 1 +
>> arch/arm64/kvm/arm.c | 6 +++++
>> arch/arm64/kvm/rmi.c | 45 ++++++++++++++++++++++++++++++--
>> 3 files changed, 50 insertions(+), 2 deletions(-)
>>
>> diff --git a/arch/arm64/include/asm/kvm_rmi.h b/arch/arm64/include/asm/kvm_rmi.h
>> index 5461c49bea4d..5cb99c187202 100644
>> --- a/arch/arm64/include/asm/kvm_rmi.h
>> +++ b/arch/arm64/include/asm/kvm_rmi.h
>> @@ -96,6 +96,7 @@ void kvm_init_rmi(void);
>> u32 kvm_rmm_ipa_limit(void);
>>
>> int kvm_init_realm(struct kvm *kvm);
>> +int kvm_activate_realm(struct kvm *kvm);
>> void kvm_destroy_realm(struct kvm *kvm);
>> int kvm_realm_teardown_stage2(struct kvm *kvm);
>> void kvm_destroy_rec(struct kvm_vcpu *vcpu);
>> diff --git a/arch/arm64/kvm/arm.c b/arch/arm64/kvm/arm.c
>> index 534d33b7c67a..df33322b8fea 100644
>> --- a/arch/arm64/kvm/arm.c
>> +++ b/arch/arm64/kvm/arm.c
>> @@ -1034,6 +1034,12 @@ int kvm_arch_vcpu_run_pid_change(struct kvm_vcpu *vcpu)
>> return ret;
>> }
>>
>> + if (kvm_is_realm(vcpu->kvm)) {
>> + ret = kvm_activate_realm(kvm);
>> + if (ret)
>> + return ret;
>> + }
>> +
>> mutex_lock(&kvm->arch.config_lock);
>> set_bit(KVM_ARCH_FLAG_HAS_RAN_ONCE, &kvm->arch.flags);
>> mutex_unlock(&kvm->arch.config_lock);
>> diff --git a/arch/arm64/kvm/rmi.c b/arch/arm64/kvm/rmi.c
>> index 94776a9262c9..53b5b18f2275 100644
>> --- a/arch/arm64/kvm/rmi.c
>> +++ b/arch/arm64/kvm/rmi.c
>> @@ -687,7 +687,7 @@ static int realm_set_ipa_state(struct kvm_vcpu *vcpu,
>> return ret;
>> }
>>
>> -static int __maybe_unused realm_ensure_created(struct kvm *kvm)
>> +static int realm_ensure_created(struct kvm *kvm)
>> {
>> lockdep_assert_held(&kvm->arch.config_lock);
>>
>> @@ -793,7 +793,7 @@ int noinstr kvm_rec_enter(struct kvm_vcpu *vcpu)
>> return ret;
>> }
>>
>> -static int __maybe_unused kvm_create_rec(struct kvm_vcpu *vcpu)
>> +static int kvm_create_rec(struct kvm_vcpu *vcpu)
>> {
>> struct user_pt_regs *vcpu_regs = vcpu_gp_regs(vcpu);
>> unsigned long mpidr = kvm_vcpu_get_mpidr_aff(vcpu);
>> @@ -893,6 +893,47 @@ void kvm_destroy_rec(struct kvm_vcpu *vcpu)
>> rec->rec_page = NULL;
>> }
>>
>> +int kvm_activate_realm(struct kvm *kvm)
>> +{
>> + struct realm *realm = &kvm->arch.realm;
>> + struct kvm_vcpu *vcpu;
>> + unsigned long i;
>> + int ret;
>> +
>> + if (kvm_realm_state(kvm) >= REALM_STATE_ACTIVE)
>> + return 0;
>> +
>> + if (!irqchip_in_kernel(kvm)) {
>> + /* Userspace irqchip not yet supported with realms */
>> + return -EOPNOTSUPP;
>> + }
>
> This could race with the irqchip being created on another CPU. Also,
> an irqchip being in kernel doesn't mean it is ready, and I suspect
> you also need to check that it has been initialised.
Good point - moving the config_lock up and checking vgic_initialized()
makes sense.
>> +
>> + guard(mutex)(&kvm->arch.config_lock);
>> + /* Check again with the lock held */
>> + if (kvm_realm_state(kvm) >= REALM_STATE_ACTIVE)
>> + return 0;
>> +
>> + ret = realm_ensure_created(kvm);
>> + if (ret)
>> + return ret;
>> +
>> + /* Mark state as dead in case we fail */
>> + kvm_set_realm_state(kvm, REALM_STATE_DEAD);
>> +
>> + kvm_for_each_vcpu(i, vcpu, kvm) {
>> + ret = kvm_create_rec(vcpu);
>> + if (ret)
>> + return ret;
>> + }
>
> If the realm is dead, shouldn't the KVM view of death apply as well?
Indeed that would be a good improvement. I'll change these error paths
to include a kvm_vm_dead() call.
Thanks,
Steve
>> +
>> + ret = rmi_realm_activate(virt_to_phys(realm->rd));
>> + if (ret)
>> + return -ENXIO;
>> +
>> + kvm_set_realm_state(kvm, REALM_STATE_ACTIVE);
>> + return 0;
>> +}
>> +
>> void kvm_destroy_realm(struct kvm *kvm)
>> {
>> struct realm *realm = &kvm->arch.realm;
>
> Thanks,
>
> M.
>
next prev parent reply other threads:[~2026-08-03 15:18 UTC|newest]
Thread overview: 89+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-07-15 14:28 [PATCH v15 00/37] arm64: Support for Arm CCA in KVM Steven Price
2026-07-15 14:28 ` [PATCH v15 01/37] KVM: arm64: Include kvm_emulate.h in kvm/arm_psci.h Steven Price
2026-07-15 14:28 ` [PATCH v15 02/37] KVM: arm64: Avoid including linux/kvm_host.h in kvm_pgtable.h Steven Price
2026-07-15 15:59 ` Marc Zyngier
2026-07-15 16:22 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 03/37] arm64: mm: Handle Granule Protection Faults (GPFs) Steven Price
2026-07-15 14:28 ` [PATCH v15 04/37] KVM: arm64: CCA: Check for RMI support at KVM init Steven Price
2026-07-15 14:28 ` [PATCH v15 05/37] KVM: arm64: CCA: Check for LPA2 support Steven Price
2026-07-16 9:23 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 06/37] KVM: arm64: CCA: Define the user ABI Steven Price
2026-07-16 9:40 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 07/37] KVM: arm64: CCA: Add basic infrastructure for creating a realm Steven Price
2026-07-15 14:28 ` [PATCH v15 08/37] KVM: arm64: CCA: Don't expose unsupported capabilities for realm guests Steven Price
2026-07-15 14:28 ` [PATCH v15 09/37] KVM: arm64: CCA: Allow passing the machine type in KVM creation Steven Price
2026-07-15 16:14 ` Marc Zyngier
2026-07-16 9:17 ` Steven Price
2026-07-16 9:37 ` Marc Zyngier
2026-07-15 14:28 ` [PATCH v15 10/37] KVM: arm64: CCA: Tear down RTTs Steven Price
2026-07-15 14:28 ` [PATCH v15 11/37] KVM: arm64: CCA: Allocate and free RECs to match vCPUs Steven Price
2026-07-15 14:28 ` [PATCH v15 12/37] KVM: arm64: CCA: Support the VGIC in realms Steven Price
2026-07-22 8:27 ` Kohei Enju
2026-07-22 9:27 ` Marc Zyngier
2026-07-23 6:38 ` Kohei Enju
2026-07-23 8:07 ` Marc Zyngier
2026-07-23 9:02 ` Kohei Enju
2026-07-22 13:31 ` Steven Price
2026-07-23 6:56 ` Kohei Enju
2026-07-23 14:46 ` Steven Price
2026-07-24 5:40 ` Kohei Enju
2026-07-15 14:28 ` [PATCH v15 13/37] KVM: arm64: CCA: Support timers in realm RECs Steven Price
2026-07-27 9:21 ` Marc Zyngier
2026-07-29 10:47 ` Steven Price
2026-07-29 10:58 ` Marc Zyngier
2026-07-30 8:47 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 14/37] KVM: arm64: CCA: Handle realm enter/exit Steven Price
2026-07-27 8:14 ` Kohei Enju
2026-07-30 13:58 ` Steven Price
2026-07-30 14:57 ` Suzuki K Poulose
2026-07-31 0:57 ` Kohei Enju
2026-07-27 15:01 ` Marc Zyngier
2026-07-30 16:17 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 15/37] KVM: arm64: CCA: Handle RMI_EXIT_RIPAS_CHANGE Steven Price
2026-08-03 11:09 ` Marc Zyngier
2026-08-03 14:04 ` Steven Price
2026-08-03 14:48 ` Marc Zyngier
2026-08-03 15:30 ` Suzuki K Poulose
2026-08-04 12:20 ` Fuad Tabba
2026-08-04 13:19 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 16/37] KVM: arm64: CCA: Handle realm MMIO emulation Steven Price
2026-08-03 11:27 ` Marc Zyngier
2026-08-03 14:57 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 17/37] KVM: arm64: Expose support for private memory Steven Price
2026-07-16 10:25 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 18/37] KVM: arm64: CCA: Create the realm descriptor Steven Price
2026-07-15 14:28 ` [PATCH v15 19/37] KVM: arm64: CCA: Activate realms on first vCPU run Steven Price
2026-08-03 12:29 ` Marc Zyngier
2026-08-03 15:18 ` Steven Price [this message]
2026-07-15 14:28 ` [PATCH v15 20/37] KVM: arm64: CCA: Allow populating initial contents Steven Price
2026-08-03 12:43 ` Marc Zyngier
2026-08-03 15:30 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 21/37] KVM: arm64: CCA: Set RIPAS of initial memslots Steven Price
2026-07-15 14:28 ` [PATCH v15 22/37] KVM: arm64: CCA: Support runtime faulting of memory Steven Price
2026-07-15 14:28 ` [PATCH v15 23/37] KVM: arm64: CCA: Handle realm vCPU load Steven Price
2026-07-15 14:28 ` [PATCH v15 24/37] KVM: arm64: CCA: Validate register access for Realm VMs Steven Price
2026-07-15 14:28 ` [PATCH v15 25/37] KVM: arm64: CCA: Handle Realm PSCI requests Steven Price
2026-07-16 10:38 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 26/37] KVM: arm64: WARN on injected undef exceptions Steven Price
2026-07-15 15:46 ` Marc Zyngier
2026-07-15 16:15 ` Steven Price
2026-07-15 16:25 ` Marc Zyngier
2026-07-15 16:31 ` Steven Price
2026-07-15 16:43 ` Marc Zyngier
2026-07-16 9:17 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 27/37] KVM: arm64: CCA: Allow userspace to inject aborts Steven Price
2026-07-16 10:19 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 28/37] KVM: arm64: CCA: Support RSI_HOST_CALL Steven Price
2026-07-16 10:22 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 29/37] KVM: arm64: CCA: Allow checking SVE on VM instance Steven Price
2026-07-15 14:28 ` [PATCH v15 30/37] KVM: arm64: CCA: Prevent Device mappings for realms Steven Price
2026-07-15 14:28 ` [PATCH v15 31/37] KVM: arm64: CCA: Propagate breakpoint and watchpoint counts to userspace Steven Price
2026-07-15 14:28 ` [PATCH v15 32/37] KVM: arm64: CCA: Set breakpoint parameters through SET_ONE_REG Steven Price
2026-07-15 14:28 ` [PATCH v15 33/37] KVM: arm64: CCA: Propagate max SVE vector length from the RMM Steven Price
2026-07-15 14:28 ` [PATCH v15 34/37] KVM: arm64: CCA: Configure max SVE vector length for a Realm Steven Price
2026-07-15 14:28 ` [PATCH v15 35/37] KVM: arm64: CCA: Provide register list for unfinalized RECs Steven Price
2026-07-15 14:28 ` [PATCH v15 36/37] KVM: arm64: CCA: Provide an accurate register list Steven Price
2026-07-15 14:28 ` [PATCH v15 37/37] KVM: arm64: CCA: Enable realms to be created Steven Price
2026-07-16 8:36 ` [PATCH v15 00/37] arm64: Support for Arm CCA in KVM Marc Zyngier
2026-07-16 9:20 ` Steven Price
2026-07-16 9:42 ` Marc Zyngier
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=bb5ed17a-532f-4b05-8e8c-cbda3cb0433f@arm.com \
--to=steven.price@arm.com \
--cc=WeiLin.Chang@arm.com \
--cc=alexandru.elisei@arm.com \
--cc=alpergun@google.com \
--cc=aneesh.kumar@kernel.org \
--cc=catalin.marinas@arm.com \
--cc=christoffer.dall@arm.com \
--cc=fj0570is@fujitsu.com \
--cc=gankulkarni@os.amperecomputing.com \
--cc=gshan@redhat.com \
--cc=james.morse@arm.com \
--cc=joey.gouly@arm.com \
--cc=kvm@vger.kernel.org \
--cc=kvmarm@lists.linux.dev \
--cc=linux-arm-kernel@lists.infradead.org \
--cc=linux-coco@lists.linux.dev \
--cc=linux-kernel@vger.kernel.org \
--cc=lpieralisi@kernel.org \
--cc=maz@kernel.org \
--cc=oliver.upton@linux.dev \
--cc=sdonthineni@nvidia.com \
--cc=suzuki.poulose@arm.com \
--cc=tabba@google.com \
--cc=vannapurve@google.com \
--cc=will@kernel.org \
--cc=yuzenghui@huawei.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.