From mboxrd@z Thu Jan 1 00:00:00 1970 From: Bandan Das Subject: Re: [PATCH v2 0/5] Add support for EPT execute only for nested hypervisors Date: Thu, 14 Jul 2016 13:38:53 -0400 Message-ID: References: <1468361932-16580-1-git-send-email-bsd@redhat.com> <82db70ed-761e-0377-5417-acb64bed6cb6@redhat.com> <921eef54-f23b-cd90-8e20-a428a00a3297@redhat.com> <26006044-7096-63e5-8156-a15f001d8403@redhat.com> Mime-Version: 1.0 Content-Type: text/plain Cc: kvm@vger.kernel.org, guangrong.xiao@linux.intel.com, kernellwp@gmail.com, linux-kernel@vger.kernel.org To: Paolo Bonzini Return-path: Received: from mx1.redhat.com ([209.132.183.28]:58128 "EHLO mx1.redhat.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1751084AbcGNRiz (ORCPT ); Thu, 14 Jul 2016 13:38:55 -0400 In-Reply-To: <26006044-7096-63e5-8156-a15f001d8403@redhat.com> (Paolo Bonzini's message of "Thu, 14 Jul 2016 08:56:24 +0200") Sender: kvm-owner@vger.kernel.org List-ID: Paolo Bonzini writes: > On 13/07/2016 17:47, Bandan Das wrote: >>>> I wanted to keep it the former way because "PT_PRESENT_MASK is equal to VMX_EPT_READABLE_MASK" >>>> is an assumption all throughout. I wanted to use this section to catch mismatches. >>> >>> I think there's no such assumption anymore, actually. Can you double >>> check? If there are any, that's where the BUILD_BUG_ON should be. >> >> What I meant is how they are the same bit. is_shadow_present_pte() is probably one >> and another one is link_shadow_page() which already has a BUILD_BUG_ON(). > > You're right about link_shadow_page()! We probably should change the > PT_PRESENT_MASK to shadow_present_mask there (and then readability in > the EPT execonly case is still provided by shadow_user_mask). Makes sense. Would you like a new version with that added or can that be a separate patch ? > For is_shadow_present_pte() you have removed it in patch 1 though. Right. But the assumption is still that is_shadow_present_pte() works because EPT_READABLE and PT_PRESENT are the same. > Paolo