From: Marc Zyngier <maz@kernel.org>
To: Steven Price <steven.price@arm.com>
Cc: kvm@vger.kernel.org, kvmarm@lists.linux.dev,
Catalin Marinas <catalin.marinas@arm.com>,
Will Deacon <will@kernel.org>, James Morse <james.morse@arm.com>,
Oliver Upton <oliver.upton@linux.dev>,
Suzuki K Poulose <suzuki.poulose@arm.com>,
Zenghui Yu <yuzenghui@huawei.com>,
linux-arm-kernel@lists.infradead.org,
linux-kernel@vger.kernel.org, Joey Gouly <joey.gouly@arm.com>,
Alexandru Elisei <alexandru.elisei@arm.com>,
Christoffer Dall <christoffer.dall@arm.com>,
Fuad Tabba <tabba@google.com>,
linux-coco@lists.linux.dev,
Ganapatrao Kulkarni <gankulkarni@os.amperecomputing.com>,
Gavin Shan <gshan@redhat.com>,
Shanker Donthineni <sdonthineni@nvidia.com>,
Alper Gun <alpergun@google.com>,
"Aneesh Kumar K . V" <aneesh.kumar@kernel.org>,
Emi Kisanuki <fj0570is@fujitsu.com>,
Vishal Annapurve <vannapurve@google.com>,
WeiLin.Chang@arm.com, Lorenzo Pieralisi <lpieralisi@kernel.org>
Subject: Re: [PATCH v15 15/37] KVM: arm64: CCA: Handle RMI_EXIT_RIPAS_CHANGE
Date: Mon, 03 Aug 2026 15:48:31 +0100 [thread overview]
Message-ID: <86zez3b6ps.wl-maz@kernel.org> (raw)
In-Reply-To: <f971d029-84d9-4c66-9875-36fa8f1a2a1b@arm.com>
On Mon, 03 Aug 2026 15:04:32 +0100,
Steven Price <steven.price@arm.com> wrote:
[...]
> >> diff --git a/arch/arm64/kvm/mmu.c b/arch/arm64/kvm/mmu.c
> >> index cd06881c1497..dcc2ab08d0e4 100644
> >> --- a/arch/arm64/kvm/mmu.c
> >> +++ b/arch/arm64/kvm/mmu.c
> >> @@ -319,6 +319,7 @@ static void invalidate_icache_guest_page(void *va, size_t size)
> >> * @start: The intermediate physical base address of the range to unmap
> >> * @size: The size of the area to unmap
> >> * @may_block: Whether or not we are permitted to block
> >> + * @only_shared: If true then protected mappings should not be unmapped
> >> *
> >
> > I don't understand the need for this additional argument. Given that
> > CCA imposes that shared and private are in non-overlapping ranges, why
> > is it necessary to introduce this at the core of the S2 management
> > code?
> >
> > I'd expect that the CCA code could simply work out what range it needs
> > to run on and keep the API intact.
> >
> >> * Clear a range of stage-2 mappings, lowering the various ref-counts. Must
> >> * be called while holding mmu_lock (unless for freeing the stage2 pgd before
> >> @@ -326,7 +327,7 @@ static void invalidate_icache_guest_page(void *va, size_t size)
> >> * with things behind our backs.
> >> */
> >> static void __unmap_stage2_range(struct kvm_s2_mmu *mmu, phys_addr_t start, u64 size,
> >> - bool may_block)
> >> + bool may_block, bool only_shared)
> >> {
> >> struct kvm *kvm = kvm_s2_mmu_to_kvm(mmu);
> >> phys_addr_t end = start + size;
> >
> > So what is the *actual* change?
>
> It looks like I've screwed up what goes in which patch. The real change
> is in patch 22 where this 'only_shared' property gets passed down to
> kvm_realm_unmap_range(). There it's used to decide whether the private
> range should be unmapped or not.
>
> The reason for this is kvm_unmap_gfn_range() which has a 'attr_filter'
> member of 'kvm_gfn_range' which can specify KVM_FILTER_PRIVATE. Which is
> used in __kvm_gmem_set_attributes() so choose whether to invalidate the
> private or shared part of a gmem range.
But you can readily distinguish the private/shared part of the address
range by looking at the top IPA bit, right? And from there, you should
be in a position to decide whether to call __unmap_stage2_range() on a
per IPA range, rather than making this information trickle all over
the place.
I.e don't hack into the API. Use the information you already have to
decide whether you need to use the existing API at all.
If that cannot be done for whatever reason, then you need to indirect
the call with a set of operations that leave the existing code
untouched.
M.
--
Without deviation from the norm, progress is not possible.
next prev parent reply other threads:[~2026-08-03 14:48 UTC|newest]
Thread overview: 89+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-07-15 14:28 [PATCH v15 00/37] arm64: Support for Arm CCA in KVM Steven Price
2026-07-15 14:28 ` [PATCH v15 01/37] KVM: arm64: Include kvm_emulate.h in kvm/arm_psci.h Steven Price
2026-07-15 14:28 ` [PATCH v15 02/37] KVM: arm64: Avoid including linux/kvm_host.h in kvm_pgtable.h Steven Price
2026-07-15 15:59 ` Marc Zyngier
2026-07-15 16:22 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 03/37] arm64: mm: Handle Granule Protection Faults (GPFs) Steven Price
2026-07-15 14:28 ` [PATCH v15 04/37] KVM: arm64: CCA: Check for RMI support at KVM init Steven Price
2026-07-15 14:28 ` [PATCH v15 05/37] KVM: arm64: CCA: Check for LPA2 support Steven Price
2026-07-16 9:23 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 06/37] KVM: arm64: CCA: Define the user ABI Steven Price
2026-07-16 9:40 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 07/37] KVM: arm64: CCA: Add basic infrastructure for creating a realm Steven Price
2026-07-15 14:28 ` [PATCH v15 08/37] KVM: arm64: CCA: Don't expose unsupported capabilities for realm guests Steven Price
2026-07-15 14:28 ` [PATCH v15 09/37] KVM: arm64: CCA: Allow passing the machine type in KVM creation Steven Price
2026-07-15 16:14 ` Marc Zyngier
2026-07-16 9:17 ` Steven Price
2026-07-16 9:37 ` Marc Zyngier
2026-07-15 14:28 ` [PATCH v15 10/37] KVM: arm64: CCA: Tear down RTTs Steven Price
2026-07-15 14:28 ` [PATCH v15 11/37] KVM: arm64: CCA: Allocate and free RECs to match vCPUs Steven Price
2026-07-15 14:28 ` [PATCH v15 12/37] KVM: arm64: CCA: Support the VGIC in realms Steven Price
2026-07-22 8:27 ` Kohei Enju
2026-07-22 9:27 ` Marc Zyngier
2026-07-23 6:38 ` Kohei Enju
2026-07-23 8:07 ` Marc Zyngier
2026-07-23 9:02 ` Kohei Enju
2026-07-22 13:31 ` Steven Price
2026-07-23 6:56 ` Kohei Enju
2026-07-23 14:46 ` Steven Price
2026-07-24 5:40 ` Kohei Enju
2026-07-15 14:28 ` [PATCH v15 13/37] KVM: arm64: CCA: Support timers in realm RECs Steven Price
2026-07-27 9:21 ` Marc Zyngier
2026-07-29 10:47 ` Steven Price
2026-07-29 10:58 ` Marc Zyngier
2026-07-30 8:47 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 14/37] KVM: arm64: CCA: Handle realm enter/exit Steven Price
2026-07-27 8:14 ` Kohei Enju
2026-07-30 13:58 ` Steven Price
2026-07-30 14:57 ` Suzuki K Poulose
2026-07-31 0:57 ` Kohei Enju
2026-07-27 15:01 ` Marc Zyngier
2026-07-30 16:17 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 15/37] KVM: arm64: CCA: Handle RMI_EXIT_RIPAS_CHANGE Steven Price
2026-08-03 11:09 ` Marc Zyngier
2026-08-03 14:04 ` Steven Price
2026-08-03 14:48 ` Marc Zyngier [this message]
2026-08-03 15:30 ` Suzuki K Poulose
2026-08-04 12:20 ` Fuad Tabba
2026-08-04 13:19 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 16/37] KVM: arm64: CCA: Handle realm MMIO emulation Steven Price
2026-08-03 11:27 ` Marc Zyngier
2026-08-03 14:57 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 17/37] KVM: arm64: Expose support for private memory Steven Price
2026-07-16 10:25 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 18/37] KVM: arm64: CCA: Create the realm descriptor Steven Price
2026-07-15 14:28 ` [PATCH v15 19/37] KVM: arm64: CCA: Activate realms on first vCPU run Steven Price
2026-08-03 12:29 ` Marc Zyngier
2026-08-03 15:18 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 20/37] KVM: arm64: CCA: Allow populating initial contents Steven Price
2026-08-03 12:43 ` Marc Zyngier
2026-08-03 15:30 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 21/37] KVM: arm64: CCA: Set RIPAS of initial memslots Steven Price
2026-07-15 14:28 ` [PATCH v15 22/37] KVM: arm64: CCA: Support runtime faulting of memory Steven Price
2026-07-15 14:28 ` [PATCH v15 23/37] KVM: arm64: CCA: Handle realm vCPU load Steven Price
2026-07-15 14:28 ` [PATCH v15 24/37] KVM: arm64: CCA: Validate register access for Realm VMs Steven Price
2026-07-15 14:28 ` [PATCH v15 25/37] KVM: arm64: CCA: Handle Realm PSCI requests Steven Price
2026-07-16 10:38 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 26/37] KVM: arm64: WARN on injected undef exceptions Steven Price
2026-07-15 15:46 ` Marc Zyngier
2026-07-15 16:15 ` Steven Price
2026-07-15 16:25 ` Marc Zyngier
2026-07-15 16:31 ` Steven Price
2026-07-15 16:43 ` Marc Zyngier
2026-07-16 9:17 ` Steven Price
2026-07-15 14:28 ` [PATCH v15 27/37] KVM: arm64: CCA: Allow userspace to inject aborts Steven Price
2026-07-16 10:19 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 28/37] KVM: arm64: CCA: Support RSI_HOST_CALL Steven Price
2026-07-16 10:22 ` Suzuki K Poulose
2026-07-15 14:28 ` [PATCH v15 29/37] KVM: arm64: CCA: Allow checking SVE on VM instance Steven Price
2026-07-15 14:28 ` [PATCH v15 30/37] KVM: arm64: CCA: Prevent Device mappings for realms Steven Price
2026-07-15 14:28 ` [PATCH v15 31/37] KVM: arm64: CCA: Propagate breakpoint and watchpoint counts to userspace Steven Price
2026-07-15 14:28 ` [PATCH v15 32/37] KVM: arm64: CCA: Set breakpoint parameters through SET_ONE_REG Steven Price
2026-07-15 14:28 ` [PATCH v15 33/37] KVM: arm64: CCA: Propagate max SVE vector length from the RMM Steven Price
2026-07-15 14:28 ` [PATCH v15 34/37] KVM: arm64: CCA: Configure max SVE vector length for a Realm Steven Price
2026-07-15 14:28 ` [PATCH v15 35/37] KVM: arm64: CCA: Provide register list for unfinalized RECs Steven Price
2026-07-15 14:28 ` [PATCH v15 36/37] KVM: arm64: CCA: Provide an accurate register list Steven Price
2026-07-15 14:28 ` [PATCH v15 37/37] KVM: arm64: CCA: Enable realms to be created Steven Price
2026-07-16 8:36 ` [PATCH v15 00/37] arm64: Support for Arm CCA in KVM Marc Zyngier
2026-07-16 9:20 ` Steven Price
2026-07-16 9:42 ` Marc Zyngier
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=86zez3b6ps.wl-maz@kernel.org \
--to=maz@kernel.org \
--cc=WeiLin.Chang@arm.com \
--cc=alexandru.elisei@arm.com \
--cc=alpergun@google.com \
--cc=aneesh.kumar@kernel.org \
--cc=catalin.marinas@arm.com \
--cc=christoffer.dall@arm.com \
--cc=fj0570is@fujitsu.com \
--cc=gankulkarni@os.amperecomputing.com \
--cc=gshan@redhat.com \
--cc=james.morse@arm.com \
--cc=joey.gouly@arm.com \
--cc=kvm@vger.kernel.org \
--cc=kvmarm@lists.linux.dev \
--cc=linux-arm-kernel@lists.infradead.org \
--cc=linux-coco@lists.linux.dev \
--cc=linux-kernel@vger.kernel.org \
--cc=lpieralisi@kernel.org \
--cc=oliver.upton@linux.dev \
--cc=sdonthineni@nvidia.com \
--cc=steven.price@arm.com \
--cc=suzuki.poulose@arm.com \
--cc=tabba@google.com \
--cc=vannapurve@google.com \
--cc=will@kernel.org \
--cc=yuzenghui@huawei.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox