From: "Edgecombe, Rick P" <rick.p.edgecombe@intel.com>
To: "linux-coco@lists.linux.dev" <linux-coco@lists.linux.dev>,
"linux-kernel@vger.kernel.org" <linux-kernel@vger.kernel.org>,
"yilun.xu@linux.intel.com" <yilun.xu@linux.intel.com>,
"x86@kernel.org" <x86@kernel.org>
Cc: "Gao, Chao" <chao.gao@intel.com>,
"Xu, Yilun" <yilun.xu@intel.com>,
"Duan, Zhenzhong" <zhenzhong.duan@intel.com>,
"kas@kernel.org" <kas@kernel.org>,
"baolu.lu@linux.intel.com" <baolu.lu@linux.intel.com>,
"Li, Xiaoyao" <xiaoyao.li@intel.com>,
"Maloor, Kishen" <kishen.maloor@intel.com>,
"Hunter, Adrian" <adrian.hunter@intel.com>,
"tony.lindgren@linux.intel.com" <tony.lindgren@linux.intel.com>,
"Mehta, Sohil" <sohil.mehta@intel.com>,
"Fang, Peter" <peter.fang@intel.com>,
"kvm@vger.kernel.org" <kvm@vger.kernel.org>,
"artem.bityutskiy@linux.intel.com"
<artem.bityutskiy@linux.intel.com>
Subject: Re: [PATCH 1/6] x86/virt/tdx: Wrap TDH.SYS.CONFIG/UPDATE operations in helpers
Date: Fri, 21 Aug 2026 20:53:57 +0000 [thread overview]
Message-ID: <8fa5f9faf6ad6d432dcc2cf12f5bff03c17147a9.camel@intel.com> (raw)
In-Reply-To: <20260821032920.256225-2-yilun.xu@linux.intel.com>
On Fri, 2026-08-21 at 11:29 +0800, Xu Yilun wrote:
> As part of the TDX module initialization, the kernel configures the TDX
> module with several information
>
The tense is weird here around "several information". Should be "several pieces
of information". For curiosity sake, I looked it up and found a new-to-me
linguistic term:
https://en.wikipedia.org/wiki/Mass_noun
> , such as TDX-usable memory regions
> (TDMRs) and the global KeyID for protecting TDX metadata. During the
> configuration, the kernel does 2 operations: constructing kernel data
> types for the SEAMCALL leaf arguments and turning these data types into
> u64's according to TDX ABI.
What do you mean by "constructing kernel data types for the SEAMCALL leaf
arguments"? You are splitting the calculation of the pa via offset from setting
it in a u64? If that is what you are saying, it makes it seem like a much bigger
set of work.
>
> Both operations are implemented in one function - config_tdx_module().
Well I guess my guess above was wrong, because the construction of the pa kernel
data type happens in tdmr_entry()
> This blurs the boundary between kernel managed structures and TDX ABI
> definitions.
>
In the code after this patch it is still setting a u64 in config_tdx_module()...
so what is really changed with respect to this?
> Moreover, future kernel change will need to add more
> nuances mandated by TDX ABI, such as setting the TDH.SYS.CONFIG leaf
> version to allow configuring add-on features. Keeping these operations
> tangled would further clutter the code.
This seems like a stronger reason to me.
>
> Just like other SEAMCALL leaf helpers, wrap the invocation of
> TDH.SYS.CONFIG in a helper. Introduce a more descriptive kernel data
> type for the physical address array of TDMR information. This data type
> is similar to struct seamldr_params in that it is the container of the
> PA array layout which is an in-memory ABI. So the previous u64 * type
> for the array is not wrong, but a named structure provides better type
> safety and self-documentation. Use the data type as the argument of the
> TDH.SYS.CONFIG helper.
>
> Future kernel change will also need to set the TDH.SYS.UPDATE leaf
> version for the same purpose. Add a similar helper to prepare for the
> change.
>
> Signed-off-by: Xu Yilun <yilun.xu@linux.intel.com>
The change looks good to me, but I'm wondering if it will need a better
justification. How about something that hits these points:
We have SEAMCALL wrappers mainly to not expose broad seamcall access, by
exporting only a selection of seamcalls, but also to abstract the seamcall
register ABIs. The latter improves readability and re-use for seamcalls that
are made multiple times.
Some seamcalls leafs are not explicitly wrapped because the level of TDX ABI
details needed to perform the call is low enough that it can flow well enough
with the calling code.
For some of the currently unwrapped seamcall leafs, future changes will add
seamcall version selection that will adjust the ABI depending on TDX module
version support. This will result in more ABI details to surrounding caller
code and decrease readability of the other logic. To contain this, wrap the
functions that will get version selections in seamcall wrappers.
The cleanest separation would be to have kernel data types for the seamcall
wrapper args, and have them marshaled into SEAMCALL ABI types (often u64s)
inside the wrappers. But to avoid duplicating allocations and copies, don't
do this when creating the wrapper for TDH.SYS.CONFIG. Instead clarify that
the u64's in the array passed are pa's with explicit naming of the helper
struct.
It's a bit rough, but as a general argument for the change, does it seem better?
next prev parent reply other threads:[~2026-08-21 20:54 UTC|newest]
Thread overview: 16+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-08-21 3:29 [PATCH 0/6] Enable TDX module extensions Xu Yilun
2026-08-21 3:29 ` [PATCH 1/6] x86/virt/tdx: Wrap TDH.SYS.CONFIG/UPDATE operations in helpers Xu Yilun
2026-08-21 20:53 ` Edgecombe, Rick P [this message]
2026-08-21 3:29 ` [PATCH 2/6] x86/virt/tdx: Configure add-on features on TDX module init and update Xu Yilun
2026-08-21 14:38 ` Dave Hansen
2026-08-21 21:18 ` Edgecombe, Rick P
2026-08-21 22:01 ` Edgecombe, Rick P
2026-08-21 3:29 ` [PATCH 3/6] x86/virt/tdx: Detect if the extensions initialization is required Xu Yilun
2026-08-21 15:22 ` Kiryl Shutsemau
2026-08-21 22:22 ` Edgecombe, Rick P
2026-08-21 3:29 ` [PATCH 4/6] x86/virt/tdx: Add extra memory to TDX module for the extensions Xu Yilun
2026-08-21 15:44 ` Kiryl Shutsemau
2026-08-21 3:29 ` [PATCH 5/6] x86/virt/tdx: Make TDX module initialize " Xu Yilun
2026-08-21 23:55 ` Edgecombe, Rick P
2026-08-21 3:29 ` [PATCH 6/6] x86/virt/tdx: Re-initialize the extensions on runtime TDX module update Xu Yilun
2026-08-22 0:01 ` Edgecombe, Rick P
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=8fa5f9faf6ad6d432dcc2cf12f5bff03c17147a9.camel@intel.com \
--to=rick.p.edgecombe@intel.com \
--cc=adrian.hunter@intel.com \
--cc=artem.bityutskiy@linux.intel.com \
--cc=baolu.lu@linux.intel.com \
--cc=chao.gao@intel.com \
--cc=kas@kernel.org \
--cc=kishen.maloor@intel.com \
--cc=kvm@vger.kernel.org \
--cc=linux-coco@lists.linux.dev \
--cc=linux-kernel@vger.kernel.org \
--cc=peter.fang@intel.com \
--cc=sohil.mehta@intel.com \
--cc=tony.lindgren@linux.intel.com \
--cc=x86@kernel.org \
--cc=xiaoyao.li@intel.com \
--cc=yilun.xu@intel.com \
--cc=yilun.xu@linux.intel.com \
--cc=zhenzhong.duan@intel.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox