From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mail-pl1-f201.google.com (mail-pl1-f201.google.com [209.85.214.201]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 71E12202995 for ; Fri, 23 May 2025 14:35:09 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=209.85.214.201 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1748010911; cv=none; b=Wmf3F0JbLj6DAOL+BQ2EmA435VjBo3dknV/rGCUBRaMXHcIBdct+ZFvJby3pR74vJjmSC7D5/eRsavJ0+f7N+NkA0P/k+G5clLqVvSuP3Tzi1jNUfjhIgEwW3suNjKZRDI0nnC7jjcJF1il97H5p2siEuFTiLOdyV4sjQkvll5s= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1748010911; c=relaxed/simple; bh=rpziN1/05Zj11wUE9u4BbCxVKKTZOSPJiBdxOoe4oCQ=; h=Date:In-Reply-To:Mime-Version:References:Message-ID:Subject:From: To:Cc:Content-Type; b=uJmQ3TZitDTPbj9dNz5mFrysnJ1kC3VsdoHINnoXHWnZuvi2pKDk0T0DOx/G2cOdlaFfciJKUueJ3KhmGMq2kmWi1qCxeksMEUr96Zf9rWKLelLOnELzbKKKORKW6uJjJAk3UNSlQAjd09Pk7h+K3OU5pTGly3lj7jqbCkwbw/8= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dmarc=pass (p=reject dis=none) header.from=google.com; spf=pass smtp.mailfrom=flex--seanjc.bounces.google.com; dkim=pass (2048-bit key) header.d=google.com header.i=@google.com header.b=b84De/zP; arc=none smtp.client-ip=209.85.214.201 Authentication-Results: smtp.subspace.kernel.org; dmarc=pass (p=reject dis=none) header.from=google.com Authentication-Results: smtp.subspace.kernel.org; spf=pass smtp.mailfrom=flex--seanjc.bounces.google.com Authentication-Results: smtp.subspace.kernel.org; dkim=pass (2048-bit key) header.d=google.com header.i=@google.com header.b="b84De/zP" Received: by mail-pl1-f201.google.com with SMTP id d9443c01a7336-231e76f6eafso66656355ad.0 for ; Fri, 23 May 2025 07:35:09 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20230601; t=1748010909; x=1748615709; darn=vger.kernel.org; h=cc:to:from:subject:message-id:references:mime-version:in-reply-to :date:from:to:cc:subject:date:message-id:reply-to; bh=OHIXFovAEYPRF7pj3DkvXM+Wh6ry7OAZQdb2dc5cgKo=; b=b84De/zPy6OG7FPMct1S/l0RArSEw077OwRFF8QI1wCXcsIr22NtiTb84AWT63UXbP RfM3rq17cVcnzqgWKhmBoF+fXJTWsZbY4F/p8C/xjl0ettvBg6kn/kgB9W5QVh2Yvi2Y 4Mf+ZzIJd2th0q3njefRUC3Dj3tZTzrFD0do/0h28Lgx9fGfwnW5b8SZ6IMBZurC3HOM p9dzZj/9SpMFYBFzYmh/PlOz/oMQz0ZLLY3NlRWunqFyPr8lpy6o1b4lIbxcOhb2xIKd BdsWUWUpRel+re7QfPTc+rW7RtdZgHK2xYATjZ0VzkEICtxIe8tLX8GxMjEOKKkXoQ6O +4jg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1748010909; x=1748615709; h=cc:to:from:subject:message-id:references:mime-version:in-reply-to :date:x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=OHIXFovAEYPRF7pj3DkvXM+Wh6ry7OAZQdb2dc5cgKo=; b=otrXT2rGiznhd2F1vxF8hBJlMpoCcu27DZPmeb3m6GRdYwP3NzW8IvrIH9xs27H0Po NqiptMgvI1uAqufDBj0GSc/lDraQZ29B2npEygwWt+qFkGg7wlFjeURtoS7XTTRP1EQt 7m2uUpWh3vjmdhVlxgTvYNVwwZYvdldA5QUQgwUTrCIQosXPR4adOYgYvfiL+hvTJXb1 lIbiEB5Czu2wfAj9O15mY7WW87Qgoye1+u2LVMqQcPY/NcuAgqAx0ElI+oMotu3lY6Bg US/X5JTCaLQ+2Rc20/82PbjHX3jPhYTtHCWCxoBHJUfZv74c2w2Z3I3m+MgkVEqVlzvx 4yyw== X-Forwarded-Encrypted: i=1; AJvYcCXAV8neXWt3dsaZof5oNgTvDDkYp0zzLVQXsDzYeWQR65gq16oltjgLA7KgEX8dU+Hw33syKNv+Rb1xF3TCEC1JeOE=@vger.kernel.org X-Gm-Message-State: AOJu0Yxn7WoxT+4XJc3oKn4iVH4FAnIFfMMN+HJgnjAmIS6e2Njg6PiT z3rO4YcbKdbHHJbiQGlcapBVb73rv6yTmLhbtZDOiiDWezOx60bN3Baql5aO1+csGUcwraKlup5 CBP6Hpw== X-Google-Smtp-Source: AGHT+IFz7sb0nLy8RLNRfKCeKqRGA0z4OYWQ9Q5+lv5cIKJ3DXiQQbAp7L//6YajGR6GltgQpVeH/+sDQGY= X-Received: from plka13.prod.google.com ([2002:a17:903:f8d:b0:231:def0:d268]) (user=seanjc job=prod-delivery.src-stubby-dispatcher) by 2002:a17:903:41c7:b0:224:1221:1ab4 with SMTP id d9443c01a7336-231de317b43mr439457305ad.22.1748010908457; Fri, 23 May 2025 07:35:08 -0700 (PDT) Date: Fri, 23 May 2025 07:35:03 -0700 In-Reply-To: <20250523043935.2009972-4-kees@kernel.org> Precedence: bulk X-Mailing-List: linux-trace-kernel@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: Mime-Version: 1.0 References: <20250523043251.it.550-kees@kernel.org> <20250523043935.2009972-4-kees@kernel.org> Message-ID: Subject: Re: [PATCH v2 04/14] x86: Handle KCOV __init vs inline mismatches From: Sean Christopherson To: Kees Cook Cc: Arnd Bergmann , Thomas Gleixner , Ingo Molnar , Borislav Petkov , Dave Hansen , x86@kernel.org, "H. Peter Anvin" , Paolo Bonzini , Vitaly Kuznetsov , Henrique de Moraes Holschuh , Hans de Goede , "Ilpo =?utf-8?B?SsOkcnZpbmVu?=" , "Rafael J. Wysocki" , Len Brown , Masami Hiramatsu , Ard Biesheuvel , Mike Rapoport , Michal Wilczynski , Juergen Gross , Andy Shevchenko , "Kirill A. Shutemov" , Roger Pau Monne , David Woodhouse , Usama Arif , "Guilherme G. Piccoli" , Thomas Huth , Brian Gerst , kvm@vger.kernel.org, ibm-acpi-devel@lists.sourceforge.net, platform-driver-x86@vger.kernel.org, linux-acpi@vger.kernel.org, linux-trace-kernel@vger.kernel.org, linux-efi@vger.kernel.org, linux-mm@kvack.org, "Gustavo A. R. Silva" , Christoph Hellwig , Marco Elver , Andrey Konovalov , Andrey Ryabinin , Masahiro Yamada , Nathan Chancellor , Nicolas Schier , Nick Desaulniers , Bill Wendling , Justin Stitt , linux-kernel@vger.kernel.org, kasan-dev@googlegroups.com, linux-doc@vger.kernel.org, linux-arm-kernel@lists.infradead.org, kvmarm@lists.linux.dev, linux-riscv@lists.infradead.org, linux-s390@vger.kernel.org, linux-hardening@vger.kernel.org, linux-kbuild@vger.kernel.org, linux-security-module@vger.kernel.org, linux-kselftest@vger.kernel.org, sparclinux@vger.kernel.org, llvm@lists.linux.dev Content-Type: text/plain; charset="us-ascii" On Thu, May 22, 2025, Kees Cook wrote: > diff --git a/arch/x86/kernel/kvm.c b/arch/x86/kernel/kvm.c > index 921c1c783bc1..72f13d643fca 100644 > --- a/arch/x86/kernel/kvm.c > +++ b/arch/x86/kernel/kvm.c > @@ -420,7 +420,7 @@ static u64 kvm_steal_clock(int cpu) > return steal; > } > > -static inline void __set_percpu_decrypted(void *ptr, unsigned long size) > +static __always_inline void __set_percpu_decrypted(void *ptr, unsigned long size) I'd rather drop the "inline" and explicitly mark this "__init". There's value in documenting and enforcing that memory is marked decrypted/shared only during boot. > { > early_set_memory_decrypted((unsigned long) ptr, size); > }