From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from lists.ozlabs.org (lists.ozlabs.org [112.213.38.117]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id A0893CD6E56 for ; Mon, 1 Jun 2026 10:43:38 +0000 (UTC) Received: from boromir.ozlabs.org (localhost [127.0.0.1]) by lists.ozlabs.org (Postfix) with ESMTP id 4gTVtd1Jlnz2xqn; Mon, 01 Jun 2026 20:43:37 +1000 (AEST) Authentication-Results: lists.ozlabs.org; arc=none smtp.remote-ip=217.140.110.172 ARC-Seal: i=1; a=rsa-sha256; d=lists.ozlabs.org; s=201707; t=1780310617; cv=none; b=QES0Om5i1VE32eSWeeyLgRVK69k03H4UQxPEav3TNUfsJJMvO+H90yaLkEuXva1JnjYPT0UWMnay1/gL7tJp1uJaFyFMYXC8qDR6qnNa5s4LkiArMu0RH8ssMOAVR6k5fVMcG/U4CrLwtjli35BJPRUwC+ob/BV1YpaSJEIIMfdoyRQc2O1gv3uazSdiLsUdNSCq+ujgL7x1YAsasJMw6p2NHvqKETfoXGuNKMqf5vKShHXxB84PlZNXQnPORds9W39t1ol2W0HbaTwgPLz0NZvh5+rWF2tGSwzwkbblKLY4cN/PSgEpMT/MRNmqIN+NIJbJDOC6kAP91PQqycbx8Q== ARC-Message-Signature: i=1; a=rsa-sha256; d=lists.ozlabs.org; s=201707; t=1780310617; c=relaxed/relaxed; bh=w+Nusdc80UxxlxkRbJQVlsMrz4yOsTaBzGC7whbZUGQ=; h=Message-ID:Date:MIME-Version:Subject:To:Cc:References:From: In-Reply-To:Content-Type; b=HbH9uvFTKEHb1QimXTr47Rv3vVxPfgXsxIu8THybVNJZjNWhzit7c+jGD44AlbWJo/Kk4ZzHVmaJmbcz3Cko7+THZqoxFmNS60tdSvFsMK5WBqhGUW89XosngJofuzX5xrQ4BRxfWKZj64oP9BS2HZ0z86e4Q0/KOUWKv4chYLlaTQN+GCwyt+Y71LhxJ7lCtSJjOjSGv0uEMQYIdLloGyc0ExsLMVvT9d+Ry09XgB7HPvGtxg5mY4EwkTCl+ipDZ7HjUI/dyKEeZ49INbgwJ1YfrWuFTLSsev4qE91jKWUARz8/+QXe9gp6dGApyluTeBTxkaOQjXBxzAlbnA4Wrg== ARC-Authentication-Results: i=1; lists.ozlabs.org; dmarc=pass (p=none dis=none) header.from=arm.com; dkim=pass (1024-bit key; unprotected) header.d=arm.com header.i=@arm.com header.a=rsa-sha256 header.s=foss header.b=L7vvyWyP; dkim-atps=neutral; spf=pass (client-ip=217.140.110.172; helo=foss.arm.com; envelope-from=kevin.brodsky@arm.com; receiver=lists.ozlabs.org) smtp.mailfrom=arm.com Authentication-Results: lists.ozlabs.org; dmarc=pass (p=none dis=none) header.from=arm.com Authentication-Results: lists.ozlabs.org; dkim=pass (1024-bit key; unprotected) header.d=arm.com header.i=@arm.com header.a=rsa-sha256 header.s=foss header.b=L7vvyWyP; dkim-atps=neutral Authentication-Results: lists.ozlabs.org; spf=pass (sender SPF authorized) smtp.mailfrom=arm.com (client-ip=217.140.110.172; helo=foss.arm.com; envelope-from=kevin.brodsky@arm.com; receiver=lists.ozlabs.org) Received: from foss.arm.com (foss.arm.com [217.140.110.172]) by lists.ozlabs.org (Postfix) with ESMTP id 4gTVtZ5b06z2xdb for ; Mon, 01 Jun 2026 20:43:32 +1000 (AEST) Received: from usa-sjc-imap-foss1.foss.arm.com (unknown [10.121.207.14]) by usa-sjc-mx-foss1.foss.arm.com (Postfix) with ESMTP id 2DF0B1516; Mon, 1 Jun 2026 03:42:55 -0700 (PDT) Received: from [10.57.94.8] (unknown [10.57.94.8]) by usa-sjc-imap-foss1.foss.arm.com (Postfix) with ESMTPSA id CE8AB3F905; Mon, 1 Jun 2026 03:42:55 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=arm.com; s=foss; t=1780310580; bh=Surtzdfsfons0Igc45K6QS/muGPLmDhB31E+s1aspA8=; h=Date:Subject:To:Cc:References:From:In-Reply-To:From; b=L7vvyWyP5yYoDEKRDyQEcn+KUcyIZLm2/zPqf2mFWbJd8f5vtwRD9mJ+gjQLemSmG 61GJ7fElvuDmqzB0boUzsETOcCIg+LT5X96dfHbuAGeuIYJbp6tPCru3g6Uz1zZTsM dtan6SzPh6XJ40fqoV65vNcSw4ucQjj+39rNxGKw= Message-ID: <502eadae-089f-41cb-a871-9ad6b8169e0d@arm.com> Date: Mon, 1 Jun 2026 12:42:52 +0200 X-Mailing-List: linuxppc-dev@lists.ozlabs.org List-Id: List-Help: List-Owner: List-Post: List-Archive: , List-Subscribe: , , List-Unsubscribe: Precedence: list MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: [PATCH v7 07/15] arm64: kfence: Avoid NOMAP tricks when mapping the early pool To: Ard Biesheuvel , linux-arm-kernel@lists.infradead.org Cc: linux-kernel@vger.kernel.org, will@kernel.org, catalin.marinas@arm.com, mark.rutland@arm.com, Ard Biesheuvel , Ryan Roberts , Anshuman Khandual , Liz Prucka , Seth Jenkins , Kees Cook , Mike Rapoport , David Hildenbrand , Andrew Morton , Jann Horn , linux-mm@kvack.org, linux-hardening@vger.kernel.org, linuxppc-dev@lists.ozlabs.org, linux-sh@vger.kernel.org References: <20260529150150.1670604-17-ardb+git@google.com> <20260529150150.1670604-24-ardb+git@google.com> From: Kevin Brodsky Content-Language: en-GB In-Reply-To: <20260529150150.1670604-24-ardb+git@google.com> Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit On 29/05/2026 17:01, Ard Biesheuvel wrote: > From: Ard Biesheuvel > > Now that the map_mem() routines respect existing page mappings and > contiguous granule sized blocks with the contiguous bit cleared, there > is no longer a reason to play tricks with the memblock NOMAP attribute. > > Instead, the kfence pool can be allocated and mapped with page > granularity first, and this granularity will be respected when the rest > of DRAM is mapped later, even if block and contiguous mappings are > allowed for the remainder of those mappings. > > Add the NO_EXEC_MAPPINGS flag to ensure that hierarchical XN attributes > are set on the intermediate page tables that are allocated when mapping > the pool. > > Signed-off-by: Ard Biesheuvel Reviewed-by: Kevin Brodsky > --- > arch/arm64/mm/mmu.c | 27 +++++--------------- > 1 file changed, 6 insertions(+), 21 deletions(-) > > diff --git a/arch/arm64/mm/mmu.c b/arch/arm64/mm/mmu.c > index d7a6991e1844..cdf8b3510229 100644 > --- a/arch/arm64/mm/mmu.c > +++ b/arch/arm64/mm/mmu.c > @@ -1083,36 +1083,24 @@ static int __init parse_kfence_early_init(char *arg) > } > early_param("kfence.sample_interval", parse_kfence_early_init); > > -static phys_addr_t __init arm64_kfence_alloc_pool(void) > +static void __init arm64_kfence_map_pool(void) > { > phys_addr_t kfence_pool; > > if (!kfence_early_init) > - return 0; > + return; > > kfence_pool = memblock_phys_alloc(KFENCE_POOL_SIZE, PAGE_SIZE); > if (!kfence_pool) { > pr_err("failed to allocate kfence pool\n"); > kfence_early_init = false; > - return 0; > - } > - > - /* Temporarily mark as NOMAP. */ > - memblock_mark_nomap(kfence_pool, KFENCE_POOL_SIZE); > - > - return kfence_pool; > -} > - > -static void __init arm64_kfence_map_pool(phys_addr_t kfence_pool) > -{ > - if (!kfence_pool) > return; > + } > > /* KFENCE pool needs page-level mapping. */ > __map_memblock(kfence_pool, kfence_pool + KFENCE_POOL_SIZE, > pgprot_tagged(PAGE_KERNEL), > - NO_BLOCK_MAPPINGS | NO_CONT_MAPPINGS); > - memblock_clear_nomap(kfence_pool, KFENCE_POOL_SIZE); > + NO_BLOCK_MAPPINGS | NO_CONT_MAPPINGS | NO_EXEC_MAPPINGS); > __kfence_pool = phys_to_virt(kfence_pool); > } > > @@ -1144,8 +1132,7 @@ bool arch_kfence_init_pool(void) > } > #else /* CONFIG_KFENCE */ > > -static inline phys_addr_t arm64_kfence_alloc_pool(void) { return 0; } > -static inline void arm64_kfence_map_pool(phys_addr_t kfence_pool) { } > +static inline void arm64_kfence_map_pool(void) { } > > #endif /* CONFIG_KFENCE */ > > @@ -1155,7 +1142,6 @@ static void __init map_mem(void) > phys_addr_t kernel_start = __pa_symbol(_text); > phys_addr_t kernel_end = __pa_symbol(__init_begin); > phys_addr_t start, end; > - phys_addr_t early_kfence_pool; > int flags = NO_EXEC_MAPPINGS; > u64 i; > > @@ -1172,7 +1158,7 @@ static void __init map_mem(void) > BUILD_BUG_ON(pgd_index(direct_map_end - 1) == pgd_index(direct_map_end) && > pgd_index(_PAGE_OFFSET(VA_BITS_MIN)) != PTRS_PER_PGD - 1); > > - early_kfence_pool = arm64_kfence_alloc_pool(); > + arm64_kfence_map_pool(); > > linear_map_requires_bbml2 = !force_pte_mapping() && can_set_direct_map(); > > @@ -1210,7 +1196,6 @@ static void __init map_mem(void) > */ > __map_memblock(kernel_start, kernel_end, PAGE_KERNEL, NO_CONT_MAPPINGS); > memblock_clear_nomap(kernel_start, kernel_end - kernel_start); > - arm64_kfence_map_pool(early_kfence_pool); > } > > void mark_rodata_ro(void)