public inbox for linux-kernel@vger.kernel.org
 help / color / mirror / Atom feed
From: Joerg Roedel <joerg.roedel@amd.com>
To: Konrad Rzeszutek Wilk <konrad.wilk@oracle.com>
Cc: <iommu@lists.linux-foundation.org>, <linux-kernel@vger.kernel.org>
Subject: Re: [PATCH 05/16] iommu/amd: Split device table initialization into irq and dma part
Date: Fri, 28 Sep 2012 16:59:10 +0200	[thread overview]
Message-ID: <20120928145910.GG4009@amd.com> (raw)
In-Reply-To: <20120928150009.GI7483@localhost.localdomain>

On Fri, Sep 28, 2012 at 11:00:10AM -0400, Konrad Rzeszutek Wilk wrote:
> On Fri, Sep 28, 2012 at 04:25:55PM +0200, Joerg Roedel wrote:
> > On Fri, Sep 28, 2012 at 10:17:53AM -0400, Konrad Rzeszutek Wilk wrote:
> > > On Fri, Sep 28, 2012 at 02:23:55PM +0200, Joerg Roedel wrote:
> > > > When the IOMMU is enabled very early (as with irq-remapping)
> > > > some devices are still in BIOS hand. When dma is blocked
> > > > early this can cause lots of IO_PAGE_FAULTs. So delay the
> > > > DMA initialization and do it right before the dma_ops are
> > > > initialized.
> > > > To be secure, block all interrupts by default when irq-remapping is
> > > 
> > > What are you trying to be secure against?
> > 
> > Against attacks of faked MSI msgs that could DoS the system. MSI
> > messages are only specific DMA transactions in the end and a guest with
> > a device assigned has control over its DMA engine and can thus send
> > arbitrary interrupt requests to the host. There is a whole paper about
> > such attacks. I can't find right now, but I send you  a link when I find
> > it.
> 
> I think I know which one you are talking about - that is the Joanna's
> Rutkowski/Rafal Wojtczuk paper. Could you include a bit about it
> in the description or at least the title in the git commit pls?

Okay, I will do.

-- 
AMD Operating System Research Center

Advanced Micro Devices GmbH Einsteinring 24 85609 Dornach
General Managers: Alberto Bozzo
Registration: Dornach, Landkr. Muenchen; Registerger. Muenchen, HRB Nr. 43632


  reply	other threads:[~2012-09-28 14:59 UTC|newest]

Thread overview: 43+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2012-09-28 12:23 [PATCH 0/16] Interrupt remapping support for AMD IOMMU Joerg Roedel
2012-09-28 12:23 ` [PATCH 01/16] iommu/amd: Keep track of HPET and IOAPIC device ids Joerg Roedel
2012-09-28 14:08   ` Konrad Rzeszutek Wilk
2012-09-28 14:35     ` Joerg Roedel
2012-09-28 12:23 ` [PATCH 02/16] iommu/amd: Add slab-cache for irq remapping tables Joerg Roedel
2012-09-28 12:23 ` [PATCH 03/16] iommu/amd: Allocate data structures to keep track of " Joerg Roedel
2012-09-28 22:57   ` Shuah Khan
2012-09-28 12:23 ` [PATCH 04/16] iommu/amd: Check if IOAPIC information is correct Joerg Roedel
2012-09-28 14:16   ` Konrad Rzeszutek Wilk
2012-09-28 14:37     ` Joerg Roedel
2012-09-28 12:23 ` [PATCH 05/16] iommu/amd: Split device table initialization into irq and dma part Joerg Roedel
2012-09-28 14:17   ` Konrad Rzeszutek Wilk
2012-09-28 14:25     ` Joerg Roedel
2012-09-28 15:00       ` Konrad Rzeszutek Wilk
2012-09-28 14:59         ` Joerg Roedel [this message]
2012-09-28 12:23 ` [PATCH 06/16] iommu/amd: Make sure IOMMU is not considered to translate itself Joerg Roedel
2012-09-28 12:23 ` [PATCH 07/16] iommu/amd: Add IRTE invalidation routine Joerg Roedel
2012-09-28 14:20   ` Konrad Rzeszutek Wilk
2012-09-28 15:36     ` Joerg Roedel
2012-09-28 12:23 ` [PATCH 08/16] iommu/amd: Add routines to manage irq remapping tables Joerg Roedel
2012-09-28 14:40   ` Konrad Rzeszutek Wilk
2012-09-28 15:01     ` Joerg Roedel
2012-09-28 12:23 ` [PATCH 09/16] iommu/amd: Add IOAPIC remapping routines Joerg Roedel
2012-09-28 14:45   ` Konrad Rzeszutek Wilk
     [not found]   ` <6d716497-bcf6-4d71-88a3-6ec772a4d396@sausexedgep01.amd.com>
2012-10-01  8:40     ` Joerg Roedel
2012-10-01 13:47       ` Konrad Rzeszutek Wilk
2012-10-01 16:33         ` Joerg Roedel
2012-10-01 16:34           ` Konrad Rzeszutek Wilk
2012-09-28 12:24 ` [PATCH 10/16] iommu/amd: Implement MSI routines for interrupt remapping Joerg Roedel
2012-09-28 14:49   ` Konrad Rzeszutek Wilk
2012-09-28 15:04     ` Joerg Roedel
2012-09-28 12:24 ` [PATCH 11/16] iommu/amd: Add call-back routine for HPET MSI Joerg Roedel
2012-09-28 12:24 ` [PATCH 12/16] iommu/amd: Add initialization routines for AMD interrupt remapping Joerg Roedel
2012-09-28 23:18   ` Shuah Khan
2012-10-01  8:05     ` Joerg Roedel
2012-10-01 16:02       ` Shuah Khan
2012-09-28 12:24 ` [PATCH 13/16] iommu/amd: Make sure irq remapping still works on dma init failure Joerg Roedel
2012-09-28 12:24 ` [PATCH 14/16] iommu/irq: Use amd_iommu_irq_ops if supported Joerg Roedel
2012-09-28 23:39   ` Shuah Khan
2012-10-01  8:08     ` Joerg Roedel
2012-10-01 16:04       ` Shuah Khan
2012-09-28 12:24 ` [PATCH 15/16] iommu/amd: Print message to system log when irq remapping is enabled Joerg Roedel
2012-09-28 12:24 ` [PATCH 16/16] iommu/amd: Report irq remapping through IOMMU-API Joerg Roedel

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20120928145910.GG4009@amd.com \
    --to=joerg.roedel@amd.com \
    --cc=iommu@lists.linux-foundation.org \
    --cc=konrad.wilk@oracle.com \
    --cc=linux-kernel@vger.kernel.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox