From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Google-Smtp-Source: AH8x224noC6elmsAPAWl73zP7GhIWs5/EdWcQauAAmLfKzztYqJutsCQQNOdR5P9r+tOFVTgB0Dy ARC-Seal: i=1; a=rsa-sha256; t=1516747806; cv=none; d=google.com; s=arc-20160816; b=rIHQOIcHtW5VCycfLiEGwi0vR5nuVVg1Szz7TmaPSdfqxnxOI5TWONxPyXl8AJGiEW ab8ivygZDB63Sm1yWvfgaW1QWyMlEirLxxvjbLIhNxKjs5PTzdQAuJZsI3ta0S/breUZ pWDXplYcYItYfSyB0/zXGnPePFJd3/TKsNHJ/RdhCbHZzlYRcH19IG1ZSOD+Cqpz1ZwW T5LuIqb3eXxu3Nd37GGdiBA/NB54YwHgcnXH31MJ8CmWGuVPtI4idF+hXTUpU43XsJGf L9/vdfaLcsEyj/Chqkb5d+KBTi94vTkB9ZPHF7YHB+6mk/fOTck3XDGzOtemRNhavW5J wsEQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=user-agent:in-reply-to:content-disposition:mime-version:references :message-id:subject:cc:to:from:date:arc-authentication-results; bh=5A9Mlk3+S7V2tBhc/eT6N40JCzOnaixLAF0iiLJR5ks=; b=cxlfjRBWixh1EjU48bXg8R8y670gRMBqXKhqz+72zgLFEmam+mcBzAoxRmbZVDYO2h NwRhqZmbzIQqXBpUldmgb0SSiHkvB7FbaJKMhulnaKTUQEySI5SXN0tdsg3cgt4bgQXr 5pTt1Jwzt7lPSGkNm5Y67gXm+vdZhj8Ldl/2Mywg2axRjSafZRNgVtWoIt9gjlnGFla3 mKzmCPAzRVSr+bE3rWdaC5vKJH3GZrKk50vecXPZPpBYVlc0OUonZ71uD07CEoyCTxm+ YvsYugfjRqWdnslBQFwi3v1B+qL0Brr6fKfSZURCsO1deHzwdSmalz6j7KbdDuiTg4xc 3HbA== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of ak@linux.intel.com designates 192.55.52.115 as permitted sender) smtp.mailfrom=ak@linux.intel.com Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of ak@linux.intel.com designates 192.55.52.115 as permitted sender) smtp.mailfrom=ak@linux.intel.com X-Amp-Result: UNKNOWN X-Amp-Original-Verdict: FILE UNKNOWN X-Amp-File-Uploaded: False X-ExtLoop1: 1 X-IronPort-AV: E=Sophos;i="5.46,403,1511856000"; d="scan'208";a="168604257" Date: Tue, 23 Jan 2018 14:49:56 -0800 From: Andi Kleen To: Tom Lendacky Cc: "Woodhouse, David" , Andy Lutomirski , KarimAllah Ahmed , linux-kernel@vger.kernel.org, Andrea Arcangeli , Andy Lutomirski , Arjan van de Ven , Ashok Raj , Asit Mallick , Borislav Petkov , Dan Williams , Dave Hansen , Greg Kroah-Hartman , "H . Peter Anvin" , Ingo Molnar , Janakarajan Natarajan , Joerg Roedel , Jun Nakajima , Laura Abbott , Linus Torvalds , Masami Hiramatsu , Paolo Bonzini , Peter Zijlstra , Radim =?utf-8?B?S3LEjW3DocWZ?= , Thomas Gleixner , Tim Chen , kvm@vger.kernel.org, x86@kernel.org, Arjan Van De Ven Subject: Re: [RFC 09/10] x86/enter: Create macros to restrict/unrestrict Indirect Branch Speculation Message-ID: <20180123224956.GQ7844@tassilo.jf.intel.com> References: <1516476182-5153-1-git-send-email-karahmed@amazon.de> <1516476182-5153-10-git-send-email-karahmed@amazon.de> <243BE571-AF73-44B3-8D17-193F9E07686A@amacapital.net> <4e01a7a9-29e4-adcc-3f53-550fb7f3d370@amd.com> <1516724457.9521.156.camel@amazon.co.uk> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.9.1 (2017-09-22) X-getmail-retrieved-from-mailbox: INBOX X-GMAIL-THRID: =?utf-8?q?1590140582166248265?= X-GMAIL-MSGID: =?utf-8?q?1590425348164563872?= X-Mailing-List: linux-kernel@vger.kernel.org List-ID: > Not sure. Maybe to start, the answer might be to allow it to be set for > the ultra-paranoid, but in general don't enable it by default. Having it > enabled would be an alternative to someone deciding to disable SMT, since > that would have even more of a performance impact. I agree. A reasonable strategy would be to only enable it for processes that have dumpable disabled. This should be already set for high value processes like GPG, and allows others to opt-in if they need to. -Andi