From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([209.51.188.92]:45728) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1gvgLF-0007Kj-LC for qemu-devel@nongnu.org; Mon, 18 Feb 2019 05:40:11 -0500 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1gvgLE-0003o5-K3 for qemu-devel@nongnu.org; Mon, 18 Feb 2019 05:40:05 -0500 Date: Mon, 18 Feb 2019 10:31:55 +0000 From: Daniel =?utf-8?B?UC4gQmVycmFuZ8Op?= Message-ID: <20190218103155.GD32287@redhat.com> Reply-To: Daniel =?utf-8?B?UC4gQmVycmFuZ8Op?= References: <20190218101218.4177-1-ppandit@redhat.com> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline In-Reply-To: <20190218101218.4177-1-ppandit@redhat.com> Content-Transfer-Encoding: quoted-printable Subject: Re: [Qemu-devel] [PATCH v3] ppc: add host-serial and host-model machine attributes List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: P J P Cc: David Gibson , QEMU Developers , qemu-ppc@nongnu.org, Prasad J Pandit On Mon, Feb 18, 2019 at 03:42:18PM +0530, P J P wrote: > From: Prasad J Pandit >=20 > On ppc hosts, hypervisor shares following system attributes >=20 > - /proc/device-tree/system-id > - /proc/device-tree/model >=20 > with a guest. This could lead to information leakage and misuse.[*] > Add machine attributes to control such system information exposure > to a guest. >=20 > [*] https://wiki.openstack.org/wiki/OSSN/OSSN-0028 >=20 > Reported-by: Daniel P. Berrang=C3=A9 > Fix-suggested-by: Daniel P. Berrang=C3=A9 > Signed-off-by: Prasad J Pandit > --- > hw/ppc/spapr.c | 79 ++++++++++++++++++++++++++++++++++++++---- > include/hw/ppc/spapr.h | 2 ++ > 2 files changed, 75 insertions(+), 6 deletions(-) >=20 > Update v3: move host-serial,host-model options to ppc sPAPR machine > -> https://lists.gnu.org/archive/html/qemu-devel/2019-02/msg03182.htm= l Reviewed-by: Daniel P. Berrang=C3=A9 Regards, Daniel --=20 |: https://berrange.com -o- https://www.flickr.com/photos/dberran= ge :| |: https://libvirt.org -o- https://fstop138.berrange.c= om :| |: https://entangle-photo.org -o- https://www.instagram.com/dberran= ge :|