Received: by 10.223.176.5 with SMTP id f5csp686571wra; Tue, 30 Jan 2018 17:50:23 -0800 (PST) X-Google-Smtp-Source: AH8x227n5aQu+pZWnyioLKgVag29uGd3MMpxptod6tg//5Kp1ZTYKXbxyl12ZAF1h4hH2gjQG0vR X-Received: by 10.98.198.2 with SMTP id m2mr32095374pfg.113.1517363423824; Tue, 30 Jan 2018 17:50:23 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1517363423; cv=none; d=google.com; s=arc-20160816; b=T1Nx8Yfn8RMIRVBSRrQlGpFix0s5ZJrITC+41IYqjPII25vv+tGvKWIdXhd8VDkY3i gwslFNNZxaGrRKV6svOElHabv+Hj+BywtQfqCtM6sO3oTONtfiV4LDqaz9ivVqETgcO2 XJJL32MFyJ5mW5Uxrx02jOfspatPyfZ5EbnyEVnMVAgtNr6DmUFsCxMMJ2eYscVXUd2Q iUz0WaM03sP0Jk90uNytH3D0uQQrIgO56W9EHUDEyAIe7oSupdcwS5qg/AnK9paowK4N 0ZjQ3MFyx9YUOugwbSNKqJbi29DxAGMcb5zOnOn/hnkGYXvobTgE53rtnfKLgGLF0Jc6 bhyw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:cc:to:subject:message-id:date:from :references:in-reply-to:mime-version:dkim-signature :arc-authentication-results; bh=2EScA1Ugrz/I/PwL1dVKjynZkoPIgMOzXW4O/IjbwrQ=; b=fpRWNT06JKpoMAlNWn0SIBhXscpO4XR+TXfvJRD2GILdasMIw93/g8iuN1cF234+2X wLnqhaumBjlMrd4yGZE70UEvA92GpbQnrsLjfuoDGe2gZgt3C08NGt9cpc+wrKEUkjzX 8aAgr2YFq4pRIrKKCRu7rIVyYd3XDF9+PFqWZfia59Vu4OZdsqFzvzdl8ynDJpJ9xKHM 2QHuWy3qFHqSao23NhmIQE8y6N4fVlcIjJRgr8QKWYfqzZMF+/seFt2uNsbMTBMzeWym 39LbFoP1liUH3tLTk1QmAhZNNqr2UL3MWAmdnBlhunYuuJFRLvlEfgNaS83DE1QUbndk t9MA== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=P7rkZSvc; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id o23-v6si1605294pll.475.2018.01.30.17.50.09; Tue, 30 Jan 2018 17:50:23 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@google.com header.s=20161025 header.b=P7rkZSvc; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=REJECT sp=REJECT dis=NONE) header.from=google.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1754444AbeAaA1m (ORCPT + 99 others); Tue, 30 Jan 2018 19:27:42 -0500 Received: from mail-it0-f49.google.com ([209.85.214.49]:35473 "EHLO mail-it0-f49.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1751567AbeAaA1k (ORCPT ); Tue, 30 Jan 2018 19:27:40 -0500 Received: by mail-it0-f49.google.com with SMTP id e1so2763336ita.0 for ; Tue, 30 Jan 2018 16:27:40 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=2EScA1Ugrz/I/PwL1dVKjynZkoPIgMOzXW4O/IjbwrQ=; b=P7rkZSvcVxII7/ASagtaUCoHf/WvfzsuB4KJF7+ZpMtV4u7ArNUFyGXJJpeiKYSxPP FcC2fivZqeJIEE478URxVhmgY6VL+swUPeHaDRH/dlOf/8wE6ZSaSMaC/OtbGZUyMi7Z 1fUKmL9EN1C8i/i91h09RDCvcHOwSePajyn4IagfsDGOVnICgKCObl7JikoB+JN7XYqZ 34vhwldtBOSzTpDopMyp+UbN9lGwbhptW/CGN6VgABfE8jg4DxxFkzM8N3DuvpSReZf2 DNpWmtYiOzYIHBh1JJ3m0xnUqzx9qVDjS0m97tVQGkisW3d9cmgQz/MFzxt7lu6gypwI KEHw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=2EScA1Ugrz/I/PwL1dVKjynZkoPIgMOzXW4O/IjbwrQ=; b=p0y4ylXS7HTNpmF9NkM0XiWVYg3mDOmqN5z6/5j7bXEIXvPrcx4U+BnrcCl1hMwn9q z/mVElx11XWgpA1EYepSmaudoTjPhtzhPVaiqmRMJSN37vMnRsgPZPSQtQPHoJFca99f tvHTetxqo7uA/jzqPcFoSRwHNVe6oxWw6xbvJDBklX1d/hGxiHoPxAylmNHfjVa4jCXv g3NNxdksJsh14B+KyvihmjWjzr7qxyLCuEliIiAbZ64tkN/dh/ZSYYUhLqN99UqdyJOO jWGLomWszAufpCzdPa2VvgK4HmGP2BRr7Y2XldXxpTKKZyEZzn3I0Cd4pS8h4EsPluGd zX0w== X-Gm-Message-State: AKwxytfeUYp6IzfHlcvdSPB6NeCeQl9BUNgLCwh6e1owdgcuiytN/NKA 4RdYBnkA2BbFI0w1e/iJU3J6qLR3PUn/4sM38KDg4w== X-Received: by 10.36.4.82 with SMTP id 79mr4425463itb.89.1517358459666; Tue, 30 Jan 2018 16:27:39 -0800 (PST) MIME-Version: 1.0 Received: by 10.107.128.7 with HTTP; Tue, 30 Jan 2018 16:27:39 -0800 (PST) In-Reply-To: <7bd999e6-bc15-2470-80fb-771161df39d6@redhat.com> References: <1517271028-15916-1-git-send-email-karahmed@amazon.de> <1517271028-15916-5-git-send-email-karahmed@amazon.de> <43859417-ae76-ed1f-eb4f-8a84a35998fc@amazon.com> <7bd999e6-bc15-2470-80fb-771161df39d6@redhat.com> From: Jim Mattson Date: Tue, 30 Jan 2018 16:27:39 -0800 Message-ID: Subject: Re: [PATCH v3 4/4] KVM: VMX: Allow direct access to MSR_IA32_SPEC_CTRL To: Paolo Bonzini Cc: KarimAllah Ahmed , KarimAllah Ahmed , kvm list , LKML , "the arch/x86 maintainers" , Asit Mallick , Arjan Van De Ven , Dave Hansen , Andi Kleen , Andrea Arcangeli , Linus Torvalds , Tim Chen , Thomas Gleixner , Dan Williams , Jun Nakajima , David Woodhouse , Greg KH , Andy Lutomirski , Ashok Raj Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Tue, Jan 30, 2018 at 4:19 PM, Paolo Bonzini wrote: > The new code in nested_vmx_merge_msr_bitmap should be conditional on > vmx->save_spec_ctrl_on_exit. But then if L1 doesn't use MSR_IA32_SPEC_CTRL itself and it uses the VM-entry MSR load list to set up L2's MSR_IA32_SPEC_CTRL, you will never set vmx->save_spec_ctrl_on_exit, and L2's accesses to the MSR will always be intercepted by L0.