Received: by 2002:ad5:474a:0:0:0:0:0 with SMTP id i10csp2079266imu; Sun, 18 Nov 2018 15:24:32 -0800 (PST) X-Google-Smtp-Source: AJdET5de33e+tE7n98qO9/yzIDiA061o2CTTMQR6l2+MchA+OyhaA5AztynBDJ/lQU2aOTzprNiP X-Received: by 2002:a62:8893:: with SMTP id l141mr7203024pfd.1.1542583472732; Sun, 18 Nov 2018 15:24:32 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1542583472; cv=none; d=google.com; s=arc-20160816; b=VROIG3V89N+dGh1j3hr/iQfpRd2EsD63l7B4RMooynMz21UievG6AD3b2FiBU+hkTp kga2V8GwJgY+T8AewLcxRAH9f3CgAwphf0eBN0CDSqd68AIxt+JWX69GTBnAjq/MX+mW ZNL6T25dAgN/QGfcZeXnMyy7SeeJqdmEPOiYjCjk8OpFMUBqn3qbDbGUMPcsE+haMQUV uDnEKRFSe6Rs5SuIqek8/2K7eck5pDUG7pvGiBE/FNMEgnypOtPg8n0v3JvisVOc1zp4 IbA326Q1llbOxp9V31s5zx4g3YRWQ0ckCkLZEkGAsT4nFZQR+W6nSnt1RkyuiIZo/lam 0f6w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:dkim-signature; bh=jIIvTxU2MkHgyj+ZBaobYKKbUlr2NRzlxPGpHAJcvzM=; b=FMzlfZqGk0ZFI/347z8QGsSLNRHf0RUgZ/s1m58jRmnft4pN06REn/O8Aob4HhJzto HTzl/3QQW91TfgMPIgwCgT9ehlE1ukmGbg1QpNsE//GBmDWK/DtCEDIErR0gtSaDKWns ZshlmeK3vzidk7DueMBtXKSRubWJx9oKR8wwxgI4Advbhp4hzfHDGoPf6pOcbPJ7GOxg pBsDcOGj56xbnbzCz6agnS7sKrR6RGjK+ZYf+2qF9RLbbkmsF/9fm5JNjqowCrsTXkCD xTdKJrChx4OmMW3L8F/E+hAPTPH2rFl/CNZOztyB0X7ewDE5cuzggYVdMzv9FvVJOOoR 3HvA== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@intel-com.20150623.gappssmtp.com header.s=20150623 header.b=CwOGSQDQ; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id k17si9650653pgl.62.2018.11.18.15.24.18; Sun, 18 Nov 2018 15:24:32 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@intel-com.20150623.gappssmtp.com header.s=20150623 header.b=CwOGSQDQ; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1727885AbeKSI5s (ORCPT + 99 others); Mon, 19 Nov 2018 03:57:48 -0500 Received: from mail-qk1-f196.google.com ([209.85.222.196]:36774 "EHLO mail-qk1-f196.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1725826AbeKSI5r (ORCPT ); Mon, 19 Nov 2018 03:57:47 -0500 Received: by mail-qk1-f196.google.com with SMTP id o125so45872234qkf.3; Sun, 18 Nov 2018 14:36:13 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=intel-com.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=jIIvTxU2MkHgyj+ZBaobYKKbUlr2NRzlxPGpHAJcvzM=; b=CwOGSQDQh1wkmD18Owykx1BF6LuiqNJut/Q1+s6yfPtfQpbCImzrXx2ZMUp8RQt7VN lAah5qfULcUaJn6r0AV9GzKJ4EOfKOnHq8IaS+zhfIZITwpceinDC+OSaW3Mm+fmFg/F yWC5MGKJ1kl7i70a66GVHt5lbt17eTq3NxSjIkMrbOe7bfYrB3SlAg3vSHviRZAiayJf JNBC92v+8vRk/WC13gqASKcSSx9DQ90nyqH+eYHSyb9R0eioy3mWtkKsyh0eCiFA8E8i rj7sdCl2Mx56T+esRXI4wUkgwR9doYr1CB9OPP6iWW7Is7CgwwjOmsb1YhBa06+GW2xp HrdA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=jIIvTxU2MkHgyj+ZBaobYKKbUlr2NRzlxPGpHAJcvzM=; b=t+Nj+T5BbZKcXrKYmNGcM1GgnDQqf35gINrP6odFBve7IoaM99hEjN9ZCmiM1VwLka 6sXS3pYtacPGV4nCIcc7iQ299hcEL5QHVXDOv7K2Rm8p6CbSKGz153FyKSymhGnBhgWN wQYTOw/ZUV0XYgRRNYXyTe3F5qK4Q+h6Q+w5LkmAIcvhQpcbHxAPXq/0jNpk0vkZHxmo s69u4lUMrrUzRwzRikKedQle8Wzsb71NB0zubRUuTKjiQ0IFhhQ9JKQQuWp0cKaS6sKG AUB/OTnq0tuYwckDoT/FbjyQPkilOg3kEQKeMEjG++DQ5dTWvYAMDDpOGzSp6VNF8c2p rb5Q== X-Gm-Message-State: AGRZ1gJbfODxfb7jIZLuBW3OwHWj1poVWekbyoXXhBK5EkIfZ1fU7PkO ULJfReMObPS3S3EkAUqAPg/NvXAF75O/yJAtiY8= X-Received: by 2002:a0c:e010:: with SMTP id j16mr19205169qvk.111.1542580572909; Sun, 18 Nov 2018 14:36:12 -0800 (PST) MIME-Version: 1.0 References: In-Reply-To: From: Tony Luck Date: Sun, 18 Nov 2018 14:36:02 -0800 Message-ID: Subject: Re: STIBP by default.. Revert? To: Jiri Kosina Cc: Linus Torvalds , Thomas Gleixner , Peter Zijlstra , jpoimboe@redhat.com, Andrea Arcangeli , dwmw@amazon.co.uk, Andi Kleen , tim.c.chen@linux.intel.com, casey.schaufler@intel.com, Linux Kernel Mailing List , X86-ML , stable Content-Type: text/plain; charset="UTF-8" Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Sun, Nov 18, 2018 at 2:19 PM Jiri Kosina wrote: > Which gets us back to Tim's fixup patch. Do you still prefer the revert, > given the existence of that? I think that if Tim's fixup makes it through > (it's currently missing SECCOMP handling, but that is trivial to add on > top), it might be the best compromise. We'd also have have to make IBPB > obey it to be consistent (and get even a few more % of performance back), > but that's easy as well. +1 for Tim's patch. That make us more consistent with how we handled L1TF (giving the system owner a control knob to decide whether they want this level of fixup, based on their own analysis of their vulnerability). -Tony