Received: by 2002:a25:4158:0:0:0:0:0 with SMTP id o85csp767689yba; Fri, 3 May 2019 10:07:34 -0700 (PDT) X-Google-Smtp-Source: APXvYqykbF0fsQOGMFlEYIu4hlNj+r0PbX1nsMxKIqtv9ZqPhZP0Sua0zFKh7FOJBnH25fWtniQq X-Received: by 2002:a17:902:6b47:: with SMTP id g7mr11619153plt.227.1556903254414; Fri, 03 May 2019 10:07:34 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1556903254; cv=none; d=google.com; s=arc-20160816; b=Kz+4I43I0Ei/DWGI7tHL32FvFO2Zq0CU6fcHMIEa69v3wePODeCt/JEpA4+wGVJeYc G7XFb2ppaes8/wotilBew4417Vfpf9SSkHc+MyJgjHUS7GVjb2Vp9dYEMEQdTJr8CcTE atIcV2nQJQi19QnYuQTBxyORLK3VH41IcyWJj0gXCeYp4PgZusTI1XIg8aoCfsrbescs HQVmc/cYhkkkTO/kEMbyKylUW5Wl7/dogaWaj4yh1bABfibnTQMJId9iVgzCtRXPrY6S boRVmzmuaZfPDpezHx1qQ+rQRsOJmYlCdiW56Al4XhAEESr9bXeeMb+8SVNdQuydt40p wm1w== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :content-language:accept-language:in-reply-to:references:message-id :date:thread-index:thread-topic:subject:cc:to:from; bh=nnROmG25gzvPBoPVABtRNLraeV1aBBoTXTL+8V8cSTo=; b=hY6e0oN1SSanmghblcTYOZWrYLuWWglv+zaSurokUMjGoLDswck2PaS2KR2rcXGXCk dDy9ane85eUtB+ZioppjnN8WW9nj+riWR50Y8Q8uPCOYoLV3OQwwXhM9/Ab8bLgcolRh vttNNFaqJZSx/jFXQPIidLg+LkEBd0oD2y2BzW8u3uXLIq1B6seOesXQKaC8/tvNgKjj x8IxBeLwKxB/SgPM7CNJhgCRnyT54BI9XZ1OFsKLmHKhLXODzDLtX9oah/K8H7GXvEEq +YNO2yAujkKpWSFYW73OZX10wkwH+t/fw5YxI/wO48HlMKNvLwBWjSG9SmI31K7B7HN/ Emzw== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id 14si2950387pgv.248.2019.05.03.10.07.18; Fri, 03 May 2019 10:07:34 -0700 (PDT) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1728480AbfECQk7 convert rfc822-to-8bit (ORCPT + 99 others); Fri, 3 May 2019 12:40:59 -0400 Received: from eu-smtp-delivery-151.mimecast.com ([207.82.80.151]:58966 "EHLO eu-smtp-delivery-151.mimecast.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1727780AbfECQk6 (ORCPT ); Fri, 3 May 2019 12:40:58 -0400 Received: from AcuMS.aculab.com (156.67.243.126 [156.67.243.126]) (Using TLS) by relay.mimecast.com with ESMTP id uk-mta-192-OaTw3byYN0Kl1wNCyn9k8g-1; Fri, 03 May 2019 17:40:55 +0100 Received: from AcuMS.Aculab.com (fd9f:af1c:a25b:0:43c:695e:880f:8750) by AcuMS.aculab.com (fd9f:af1c:a25b:0:43c:695e:880f:8750) with Microsoft SMTP Server (TLS) id 15.0.1347.2; Fri, 3 May 2019 17:40:53 +0100 Received: from AcuMS.Aculab.com ([fe80::43c:695e:880f:8750]) by AcuMS.aculab.com ([fe80::43c:695e:880f:8750%12]) with mapi id 15.00.1347.000; Fri, 3 May 2019 17:40:53 +0100 From: David Laight To: "'Reshetova, Elena'" , Ingo Molnar CC: Andy Lutomirski , Theodore Ts'o , "Eric Biggers" , "ebiggers@google.com" , "herbert@gondor.apana.org.au" , Peter Zijlstra , "keescook@chromium.org" , Daniel Borkmann , "linux-kernel@vger.kernel.org" , "jpoimboe@redhat.com" , "jannh@google.com" , "Perla, Enrico" , "mingo@redhat.com" , "bp@alien8.de" , "tglx@linutronix.de" , "gregkh@linuxfoundation.org" , "Edgecombe, Rick P" , Linus Torvalds , Peter Zijlstra Subject: RE: [PATCH] x86/entry/64: randomize kernel stack offset upon syscall Thread-Topic: [PATCH] x86/entry/64: randomize kernel stack offset upon syscall Thread-Index: AQHU9E1UquBTkhVACE2y3BuRFoekIqY8wW2AgAAdM1CAAXexAIAANZ3ggAAW1gCAAApRgIAAMeKAgAAd+PCAAQuGgIAAYQuAgAAKhwCACsPi4IADJTwAgAAcagCAAExngIAEBbGAgACIbACAAbyQ8IAA626AgAGZfXCAAARpgIAAWpuAgAAF74CAABf/AIAAAvkAgAGZnrCAAAQUUA== Date: Fri, 3 May 2019 16:40:53 +0000 Message-ID: References: <57357E35-3D9B-4CA7-BAB9-0BE89E0094D2@amacapital.net> <2236FBA76BA1254E88B949DDB74E612BA4C66A8A@IRSMSX102.ger.corp.intel.com> <6860856C-6A92-4569-9CD8-FF6C5C441F30@amacapital.net> <2236FBA76BA1254E88B949DDB74E612BA4C6A4D7@IRSMSX102.ger.corp.intel.com> <303fc4ee5ac04e4fac104df1188952e8@AcuMS.aculab.com> <2236FBA76BA1254E88B949DDB74E612BA4C6C2C3@IRSMSX102.ger.corp.intel.com> <2e55aeb3b39440c0bebf47f0f9522dd8@AcuMS.aculab.com> <20190502150853.GA16779@gmail.com> <20190502164524.GB115950@gmail.com> <2236FBA76BA1254E88B949DDB74E612BA4C6F523@IRSMSX102.ger.corp.intel.com> In-Reply-To: <2236FBA76BA1254E88B949DDB74E612BA4C6F523@IRSMSX102.ger.corp.intel.com> Accept-Language: en-GB, en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: x-ms-exchange-transport-fromentityheader: Hosted x-originating-ip: [10.202.205.107] MIME-Version: 1.0 X-MC-Unique: OaTw3byYN0Kl1wNCyn9k8g-1 X-Mimecast-Spam-Score: 0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8BIT Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org From: Reshetova, Elena > Sent: 03 May 2019 17:17 ... > rdrand (calling every 8 syscalls): Simple syscall: 0.0795 microseconds You could try something like: u64 rand_val = cpu_var->syscall_rand while (unlikely(rand_val == 0)) rand_val = rdrand64(); stack_offset = rand_val & 0xff; rand_val >>= 6; if (likely(rand_val >= 4)) cpu_var->syscall_rand = rand_val; else cpu_var->syscall_rand = rdrand64(); return stack_offset; That gives you 10 system calls per rdrand instruction and mostly takes the latency out of line. David - Registered Address Lakeside, Bramley Road, Mount Farm, Milton Keynes, MK1 1PT, UK Registration No: 1397386 (Wales)