Received: by 2002:a05:6902:102b:0:0:0:0 with SMTP id x11csp3103644ybt; Mon, 29 Jun 2020 15:29:20 -0700 (PDT) X-Google-Smtp-Source: ABdhPJzUKFMiU/j1GlUGJp11OiTfZxanLxeQ1DVxPImXNprwITlicZ7NixSAZCokqDYers7ug1eL X-Received: by 2002:a05:6402:b1a:: with SMTP id bm26mr19488350edb.144.1593469760104; Mon, 29 Jun 2020 15:29:20 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1593469760; cv=none; d=google.com; s=arc-20160816; b=BFXY4zjdA1t8D+k+ZDr2YhzinsqvIi8/ikxYuwdoPxeTSW//kkO4rF1D/Dqgx4miaD gkD0EHQNa72CO2YdP0LDSPXqla8t6J/6eK+kLjjoNxYKL4m9pEEyqO86MqqnzQEjPdW+ Q0xMu3z31tXIOqeQY8/H68AdsQYlFudTlrM0U4UYYyBMEBLPIevi/m5eknnE6xPDoZRR 8xmWUt0gr31EFEIP/DqWCyP1Arpzj8OGvRRO84n0F0G+6dUr3aIkLTeGSaDM1CpR2TZT fbU/s2Gl9mGGXp6fw3GKi4je+7AyC2Yu/+lVQYrYY7a/Xs1OOD83bp35WoyBahhQL9s2 Awyg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:user-agent:in-reply-to :content-disposition:mime-version:references:message-id:subject:cc :to:from:date; bh=LM1EvBQFJ9bPWFgzrCK4QStJDhC6i50g59dK2Gr0iyU=; b=cByIMLuKiLsFGVquH0sdx2aL0zehzOSpRmsWJIFeW2qDDw4YqxvqpWbEgUsD1QEqW/ 483W47cFr/x4etVm6aKB65iI1KBzIJQSE8P0eWpqpPEdj6off/x7lp07l9zhHYhpn6kQ 3Nt2uoHA5vUllBtxt5KFLiaXoLjtAb0by5/JpES/2fbLlbN3PTUO77VYVOW0KKVG9P8p /VmyAahfN+nPle8HpTv2RwY4GTACu9j6t2napsaN+kbOqHX2w7Jj7HrsbfDIcscNvNyz tgSlJdmAr/rH9lvEyo7ZYVrt7OImb95x5JQKITU4JMiN40jBXooOBr6s56fmDupJyFYs YOCA== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id u5si535256edp.123.2020.06.29.15.28.56; Mon, 29 Jun 2020 15:29:20 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1731150AbgF2W0U (ORCPT + 99 others); Mon, 29 Jun 2020 18:26:20 -0400 Received: from mail-wr1-f65.google.com ([209.85.221.65]:43468 "EHLO mail-wr1-f65.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726974AbgF2W0Q (ORCPT ); Mon, 29 Jun 2020 18:26:16 -0400 Received: by mail-wr1-f65.google.com with SMTP id j4so15722036wrp.10; Mon, 29 Jun 2020 15:26:14 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:subject:message-id:references :mime-version:content-disposition:in-reply-to:user-agent; bh=LM1EvBQFJ9bPWFgzrCK4QStJDhC6i50g59dK2Gr0iyU=; b=tMMqM+HQKgSxCC6qxUEiXizZKpfYmchK8eG9+/kz2O+6hcm2ld2FIk5/S1Oen9uL6D 30doifklRzqkrZMtNWxzmYGXv2n4kckt7KW9SS0LuD6Ch6mAawfPmYcCcoXGjC2iUMKj VNvjU7ncAAZmZNUdm3tlMCQDVdGQS2+dMu+AMgtIeXCZ88ruU1PwC7iXbx0RClBzfFbV oTWWbzPplnpViJhjgBwNPgqQX0Iz8Vpq18LFIyG6UpEjNWdINYNmgFSh6scczJTvodHF OUUiCOj2lj6M7pB+SIHXHWrKgBJlf0v4dmTR/T0aM3VXqkX82gEDdeTaj/Ujffiy0aOn PxlA== X-Gm-Message-State: AOAM531feytHhiJCifclKZWikq1kKcdO/uoxZ3UBqvvd8WYrLDyDI5WH VgnVoMmvPF6XdckqOeh8szTBe+ZH X-Received: by 2002:adf:84e2:: with SMTP id 89mr19764045wrg.139.1593469574388; Mon, 29 Jun 2020 15:26:14 -0700 (PDT) Received: from liuwe-devbox-debian-v2 ([51.145.34.42]) by smtp.gmail.com with ESMTPSA id 138sm1430837wma.23.2020.06.29.15.26.13 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Mon, 29 Jun 2020 15:26:13 -0700 (PDT) Date: Mon, 29 Jun 2020 22:26:12 +0000 From: Wei Liu To: Haiyang Zhang Cc: Andres Beltran , KY Srinivasan , Stephen Hemminger , "wei.liu@kernel.org" , "linux-hyperv@vger.kernel.org" , "linux-kernel@vger.kernel.org" , Michael Kelley , "parri.andrea@gmail.com" , "David S . Miller" , Jakub Kicinski , "netdev@vger.kernel.org" Subject: Re: [PATCH v2 3/3] hv_netvsc: Use vmbus_requestor to generate transaction IDs for VMBus hardening Message-ID: <20200629222612.pxbuuifod6tyudfu@liuwe-devbox-debian-v2> References: <20200629200227.1518784-1-lkmlabelt@gmail.com> <20200629200227.1518784-4-lkmlabelt@gmail.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: User-Agent: NeoMutt/20180716 Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Mon, Jun 29, 2020 at 09:33:15PM +0000, Haiyang Zhang wrote: > > > > -----Original Message----- > > From: Andres Beltran > > Sent: Monday, June 29, 2020 4:02 PM > > To: KY Srinivasan ; Haiyang Zhang > > ; Stephen Hemminger ; > > wei.liu@kernel.org > > Cc: linux-hyperv@vger.kernel.org; linux-kernel@vger.kernel.org; Michael > > Kelley ; parri.andrea@gmail.com; Andres Beltran > > ; David S . Miller ; Jakub > > Kicinski ; netdev@vger.kernel.org > > Subject: [PATCH v2 3/3] hv_netvsc: Use vmbus_requestor to generate > > transaction IDs for VMBus hardening > > > > Currently, pointers to guest memory are passed to Hyper-V as > > transaction IDs in netvsc. In the face of errors or malicious > > behavior in Hyper-V, netvsc should not expose or trust the transaction > > IDs returned by Hyper-V to be valid guest memory addresses. Instead, > > use small integers generated by vmbus_requestor as requests > > (transaction) IDs. > > > > Cc: David S. Miller > > Cc: Jakub Kicinski > > Cc: netdev@vger.kernel.org > > Signed-off-by: Andres Beltran > > Reviewed-by: Haiyang Zhang > > Thanks Haiyang for reviewing. David and Jakub: This patch depends on the first patch. I intend to pick up this patch via hyperv.git. This makes life easier for all of us. Let me know if you disagree. Wei.