Received: by 2002:a05:6a10:f347:0:0:0:0 with SMTP id d7csp2651954pxu; Mon, 14 Dec 2020 07:45:31 -0800 (PST) X-Google-Smtp-Source: ABdhPJwcmvSUN0h/zb85hIZGQVZOoGr5+9hYQ6gZvxE9VshoCCsA8zuFQRLFtkTCtBsbrPATMcfT X-Received: by 2002:a05:6402:318f:: with SMTP id di15mr25395055edb.237.1607960731149; Mon, 14 Dec 2020 07:45:31 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1607960731; cv=none; d=google.com; s=arc-20160816; b=QykmwP8UOWIptWjcJRycGnvRmAje4YYACYF7cq2eTx1sRYV6+HSQrHG0VRV/tM/sTH APFtxmZe7eCuJXjbPKJx82gVnBk5TBZjPkNt5+EfYGRlzHrLXxbRpgPmw5HoPFGp8Y58 RPpMfKoA72R/6I5LJF3zQ3UzMF2JqOh8Ny/UWteQb3IhdTnb8zSPKXeEPf+uy630hJaF rPW7mkrfRu7DrRiKtBXWfqGARYc3d65ZS6H3y9V3ADu/mKlnZ9nWx4EXSAb6qrTLWqFW TgvhgJfYoXPktCcVg0PPKc/KoUyqifhMnbxU4wzBmR94StaU7uw0Xf3eMawj/HCIQnDZ J1Bw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:content-language :in-reply-to:mime-version:user-agent:date:message-id:from:references :cc:to:subject:dkim-signature; bh=5MqMQKzQOSdZrk041m8eNtC5s8c67cMYU3gn9o6WzOQ=; b=OXlAqsJzd7ncPW1W6lozTcVu1ROS54D6ZonuuGmaV2XKg4Zpz0LYdORP4HaRvztwWX hghxc6XulYxmbxjlKDAvROGX1Oiyk3RQiYrjXDyFv3R/d3heRztdeJpzVcA3rNMSl2lD kHtWTRuq7zh6BOAuYKvBDh3cVqh34jSTTXsGuO2hG80WYR9Mzuul22c5w+M89paSHTDn hboq/uEcDER0pz1IcA6KCS+cU2UiHmTh9Wtl5JFegIlQz9ilJ5n/7KARAAFDCNusRrZn U91z9hQ87rJWwAcpGiqJk1nRJcVP1os7vcTWktRPmj5DM5EfgpSsY+4KSV0NKN54Hfyw YOOQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@redhat.com header.s=mimecast20190719 header.b=dYKm10ZG; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=redhat.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id x9si11998109eje.109.2020.12.14.07.45.06; Mon, 14 Dec 2020 07:45:31 -0800 (PST) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@redhat.com header.s=mimecast20190719 header.b=dYKm10ZG; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=redhat.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1732513AbgLNPnb (ORCPT + 99 others); Mon, 14 Dec 2020 10:43:31 -0500 Received: from us-smtp-delivery-124.mimecast.com ([216.205.24.124]:34236 "EHLO us-smtp-delivery-124.mimecast.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1728558AbgLNPnb (ORCPT ); Mon, 14 Dec 2020 10:43:31 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhat.com; s=mimecast20190719; t=1607960525; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=5MqMQKzQOSdZrk041m8eNtC5s8c67cMYU3gn9o6WzOQ=; b=dYKm10ZGzsZaRh42IPxmTJljk6I+e/VyxZSuSQeQD/kDP/wd2+hXiCEvqcZ9ddUpNeyLaG /Ra+SkC6J+QofUMq9uceghRgVUzm90Kl6hB/ox9CpYx69+nYeWFw9z3f08eXuhirxGi5A3 z1MIq9H8VjXGg8QKV9mU9sf2nXiMzbw= Received: from mail-wr1-f71.google.com (mail-wr1-f71.google.com [209.85.221.71]) (Using TLS) by relay.mimecast.com with ESMTP id us-mta-499-z3nZGyemNKGNr4TD8rkcBg-1; Mon, 14 Dec 2020 10:42:02 -0500 X-MC-Unique: z3nZGyemNKGNr4TD8rkcBg-1 Received: by mail-wr1-f71.google.com with SMTP id b8so6769800wrv.14 for ; Mon, 14 Dec 2020 07:42:02 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:cc:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=5MqMQKzQOSdZrk041m8eNtC5s8c67cMYU3gn9o6WzOQ=; b=W/n7DzGwVAADl9qap6V0Y3S2ub8hvbAPjRpNdcHAb3bhVeV8sVNiulJFY6RGjAR7fY G3nTlk6D0oIbdLRQmIQAQQU48BviohRIemu+YPBE7g24SkkFYkdyqXdhPb85LpPjsLMW nda5VjhRZgWt0mEPdeLk0a/zAHh0Kf3mMzm0j4CDVCdPNlBFuX8A20jBRvQ/5MmNdRYx +F3PHlejDejW2C5v+VE49G5CRh8c9C94x+jkPP5V0LxkgFATdYIsZidjEsKyh4DBZeuf Daa6g08Mm9jZI5AmHMci909Z85QgvBYNjYfnsg7c9hqX4BkdCGwntuwYJ1BIUs29sZ+t zDZA== X-Gm-Message-State: AOAM533Yba8TsvFG32tyhVRxgz/5qxoBhKCtOVQPx+SBM60eegv4DZca rh3PEE92VOlo7TZrmhujrM9WAwmaAqRPgcygLHgFc8H13OD8nEDBFs0DBgxxtr2Vux72gFuP+fR u+7Wc/5ZmgNbEvWmfuBdrCvgW X-Received: by 2002:a5d:504b:: with SMTP id h11mr29476552wrt.337.1607960521216; Mon, 14 Dec 2020 07:42:01 -0800 (PST) X-Received: by 2002:a5d:504b:: with SMTP id h11mr29476538wrt.337.1607960521046; Mon, 14 Dec 2020 07:42:01 -0800 (PST) Received: from ?IPv6:2001:b07:6468:f312:c8dd:75d4:99ab:290a? ([2001:b07:6468:f312:c8dd:75d4:99ab:290a]) by smtp.gmail.com with ESMTPSA id c4sm34435771wrw.72.2020.12.14.07.41.58 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Mon, 14 Dec 2020 07:41:59 -0800 (PST) Subject: Re: [PATCH v5 08/34] KVM: SVM: Prevent debugging under SEV-ES To: Tom Lendacky , kvm@vger.kernel.org, linux-kernel@vger.kernel.org, x86@kernel.org Cc: Jim Mattson , Joerg Roedel , Sean Christopherson , Vitaly Kuznetsov , Wanpeng Li , Borislav Petkov , Ingo Molnar , Thomas Gleixner , Brijesh Singh References: <8db966fa2f9803d6454ce773863025d0e2e7f3cc.1607620209.git.thomas.lendacky@amd.com> From: Paolo Bonzini Message-ID: Date: Mon, 14 Dec 2020 16:41:58 +0100 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Thunderbird/78.4.0 MIME-Version: 1.0 In-Reply-To: <8db966fa2f9803d6454ce773863025d0e2e7f3cc.1607620209.git.thomas.lendacky@amd.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Language: en-US Content-Transfer-Encoding: 7bit Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On 10/12/20 18:09, Tom Lendacky wrote: > Additionally, an SEV-ES guest must only and always intercept DR7 reads and > writes. Update set_dr_intercepts() and clr_dr_intercepts() to account for > this. I cannot see it, where is this documented? Paolo