Received: by 2002:a05:6a10:17d3:0:0:0:0 with SMTP id hz19csp129784pxb; Wed, 14 Apr 2021 11:04:00 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwUwwTNmM1XfZpwSt/X9eb7Tm+81q958VJeE1cgR7JwLqDB73fHhJtKbkJiaRsGbzCH9i8k X-Received: by 2002:a63:f303:: with SMTP id l3mr39429044pgh.263.1618423440217; Wed, 14 Apr 2021 11:04:00 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1618423440; cv=none; d=google.com; s=arc-20160816; b=YhSsHjdwnb3OJNs5T2kKLccRieKzAcnEbcIYofOmaW/mJmZ+/haPpKCa9uufMpMM3S q1qtWWUX0cLSQF6jHewAVZj3qLGkOQrXVBy8rpNU4jiY50/2bDt5Bk1Dj8nEAn7mgjKd c9J6JU9Kl+r/ADOOB4SK6Utnqd4t2dBxwS0R5fk8G/SFtPP6nGi6IaiRLfijNtT6LBHU HHDxlVN9MUKfOUWptQ203KYIJGskp3+Ix8d0KxWSa6yA5FfKsTbxAJ/ujEEB4yrQaWTD MEb8YE4g247ZlvgiJdG1KowAgC9Q6uFtzwhPrVr8Ln4BTX1m3seag0eNiLwb0KibKwhu EvdA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-transfer-encoding:mime-version :references:in-reply-to:message-id:subject:cc:to:from:date :dkim-signature; bh=0eL/B6Xsq6Q/24IYguuLfwVoh9qvE+Qw7MZOf5nGHyg=; b=KP2y2FNZIPCEdOieoSlfYBugcOlUXUIcg/sSA8chh4o0AXDX3O8PQ9HvMZzbqLzEC9 A6157E1DUqeyP/51+OrWuRqwrlneStBdlaw24uQuz/EaKUO2/dHIgcfww4YSvOY3ghRp JHpdnp068gwe+bvHSVCMH6b9Lil5bmijFhHuVKam2uY4vAn86RFB7EDfw83cgh8kQlCb wS6RJeJZZYLnOGJVwGWK/JihQlhw9r2ClXjWNHMAwEpgKXGAVg1u3GT8J9tQmFzCJ6G5 RqXdzbAjCQbY7L7y/UoAmrMbFt7z7VEKq0ejCpN2pJgdq7ZwY9VPaxHbeflfmAaI2c5a 3FRg== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@networkplumber-org.20150623.gappssmtp.com header.s=20150623 header.b=DWKLnEjI; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id l5si211202pgn.335.2021.04.14.11.03.36; Wed, 14 Apr 2021 11:04:00 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@networkplumber-org.20150623.gappssmtp.com header.s=20150623 header.b=DWKLnEjI; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1352663AbhDNQSO (ORCPT + 99 others); Wed, 14 Apr 2021 12:18:14 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:58260 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1352655AbhDNQSK (ORCPT ); Wed, 14 Apr 2021 12:18:10 -0400 Received: from mail-pj1-x1035.google.com (mail-pj1-x1035.google.com [IPv6:2607:f8b0:4864:20::1035]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 06467C06138D for ; Wed, 14 Apr 2021 09:17:48 -0700 (PDT) Received: by mail-pj1-x1035.google.com with SMTP id u14-20020a17090a1f0eb029014e38011b09so6263176pja.5 for ; Wed, 14 Apr 2021 09:17:48 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=networkplumber-org.20150623.gappssmtp.com; s=20150623; h=date:from:to:cc:subject:message-id:in-reply-to:references :mime-version:content-transfer-encoding; bh=0eL/B6Xsq6Q/24IYguuLfwVoh9qvE+Qw7MZOf5nGHyg=; b=DWKLnEjIRc6nqOLRuoo9K6bOLQMW5c1mqbVDL7yGhVs88fhUl8h/izys8YK3f/gwVM PcQzKMKIFq9o0hwsUhKISfLDewBl34wWHl1mNxtvbMhH9ULpfprQDggqRkhav/DB3fq5 Lt6TuRqVyREjop1FfnrZ4OwusSTzbuxed+y0o4pqUcZLeuQPE7o9Q0ERP1T2859SlHBK swDXpNsO2sseabX97kJN/6O4FliaKLmz/0n5+zOfFOhIc71jVo20vJcnie48mgAzBh32 YSPSVWZiitdeHf/qr6sagNpJv+45RDkOHNv90Ca9f1wMkoDLDoLK0Hka9u0ctg+akLmV r8Lw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:subject:message-id:in-reply-to :references:mime-version:content-transfer-encoding; bh=0eL/B6Xsq6Q/24IYguuLfwVoh9qvE+Qw7MZOf5nGHyg=; b=iE5XcufVllFLuaxGeN+7b2jDxGCh/e1UebN2PORSC5kInTPX+71bbwI8rAPOJgwsR+ AIhFION3tn7Pu+NwKm9Dd73cqptUBK90WA8qulyYxzLMqzqD7pIa+rS9NI2swA18PxwV NXbGwU04t08uRQypPOXOJNAkWY8FeWDWjfs+oMcfmQuIvRN9yOrhBu1samcBqS7Vfkd8 iLUMkWcH/KNLQWr/mw7xyEvThVri+DC/vOXLu4yzC/dzqH9Lzm7FWokNExVo9Pio1S+6 eRMMW3jiNtAoaNLSGEuSZOQR3eE0zVEsW38nZwh0C9xaQbSQCmpDPWNiw+xSDGXRwnhJ cABQ== X-Gm-Message-State: AOAM533nIWbxFd9stD9IoAczSDBLMGpB63USt0NxddzVPSQu915uV76t vhIEyAttre6wu3O2KjLapln1ow== X-Received: by 2002:a17:902:cec1:b029:eb:66ee:6da0 with SMTP id d1-20020a170902cec1b02900eb66ee6da0mr1001099plg.84.1618417068337; Wed, 14 Apr 2021 09:17:48 -0700 (PDT) Received: from hermes.local (76-14-218-44.or.wavecable.com. [76.14.218.44]) by smtp.gmail.com with ESMTPSA id r5sm5092591pjd.38.2021.04.14.09.17.46 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Wed, 14 Apr 2021 09:17:48 -0700 (PDT) Date: Wed, 14 Apr 2021 09:17:38 -0700 From: Stephen Hemminger To: Greg KH Cc: Tianyu Lan , kys@microsoft.com, haiyangz@microsoft.com, sthemmin@microsoft.com, wei.liu@kernel.org, tglx@linutronix.de, mingo@redhat.com, bp@alien8.de, x86@kernel.org, hpa@zytor.com, arnd@arndb.de, akpm@linux-foundation.org, konrad.wilk@oracle.com, hch@lst.de, m.szyprowski@samsung.com, robin.murphy@arm.com, joro@8bytes.org, will@kernel.org, davem@davemloft.net, kuba@kernel.org, jejb@linux.ibm.com, martin.petersen@oracle.com, Tianyu Lan , iommu@lists.linux-foundation.org, linux-arch@vger.kernel.org, linux-hyperv@vger.kernel.org, linux-kernel@vger.kernel.org, linux-mm@kvack.org, linux-scsi@vger.kernel.org, netdev@vger.kernel.org, vkuznets@redhat.com, thomas.lendacky@amd.com, brijesh.singh@amd.com, sunilmut@microsoft.com Subject: Re: [Resend RFC PATCH V2 08/12] UIO/Hyper-V: Not load UIO HV driver in the isolation VM. Message-ID: <20210414091738.3df4bed5@hermes.local> In-Reply-To: References: <20210414144945.3460554-1-ltykernel@gmail.com> <20210414144945.3460554-9-ltykernel@gmail.com> MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Wed, 14 Apr 2021 17:45:51 +0200 Greg KH wrote: > On Wed, Apr 14, 2021 at 10:49:41AM -0400, Tianyu Lan wrote: > > From: Tianyu Lan > > > > UIO HV driver should not load in the isolation VM for security reason. > > Return ENOTSUPP in the hv_uio_probe() in the isolation VM. > > > > Signed-off-by: Tianyu Lan This is debatable, in isolation VM's shouldn't userspace take responsibility to validate host communication. If that is an issue please participate with the DPDK community (main user of this) to make sure netvsc userspace driver has the required checks.