Received: by 2002:a05:6a10:206:0:0:0:0 with SMTP id 6csp4970900pxj; Wed, 12 May 2021 18:08:13 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwY4F9Xw0VJBAqsBXBHD9KAgSX863A66fasfNlW1uIXhWqDlgXSXTTMyENNpIItPCwzOBvz X-Received: by 2002:aa7:c1d6:: with SMTP id d22mr46057476edp.180.1620868093035; Wed, 12 May 2021 18:08:13 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1620868093; cv=none; d=google.com; s=arc-20160816; b=rrWb3815AUqpXIFz4a3ff/o1QgEuy4fFTpUEmjFOXz/vFe0ypxjDD7tWtwMYdYEv8h TOlJBfXn0TZHP0Ky5Wg92KVkqJKTd6GetNh7hHwr3xtiJQlCjmuicOTplhErN+yWHmWD xQv1efZroP2eThwoOzG7AO5HZr6Ewzl1GrAdd+oeoRnAcSk8KcHe8AG2ni1ebL3WPj4Q reuZLwwxcs8phsDvjkaO/X0jCjFeFoG8l2tYXzGMQpzqUreO2dixLK3qfwrpqLr49Ar/ /Q6xUNrgXDczWUayJMswbuPZD4PtLIdfYwiXCwJ/XfztqiqYZEGbeEg6dm24nP5H1f1F p4AA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:date:dkim-signature; bh=JdjLenGm8qjHYQsyQoKVaW3PTpEveC22o5czLzfvk6Y=; b=WsSTVz16FzBG4OlIJz2FR9R/7BcKCN5OVe5pJbCH2A/14x5buzUMikxT4ZC6dGGa+L BvpaRJJG+W79JYUpFOk3NjoRHQ7e/TT2nOcZopYd0/ygVBFmSd4BsVrKLuh0ENNvxGMw 2Hcm4Ydm9kArz5pOlHBCOv27Mfax2mT4unWvsrbSyIKjAZ8X/YRsQ+yzLwf2ruyzkcDL Yi4PtR+X9HXzWuXFjysqYmP83FgEiR5kBPdVhqk5q9a7h0NwNPkc8grjidugyDpZ0GJo nxzZHba1j52rE3brr8+X27OfKPoWWlcpwRmZOBj2TinJ/Lhzlafs1Z0zWlygfzIylkxN vddw== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@gmail.com header.s=20161025 header.b=loq1VJUy; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id v20si1367160edc.437.2021.05.12.18.07.47; Wed, 12 May 2021 18:08:13 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; dkim=pass header.i=@gmail.com header.s=20161025 header.b=loq1VJUy; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=QUARANTINE dis=NONE) header.from=gmail.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S235015AbhEMBH3 (ORCPT + 99 others); Wed, 12 May 2021 21:07:29 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:35190 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S234765AbhEMBH2 (ORCPT ); Wed, 12 May 2021 21:07:28 -0400 Received: from mail-pl1-x632.google.com (mail-pl1-x632.google.com [IPv6:2607:f8b0:4864:20::632]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 3D9EBC061574; Wed, 12 May 2021 18:06:19 -0700 (PDT) Received: by mail-pl1-x632.google.com with SMTP id n3so1352646plf.7; Wed, 12 May 2021 18:06:19 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=date:from:to:cc:subject:message-id:references:mime-version :content-disposition:in-reply-to; bh=JdjLenGm8qjHYQsyQoKVaW3PTpEveC22o5czLzfvk6Y=; b=loq1VJUyP3/kDLOrzwSNufspWWWMh0fp2SKxkcsSBhXkowmGIIe77TWUY9162Gw0PX ORNhAADve2zXOpzqO3CA8NZHZdYMxO/gGRNmz01q2c6tWBEB/KZiJe+c31focjlL0Jst 9CHZOLVuvsuevl8pZ4MJT8/DrxVugQ1lNDdulks8XQU5cLN32VHNTWBJrtZoChrgGB1p 7kWPFmp/5oSbX5T3lm5SxBKfeFyewPToZuAeEgLznzYjMNyHkgxcLoRQ/nPV8P781Khz L9Z1xrEngA4cQcMcGeZF+Qvy1UvyT5l1ghSN237qfLb+BpT+DNkWy3L3z1sT6LYJ/EIG Tmhw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:subject:message-id:references :mime-version:content-disposition:in-reply-to; bh=JdjLenGm8qjHYQsyQoKVaW3PTpEveC22o5czLzfvk6Y=; b=Lo6+0kCBAEkx5qnRIvJdr8aaWxEirlVQT6DG9xCUOdD55j9PDtUqiskzfCL/XebC8T Qh4Th3GuK1TPbxxEgPal2EH1Y569kccK1RKaY/m6S5p/zQudNPfiKKgHSOvmYusF7I5g XMxe6ClEO9IVAsSepTKu13shcXQLOpANs0v7o5dYgGfrJMsQqEaVUX30V9W2BLhzxFVj JUHkVWk6b85dPfoh62Z5Ot7uOK2BGIu2JmK5n/RKA5Hu64VtWOYm/1/oAHAW9LqKyQLf R5CMxIlJLlV1Ml5yHZpuIYRazObKdAgLW4jmWBH4mAyH1z+YRjS7Ht0pC1k/jYoLztAz imlA== X-Gm-Message-State: AOAM533T6O6iQ7r0nbOmpQ2g8OiR8oZStEf7kVBtVLwJJ7Rxp8GP0TUl z7v84c7n99mMA3roR6+MKXs= X-Received: by 2002:a17:902:7c91:b029:ed:5748:901e with SMTP id y17-20020a1709027c91b02900ed5748901emr37788961pll.27.1620867978613; Wed, 12 May 2021 18:06:18 -0700 (PDT) Received: from localhost ([203.87.99.126]) by smtp.gmail.com with ESMTPSA id d3sm792225pfn.141.2021.05.12.18.06.16 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Wed, 12 May 2021 18:06:17 -0700 (PDT) Date: Thu, 13 May 2021 11:06:14 +1000 From: Balbir Singh To: Thomas Gleixner Cc: Kees Cook , "mingo@redhat.com" , "linux-kernel@vger.kernel.org" , "peterz@infradead.org" , "torvalds@linux-foundation.org" , "jpoimboe@redhat.com" , "x86@kernel.org" , "tony.luck@intel.com" , "dave.hansen@intel.com" , "thomas.lendacky@amd.com" , "benh@kernel.crashing.org" , linux-hardening@vger.kernel.org Subject: Re: [PATCH v4 0/5] Next revision of the L1D flush patches Message-ID: <20210513010614.GH4236@balbir-desktop> References: <20210108121056.21940-1-sblbir@amazon.com> <202104081319.DAB1D817@keescook> <87y2d5tpjh.ffs@nanos.tec.linutronix.de> <87tunsofan.ffs@nanos.tec.linutronix.de> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <87tunsofan.ffs@nanos.tec.linutronix.de> Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Tue, Apr 27, 2021 at 12:24:16AM +0200, Thomas Gleixner wrote: > On Mon, Apr 26 2021 at 10:31, Thomas Gleixner wrote: > > On Thu, Apr 08 2021 at 13:23, Kees Cook wrote: > >> > >> I'd still really like to see this -- it's a big hammer, but that's the > >> point for cases where some new flaw appears and we can point to the > >> toolbox and say "you can mitigate it with this while you wait for new > >> kernel/CPU." > >> > >> Any further thoughts from x86 maintainers? This seems like it addressed > >> all of tglx's review comments. > > > > Sorry for dropping the ball on this. It's in my list of things to deal > > with. Starting to look at it now. > > So I went through the pile and for remorse I sat down and made the > tweaks I think are necessary myself. > > I've pushed out the result to > > git://git.kernel.org/pub/scm/linux/kernel/git/tglx/devel.git x86/l1dflush > Thank you I'll take a look and test it. > The only thing I did not address yet is that the documentation lacks any > mentioning of the SIGBUS mechanism which is invoked when a task which > asked for L1D flush protection ends up on a SMT sibling for whatever > reason. That's essential to have because it's part of the contract of > that prctl. IIRC I documented it, I'll double check. > > Balbir, can you please double check the result and prepare an updated > version from there? > > If you don't have cycles, please let me know. > I might have some cycles for testing and re-review. Thanks for all the hard work on this Balbir Singh.