Received: by 2002:a05:6a10:1d13:0:0:0:0 with SMTP id pp19csp48048pxb; Tue, 31 Aug 2021 14:50:21 -0700 (PDT) X-Google-Smtp-Source: ABdhPJwwbC/61XMJX8HcNpQ37odhQC1fDT1Mt5GX2ohgRaK04EMwsy4KQx+7mGQXurzWa/CLk5ET X-Received: by 2002:a17:907:2083:: with SMTP id pv3mr32506558ejb.402.1630446620914; Tue, 31 Aug 2021 14:50:20 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1630446620; cv=none; d=google.com; s=arc-20160816; b=NtBZLq47XnPq3Ox6p3DF+SNoGA05QBabWAU4nujDKQHYOr8uuJOoVuRVSdWHH6z7PC wFu1ngR+iZD/ObRHvED1lIBsNdeSNRWxkai6gvC5ayLC1ImID1aO38PYmtFXlpOWTgZl SbccniQIsPlDB/rkv4Q5Lk/hdbkYDcuV/kqDFx3t5CBrOnjra+WwF5TL5RFEgh57/Wi+ NqTUyYC1eI3ebGkfZ11dkVdO+43ROboE+h3BrPJv3dKGd4IwO2oPEzohwfOnOanbPln2 dMK1fzRz/T2YCYTmiru50HZm0mciofHY2NNqgWnRA4WuOdfFBvhszkutM1+EJ4eoOC/l ryQw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:content-language:content-transfer-encoding :in-reply-to:mime-version:user-agent:date:message-id:from:references :cc:to:subject; bh=jDS5ck+R0jKt2zqOV0nmk9JllOEv/1Oe/8/lLqWUwbg=; b=eaGZV9El9aMGQst/bfqSRLNE2ERSdCHe1Pr0/+9/XdEUdhFRSTElN0jzasm02YEr/s 6I9XcO4rafcP78c78V2f1d8A3nE4RT1NfdLK5Alu3IWfrij9zcGQKaZP5NLvFpF88BkL zYZgSN0YCFpfCTn/wuTqgFgJMueEvYl2wj0yRjijDCkl9tjsOrJ7UnyUiOhD/pJg1Hh7 suDxCgynjWr20VTnRiF/J6pm+XHeXc5Un52+fdTv/nagRMB6zu4sLjdOGwKRZARpGQPQ cZqnzvUXMVpMBvxbNOAG4Yl5vbJ4L4cOzA9rxVEatyIEdhjVlG2nmy3fMFI/qk2Ofnq3 xa0g== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Return-Path: Received: from vger.kernel.org (vger.kernel.org. [23.128.96.18]) by mx.google.com with ESMTP id yd21si8397218ejb.720.2021.08.31.14.49.46; Tue, 31 Aug 2021 14:50:20 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) client-ip=23.128.96.18; Authentication-Results: mx.google.com; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 23.128.96.18 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=fail (p=NONE sp=NONE dis=NONE) header.from=intel.com Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S240844AbhHaUCj (ORCPT + 99 others); Tue, 31 Aug 2021 16:02:39 -0400 Received: from mga05.intel.com ([192.55.52.43]:27003 "EHLO mga05.intel.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S229946AbhHaUCi (ORCPT ); Tue, 31 Aug 2021 16:02:38 -0400 X-IronPort-AV: E=McAfee;i="6200,9189,10093"; a="304132812" X-IronPort-AV: E=Sophos;i="5.84,367,1620716400"; d="scan'208";a="304132812" Received: from fmsmga006.fm.intel.com ([10.253.24.20]) by fmsmga105.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 31 Aug 2021 13:01:42 -0700 X-IronPort-AV: E=Sophos;i="5.84,367,1620716400"; d="scan'208";a="687857794" Received: from akleen-mobl1.amr.corp.intel.com (HELO [10.209.121.250]) ([10.209.121.250]) by fmsmga006-auth.fm.intel.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 31 Aug 2021 13:01:39 -0700 Subject: Re: [RFC] KVM: mm: fd-based approach for supporting KVM guest private memory To: David Hildenbrand , Yu Zhang Cc: Sean Christopherson , Paolo Bonzini , Vitaly Kuznetsov , Wanpeng Li , Jim Mattson , Joerg Roedel , kvm@vger.kernel.org, linux-kernel@vger.kernel.org, Borislav Petkov , Andy Lutomirski , Andrew Morton , Joerg Roedel , David Rientjes , Vlastimil Babka , Tom Lendacky , Thomas Gleixner , Peter Zijlstra , Ingo Molnar , Varad Gautam , Dario Faggioli , x86@kernel.org, linux-mm@kvack.org, linux-coco@lists.linux.dev, "Kirill A . Shutemov" , "Kirill A . Shutemov" , Kuppuswamy Sathyanarayanan , Dave Hansen References: <20210824005248.200037-1-seanjc@google.com> <307d385a-a263-276f-28eb-4bc8dd287e32@redhat.com> <20210827023150.jotwvom7mlsawjh4@linux.intel.com> <243bc6a3-b43b-cd18-9cbb-1f42a5de802f@redhat.com> From: Andi Kleen Message-ID: <765e9bbe-2df5-3dcc-9329-347770dc091d@linux.intel.com> Date: Tue, 31 Aug 2021 13:01:37 -0700 User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Thunderbird/78.13.0 MIME-Version: 1.0 In-Reply-To: <243bc6a3-b43b-cd18-9cbb-1f42a5de802f@redhat.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit Content-Language: en-US Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org >> Thanks a lot for this summary. A question about the requirement: do >> we or >> do we not have plan to support assigned device to the protected VM? > > Good question, I assume that is stuff for the far far future. It is in principle possible with the current TDX, but not secure. But someone might decide to do it. So it would be good to have basic support at least. -Andi > >