Thread (6 messages) 6 messages, 2 authors, 2026-05-11

Re: [RFC v2] crypto/ccp: Introduce SNP_VERIFY_MITIGATION command

From: Tycho Andersen <tycho@kernel.org>
Date: 2026-05-11 16:52:51
Also in: lkml

On Mon, May 11, 2026 at 12:21:35PM -0400, Pratik R. Sampat wrote:
I am not keen on caching the result either though. For simplicity, we could just
drop the failed_status interface, log failure_status with pr_[err|warn](), and
return -EIO?
Yeah, that sounds reasonable to me.
quoted
The spec is a bit messy here, though. Table 131 mentions a
MIT_REQ_CHECK operation, which I assume should really be _STATUS. It
describes what the output VECTOR should be for VERIFY in table 131,
but not what it is for STATUS. Table 132 suggests the output VECTOR is
the list of supported mitigations, which matches what I was seeing
when I played with this.
That is a good catch! We should get that changed in spec.
Yep, I pinged our spec maintainer, hopefully it'll be resolved Real Soon.

Thanks,

Tycho
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help