Thread (5 messages) flat view 5 messages, 2 authors, 2021-03-05

Re: [PATCH] powerpc/pseries: export LPAR security flavor in lparcfg

From: Michael Ellerman <mpe@ellerman.id.au>
Date: 2021-03-05 06:23:35
Also in: lkml

Laurent Dufour [off-list ref] writes:
This is helpful to read the security flavor from inside the LPAR.
We already have /sys/kernel/debug/powerpc/security_features.

Is that not sufficient?
Export it like this in /proc/powerpc/lparcfg:

$ grep security_flavor /proc/powerpc/lparcfg
security_flavor=1

Value means:
0 Speculative execution fully enabled
1 Speculative execution controls to mitigate user-to-kernel attacks
2 Speculative execution controls to mitigate user-to-kernel and
  user-to-user side-channel attacks
Those strings come from the FSP help, but we have no guarantee it won't
mean something different in future.

cheers
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help