| From: |
| Kuppuswamy Sathyanarayanan <sathyanarayanan.kuppuswamy-AT-linux.intel.com> |
| To: |
| Thomas Gleixner <tglx-AT-linutronix.de>, Ingo Molnar <mingo-AT-redhat.com>, Borislav Petkov <bp-AT-alien8.de>, Peter Zijlstra <peterz-AT-infradead.org>, Andy Lutomirski <luto-AT-kernel.org> |
| Subject: |
| [PATCH v2 0/5] Add TDX Guest Support (boot fixes) |
| Date: |
| Sat, 26 Jun 2021 07:22:08 -0700 |
| Message-ID: |
| <cover.1624666915.git.sathyanarayanan.kuppuswamy@linux.intel.com> |
| Cc: |
| Peter H Anvin <hpa-AT-zytor.com>, Dave Hansen <dave.hansen-AT-intel.com>, Tony Luck <tony.luck-AT-intel.com>, Dan Williams <dan.j.williams-AT-intel.com>, Andi Kleen <ak-AT-linux.intel.com>, Kirill Shutemov <kirill.shutemov-AT-linux.intel.com>, Sean Christopherson <seanjc-AT-google.com>, Kuppuswamy Sathyanarayanan <knsathya-AT-kernel.org>, x86-AT-kernel.org, linux-kernel-AT-vger.kernel.org |
| Archive-link: |
| Article |
Hi All,
Intel's Trust Domain Extensions (TDX) protect guest VMs from malicious
hosts and some physical attacks. This series adds boot code support
and some additional fixes required for successful boot of TDX guest.
This series is the continuation of the patch series titled "Add TDX Guest
Support (Initial support)" and "Add TDX Guest Support (#VE handler support
)", which added initial support and #VE handler support for TDX guests. You
can find the related patchsets in the following links.
[set 1] - https://lore.kernel.org/patchwork/project/lkml/list/?seri...
[set 2] - https://lore.kernel.org/patchwork/project/lkml/list/?seri...
Also please note that this series alone is not necessarily fully
functional.
You can find TDX related documents in the following link.
https://software.intel.com/content/www/br/pt/develop/arti...
Changes since v1:
* Rebased on top of v3 version of "Add TDX Guest Support (Initial support)"
patchset. Since it had some changes at the TDCALL implementation level, we
have to rebase other dependent patches.
Kuppuswamy Sathyanarayanan (2):
x86/topology: Disable CPU online/offline control for TDX guest
x86: Skip WBINVD instruction for VM guest
Sean Christopherson (3):
x86/boot: Add a trampoline for APs booting in 64-bit mode
x86/boot: Avoid #VE during boot for TDX platforms
x86/tdx: Forcefully disable legacy PIC for TDX guests
arch/x86/boot/compressed/head_64.S | 16 +++++--
arch/x86/boot/compressed/pgtable.h | 2 +-
arch/x86/include/asm/acenv.h | 7 ++-
arch/x86/include/asm/realmode.h | 12 +++++
arch/x86/kernel/head_64.S | 20 +++++++-
arch/x86/kernel/smpboot.c | 2 +-
arch/x86/kernel/tdx.c | 18 ++++++++
arch/x86/kernel/topology.c | 3 +-
arch/x86/realmode/rm/header.S | 1 +
arch/x86/realmode/rm/trampoline_64.S | 59 ++++++++++++++++++++++--
arch/x86/realmode/rm/trampoline_common.S | 12 ++++-
11 files changed, 138 insertions(+), 14 deletions(-)
--
2.25.1