|
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] Re: [Xen-devel] [PATCH v2] xsm: add device tree labeling support
On 03/13/2015 06:05 AM, Julien Grall wrote: Hi Jan, On 13/03/2015 09:23, Jan Beulich wrote:On 12.03.15 at 21:42, <dgdegra@xxxxxxxxxxxxx> wrote: Yes, the name was chosen to indicate the more significant of the two changes in policy version 30; the original (POLICYDB_VERSION_AARCH) was even more misleading although it did describe both changes. Although, I'm wondering if we should deny policy < 30 on newer Xen because a truncation on the MMIO pfns may occurs and give access to the wrong pfn. The policy build does trigger an error if a MFN larger than 32 bits is used in a static device policy statement, so this should already be covered. Denying policy lower than version 30 would break the XSM-enabled build on all distributions that do not include the newest checkpolicy binary, so I don't really want to do that without a good reason. -- Daniel De Graaf National Security Agency _______________________________________________ Xen-devel mailing list Xen-devel@xxxxxxxxxxxxx http://lists.xen.org/xen-devel
|
![]() |
Lists.xenproject.org is hosted with RackSpace, monitoring our |