[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [PATCH 01/65] x86: Introduce support for CET-IBT


  • To: Andrew Cooper <andrew.cooper3@xxxxxxxxxx>
  • From: Jan Beulich <jbeulich@xxxxxxxx>
  • Date: Mon, 29 Nov 2021 10:27:29 +0100
  • Arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=suse.com; dmarc=pass action=none header.from=suse.com; dkim=pass header.d=suse.com; arc=none
  • Arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=LtLNOk294Uo74MVaSXdJsRjdvm/2GnkJvkOrt6Xmrf0=; b=YbrbUY2+mu+QZB32iXO7SpTwFiZGqlsyXXAktletYZ4AnKh+beE401HRx9ebEFFKyAnDY/keWQ5dNrmNSi6mlPjXibIVhS8QoXpIEdThuwtEXnkuYO1daVRIltHBTymDxOZqaOE7c7SFZbvNrYJxWH/FgIQ34DhdFEIpDM8EWQLd172O2cz70z+xaAwGo7jgy7bQsP+r12/7E5z3dG6a7QLTR+EecOmOfian+Fs7DqPj1eLwMPD1VIlWY+dxwkvUqANrhCylZyGm78846D3NwK0hVZ7mpNC9pusVj82LthMnkv9FM803xRTTLPKJFOnUsJLkHNKQetkN1CSgZ2WNtQ==
  • Arc-seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=eaLCBIbzKCebPnQpJe/+mI+qitbqWFMqsKBMp/VL5/FegHJcRNp8ImorrhnN7tZjgOwYIwZ1HR5pPL8TxpynbsXLoqROyCrOkqn+bmT3xd9xAU9LF/yNZlEHecy+4BwD5nfboSxA83PxbKjYa91ej4D+DedOiST9k3YtKCmU1eIjXGVklgd9twA37aqNS4Q2GA3BNKdJn7GMS2rdZwmBovAjn7R+A1H40p8v3/8bYex7oElWDiVXtg2ZPi1A3/ayD9yrCR0G2t4XPtr6yVEC5zBH0sl8+wAZfn0UEV2WTBD8FTrgC7cmC01CcN9PXr5uWS5D7xumS5fmM+IgsMbGDw==
  • Authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=suse.com;
  • Cc: Roger Pau Monné <roger.pau@xxxxxxxxxx>, Wei Liu <wl@xxxxxxx>, Xen-devel <xen-devel@xxxxxxxxxxxxxxxxxxxx>
  • Delivery-date: Mon, 29 Nov 2021 09:27:49 +0000
  • List-id: Xen developer discussion <xen-devel.lists.xenproject.org>

On 26.11.2021 13:33, Andrew Cooper wrote:
> --- a/xen/arch/x86/arch.mk
> +++ b/xen/arch/x86/arch.mk
> @@ -46,6 +46,12 @@ CFLAGS-$(CONFIG_INDIRECT_THUNK) += 
> -mindirect-branch=thunk-extern
>  CFLAGS-$(CONFIG_INDIRECT_THUNK) += -mindirect-branch-register
>  CFLAGS-$(CONFIG_INDIRECT_THUNK) += -fno-jump-tables
>  
> +ifdef CONFIG_HAS_CC_CET_IBT
> +CFLAGS += -fcf-protection=branch -mmanual-endbr

Don't you mean to check XEN_IBT here rather than the underlying
compiler capability?

Jan




 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.