[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [PATCH v3] docs: fusa: Add Assumption of Use (AoU)


  • To: Ayan Kumar Halder <ayan.kumar.halder@xxxxxxx>
  • From: Bertrand Marquis <Bertrand.Marquis@xxxxxxx>
  • Date: Thu, 19 Sep 2024 12:01:20 +0000
  • Accept-language: en-GB, en-US
  • Arc-authentication-results: i=2; mx.microsoft.com 1; spf=pass (sender ip is 63.35.35.123) smtp.rcpttodomain=lists.xenproject.org smtp.mailfrom=arm.com; dmarc=pass (p=none sp=none pct=100) action=none header.from=arm.com; dkim=pass (signature was verified) header.d=arm.com; arc=pass (0 oda=1 ltdi=1 spf=[1,1,smtp.mailfrom=arm.com] dkim=[1,1,header.d=arm.com] dmarc=[1,1,header.from=arm.com])
  • Arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
  • Arc-message-signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=nkfwx5WfqhM0LiT5sZj+LHXEF/oBdw2DmteDkv4ltWs=; b=lMs3in+SVBi0yBrhDTd3eKttNQCPUUqx1j7paHgK63f7bepa8mjUuA6lVTYfNeauyQTlssCIcmJl45XJqJOtS2tOM4pZyAvsfzsoyCm+OgkuQq16TwUu0l93ccRLvvoiP1Yz2S8XXQzkxJ15grw7RI4rc4mML6ZuYmFF0zQm4a6UzV8y3rFKlF0Z9FZedYe46f/6qOp0hOnvetPh/8lSU3BkAfX2lXmjln2lYOAR16TmOVu/1qrUcMrtX1QV3sTSkFNNAXV+2A6OSSUxhLB0TOIR7a5GcKq3ASrdFKH4ABnzrtE5GM/j4eWRvI3J3Qb3+GoIBt6U7ramEKtZdB3c7A==
  • Arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=nkfwx5WfqhM0LiT5sZj+LHXEF/oBdw2DmteDkv4ltWs=; b=SR82nLzMUen5JqjXFsXssZ3HGq1ghyUsyP/9CURjftyf5Zpe0aQB7bVv37iTNN/ax1CH/z9oXPoIdUBkYhF23ncln0qUiPWW0lU9eLL5wc//PVYHd4aWDoOxlta/2ddwZ3CXKIVJ7A11UHz9+/udhE99j1McuSf4BrtioIo3Li7jjVEjJQNm6IOQYg2Ay5K581xNqXBcCj8j+6lBkdVLXvX84l63ck0qlQhyz37+9Vat1GuO3tnU9zH3f/bwudBlHnzLke2wVZH5wIjbU5hItF7Yw7D2GJNGPKquU/ub0jLQBY9++5UdbFYZ47ctDnrh/oPwF+T+ItRLcaZages9vQ==
  • Arc-seal: i=2; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=pass; b=OzonhXmvf6d29LX1x1zjWWcu6i6+lHq8u6OW0ErU0Vh2yNzoW4R8XVadyJzHSdeAdY+sDNbpbFF2TQEBIfVH6LTrVBxs3uKjxPm/0onKq2ksvkQDR6+m+49J8RcYsuHnmX22P25tUknISgTt0Hs/M2P7SrPVxR8E2XPbFcfoNYjDfPnU0GxyfdWHrTYwhRIc+TYDQbln+Dbb00wguYE+BMzGSmWpdytmonzwogUGNyCWGaTtu6Q8ExIALDp8/17HZxFGdJXgTRtt3e4DZE4ggXUB75GCfsI5gMT66bXka/ZghgUQUKvDP2zyg/nFHKwg20vUa/CKoMxjLsIBLI/KLQ==
  • Arc-seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=IiJWnSe4cUGFXf5KjV7kFHqSQOcI9Lnuc0KoPlomumxIXm0zF2AdUL0QYQ0K3dmHEdRGbwme8Rf6QQPhfXlNsLBVtJ2+5+UgwWXZN+Z7HmycmEHwZT9kDlPnsPsaSRydmyMCfcZ1+5IjxKmGxbZKdnBHZPGM4dLCT3zW+nPaS+houhajvrqCOhbsTo/n2CbY+8FrgrDKLxAATMyHpj83uVhD2MeRPVJ6VlGEHXDZ011Y9T4KlKaFyGJUqkr+Yz6Q/gAalAyf2QuexAvBGfLe/14mVroJGqBJThMY7jmvSucjrah36N+U0zfwxoAc6oyH/RLWd8nlfX/lRAR0LpYeWg==
  • Authentication-results-original: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=arm.com;
  • Cc: Xen-devel <xen-devel@xxxxxxxxxxxxxxxxxxxx>, Michal Orzel <michal.orzel@xxxxxxx>, Stefano Stabellini <sstabellini@xxxxxxxxxx>, Artem Mygaiev <artem_mygaiev@xxxxxxxx>, Hisao Munakata <hisao.munakata.vt@xxxxxxxxxxx>, Julien Grall <julien@xxxxxxx>, Julien Grall <jgrall@xxxxxxxxxx>
  • Delivery-date: Thu, 19 Sep 2024 12:01:45 +0000
  • List-id: Xen developer discussion <xen-devel.lists.xenproject.org>
  • Nodisclaimer: true
  • Original-authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=arm.com;
  • Thread-index: AQHbCDKnNzyGC8DY7ki21+yQsaede7JfBtYA
  • Thread-topic: [PATCH v3] docs: fusa: Add Assumption of Use (AoU)

Hi Ayan,

> On 16 Sep 2024, at 14:18, Ayan Kumar Halder <ayan.kumar.halder@xxxxxxx> wrote:
> 
> From: Michal Orzel <michal.orzel@xxxxxxx>
> 
> AoU are the assumptions that Xen relies on other components (eg platform
> platform, domains)
> to fulfill its requirements. In our case, platform means a combination
> of hardware, firmware and bootloader.
> 
> We have defined AoU in the intro.rst and added AoU for the generic
> timer.
> 
> Also, fixed a requirement to denote that Xen shall **not** expose the
> system counter frequency via the "clock-frequency" device tree property.
> The reason being the device tree documentation strongly discourages the
> use of this peoperty. Further if the "clock-frequency" is exposed, then
> it overrides the value programmed in the CNTFRQ_EL0 register.
> 
> So, the frequency shall be exposed via the CNTFRQ_EL0 register only and
> consequently there is an assumption on the platform to program the
> register correctly.
> 
> Signed-off-by: Michal Orzel <michal.orzel@xxxxxxx>
> Signed-off-by: Ayan Kumar Halder <ayan.kumar.halder@xxxxxxx>
> Reviewed-by: Julien Grall <jgrall@xxxxxxxxxx>
> ---
> Changes from :-
> 
> v1 - 1. Removed the part of requirement which states that Xen exposes the
> frequency of the system timer by reading the "clock-frequency" property.
> 
> 2. Added a rationale for AoU.
> 
> 3. Reworded the AoU.
> 
> v2 - 1. Reworded the commit message. Added R-b.
> 
> .../reqs/design-reqs/arm64/generic-timer.rst  | 24 ++++++++++++++++++-
> docs/fusa/reqs/intro.rst                      | 10 ++++++++
> 2 files changed, 33 insertions(+), 1 deletion(-)
> 
> diff --git a/docs/fusa/reqs/design-reqs/arm64/generic-timer.rst 
> b/docs/fusa/reqs/design-reqs/arm64/generic-timer.rst
> index f2a0cd7fb8..86d84a3c40 100644
> --- a/docs/fusa/reqs/design-reqs/arm64/generic-timer.rst
> +++ b/docs/fusa/reqs/design-reqs/arm64/generic-timer.rst
> @@ -30,7 +30,7 @@ Read system counter frequency
> 
> Description:
> Xen shall expose the frequency of the system counter to the domains in
> -CNTFRQ_EL0 register and/or domain device tree's "clock-frequency" property.
> +CNTFRQ_EL0 register.
> 
> Rationale:
> 
> @@ -116,6 +116,28 @@ Rationale:
> 
> Comments:
> 
> +Covers:
> + - `XenProd~emulated_timer~1`
> +
> +Assumption of Use on the Platform
> +=================================
> +
> +Expose system timer frequency via register
> +------------------------------------------
> +
> +`XenSwdgn~arm64_generic_timer_pf_program_cntfrq_el0~1`
> +
> +Description:
> +Underlying platform shall program CNTFRQ_EL0 register with the value of 
> system
> +timer frequency.

How about: CNTFRQ_EL0 register shall be programmed with the value of the system 
timer frequency.

It prevent to use "platform" which is quite undefined here.

> +
> +Rationale:
> +Xen reads the CNTFRQ_EL0 register to get the value of system timer frequency.
> +While there is a provision to get this value by reading the "clock-frequency"
> +dt property [2], the use of this property is strongly discouraged.

I would put the second sentence as a comment as only the first one is the 
rationale explaining
why we need it to be correct.

> +
> +Comments:
> +
> Covers:
>  - `XenProd~emulated_timer~1`
> 
> diff --git a/docs/fusa/reqs/intro.rst b/docs/fusa/reqs/intro.rst
> index 245a219ff2..aa85ff821c 100644
> --- a/docs/fusa/reqs/intro.rst
> +++ b/docs/fusa/reqs/intro.rst
> @@ -38,6 +38,16 @@ The requirements are linked using OpenFastTrace
> OpenFastTrace parses through the requirements and generates a traceability
> report.
> 
> +Assumption of Use
> +=================
> +
> +To fulfill one or more design requirements, there may be underlying 
> assumptions
> +on one or more components that Xen interacts with directly or indirectly. For
> +eg, there may be assumptions on the underlying platform (hardware + firmware 
> +
> +bootloader) to set certain registers, etc. The important thing here is that
> +anyone who validates these requirements, need to consider the assumption on 
> the
> +other components.

I would simplify a bit:
Xen is making several assumptions on the status of the platform or on some
functions being present and functional. For example, Xen might assume that
some registers are set.
Anybody who wants to use Xen must validate that the platform it is used on
(meaning the hardware and any software running before Xen like the firmware)
fulfils all the AoU described by Xen.

What do you think ?

Cheers
Bertrand

> +
> The following is the skeleton for a requirement.
> 
> Title of the requirement
> -- 
> 2.25.1
> 




 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.