Re: Using Restricted DMA for virtio-pci

2025-04-05 Thread David Woodhouse
On Sun, 2025-03-30 at 09:42 -0400, Michael S. Tsirkin wrote: > On Fri, Mar 28, 2025 at 05:40:41PM +, David Woodhouse wrote: > > On Fri, 2025-03-21 at 18:42 +, David Woodhouse wrote: > > > > > > > > I don't mind as such (though I don't understand completely), but since > > > > this is chang

Re: Using Restricted DMA for virtio-pci

2025-04-05 Thread Michael S. Tsirkin
On Fri, Mar 21, 2025 at 06:42:20PM +, David Woodhouse wrote: > On Fri, 2025-03-21 at 14:32 -0400, Michael S. Tsirkin wrote: > > On Fri, Mar 21, 2025 at 03:38:10PM +, David Woodhouse wrote: > > > On Tue, 2021-02-09 at 14:21 +0800, Claire Chang wrote: > > > > This series implements mitigation

Re: Using Restricted DMA for virtio-pci

2025-04-04 Thread Michael S. Tsirkin
On Sun, Mar 30, 2025 at 04:07:56PM +0100, David Woodhouse wrote: > On Sun, 2025-03-30 at 09:42 -0400, Michael S. Tsirkin wrote: > > On Fri, Mar 28, 2025 at 05:40:41PM +, David Woodhouse wrote: > > > On Fri, 2025-03-21 at 18:42 +, David Woodhouse wrote: > > > > > > > > > > I don't mind as s

Re: Using Restricted DMA for virtio-pci

2025-03-31 Thread David Woodhouse
On Sun, 2025-03-30 at 17:48 -0400, Michael S. Tsirkin wrote: > On Sun, Mar 30, 2025 at 10:27:58PM +0100, David Woodhouse wrote: > > On 30 March 2025 18:06:47 BST, "Michael S. Tsirkin" wrote: > > > > It's basically just allowing us to expose through PCI, what I believe > > > > we can already do for

Re: Using Restricted DMA for virtio-pci

2025-03-30 Thread Michael S. Tsirkin
On Sun, Mar 30, 2025 at 10:27:58PM +0100, David Woodhouse wrote: > On 30 March 2025 18:06:47 BST, "Michael S. Tsirkin" wrote: > >> It's basically just allowing us to expose through PCI, what I believe > >> we can already do for virtio in DT. > > > >I am not saying I am against this extension. > >T

Re: Using Restricted DMA for virtio-pci

2025-03-30 Thread David Woodhouse
On 30 March 2025 18:06:47 BST, "Michael S. Tsirkin" wrote: >> It's basically just allowing us to expose through PCI, what I believe >> we can already do for virtio in DT. > >I am not saying I am against this extension. >The idea to restrict DMA has a lot of merit outside pkvm. >For example, with a

Re: Using Restricted DMA for virtio-pci

2025-03-30 Thread David Woodhouse
On 30 March 2025 17:59:13 BST, "Michael S. Tsirkin" wrote: >On Sun, Mar 30, 2025 at 04:07:56PM +0100, David Woodhouse wrote: >> On Sun, 2025-03-30 at 09:42 -0400, Michael S. Tsirkin wrote: >> > On Fri, Mar 28, 2025 at 05:40:41PM +, David Woodhouse wrote: >> > > On Fri, 2025-03-21 at 18:42 +000

Re: Using Restricted DMA for virtio-pci

2025-03-30 Thread Michael S. Tsirkin
On Fri, Mar 28, 2025 at 05:40:41PM +, David Woodhouse wrote: > On Fri, 2025-03-21 at 18:42 +, David Woodhouse wrote: > > On Fri, 2025-03-21 at 14:32 -0400, Michael S. Tsirkin wrote: > > > On Fri, Mar 21, 2025 at 03:38:10PM +, David Woodhouse wrote: > > > > On Tue, 2021-02-09 at 14:21 +0

Re: Using Restricted DMA for virtio-pci

2025-03-28 Thread David Woodhouse
On Fri, 2025-03-21 at 18:42 +, David Woodhouse wrote: > On Fri, 2025-03-21 at 14:32 -0400, Michael S. Tsirkin wrote: > > On Fri, Mar 21, 2025 at 03:38:10PM +, David Woodhouse wrote: > > > On Tue, 2021-02-09 at 14:21 +0800, Claire Chang wrote: > > > > This series implements mitigations for l

Re: Using Restricted DMA for virtio-pci

2025-03-21 Thread David Woodhouse
On Fri, 2025-03-21 at 14:32 -0400, Michael S. Tsirkin wrote: > On Fri, Mar 21, 2025 at 03:38:10PM +, David Woodhouse wrote: > > On Tue, 2021-02-09 at 14:21 +0800, Claire Chang wrote: > > > This series implements mitigations for lack of DMA access control on > > > systems without an IOMMU, which

Re: Using Restricted DMA for virtio-pci

2025-03-21 Thread Michael S. Tsirkin
On Fri, Mar 21, 2025 at 03:38:10PM +, David Woodhouse wrote: > On Tue, 2021-02-09 at 14:21 +0800, Claire Chang wrote: > > This series implements mitigations for lack of DMA access control on > > systems without an IOMMU, which could result in the DMA accessing the > > system memory at unexpecte