On 27.02.2025 19:28, Jason Andryuk wrote: > On 2025-02-27 05:23, Roger Pau Monné wrote: >> On Wed, Feb 26, 2025 at 04:11:25PM -0500, Jason Andryuk wrote: >> All this work on AMD because when interrupt remapping is enabled all >> MSIs are handled by the remapping table, while on Intel there's still >> a bit in the MSI address field to signal whether the MSI is using a >> remapping entry, or is using the "compatibility" format (iow: no >> remapping). > > So, on Intel, if the guest hands the device the MSI address, it can > decided to bypass remapping?
While the answer is "yes" here, the result - aiui - would be an insecure configuration. So you can only do this for fully trusted domains. Jan