From mboxrd@z Thu Jan 1 00:00:00 1970 From: Keir Fraser Subject: Re: pciback: question about the permissive flag Date: Wed, 7 Jul 2010 07:32:12 +0100 Message-ID: References: <4C33A217.3050006@invisiblethingslab.com> Mime-Version: 1.0 Content-Type: text/plain; charset="US-ASCII" Content-Transfer-Encoding: 7bit Return-path: In-Reply-To: <4C33A217.3050006@invisiblethingslab.com> List-Unsubscribe: , List-Post: List-Help: List-Subscribe: , Sender: xen-devel-bounces@lists.xensource.com Errors-To: xen-devel-bounces@lists.xensource.com To: Joanna Rutkowska , "xen-devel@lists.xensource.com" List-Id: xen-devel@lists.xenproject.org On 06/07/2010 22:37, "Joanna Rutkowska" wrote: > So, what am I missing here? I think the fear was that there could be class- or device-specific config registers that we wouldn't know how to handle, and which could have unexpected effects if they are passed through naively. Concrete examples were never given, and this was all pre-vtd so as you say pass-through of a DMA-capable device was insecure anyway. I've always thought the permissive flag stuff was pretty useless, and I always suggest people to enable the permissive flag. -- Keir