From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1754076AbcHZPia (ORCPT ); Fri, 26 Aug 2016 11:38:30 -0400 Received: from mail-bl2nam02on0062.outbound.protection.outlook.com ([104.47.38.62]:56534 "EHLO NAM02-BL2-obe.outbound.protection.outlook.com" rhost-flags-OK-OK-OK-FAIL) by vger.kernel.org with ESMTP id S1753384AbcHZPiZ (ORCPT ); Fri, 26 Aug 2016 11:38:25 -0400 Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=brijesh.singh@amd.com; Subject: Re: [RFC PATCH v1 00/28] x86: Secure Encrypted Virtualization (AMD) To: "Liuchunyan (Chunyan, EULER)" References: CC: "linux-kernel@vger.kernel.org" From: Brijesh Singh Message-ID: <36b191e2-c2b6-8e46-c0e3-98e2520d1be7@amd.com> Date: Fri, 26 Aug 2016 10:38:03 -0500 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:45.0) Gecko/20100101 Thunderbird/45.2.0 MIME-Version: 1.0 In-Reply-To: Content-Type: text/plain; charset="windows-1252"; format=flowed Content-Transfer-Encoding: 8bit X-Originating-IP: [165.204.77.1] X-ClientProxiedBy: BN6PR08CA0067.namprd08.prod.outlook.com (10.172.144.29) To SN1PR12MB0669.namprd12.prod.outlook.com (10.163.208.27) X-MS-Office365-Filtering-Correlation-Id: 1cad71e1-338e-4c40-9fd8-08d3cdc6fcb1 X-Microsoft-Exchange-Diagnostics: 1;SN1PR12MB0669;2:V1gM9e8WW6rk5zONz+HMp3jEH3iYk4ZxSA6eB3c1e+bu1DywWqIu9AIzxescliyjVcUntySfYEc6gu4LzjjelKVCHB5sx7Ub8k7qboMBNBEHGSfaS0sUKPbi2B8yozZck49jeojY/pDTgTv+gOcs0dkkdzpVqrhwPtL9y0TnOiuPqFju2US4DbT9dg3dWYhu;3:SgHEu+UbuKANcUhcOqP/Ykpx2JQFI0NZMpI89vNb7V7TCa9ZBxGKEhAtTWHwHpQjNCN77xrkGhV8q0AtnT22983pjYvzkMA9ArbXS5nxK4K6GCcOKbWPTFM1R+2CY7wv X-Microsoft-Antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:SN1PR12MB0669; X-Microsoft-Exchange-Diagnostics: 1;SN1PR12MB0669;25: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 X-Microsoft-Exchange-Diagnostics: 1;SN1PR12MB0669;31:oIjQwrtefssqqHryNRrHOYNbY5AFjYiAHkMjjVdOtcvOmP92cj2I043ddHJptt/8DILx1OjLtsQ4TI+OZ9Pb2uPX+DxdoQSzY3hK2rKRxr07S94z8x02KDqfmGvF/PfCqKntWMCYsxDFQzxACGiI7zDv6QuvKrF4DbzI/D0ZrcbBRq8k4Ysx+l7Mdroi/a3SBapms/yvej9CSGCOaOM+zOWjdmQ+sQlKgac6SppeAlw=;20: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 X-Microsoft-Antispam-PRVS: X-Exchange-Antispam-Report-Test: UriScan:(192374486261705)(17755550239193); X-Exchange-Antispam-Report-CFA-Test: BCL:0;PCL:0;RULEID:(6040176)(601004)(2401047)(8121501046)(5005006)(10201501046)(3002001)(6055026);SRVR:SN1PR12MB0669;BCL:0;PCL:0;RULEID:;SRVR:SN1PR12MB0669; X-Microsoft-Exchange-Diagnostics: 1;SN1PR12MB0669;4:0IHiuO4UfKq8B8Yxc5uFHsV9VdzQljU7GSCCXhQZ1JOYAfDdYjHsyVehAGJYTYhRuF4AshUn2ZY31f5E+F/KIcBViwhTzUiEN9My5sDV4lDmzP5a3O/lK4/N9YCuKYETlvpN4JrYcr45gKVFFGYLrSRYpJA8whaq7xed1w3kQWLEw7FWfNDVtCHoSS0hdh53i2qPjO/c95MmNK9kfNXVtbV/5T5eeiZRSL1qRGLTUllqBqkvhjb4jQvrybDlsP2at6rQ/L/ztGlOUmfmjfaphgUsdxhjn/uslDdpuotI01BtXa0YyBr1/Z7MOpPfWWJ6Io9EJq7rAR7hzjx1w2mVAvSRR+Kh5UFT9guHUMfUKe6HLoYmmG6xmEBfSBC+PDdZ8doli6ZbMfsw5mfhpLgv2S6i93JccEp/1PmsImsLoD2fLCnBjdq5ote5zh7BhfOyO7w0d/XqlifbnjE5Z1/bIUP0M/zPlNl4xbx13xtEjjk= X-Forefront-PRVS: 00462943DE X-Forefront-Antispam-Report: SFV:NSPM;SFS:(10009020)(4630300001)(6009001)(6049001)(7916002)(199003)(189002)(7846002)(64126003)(68736007)(50466002)(3846002)(50986999)(6116002)(86362001)(76176999)(36756003)(189998001)(47776003)(54356999)(110136002)(97736004)(83506001)(4001350100001)(101416001)(2950100001)(77096005)(66066001)(7736002)(65956001)(105586002)(23746002)(92566002)(65806001)(33646002)(586003)(31696002)(2870700001)(4326007)(305945005)(2906002)(5660300001)(81166006)(42186005)(81156014)(8676002)(31686004)(106356001)(65826006)(217873001);DIR:OUT;SFP:1101;SCL:1;SRVR:SN1PR12MB0669;H:[10.236.136.62];FPR:;SPF:None;PTR:InfoNoRecords;A:1;MX:1;LANG:en; X-Microsoft-Exchange-Diagnostics: =?Windows-1252?Q?1;SN1PR12MB0669;23:+qs9cC/igIsTw1NvFJJKn4e0tPZxKlvTe5fiZ?= =?Windows-1252?Q?tOIPbVK3tHbujquztFGamCAf48915vcC8WTur67MnhvDr/D9T8KWuwQ7?= =?Windows-1252?Q?JOG72wRQwNiCqXskPevoeMHcxOa2Z1A6ahEFSNy5ALnhwo7uyV9Wh7TW?= =?Windows-1252?Q?+g43OC85P5L+H2l9IE5vuH+2GTU3JvN0b4MPet9Pw+nzIsXD8wATbeQP?= =?Windows-1252?Q?vyNaS1VypPyiO+FjbFzadWPzCRSu1mhW5mgoOBT/8etGhzr+djZZ54da?= =?Windows-1252?Q?n7mA1bQmc81kAUbvsmNfKjucEo48TX6tVHWIjbZB7KHWo6B5R8+A1UpT?= =?Windows-1252?Q?6aKAamZjZ/XKhugFigpz2CknjqHrvmMRJud3dx4IwkxHX8iYxQ3qOYLA?= =?Windows-1252?Q?aCJ6IVSFLv2Zf8Rq/Vwox6TXIUomvER7ETLP+aDrbIuV2ID+DyNfdXnn?= =?Windows-1252?Q?W6trEiBIoFwR1XS5u1OsO0mnGsJNgJvkg/P3cOLWH7+1Aq7j0C/wHD6J?= =?Windows-1252?Q?H5qJayr8mLXRfwbRChfT5q04IsorxI1l69YySpLhEKzIga/FaMNF7+op?= =?Windows-1252?Q?Ay0CpLkyJA2UA4XBibZW5IRpRvHUYHBuQ1+1xdsDXr+wKXtJTJUZ5AYO?= =?Windows-1252?Q?oDoDctdkohxnY66qk/I+y5ZbXjj4L2SBwEVvFE4bv3Lw6YxTbkA3Xc0x?= =?Windows-1252?Q?lt+CbKang4d1MUXHoz7ua8gvJLbGFHuxXqq5YZuyc55uZYlVGTo/HrTB?= =?Windows-1252?Q?IBCKfIrp90MtJOOIN5aGV/MBI+3vv/gk9plhzIIQCczjp9eUkvlMS3T0?= =?Windows-1252?Q?w9Y3FRFgpZZcYwgGY/sKJO4C/JN86bqv+miTht/nGligRLSXkI2cAPiu?= =?Windows-1252?Q?MaY5bEXoxm1iRj+AhcDRqRj4zV81NQZDkT6HnrIF+NBfxAlqAIosnfr7?= =?Windows-1252?Q?kKYQ0dOeecvHkokTSXPcFgpDO1Z1UQru5VzsyGD/Oxx5MRXPbBk2Gcjx?= =?Windows-1252?Q?T9Zl9q/v34mXxd/CE7e9GuqVNigWXk+jBgRSanCPg2BbflOv8+GndL+z?= =?Windows-1252?Q?kzGKJxQY8CU7Je4dA1feHtXDUPh0CjqKhDBV0pz8KtZqg2oCUHuJb42U?= =?Windows-1252?Q?l0GX+LqQjvf3HgiLQMFXBeBNwK3Lc9WI9H445biS99QpjsaAd68SqZ7D?= =?Windows-1252?Q?TA2hbBB/q5qREt7HF8vH5Ov1xBvuNgNoAOVnPNSOi/Vp2E9qpkr2rrsa?= =?Windows-1252?Q?RcCIkszXq+KIoCMBMhmOi866uFmykcsVgc8E2FHUQAxgECY8oUwmyHh+?= =?Windows-1252?Q?piQ?= X-Microsoft-Exchange-Diagnostics: 1;SN1PR12MB0669;6:AXPBT5fR9+kIX8Yu5MPzssJunTJGxBhtlanVuUAuzAnGKJfV1gtjfTDF+1RtqJhCqyhMoTItR+a2AUCvq0i1n/72nubkfvuZPh3/MEzSCZFvnXm20/yFA2pJi+xb1EMentj9O8RoRcjT5gxpiGMjXPTIwqZHfohw/Li/5ZMl8rglB4x+PCqcYXS9uWFH9eFbzgkuEkplBHWNPICFR2p1yhhcez/nrfWQr0KSGpomCt0+aw7B/jinBoYy6fG5C5UrmfvA8jNxbVn/LpNliKRgaCQsmBJzf3wWBWnHy6MIXGhWOkEuXaOWLxz4MxYqGhvnSUp0kOGK8xcJjfKwCJgTvg==;5:aQjjWvddoMLvHKkIy1/CfO6GAgzUay2bFUfkGE3ZZTFxqIaa3MYRpB9HIN+lFr/01q1HjPtdcsze4SZDF2UiJdM28LcaUN1TNHOy084DgPvPGf1QtgdsQZKWUTm9/fyDB4rP7/O0qpGSgImw8ftnMw==;24:vBtXr6IqDDppBrolT1OIewrpIb+jsL2uNykaqyw6A4HmpZWVrq2KdmvjARl7MF8vkyxQWQVD18rzYK9jZu8kIQH0SrPcyvqeSkgJg9I9cqs=;7:Mda01dT+4Sq/xjbRLx1vFy3qOrynd4TJWi4wLtSk9iW87/5T9NThEZvqs6FFGLErbpjSfiqrG1nzFka+76CBzyMTYhtm5NDeig1aBnkWPzJ+UGvFpMaQVMuDJUDjLSidNO07UZxbvT6KoPNUUvblFLaAk5FS8fAFANq6Lk4dToIuCe0np3PsIABpTtSNr+L0ofnKUZbUJYWmg9iC/eKIzdW9zfsE9lvR+cGzYUbHXP7UGDIMoh1nYoVIdPAjAO8S SpamDiagnosticOutput: 1:99 SpamDiagnosticMetadata: NSPM X-Microsoft-Exchange-Diagnostics: 1;SN1PR12MB0669;20:lMTALwXemzyxP12v91DlM6eBB801U6ctXU95B5WulH5fmlQb9XSZ3Lz8LhXPgmmk6pGYcTpKrbYEEY8LnWe4XjPLW1ccbLVkY0Ki4Jw9cY1SANayQdzSRPSZLXlswj6zFv5cgz4Vl0TLewmvPDDLuEvHJVEY6LJ0hos/RouqOEARWM93j/oSZRH9nUdyWfjq+5JA9x+eQ0YjrfdIIbmUPZ0Ked5z0L+UUtYuG7gIPC4tJF6p/1hQPp1YXj4VAvTq X-OriginatorOrg: amd.com X-MS-Exchange-CrossTenant-OriginalArrivalTime: 26 Aug 2016 15:38:11.1356 (UTC) X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN1PR12MB0669 Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org > Is there any production hardware supporting SEV? Which one? We > > are interested to do some test. > SEV support is not available in production hardware's. SEV support will be available in future AMD hardware's. > > > And, generally, I have a question about container protection. In > > white paper and also current KVM forum slides, it’s said this feature > > can protect containers from each other. If it could, it’s great! But I > > am not sure: the containers must be in a sandbox/VM? (that means, > > still need a virtualized environment). How about Common containers > > running directly on host OS? > SEV is integrated with existing AMD-V technology and can be used to provide additional security of containers when running inside VM.