Re: [PATCH] powerpc: Export set_memory_encrypted and set_memory_decrypted

From: Borislav Petkov

Date: Wed May 27 2026 - 14:29:32 EST


On Wed, May 27, 2026 at 01:07:16PM -0300, Jason Gunthorpe wrote:
> > Setting memory decrypted is a dangerous operations and should only
> > be available to core code. We should have various allocators for
> > decrypted code, but not export the functionality to random code.
>
> At the very least an EXPORT_SYMBOL_NS.
>
> Looks like there are about 3 modules using it already..

Looks like more to me...

In any case, we exported them back then for some framebuffer things:

95cf9264d5f3 ("x86, drm, fbdev: Do not specify encrypted memory for video mappings")

--
Regards/Gruss,
Boris.

https://people.kernel.org/tglx/notes-about-netiquette