Re: [PATCH v12 00/18] Enable FSGSBASE instructions

From: Andi Kleen
Date: Fri May 15 2020 - 13:55:54 EST


> Indeed, we've seen a few hacks that basically just enable FSGSBASE:
>
> - https://github.com/oscarlab/graphene-sgx-driver
> - https://github.com/occlum/enable_rdfsbase
>
> And would very much like to get rid of them...

These are insecure and open root holes without the patches
used here.

-Andi