Re: [PATCH 00/29] x86: Kernel IBT

From: Mike Rapoport
Date: Thu Feb 24 2022 - 11:47:50 EST


On Tue, Feb 22, 2022 at 11:26:57PM -0800, Kees Cook wrote:
>
> On Fri, 2022-02-18 at 17:49 +0100, Peter Zijlstra wrote:
> > This is an (almost!) complete Kernel IBT implementation.
>
> BTW, I've successfully tested this on what /proc/cpuinfo calls an "11th
> Gen Intel(R) Core(TM) i7-1165G7 @ 2.80GHz" (in a Lenovo "Yoga 7 15ITL5").
> Normal laptop-y things all seem happy and it correctly blows up on a new
> LKDTM test I'll send out tomorrow.

For me it boots and can build kernel on a desktop with "12th Gen Intel(R)
Core(TM) i9-12900K"

> So, even though the series is young and has some TODOs still:
>
> Tested-by: Kees Cook <keescook@xxxxxxxxxxxx>

So, FWIW:

Tested-by: Mike Rapoport <rppt@xxxxxxxxxxxxx>

> One thought: should there be a note in dmesg about it being active? The
> only way to see it is finding "ibt" in cpuinfo...
>
> -Kees
>
> --
> Kees Cook

--
Sincerely yours,
Mike.