Re: [PATCH 0/3] Resolve problems with kexec identity mapping

From: Borislav Petkov
Date: Mon Jul 08 2024 - 15:58:58 EST


On Mon, Jul 08, 2024 at 02:29:05PM -0500, Steve Wahl wrote:
> Yes, this is about AMD machines which support SEV, running bare metal.
> ("Server" is in question, one of my testers is known to be using a
> laptop, so the facilities must be present in non-servers as well.)

No, they can't be. SEV is supported only on server, not on client. This laptop
has a different problem it seems.

> As far as I can see it, the effort you're putting into finding a
> different solution must mean you find something less than desirable
> about the solution I have offered. But at this point, I don't
> understand why;

Why would we parse the CC blob which is destined *solely* for a SEV- *guest*,
when booting the baremetal kernel which is *not* a guest?

This is the solution I'm chasing - don't do something you're not supposed to
or needed to do.

--
Regards/Gruss,
Boris.

https://people.kernel.org/tglx/notes-about-netiquette