Re: [PATCH 2/2] KVM: arm64: Enable S1PIE for nVHE and hVHE

From: Marc Zyngier

Date: Fri Sep 04 2026 - 03:27:52 EST


On Fri, 04 Sep 2026 00:14:42 +0100,
Mark Brown <broonie@xxxxxxxxxx> wrote:
>
> When FEAT_S1PIE (stage 1 permission indirection) is supported we
> currently enable and use it in the hypervisor when running in VHE mode
> but not when running in nVHE or hVHE mode. While systems with
> FEAT_S1PIE would normally use VHE users can configure them for nVHE or
> hVHE, for example in order to run protected guests. Enable FEAT_S1PIE
> with nVHE and hVHE.

No. nVHE is dead, and I'm not adding support for random stuff that
appeared over 10 years after v8.0. If you have S1PIE, you have VHE.

If you force the kernel to run with E2H==0, that's your own problem.

M.

--
Without deviation from the norm, progress is not possible.