[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <87v8c15nkv.fsf@meer.lwn.net>
Date: Sat, 23 Sep 2023 01:57:20 -0600
From: Jonathan Corbet <corbet@....net>
To: Carlos Bilbao <carlos.bilbao@....com>
Cc: linux-doc@...r.kernel.org, linux-kernel@...r.kernel.org,
ardb@...nel.org, kraxel@...hat.com, dovmurik@...ux.ibm.com,
elena.reshetova@...el.com, dave.hansen@...ux.intel.com,
Dhaval.Giani@....com, michael.day@....com,
pavankumar.paluri@....com, David.Kaplan@....com,
Reshma.Lal@....com, Jeremy.Powell@....com,
sathyanarayanan.kuppuswamy@...ux.intel.com,
alexander.shishkin@...ux.intel.com, thomas.lendacky@....com,
tglx@...utronix.de, dgilbert@...hat.com, dinechin@...hat.com,
linux-coco@...ts.linux.dev, berrange@...hat.com, mst@...hat.com,
tytso@....edu, jikos@...nel.org, joro@...tes.org, leon@...nel.org,
richard.weinberger@...il.com, lukas@...ner.de, jejb@...ux.ibm.com,
cdupontd@...hat.com, jasowang@...hat.com, sameo@...osinc.com,
bp@...en8.de, seanjc@...gle.com, security@...nel.org,
Larry Dewey <larry.dewey@....com>,
Greg Kroah-Hartman <gregkh@...uxfoundation.org>
Subject: Re: [RESEND PATCH v4] docs: security: Confidential computing intro
and threat model for x86 virtualization
Carlos Bilbao <carlos.bilbao@....com> writes:
> Kernel developers working on confidential computing for virtualized
> environments in x86 operate under a set of assumptions regarding the Linux
> kernel threat model that differs from the traditional view. Historically,
> the Linux threat model acknowledges attackers residing in userspace, as
> well as a limited set of external attackers that are able to interact with
> the kernel through networking or limited HW-specific exposed interfaces
> (e.g. USB, thunderbolt). The goal of this document is to explain additional
> attack vectors that arise in the virtualized confidential computing space.
>
> Reviewed-by: Larry Dewey <larry.dewey@....com>
> Reviewed-by: David Kaplan <david.kaplan@....com>
> Co-developed-by: Elena Reshetova <elena.reshetova@...el.com>
> Signed-off-by: Elena Reshetova <elena.reshetova@...el.com>
> Signed-off-by: Carlos Bilbao <carlos.bilbao@....com>
This patch was whitespace-corrupted (something wrapped the diff lines)
making it hard to apply; I was able to fix it up and get git to swallow
it. So applied, thanks.
jon
Powered by blists - more mailing lists