[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-devel] [PATCH v3 13/15] xsm, argo: XSM control for any access to argo by a domain


  • To: 'Christopher Clark' <christopher.w.clark@xxxxxxxxx>, "xen-devel@xxxxxxxxxxxxxxxxxxxx" <xen-devel@xxxxxxxxxxxxxxxxxxxx>
  • From: "DeGraaf, Daniel G" <dgdegra@xxxxxxx>
  • Date: Mon, 7 Jan 2019 23:06:45 +0000
  • Accept-language: en-US
  • Cc: Stefano Stabellini <sstabellini@xxxxxxxxxx>, Wei Liu <wei.liu2@xxxxxxxxxx>, Ross Philipson <ross.philipson@xxxxxxxxx>, Konrad Rzeszutek Wilk <konrad.wilk@xxxxxxxxxx>, George Dunlap <George.Dunlap@xxxxxxxxxxxxx>, Andrew Cooper <andrew.cooper3@xxxxxxxxxx>, Jason Andryuk <jandryuk@xxxxxxxxx>, Ian Jackson <ian.jackson@xxxxxxxxxxxxx>, Rich Persaud <persaur@xxxxxxxxx>, Tim Deegan <tim@xxxxxxx>, Daniel Smith <dpsmith@xxxxxxxxxxxxxxxxxxxx>, Julien Grall <julien.grall@xxxxxxx>, Paul Durrant <paul.durrant@xxxxxxxxxx>, Jan Beulich <jbeulich@xxxxxxxx>, Daniel De Graaf <dgdegra@xxxxxxxxxxxxx>, James McKenzie <james@xxxxxxxxxxx>, Eric Chanudet <eric.chanudet@xxxxxxxxx>, Roger Pau Monne <roger.pau@xxxxxxxxxx>
  • Delivery-date: Mon, 07 Jan 2019 23:07:04 +0000
  • Ironport-phdr: 9a23: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
  • List-id: Xen developer discussion <xen-devel.lists.xenproject.org>
  • Thread-index: AdSm3CaHS0BBv9bzSrSysPPdveH+hQ==
  • Thread-topic: [PATCH v3 13/15] xsm, argo: XSM control for any access to argo by a domain

> From: Christopher Clark <christopher.w.clark@xxxxxxxxx>
> Subject: [PATCH v3 13/15] xsm, argo: XSM control for any access to argo by a 
> domain
> 
> Will inhibit initialization of the domain's argo data structure to
> prevent receiving any messages or notifications and access to any of
> the argo hypercall operations.
> 
> Signed-off-by: Christopher Clark <christopher.clark6@xxxxxxxxxxxxxx>

Acked-by: Daniel De Graaf <dgdegra@xxxxxxxxxxxxx>

Comment to #11 applies here (adding an AVC vector, should also change default 
policy).
_______________________________________________
Xen-devel mailing list
Xen-devel@xxxxxxxxxxxxxxxxxxxx
https://lists.xenproject.org/mailman/listinfo/xen-devel

 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.