@@ -2723,8 +2723,12 @@
nvhe: Standard nVHE-based mode, without support for
protected guests.
- protected: nVHE-based mode with support for guests whose
+ protected: hVHE-based mode with support for guests whose
state is kept private from the host.
+ In case hVHE is not supported in hardware, it will
+ boot with protected nVHE.
+ nVHE protected mode can still be forced on VHE systems
+ using "kvm_arm.mode=protected arm64_sw.hvhe=0 id_aa64mmfr1.vh=0"
nested: VHE-based mode with support for nested
virtualization. Requires at least ARMv8.3
Commit 5053c3f0519c ("KVM: arm64: Use hVHE in pKVM by default on CPUs with VHE support") modified the behaviour of "kvm-arm.mode=protected" without the updating the kernel parameters doc. Update it to match the current implementation. Cc: Will Deacon <will@kernel.org> Cc: Marc Zyngier <maz@kernel.org> Signed-off-by: Mostafa Saleh <smostafa@google.com> --- Documentation/admin-guide/kernel-parameters.txt | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-)