From patchwork Fri Dec 3 19:21:43 2021 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Martin Fernandez X-Patchwork-Id: 12655709 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from kanga.kvack.org (kanga.kvack.org [205.233.56.17]) by smtp.lore.kernel.org (Postfix) with ESMTP id 989E7C433F5 for ; Fri, 3 Dec 2021 19:23:09 +0000 (UTC) Received: by kanga.kvack.org (Postfix) id 0B69D6B007B; Fri, 3 Dec 2021 14:22:59 -0500 (EST) Received: by kanga.kvack.org (Postfix, from userid 40) id 065396B007D; Fri, 3 Dec 2021 14:22:59 -0500 (EST) X-Delivered-To: int-list-linux-mm@kvack.org Received: by kanga.kvack.org (Postfix, from userid 63042) id E47AF6B007E; Fri, 3 Dec 2021 14:22:58 -0500 (EST) X-Delivered-To: linux-mm@kvack.org Received: from forelay.hostedemail.com (smtprelay0205.hostedemail.com [216.40.44.205]) by kanga.kvack.org (Postfix) with ESMTP id D72136B007B for ; Fri, 3 Dec 2021 14:22:58 -0500 (EST) Received: from smtpin03.hostedemail.com (10.5.19.251.rfc1918.com [10.5.19.251]) by forelay02.hostedemail.com (Postfix) with ESMTP id 9A05B8479D for ; Fri, 3 Dec 2021 19:22:48 +0000 (UTC) X-FDA: 78877455216.03.42EDD7E Received: from mail-qv1-f51.google.com (mail-qv1-f51.google.com [209.85.219.51]) by imf23.hostedemail.com (Postfix) with ESMTP id 3930E90000A0 for ; Fri, 3 Dec 2021 19:22:48 +0000 (UTC) Received: by mail-qv1-f51.google.com with SMTP id g9so3759743qvd.2 for ; Fri, 03 Dec 2021 11:22:47 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=eclypsium.com; s=google; h=from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=ANF2YozXkZ/Ma7nQsyNWs6tgBsm2cwF++KgkH2V+msY=; b=ZYhsxXpD0mGY2oqFx+RaRUfwzl0VpP6ZV9szBbuxhq1LBtrWuKE0vhimTJzvcg+zDa sfzG2+TknlaqMmI6RpOlKFaRHcD9CvWDX9CHl5NgswAH0qDHxesQn6xcod7R0OA/Y4pk AmpAvRPS0BCX5SvzoaEiTU9R1y1gnho/Fg7yYMjBDd1N2GsccPJ9X8rYTP2tusqlGITB JL6+v8rdFH6Kv82rm5flzu91kB0j1PTgrya8QBdxnT1d/1drMWYwqcC/crBMLUkaT4gN Rzd0ev2GRbhveZdYW9DO2LwQHHIPHDTv8ftSVykwSy9AEN14h7vkbAx++KJm83Oi2dUv Qvvg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:from:to:cc:subject:date:message-id:mime-version :content-transfer-encoding; bh=ANF2YozXkZ/Ma7nQsyNWs6tgBsm2cwF++KgkH2V+msY=; b=yQDceCqI7BUVyWHYW6ZmlCLUAqQ7XjSYro5Wb6DvLtOj5rOZmuqTQr02aD5Kzn3GUT lwvUe3x5ArIS0UCHqI30orWrjCvmMP+8QCwyIBusUPE106u/vz5/rMV1IbKJABvHJlg4 iNRau+z/UyJN/hK6mfTerHxOaiiIFVytfhMJa7IYVh879kR31Fpy5ZMzXcArbNNU0nXC L3v2LzkO4yuVvv0EKLUakoREljFHpxJMsfaODTY5l3w3DLIhTKzThhYPGzZpcjDavAzO ATI5GnzrHyR/lf6kI3nRf31xYklqAj3WT/UMooLbiAhc0HYIlytECckzoAub3HDwOIwo 5CeQ== X-Gm-Message-State: AOAM530r/E7ekoUWqDOhRrLj72aF7Ri/YK8+YscJnH9HPh9GWMuBPqBd ojczNjbNSntd0HAxTB3be0u6Fg== X-Google-Smtp-Source: ABdhPJyXWkPwQVmZmqs083B9CeHPzZGK70TGRqlHMkD4evC17cikecKIZkE7Ay8fTkI7veAOIfGPoA== X-Received: by 2002:a0c:f750:: with SMTP id e16mr21182404qvo.110.1638559367537; Fri, 03 Dec 2021 11:22:47 -0800 (PST) Received: from localhost (7-153-16-190.fibertel.com.ar. [190.16.153.7]) by smtp.gmail.com with ESMTPSA id y10sm2701035qkp.128.2021.12.03.11.22.41 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Fri, 03 Dec 2021 11:22:47 -0800 (PST) From: Martin Fernandez To: linux-kernel@vger.kernel.org, linux-efi@vger.kernel.org, platform-driver-x86@vger.kernel.org, linux-mm@kvack.org Cc: tglx@linutronix.de, mingo@redhat.com, bp@alien8.de, dave.hansen@linux.intel.com, x86@kernel.org, hpa@zytor.com, ardb@kernel.org, dvhart@infradead.org, andy@infradead.org, gregkh@linuxfoundation.org, rafael@kernel.org, rppt@kernel.org, akpm@linux-foundation.org, daniel.gutson@eclypsium.com, hughsient@gmail.com, alex.bazhaniuk@eclypsium.com, alison.schofield@intel.com, Martin Fernandez Subject: [PATCH v3 0/5] x86: Show in sysfs if a memory node is able to do encryption Date: Fri, 3 Dec 2021 16:21:43 -0300 Message-Id: <20211203192148.585399-1-martin.fernandez@eclypsium.com> X-Mailer: git-send-email 2.30.2 MIME-Version: 1.0 Authentication-Results: imf23.hostedemail.com; dkim=pass header.d=eclypsium.com header.s=google header.b=ZYhsxXpD; dmarc=pass (policy=quarantine) header.from=eclypsium.com; spf=pass (imf23.hostedemail.com: domain of martin.fernandez@eclypsium.com designates 209.85.219.51 as permitted sender) smtp.mailfrom=martin.fernandez@eclypsium.com X-Rspamd-Server: rspam08 X-Rspamd-Queue-Id: 3930E90000A0 X-Stat-Signature: tpq6difk435phhgg46xphcffr49nbrzn X-HE-Tag: 1638559368-819932 X-Bogosity: Ham, tests=bogofilter, spamicity=0.000000, version=1.2.4 Sender: owner-linux-mm@kvack.org Precedence: bulk X-Loop: owner-majordomo@kvack.org List-ID: Show for each node if every memory descriptor in that node has the EFI_MEMORY_CPU_CRYPTO attribute. fwupd project plans to use it as part of a check to see if the users have properly configured memory hardware encryption capabilities. It's planned to make it part of a specification that can be passed to people purchasing hardware. It's called Host Security ID: https://fwupd.github.io/libfwupdplugin/hsi.html This also can be useful in the future if NUMA decides to prioritize nodes that are able to do encryption. Changes since v2: e820__range_mark_crypto -> e820__range_mark_crypto_capable. In e820__range_remove: Create a region with crypto capabilities instead of creating one without it and then mark it. Changes since v1: Modify __e820__range_update to update the crypto capabilities of a range; now this function will change the crypto capability of a range if it's called with the same old_type and new_type. Rework efi_mark_e820_regions_as_crypto_capable based on this. Update do_add_efi_memmap to mark the regions as it creates them. Change the type of crypto_capable in e820_entry from bool to u8. Fix e820__update_table changes. Remove memblock_add_crypto_capable. Now you have to add the region and mark it then. Better place for crypto_capable in pglist_data. Martin Fernandez (5): mm/memblock: Tag memblocks with crypto capabilities mm/mmzone: Tag pg_data_t with crypto capabilities Tag e820_entry with crypto capabilities x86/efi: Tag e820_entries as crypto capable from EFI memmap drivers/node: Show in sysfs node's crypto capabilities arch/x86/include/asm/e820/api.h | 1 + arch/x86/include/asm/e820/types.h | 1 + arch/x86/kernel/e820.c | 59 ++++++++++++++++++++++++------- arch/x86/platform/efi/efi.c | 25 +++++++++++++ drivers/base/node.c | 10 ++++++ include/linux/memblock.h | 5 +++ include/linux/mmzone.h | 3 ++ mm/memblock.c | 49 +++++++++++++++++++++++++ mm/page_alloc.c | 1 + 9 files changed, 142 insertions(+), 12 deletions(-)