From: Dave Hansen Date: Fri, 8 Dec 2023 17:07:40 +0000 (-0800) Subject: x86/virt/tdx: Disable TDX host support when kexec is enabled X-Git-Tag: v6.8-rc1~55^2~1 X-Git-Url: http://git.ipfire.org/?a=commitdiff_plain;h=cb8eb06d50fcf4a478813a612f68c38cca45c742;p=thirdparty%2Fkernel%2Flinux.git x86/virt/tdx: Disable TDX host support when kexec is enabled TDX host support currently lacks the ability to handle kexec. Disable TDX when kexec is enabled. Signed-off-by: Dave Hansen Link: https://lore.kernel.org/all/20231208170740.53979-20-dave.hansen%40intel.com --- diff --git a/arch/x86/Kconfig b/arch/x86/Kconfig index e255d8ae5e77e..01cdb16acff6e 100644 --- a/arch/x86/Kconfig +++ b/arch/x86/Kconfig @@ -1973,6 +1973,7 @@ config INTEL_TDX_HOST depends on X86_X2APIC select ARCH_KEEP_MEMBLOCK depends on CONTIG_ALLOC + depends on !KEXEC_CORE help Intel Trust Domain Extensions (TDX) protects guest VMs from malicious host and certain physical attacks. This option enables necessary TDX