]> git.ipfire.org Git - thirdparty/linux.git/commitdiff
KVM: nSVM: Omit SEV-ES specific passthrough MSRs from L0+L1 bitmap merge
authorSean Christopherson <seanjc@google.com>
Tue, 10 Jun 2025 22:57:16 +0000 (15:57 -0700)
committerSean Christopherson <seanjc@google.com>
Fri, 20 Jun 2025 20:07:24 +0000 (13:07 -0700)
Don't merge bitmaps on nested VMRUN for MSRs that KVM passes through only
for SEV-ES guests.  KVM doesn't support nested virtualization for SEV-ES,
and likely never will.

Link: https://lore.kernel.org/r/20250610225737.156318-12-seanjc@google.com
Signed-off-by: Sean Christopherson <seanjc@google.com>
arch/x86/kvm/svm/nested.c

index 666469e1160208641eb603f240de0b096c5f116e..360dbd80a7288e2572889aea819fa83abe96aa96 100644 (file)
@@ -194,7 +194,7 @@ void recalc_intercepts(struct vcpu_svm *svm)
  * Hardcode the capacity of the array based on the maximum number of _offsets_.
  * MSRs are batched together, so there are fewer offsets than MSRs.
  */
-static int nested_svm_msrpm_merge_offsets[9] __ro_after_init;
+static int nested_svm_msrpm_merge_offsets[6] __ro_after_init;
 static int nested_svm_nr_msrpm_merge_offsets __ro_after_init;
 
 int __init nested_svm_init_msrpm_merge_offsets(void)
@@ -219,13 +219,6 @@ int __init nested_svm_init_msrpm_merge_offsets(void)
                MSR_IA32_LASTBRANCHTOIP,
                MSR_IA32_LASTINTFROMIP,
                MSR_IA32_LASTINTTOIP,
-
-               MSR_IA32_DEBUGCTLMSR,
-               MSR_IA32_XSS,
-               MSR_EFER,
-               MSR_IA32_CR_PAT,
-               MSR_AMD64_SEV_ES_GHCB,
-               MSR_TSC_AUX,
        };
        int i, j;