Re: [PATCH] NX protection for kernel data : fix 32 bits S3 suspend

From: H. Peter Anvin
Date: Mon Feb 14 2011 - 16:21:00 EST


On 02/07/2011 11:59 AM, castet.matthieu@xxxxxxx wrote:
>
> For .39 I hope we could remove most of the RWX rights after init (This means
> make low memory trampoline NX or !RW).

By the way, I think this is the wrong goal. I think we should have
things enabled at their lowest permission level *as early as possible*.
The current model of tightening down permissions late in the boot is
really the wrong model.

-hpa

--
H. Peter Anvin, Intel Open Source Technology Center
I work for Intel. I don't speak on their behalf.

--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/