Re: [PATCH] NX protection for kernel data : fix 32 bits S3 suspend

From: Rafael J. Wysocki
Date: Mon Feb 14 2011 - 17:50:26 EST


On Monday, February 14, 2011, H. Peter Anvin wrote:
> On 02/07/2011 11:59 AM, castet.matthieu@xxxxxxx wrote:
> >
> > For .39 I hope we could remove most of the RWX rights after init (This means
> > make low memory trampoline NX or !RW).
>
> By the way, I think this is the wrong goal. I think we should have
> things enabled at their lowest permission level *as early as possible*.
> The current model of tightening down permissions late in the boot is
> really the wrong model.

FWIW, I agree.

Rafael
--
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/