Re: [Part2 PATCH v5 13/31] KVM: X86: Add CONFIG_KVM_AMD_SEV

From: Borislav Petkov
Date: Fri Oct 13 2017 - 12:45:09 EST


On Wed, Oct 04, 2017 at 08:13:54AM -0500, Brijesh Singh wrote:
> The config option can be used to enable SEV support on AMD Processors.
>
> Cc: Thomas Gleixner <tglx@xxxxxxxxxxxxx>
> Cc: Ingo Molnar <mingo@xxxxxxxxxx>
> Cc: "H. Peter Anvin" <hpa@xxxxxxxxx>
> Cc: Paolo Bonzini <pbonzini@xxxxxxxxxx>
> Cc: "Radim KrÄmÃÅ" <rkrcmar@xxxxxxxxxx>
> Cc: Joerg Roedel <joro@xxxxxxxxxx>
> Cc: Borislav Petkov <bp@xxxxxxx>
> Cc: Tom Lendacky <thomas.lendacky@xxxxxxx>
> Cc: x86@xxxxxxxxxx
> Cc: kvm@xxxxxxxxxxxxxxx
> Cc: linux-kernel@xxxxxxxxxxxxxxx
> Signed-off-by: Brijesh Singh <brijesh.singh@xxxxxxx>
> ---
> arch/x86/kvm/Kconfig | 10 ++++++++++
> 1 file changed, 10 insertions(+)
>
> diff --git a/arch/x86/kvm/Kconfig b/arch/x86/kvm/Kconfig
> index 3ea624452f93..bedb204f71c9 100644
> --- a/arch/x86/kvm/Kconfig
> +++ b/arch/x86/kvm/Kconfig
> @@ -79,6 +79,16 @@ config KVM_AMD
> To compile this as a module, choose M here: the module
> will be called kvm-amd.
>
> +config KVM_AMD_SEV
> + def_bool y
> + bool "AMD Secure Encrypted Virtualization (SEV) support"
> + depends on KVM_AMD && X86_64
> + select CRYPTO_DEV_CCP
> + select CRYPTO_DEV_CCP_DD
> + select CRYPTO_DEV_SP_PSP
> + ---help---
> + Provides support for launching Encrypted VMs on AMD processors.
> +
> config KVM_MMU_AUDIT
> bool "Audit KVM MMU"
> depends on KVM && TRACEPOINTS
> --

Reviewed-by: Borislav Petkov <bp@xxxxxxx>

--
Regards/Gruss,
Boris.

Good mailing practices for 400: avoid top-posting and trim the reply.