Re: Improve retpoline for Skylake

From: David Woodhouse
Date: Mon Jan 15 2018 - 05:20:49 EST


On Mon, 2018-01-15 at 11:03 +0100, Thomas Gleixner wrote:
>
> > Our numbers on Skylake weren't bad, and there seem to be all kinds of
> > corner cases, so again, it seems as if IBRS is the safest choice.
>
> Talk is cheap. Show numbers comparing the full retpoline/RBS mitigation
> compared to IBRS.

Right now my intent is to add IBRS support and use it by default on
Skylake instead of retpoline. Users will be able to add
'spectre_v2=retpoline' to use retpoline on Skylake instead, if they
want to. But we'll default to the safest option.

Once that is done, we can do proper comparisons, and also look at
Andi's patches to attempt to make retpoline completely safe on Skylake.

Attachment: smime.p7s
Description: S/MIME cryptographic signature