Re: [PATCH 2/5] vfio/pci: add device blocklist

2020-07-01 Thread Bjorn Helgaas
On Wed, Jul 01, 2020 at 12:02:59PM +0100, Giovanni Cabiddu wrote: > Add blocklist of devices that by default are not probed by vfio-pci. > Devices in this list may be susceptible to untrusted application, even > if the IOMMU is enabled. I can't quite parse this sentence. I think it means someth

[PATCH 2/5] vfio/pci: add device blocklist

2020-07-01 Thread Giovanni Cabiddu
Add blocklist of devices that by default are not probed by vfio-pci. Devices in this list may be susceptible to untrusted application, even if the IOMMU is enabled. To be accessed via vfio-pci, the user has to explicitly disable the blocklist. The blocklist can be disabled via the module parameter