Re: [PATCH v6 3/6] sev/i386: Allow AP booting under SEV-ES

2021-02-01 Thread Tom Lendacky
On 1/29/21 11:44 AM, Venu Busireddy wrote: On 2021-01-26 11:36:46 -0600, Tom Lendacky wrote: From: Tom Lendacky When SEV-ES is enabled, it is not possible modify the guests register state after it has been initially created, encrypted and measured. Normally, an INIT-SIPI-SIPI request is used

Re: [PATCH v6 3/6] sev/i386: Allow AP booting under SEV-ES

2021-01-29 Thread Venu Busireddy
On 2021-01-26 11:36:46 -0600, Tom Lendacky wrote: > From: Tom Lendacky > > When SEV-ES is enabled, it is not possible modify the guests register > state after it has been initially created, encrypted and measured. > > Normally, an INIT-SIPI-SIPI request is used to boot the AP. However, the > hyp

[PATCH v6 3/6] sev/i386: Allow AP booting under SEV-ES

2021-01-26 Thread Tom Lendacky
From: Tom Lendacky When SEV-ES is enabled, it is not possible modify the guests register state after it has been initially created, encrypted and measured. Normally, an INIT-SIPI-SIPI request is used to boot the AP. However, the hypervisor cannot emulate this because it cannot update the AP regi