This is a cool talk, but is going to require protection of page tables. Wonder how that will be achieved without a hypervisor or trustzonehttps://lsseu2019.sched.com/event/TynY/a-new-proposal-for-protecting-kernel-data-memory-igor-stoppa-huawei …
Replying to @dwizzzleMSFT
the 2018 recording does mention hypervisors as an option. the latest RFC patch for the mechanism (https://lore.kernel.org/lkml/b99f0de701e299b9d25ce8cfffa3387b9687f5fc.1550097697.git.igor.stoppa@huawei.com/ …) basically has a "privileged memcpy" function (wr_memcpy()) that switches to a different page table temporarily. (not saying I agree; I dislike the idea)
7:41 AM - 24 Oct 2019
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.