Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1617233
| From | Steven Rostedt <rostedt@goodmis.org> |
|---|---|
| Newsgroups | linux.kernel |
| Subject | Re: [PATCH 02/38] Annotate hardware config module parameters in arch/x86/mm/ |
| Date | 2017-04-05 19:40 +0200 |
| Message-ID | <tsX4u-5CF-29@gated-at.bofh.it> (permalink) |
| References | <tsWBr-5sA-3@gated-at.bofh.it> <tsWUO-5zn-13@gated-at.bofh.it> |
| Organization | linux.* mail to news gateway |
On Wed, 05 Apr 2017 17:57:08 +0100 David Howells <dhowells@redhat.com> wrote: > When the kernel is running in secure boot mode, we lock down the kernel to > prevent userspace from modifying the running kernel image. Whilst this > includes prohibiting access to things like /dev/mem, it must also prevent > access by means of configuring driver modules in such a way as to cause a > device to access or modify the kernel image. > > To this end, annotate module_param* statements that refer to hardware > configuration and indicate for future reference what type of parameter they > specify. The parameter parser in the core sees this information and can > skip such parameters with an error message if the kernel is locked down. > The module initialisation then runs as normal, but just sees whatever the > default values for those parameters is. > > Note that we do still need to do the module initialisation because some > drivers have viable defaults set in case parameters aren't specified and > some drivers support automatic configuration (e.g. PNP or PCI) in addition > to manually coded parameters. > > This patch annotates drivers in arch/x86/mm/. > > Suggested-by: Alan Cox <gnomes@lxorguk.ukuu.org.uk> > Signed-off-by: David Howells <dhowells@redhat.com> Acked-by: Steven Rostedt (VMware) <rostedt@goodmis.org> -- Steve > cc: Ingo Molnar <mingo@kernel.org> > cc: Thomas Gleixner <tglx@linutronix.de> > cc: "H. Peter Anvin" <hpa@zytor.com> > cc: x86@kernel.org > cc: linux-kernel@vger.kernel.org > cc: nouveau@lists.freedesktop.org > --- > > arch/x86/mm/testmmiotrace.c | 2 +- > 1 file changed, 1 insertion(+), 1 deletion(-) > > diff --git a/arch/x86/mm/testmmiotrace.c b/arch/x86/mm/testmmiotrace.c > index 38868adf07ea..f6ae6830b341 100644 > --- a/arch/x86/mm/testmmiotrace.c > +++ b/arch/x86/mm/testmmiotrace.c > @@ -9,7 +9,7 @@ > #include <linux/mmiotrace.h> > > static unsigned long mmio_address; > -module_param(mmio_address, ulong, 0); > +module_param_hw(mmio_address, ulong, iomem, 0); > MODULE_PARM_DESC(mmio_address, " Start address of the mapping of 16 kB " > "(or 8 MB if read_far is non-zero)."); >
Back to linux.kernel | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread
[PATCH 00/38] Annotate hw config module params for future lockdown David Howells <dhowells@redhat.com> - 2017-04-05 19:20 +0200
[PATCH 13/38] Annotate hardware config module parameters in drivers/media/ David Howells <dhowells@redhat.com> - 2017-04-05 19:20 +0200
[PATCH 08/38] Annotate hardware config module parameters in drivers/gpio/ David Howells <dhowells@redhat.com> - 2017-04-05 19:20 +0200
Re: [PATCH 08/38] Annotate hardware config module parameters in drivers/gpio/ Linus Walleij <linus.walleij@linaro.org> - 2017-04-07 12:50 +0200
Re: [PATCH 08/38] Annotate hardware config module parameters in drivers/gpio/ David Howells <dhowells@redhat.com> - 2017-04-07 15:00 +0200
[PATCH 07/38] Annotate hardware config module parameters in drivers/cpufreq/ David Howells <dhowells@redhat.com> - 2017-04-05 19:30 +0200
Re: [PATCH 07/38] Annotate hardware config module parameters in drivers/cpufreq/ Viresh Kumar <viresh.kumar@linaro.org> - 2017-04-10 12:40 +0200
[PATCH 06/38] Annotate hardware config module parameters in drivers/clocksource/ David Howells <dhowells@redhat.com> - 2017-04-05 19:30 +0200
[PATCH 02/38] Annotate hardware config module parameters in arch/x86/mm/ David Howells <dhowells@redhat.com> - 2017-04-05 19:30 +0200
Re: [PATCH 02/38] Annotate hardware config module parameters in arch/x86/mm/ Steven Rostedt <rostedt@goodmis.org> - 2017-04-05 19:40 +0200
[PATCH 03/38] Annotate hardware config module parameters in drivers/char/ipmi/ David Howells <dhowells@redhat.com> - 2017-04-05 19:30 +0200
[PATCH 05/38] Annotate hardware config module parameters in drivers/char/ David Howells <dhowells@redhat.com> - 2017-04-05 19:30 +0200
Re: [PATCH 05/38] Annotate hardware config module parameters in drivers/char/ Greg KH <gregkh@linuxfoundation.org> - 2017-04-08 17:30 +0200
[PATCH 04/38] Annotate hardware config module parameters in drivers/char/mwave/ David Howells <dhowells@redhat.com> - 2017-04-05 19:30 +0200
[PATCH 01/38] Annotate module params that specify hardware parameters (eg. ioport) David Howells <dhowells@redhat.com> - 2017-04-05 19:30 +0200
csiph-web