Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
x86/microcode: adjust sequence of controlling KVM guest and EPC
The current sequence to control SGX-enabled guest and EPC during SGX SVN update is as follows: lock EPC -> halt guest -> resume guest -> unlock EPC There is time window that guest has chance to try to touch EPC while EPC is "locked" for SVN update. To avoid any potential issue, change the order as below, to ensure guest will absolutely have no chance to do anything before SVN update completes. halt guest -> lock EPC -> unlock EPC -> resume guest Signed-off-by: Cathy Zhang <cathy.zhang@intel.com>
- Loading branch information