Re: Smepmp discovery
Andrew Waterman
On Tue, Aug 3, 2021 at 9:40 AM Nick Kossifidis <mick@...> wrote: Στις 2021-07-27 10:16, Andrew Waterman έγραψε: If later-boot software like OpenSBI wants to dynamically detect this feature to change its behavior at runtime, and we can't trust the configuration structure, but we can trust the mseccfg CSR, then this is a logical argument. The second premise seems flimsy, though, because other aspects of the boot process will depend on the veracity of the information in the configuration structure for functional correctness, and hence security. (The "discovery mechanism may not be available" argument doesn't hold water, since relevant profiles can require its existence, and nonconforming systems can refuse to boot.)
|
|