From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mail02.groups.io (mail02.groups.io [66.175.222.108]) by spool.mail.gandi.net (Postfix) with ESMTPS id 65D3CAC10B9 for ; Mon, 4 Dec 2023 10:53:19 +0000 (UTC) DKIM-Signature: a=rsa-sha256; bh=gcgPyAQ8APRxiQybKctQj2xhkvKIQcKP+2wn6Bs+PI0=; c=relaxed/simple; d=groups.io; h=Date:From:To:Cc:Subject:Message-ID:References:MIME-Version:In-Reply-To:Precedence:List-Subscribe:List-Help:Sender:List-Id:Mailing-List:Delivered-To:Reply-To:List-Unsubscribe-Post:List-Unsubscribe:Content-Type:Content-Disposition; s=20140610; t=1701687197; v=1; b=ZvKBOwtcEQ/025FE3XvIi8rhgpLNlRGuy6o2kuF0jHV1JBQhWSRUr9a8a4sVPIQrpkcyXIHS fLpBFk9nOtezZg2T1Am6nNKjf3oH5B+kAZHVB2n+miF66GvUpkAKZt7+4C56oLuTao91vAuRTpL IC+FWaY1xjC+hry06RzxgrKQ= X-Received: by 127.0.0.2 with SMTP id tURDYY7687511x2KB3a8ayLK; Mon, 04 Dec 2023 02:53:17 -0800 X-Received: from us-smtp-delivery-124.mimecast.com (us-smtp-delivery-124.mimecast.com [170.10.129.124]) by mx.groups.io with SMTP id smtpd.web10.66728.1701687197214640542 for ; Mon, 04 Dec 2023 02:53:17 -0800 X-Received: from mimecast-mx02.redhat.com (mx-ext.redhat.com [66.187.233.73]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.3, cipher=TLS_AES_256_GCM_SHA384) id us-mta-643-CwZ1t3a3MBuvwe3-1RM3Lg-1; Mon, 04 Dec 2023 05:53:13 -0500 X-MC-Unique: CwZ1t3a3MBuvwe3-1RM3Lg-1 X-Received: from smtp.corp.redhat.com (int-mx02.intmail.prod.int.rdu2.redhat.com [10.11.54.2]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by mimecast-mx02.redhat.com (Postfix) with ESMTPS id 9B0171C060CB; Mon, 4 Dec 2023 10:53:13 +0000 (UTC) X-Received: from dobby.home.kraxel.org (unknown [10.39.194.201]) by smtp.corp.redhat.com (Postfix) with ESMTPS id 6194940C6EB9; Mon, 4 Dec 2023 10:53:13 +0000 (UTC) X-Received: by dobby.home.kraxel.org (Postfix, from userid 1000) id E7B7376017; Mon, 4 Dec 2023 11:53:11 +0100 (CET) Date: Mon, 4 Dec 2023 11:53:11 +0100 From: "Gerd Hoffmann" To: Ard Biesheuvel Cc: devel@edk2.groups.io, Ard Biesheuvel , =?utf-8?B?TO+/vXN6bO+/vSDvv71yc2Vr?= , Oliver Steffen , Alexander Graf Subject: Re: [edk2-devel] [PATCH] ArmVirtPkg: Allow EFI memory attributes protocol to be disabled Message-ID: References: <20231204095215.1053032-1-ardb@google.com> MIME-Version: 1.0 In-Reply-To: <20231204095215.1053032-1-ardb@google.com> X-Scanned-By: MIMEDefang 3.4.1 on 10.11.54.2 X-Mimecast-Spam-Score: 0 X-Mimecast-Originator: redhat.com Precedence: Bulk List-Subscribe: List-Help: Sender: devel@edk2.groups.io List-Id: Mailing-List: list devel@edk2.groups.io; contact devel+owner@edk2.groups.io Reply-To: devel@edk2.groups.io,kraxel@redhat.com List-Unsubscribe-Post: List-Unsubscribe=One-Click List-Unsubscribe: X-Gm-Message-State: KxuPMyqap2afjcDawCbMfrmix7686176AA= Content-Type: text/plain; charset=us-ascii Content-Disposition: inline X-GND-Status: LEGIT Authentication-Results: spool.mail.gandi.net; dkim=pass header.d=groups.io header.s=20140610 header.b=ZvKBOwtc; dmarc=fail reason="SPF not aligned (relaxed), DKIM not aligned (relaxed)" header.from=redhat.com (policy=none); spf=pass (spool.mail.gandi.net: domain of bounce@groups.io designates 66.175.222.108 as permitted sender) smtp.mailfrom=bounce@groups.io > So let's introduce a QEMU command line option to indicate that the > protocol should not be exposed at all. > > -fw_cfg opt/org.tianocore/DisableMemAttrProtocol,string=y Can we name this 'MemAttrProtocol={y,n}' so it works both ways (enabling and disabling) without double negative? The fedora distro builds have the protocol disabled, and I'll keep it that way until we finally have fixed shim.efi builds. Having the option to enable this would be nice though. take care, Gerd -=-=-=-=-=-=-=-=-=-=-=- Groups.io Links: You receive all messages sent to this group. View/Reply Online (#112032): https://edk2.groups.io/g/devel/message/112032 Mute This Topic: https://groups.io/mt/102967690/7686176 Group Owner: devel+owner@edk2.groups.io Unsubscribe: https://edk2.groups.io/g/devel/unsub [rebecca@openfw.io] -=-=-=-=-=-=-=-=-=-=-=-