[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [PATCH v2 3/6] arm/mpu: Implement free_init_memory for MPU systems


  • To: "Orzel, Michal" <Michal.Orzel@xxxxxxx>
  • From: Luca Fancellu <Luca.Fancellu@xxxxxxx>
  • Date: Tue, 13 Jan 2026 11:13:59 +0000
  • Accept-language: en-GB, en-US
  • Arc-authentication-results: i=2; mx.microsoft.com 1; spf=pass (sender ip is 4.158.2.129) smtp.rcpttodomain=amd.com smtp.mailfrom=arm.com; dmarc=pass (p=none sp=none pct=100) action=none header.from=arm.com; dkim=pass (signature was verified) header.d=arm.com; arc=pass (0 oda=1 ltdi=1 spf=[1,1,smtp.mailfrom=arm.com] dkim=[1,1,header.d=arm.com] dmarc=[1,1,header.from=arm.com])
  • Arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
  • Arc-message-signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=zPWre7sAnBTZifT2hNwGgG9mgoLyl51TBLLYiiBMSV0=; b=zMkATIw1TAF5py8loXQ/AGhl7Tce1XSPowWWcdpPpbxmSZiZv2cSSx5AZZY4AKeNitAXWr4PosPRvXnHsSAaLei30Hmo16U7x+PBJCbu7sTUVwsDlHvzIxJOS8gSmb1gG1XFS3mR73bufIi72sstD6V0VSV+qF+EQff8zOtIiLlEgLTp1fjzzRCz0odmgerBgMZMdUaxgwjNXCpbA8vfHrfr2qq4d/MUstEQroOn2DfWnzLflgN0irWaZrRI2nD8baMbw8Uw0eOez8EP5AEe4tyElw3a2OIFaIu655HOMbOQ9UdjSIRkQ/XT8RqgP1KpP1kaDZALEyqmliQC9x9q0A==
  • Arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=zPWre7sAnBTZifT2hNwGgG9mgoLyl51TBLLYiiBMSV0=; b=GKCxTZj3cHIM3nRs21IAaL9HRI9D9Tt75SnhBXAjjOeh39fhSZYC9vknOHylAcBJmipv8j7fLvOcb9ZGVwywWRnyvW6osN2MT4xDUEi9A04gtzlBqXw6GpaZfYqptWSlEekhqqiZF9/B8vtDJzQ3Wxlu964S5P7OWJ1PA6icT5Cfo+Ht+53dSQcdpyGgVO/OCeWJ7dFH9wCtFi3zZnRT2L1m2lCxrTjN7CIoyN7knnlbOrkIKgzZalMthTK/055qmt6PZHZ8NDFLQJQAtxTpGCeLBVo9szMAG+bUlBfEodw7O+Hsd3RuDEVN87bEO48UeFKfvkSeEOoPkWwE/WNIPA==
  • Arc-seal: i=2; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=pass; b=arwg0xz2NrZW1PCaZ3BiYEYDS8PlfavOOgCr5tTS4pyeLgkdIt1KPNQ5UVFkZ1eeAmV8gR5w/UyZSe9xyvqQzd9uzs0epKXZ8CgkZO2UXbYaLDwtNdmhsEECJLYnb58mgnDqooguXtNm81ZSvuRYWidZAHUq+hXkuVdRGUIJ/SGNfqPs9YL6ZZ+53Ri20qto37YePWRlWQgooVB8R144RPlLmxhNax/x5gNUZGCybCG9Y3W4xKjGYg5O+5n2ihAcT8ctoXJQWbi/jg3KdVCG+VKSbTDSKGaGg5aVhXMUV9NUnNnEo0NBmZhNm63HZav+aGF0IiEb8o9PLvqsLfYU7g==
  • Arc-seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=bPTfgCUCk4N0QZy8KhEAwPYE0nKwsevlt/bWmfjRmKlC3+nWKuMqwPMFlEcqQyZAi0RPzUZX8/lWgBTuBjqhLG9oHGsDC7KF0QRA9wP3hekR8s7p7InxA2Es1FCdGh7CqY+Y7hPE0CKsFmbWiWfVjDrqUwzNgcwsZ/uNXWIRmQp4oGYm9Asau4jGNQw3ncAhk9ktQAYd5jMGr7o4OwNAtWGlYN6tRJxPkupqHhofrlspa0uEeFzL4tYVy45uAbUrx+qz/A2T1vxUfawq8J/bU/pGfzXB4eOYJ0lfzJgxFjbCSZrZAqi2ifESVxqQbGuv68KVvPurq9ug2XtFiujJrQ==
  • Authentication-results-original: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=arm.com;
  • Cc: Harry Ramsey <Harry.Ramsey@xxxxxxx>, "xen-devel@xxxxxxxxxxxxxxxxxxxx" <xen-devel@xxxxxxxxxxxxxxxxxxxx>, Penny Zheng <Penny.Zheng@xxxxxxx>, Stefano Stabellini <sstabellini@xxxxxxxxxx>, Julien Grall <julien@xxxxxxx>, Bertrand Marquis <Bertrand.Marquis@xxxxxxx>, Volodymyr Babchuk <Volodymyr_Babchuk@xxxxxxxx>, Wei Chen <Wei.Chen@xxxxxxx>, Hari Limaye <Hari.Limaye@xxxxxxx>
  • Delivery-date: Tue, 13 Jan 2026 11:15:23 +0000
  • List-id: Xen developer discussion <xen-devel.lists.xenproject.org>
  • Nodisclaimer: true
  • Thread-index: AQHchHaKLhHT1ERV8EebnAsLklGjCrVP8l2A
  • Thread-topic: [PATCH v2 3/6] arm/mpu: Implement free_init_memory for MPU systems

Hi Michal,

>> 
>> -static bool is_mm_attr_match(pr_t *region, unsigned int attributes)
>> +static int is_mm_attr_match(pr_t *region, unsigned int attributes)
>> {
>>     if ( region->prbar.reg.ro != PAGE_RO_MASK(attributes) )
>> -    {
>> -        printk(XENLOG_WARNING
>> -               "Mismatched Access Permission attributes (%#x instead of 
>> %#x)\n",
>> -               region->prbar.reg.ro, PAGE_RO_MASK(attributes));
>> -        return false;
>> -    }
>> +        return MPU_ATTR_RO_MISMATCH;
>> 
>>     if ( region->prbar.reg.xn != PAGE_XN_MASK(attributes) )
>> -    {
>> -        printk(XENLOG_WARNING
>> -               "Mismatched Execute Never attributes (%#x instead of %#x)\n",
>> -               region->prbar.reg.xn, PAGE_XN_MASK(attributes));
>> -        return false;
>> -    }
>> +        return MPU_ATTR_XN_MISMATCH;
> Later below you don't seem to differentiate between MPU_ATTR_RO_MISMATCH and
> MPU_ATTR_XN_MISMATCH. Therefore I would suggest to keep them as one to 
> simplify
> the code.
> 
>> 
>>     if ( region->prlar.reg.ai != PAGE_AI_MASK(attributes) )
>> -    {
>> -        printk(XENLOG_WARNING
>> -               "Mismatched Memory Attribute Index (%#x instead of %#x)\n",
>> -               region->prlar.reg.ai, PAGE_AI_MASK(attributes));
>> -        return false;
>> -    }
>> +        return MPU_ATTR_AI_MISMATCH;
>> 
>> -    return true;
>> +    return 0;
>> }
>> 
>> /* Map a frame table to cover physical addresses ps through pe */
>> @@ -357,12 +342,45 @@ static int xen_mpumap_update_entry(paddr_t base, 
>> paddr_t limit,
>>     */
>>     if ( flags_has_page_present && (rc >= MPUMAP_REGION_FOUND) )
>>     {
>> -        if ( !is_mm_attr_match(&xen_mpumap[idx], flags) )
>> +        int attr_match = is_mm_attr_match(&xen_mpumap[idx], flags);
>> +
>> +        /* We do not support modifying AI attribute. */
>> +        if ( MPU_ATTR_AI_MISMATCH == attr_match )
>>         {
>> -            printk("Modifying an existing entry is not supported\n");
>> +            printk(XENLOG_ERR
>> +                   "Modifying memory attribute is not supported\n");
>>             return -EINVAL;
>>         }
>> 
>> +        /*
>> +         * Permissions RO and XN can be changed only by the full region.
>> +         * Permissions that match can continue and just increment refcount.
>> +         */
>> +        if ( MPU_ATTR_RO_MISMATCH == attr_match ||
> Enlcose in brackets () || ()
> 
>> +             MPU_ATTR_XN_MISMATCH == attr_match )
>> +        {
>> +            if ( rc == MPUMAP_REGION_INCLUSIVE )
>> +            {
>> +                printk(XENLOG_ERR
>> +                       "Cannot modify partial region permissions\n");
>> +                return -EINVAL;
>> +            }
>> +
>> +            if ( xen_mpumap[idx].refcount != 0 )
>> +            {
>> +                printk(XENLOG_ERR
>> +                       "Cannot modify memory permissions for a region 
>> mapped multiple times\n");
> Memory permission? Here you are checking for XN/RO.

Right, is it better “memory attributes”?

> 
>> +                return -EINVAL;
>> +            }
>> +
>> +            /* Set new permission */
>> +            xen_mpumap[idx].prbar.reg.ro = PAGE_RO_MASK(flags);
>> +            xen_mpumap[idx].prbar.reg.xn = PAGE_XN_MASK(flags);
> Here you always change both, that's why there is no need to provide two 
> separate
> macros as I mentioned above.

good point.

Cheers,
Luca


 


Rackspace

Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.