[PATCH v2 0/2] kvm: sev: Add SNP guest request throttling

From: Dionna Glaze
Date: Thu Nov 17 2022 - 13:12:15 EST


This patch series is based on

[PATCH Part2 v6 00/49] Add AMD Secure Nested Paging (SEV-SNP)

and is requested to be rolled into the upcoming v7 of that patch series.

The GHCB specification recommends that SNP guest requests should be
rate limited. This 2 patch series adds such rate limiting with a 2
burst, 2 second interval per VM as the default values for two new
kvm-amd module parameters:
guest_request_throttle_s
guest_request_throttle_burst

This patch series cooperates with the guest series,

Add throttling detection to sev-guest

in order for guests to retry when throttled, rather than disable the
VMPCK and fail to complete their request.

Changes since v1:
* Added missing Ccs to patches.

Dionna Glaze (2):
kvm: sev: Add SEV-SNP guest request throttling
kvm: sev: If ccp is busy, report throttled to guest

arch/x86/include/asm/sev-common.h | 1 +
arch/x86/kvm/svm/sev.c | 46 +++++++++++++++++++++++++++++--
arch/x86/kvm/svm/svm.h | 3 ++
3 files changed, 48 insertions(+), 2 deletions(-)

--
2.38.1.584.g0f3c55d4c2-goog