diff options
author | Andrey Petrov <andrey.petrov@intel.com> | 2016-11-30 17:58:38 -0800 |
---|---|---|
committer | Aaron Durbin <adurbin@chromium.org> | 2016-12-02 16:39:55 +0100 |
commit | 89e39b5c55cd7612c70cb25d2b2000965cc25539 (patch) | |
tree | 86dffb03b8280f1eb34ea66a2bee4f041dc00ad2 /src/soc/intel/apollolake/include | |
parent | 3b637531c91d0cb290dcff26584274f41c06ec85 (diff) |
soc/intel/apollolake: Drop privilege level to IA_UNTRUSTED
As per guidelines CPU security level should be dropped before OS start,
so that certain MSRs are locked out. Drop privilege levels on all logical
CPUs.
BUG=chrome-os-partner:60454
TEST=iotools rdmsr x 0x120, make sure bit 6 is set, rdmsr x 0x121 results
in io error.
Change-Id: I67540f6da16f58b822db9160d00b7a5e235188db
Signed-off-by: Andrey Petrov <andrey.petrov@intel.com>
Reviewed-on: https://review.coreboot.org/17665
Reviewed-by: Aaron Durbin <adurbin@chromium.org>
Tested-by: build bot (Jenkins)
Diffstat (limited to 'src/soc/intel/apollolake/include')
-rw-r--r-- | src/soc/intel/apollolake/include/soc/cpu.h | 2 |
1 files changed, 2 insertions, 0 deletions
diff --git a/src/soc/intel/apollolake/include/soc/cpu.h b/src/soc/intel/apollolake/include/soc/cpu.h index 38ce4ff913..db9d3dde05 100644 --- a/src/soc/intel/apollolake/include/soc/cpu.h +++ b/src/soc/intel/apollolake/include/soc/cpu.h @@ -31,6 +31,8 @@ void set_max_freq(void); #define MSR_PLATFORM_INFO 0xce #define MSR_POWER_MISC 0x120 +#define ENABLE_IA_UNTRUSTED (1 << 6) +#define FLUSH_DL1_L2 (1 << 8) #define MSR_CORE_THREAD_COUNT 0x35 #define MSR_EVICT_CTL 0x2e0 #define MSR_EMULATE_PM_TMR 0x121 |