1 |
On 7/17/19 3:51 PM, Ian Zimmerman wrote: |
2 |
> pti=0 ibrs=0 ibpb=1 retp=1 -> fix variant #1 #2 if the microcode update is applied |
3 |
> pti=0 ibrs=2 ibpb=1 retp=1 -> fix variant #1 #2 on older processors that can disable indirect branch prediction without microcode updates |
4 |
> |
5 |
> Note: A microcode patch provided by the vendor must be applied in order for the tunables to be visible. |
6 |
> |
7 |
> which of course is self-contradictory, so not a full answer but maybe a |
8 |
> clue. |
9 |
> |
10 |
> Are those settings meant to go on a boot command line? |
11 |
> |
12 |
As for what Red Hat / Fedora is doing, no idea. |
13 |
|
14 |
The parameters I used came from the kernel documentation. |
15 |
|
16 |
|
17 |
Corbin |