From qubes-devel Mon Jul 25 09:11:07 2016 From: Joanna Rutkowska Date: Mon, 25 Jul 2016 09:11:07 +0000 To: qubes-devel Subject: Re: [qubes-devel] CoreBoot + Qubes on thinkpad x230 Message-Id: <20160725091106.GA20002 () work-mutt> X-MARC-Message: https://marc.info/?l=qubes-devel&m=146943788220969 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 On Sun, Jul 24, 2016 at 12:15:54PM -0600, Trammell Hudson wrote: > On Sun, Jul 24, 2016 at 11:47:53AM -0600, Trammell Hudson wrote: > > I reported on twitter that my Thinkpad x230 with a recent build of > > coreboot (from git head) appears to support DMAR and the IOMMU is > > configured with Qubes 3.1. [...] > > Here is the Xen dmesg and xl info output, which Johanna had requested: > (...) Hi, thanks for sharing. After a quick grep through the commits, it seems like the DMAR was already there since Oct 2015, but was broken for many platforms until this commit from March: https://github.com/coreboot/coreboot/commit/f3f654ddb90fedfb72eab99db6f9893e898ffbff Also, a quick grep inside src/northbridge/intel suggests coreboot implements DMAR only for sandybridge/ivebridge platforms. Are there any plans to change that anytime soon? CCing coreboot ML. One question out of curiosity: how did you verify the authenticity/integrity of your coreboot clone? I just cloned the repo also, but I see 1) no signed tags, nor 2) signed commits? Thanks, joanna. -----BEGIN PGP SIGNATURE----- iQIcBAEBCAAGBQJXlderAAoJEDOT2L8N3GcYHdAP/02a2SjiwDpPNsHk2Q/Dokx2 QJMlTUgSas8w8Lo4G+sljKJxsYh+xBL4Nl5iQpqk1bgB/rKGsCOpakTawO7jzWa1 SbgIg1IoBDi9PbB7ivszTACQK2rysGybj8CRTdr0qu0BQbdY5BTGOeDPMqlHUpnt mPTVfTgBk9ZK8RlrNbP+8Pyo47+eODYGGByO+/qNUNod+UB0Z8f1wrusF0wLLL5I 0yAuV1RQxp1tOpsKJo13GVjMP3d1iJ2GEyarIS3kF1EF4aKDRF+iWYL16SB3Bnqm UWCjuD1t3ZKy5jA6RIVFDSiHjAZB1zoB4rq3a9ZN/FePCsrHRbO5Ax696DrPaonT khC+03aLlgBZq7vdo1FbOatDos5FJhf+iy+UG6JCI/SThSvCm5b8+oWX98pOypSF jddfZzaCuWrQlncu7sUXvD+Yr4N/jPHvaYZ6mhIPohfLjnz5znimwYG1Xw5JjFvv OgroWin6fcDPdp6/V2nOCvfYtqK386VMPY620V5vb9VsY6msg7umwb0WhMWQlLCh kCKKB+h+szWqDm1vOraW6UGH5BMgFpkkxP72ZyaBXIirG8JWBUDDuqcGMPC5eEce tBZTLrk9nhHUZp2kp/BpqSUwtOLzmDW1qKsAxHxKSwCoTDI8ynUdqPjSrZNxjLnQ TS1H1rtlme8B7siQulNj =YLEy -----END PGP SIGNATURE----- -- You received this message because you are subscribed to the Google Groups "qubes-devel" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-devel+unsubscribe@googlegroups.com. To post to this group, send email to qubes-devel@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-devel/20160725091106.GA20002%40work-mutt. For more options, visit https://groups.google.com/d/optout.