From: Wei Hu <weh@linux.microsoft.com>
To: linux-hyperv@vger.kernel.org
Cc: linux-kernel@vger.kernel.org,
"K. Y. Srinivasan" <kys@microsoft.com>,
Haiyang Zhang <haiyangz@microsoft.com>,
Wei Liu <wei.liu@kernel.org>, Dexuan Cui <decui@microsoft.com>,
Long Li <longli@microsoft.com>
Subject: [PATCH v7 0/9] mshv: add SEV-SNP support for MSHV root partitions
Date: Tue, 22 Sep 2026 04:10:17 +0000 [thread overview]
Message-ID: <20260922041043.171543-1-weh@linux.microsoft.com> (raw)
In-Reply-To: <20260918115741.3791682-1-weh@linux.microsoft.com>
This series adds support for creating and managing AMD SEV-SNP
confidential virtual machines through the Microsoft Hypervisor root
partition driver.
The series adds fixed-size MSHV UAPI definitions, the required Microsoft
Hypervisor ABI definitions and hypercall helpers, partition ioctls,
capability discovery, processor-feature handling, ordered encrypted-memory
teardown, and nested-root SynIC handling.
Two prerequisite fixes lead the series. The first makes memory-region
unmap ownership explicit and retains mappings, pinned pages, the partition,
and the module whenever checked hypervisor unmap cannot prove cleanup. The
second publishes and withdraws per-CPU SynIC pointers so interrupt readers
cannot observe mappings after initialization failure or CPU teardown.
Testing:
- Built the complete x86_64 kernel and modules with W=1.
- Built the affected ARM64 objects with W=1.
- Ran scripts/checkpatch.pl --strict on every production patch.
- Passed all 9 KUnit host-access tests on a separate test-only branch.
- Passed the Cloud Hypervisor single-CVM launch test on the exact
userspace revision used for v6.
The development host needs two additional local runtime patches to boot as
a nested MSHV root partition: EFI HvLoader root-partition boot enablement
and the non-upstreamable nested-VMBus interrupt-vector workaround. Neither
patch, the KUnit follow-up, nor any runtime-only commit is part of this
nine-patch series.
Changes since v6:
- In patch 6, periodically reschedule newly added region-sized scans,
bitmap updates, duplicate-PFN validation, and host-access hypercall
batching so large memory regions cannot monopolize a CPU.
- In patch 6, allow a fatal signal to stop isolated-page import between
completed batches. Return -EINTR with the exact completed prefix so
userspace can resume safely without abandoning an in-flight async
hypercall.
- Patches 1-5 and 7-9 are unchanged from v6.
Link: https://lore.kernel.org/linux-hyperv/20260918115741.3791682-1-weh@linux.microsoft.com/
Wei Hu (3):
mshv: retain memory regions until unmap succeeds
mshv: clear SynIC mappings before freeing them
mshv: set up own SynIC registers on a nested root partition
Wei Liu (6):
mshv: add SEV-SNP UAPI definitions
mshv: add SEV-SNP PSP request hypercall
mshv: add SEV-SNP isolated page hypercalls
mshv: wire SEV-SNP partition ioctls
mshv: detect and report SEV-SNP support at init
mshv: use safe partition CPU feature defaults
drivers/hv/mshv_regions.c | 522 ++++++++++---
drivers/hv/mshv_root.h | 128 ++-
drivers/hv/mshv_root_hv_call.c | 370 +++++++--
drivers/hv/mshv_root_main.c | 1325 ++++++++++++++++++++++++++++++--
drivers/hv/mshv_synic.c | 172 +++--
include/hyperv/hvgdk_mini.h | 31 +
include/hyperv/hvhdk.h | 124 ++-
include/hyperv/hvhdk_mini.h | 53 ++
include/uapi/linux/mshv.h | 117 ++-
9 files changed, 2538 insertions(+), 304 deletions(-)
--
2.43.0
next prev parent reply other threads:[~2026-09-22 4:10 UTC|newest]
Thread overview: 48+ messages / expand[flat|nested] mbox.gz Atom feed top
2026-08-25 4:04 [PATCH v3 0/7] " Wei Hu
2026-08-25 4:04 ` [PATCH v3 1/7] mshv: add SEV-SNP UAPI definitions Wei Hu
2026-08-25 4:04 ` [PATCH v3 2/7] mshv: add SEV-SNP PSP request hypercall Wei Hu
2026-08-25 4:04 ` [PATCH v3 3/7] mshv: add SEV-SNP isolated page hypercalls Wei Hu
2026-08-25 4:04 ` [PATCH v3 4/7] mshv: wire SEV-SNP partition ioctls Wei Hu
2026-08-25 4:04 ` [PATCH v3 5/7] mshv: detect and report SEV-SNP support at init Wei Hu
2026-08-25 4:04 ` [PATCH v3 6/7] mshv: use safe partition CPU feature defaults Wei Hu
2026-08-25 4:04 ` [PATCH v3 7/7] mshv: set up own SynIC registers on a nested root partition Wei Hu
2026-08-31 11:26 ` [PATCH v4 0/9] mshv: add SEV-SNP support for MSHV root partitions Wei Hu
2026-08-31 11:26 ` [PATCH v4 1/9] mshv: retain memory regions until unmap succeeds Wei Hu
2026-08-31 11:26 ` [PATCH v4 2/9] mshv: clear SynIC mappings before freeing them Wei Hu
2026-08-31 11:26 ` [PATCH v4 3/9] mshv: add SEV-SNP UAPI definitions Wei Hu
2026-08-31 11:26 ` [PATCH v4 4/9] mshv: add SEV-SNP PSP request hypercall Wei Hu
2026-08-31 11:26 ` [PATCH v4 5/9] mshv: add SEV-SNP isolated page hypercalls Wei Hu
2026-08-31 11:26 ` [PATCH v4 6/9] mshv: wire SEV-SNP partition ioctls Wei Hu
2026-08-31 11:26 ` [PATCH v4 7/9] mshv: detect and report SEV-SNP support at init Wei Hu
2026-08-31 11:26 ` [PATCH v4 8/9] mshv: use safe partition CPU feature defaults Wei Hu
2026-08-31 11:26 ` [PATCH v4 9/9] mshv: set up own SynIC registers on a nested root partition Wei Hu
2026-09-08 12:13 ` [PATCH v5 0/9] mshv: add SEV-SNP support for MSHV root partitions Wei Hu
2026-09-08 12:13 ` [PATCH v5 1/9] mshv: retain memory regions until unmap succeeds Wei Hu
2026-09-08 12:13 ` [PATCH v5 2/9] mshv: clear SynIC mappings before freeing them Wei Hu
2026-09-08 12:13 ` [PATCH v5 3/9] mshv: add SEV-SNP UAPI definitions Wei Hu
2026-09-08 12:13 ` [PATCH v5 4/9] mshv: add SEV-SNP PSP request hypercall Wei Hu
2026-09-08 12:13 ` [PATCH v5 5/9] mshv: add SEV-SNP isolated page hypercalls Wei Hu
2026-09-08 12:13 ` [PATCH v5 6/9] mshv: wire SEV-SNP partition ioctls Wei Hu
2026-09-08 12:13 ` [PATCH v5 7/9] mshv: detect and report SEV-SNP support at init Wei Hu
2026-09-08 12:13 ` [PATCH v5 8/9] mshv: use safe partition CPU feature defaults Wei Hu
2026-09-08 12:13 ` [PATCH v5 9/9] mshv: set up own SynIC registers on a nested root partition Wei Hu
2026-09-18 11:57 ` [PATCH v6 0/9] mshv: add SEV-SNP support for MSHV root partitions Wei Hu
2026-09-18 11:57 ` [PATCH v6 1/9] mshv: retain memory regions until unmap succeeds Wei Hu
2026-09-18 11:57 ` [PATCH v6 2/9] mshv: clear SynIC mappings before freeing them Wei Hu
2026-09-18 11:57 ` [PATCH v6 3/9] mshv: add SEV-SNP UAPI definitions Wei Hu
2026-09-18 11:57 ` [PATCH v6 4/9] mshv: add SEV-SNP PSP request hypercall Wei Hu
2026-09-18 11:57 ` [PATCH v6 5/9] mshv: add SEV-SNP isolated page hypercalls Wei Hu
2026-09-18 11:57 ` [PATCH v6 6/9] mshv: wire SEV-SNP partition ioctls Wei Hu
2026-09-18 11:57 ` [PATCH v6 7/9] mshv: detect and report SEV-SNP support at init Wei Hu
2026-09-18 11:57 ` [PATCH v6 8/9] mshv: use safe partition CPU feature defaults Wei Hu
2026-09-18 11:57 ` [PATCH v6 9/9] mshv: set up own SynIC registers on a nested root partition Wei Hu
2026-09-22 4:10 ` Wei Hu [this message]
2026-09-22 4:10 ` [PATCH v7 1/9] mshv: retain memory regions until unmap succeeds Wei Hu
2026-09-22 4:10 ` [PATCH v7 2/9] mshv: clear SynIC mappings before freeing them Wei Hu
2026-09-22 4:10 ` [PATCH v7 3/9] mshv: add SEV-SNP UAPI definitions Wei Hu
2026-09-22 4:10 ` [PATCH v7 4/9] mshv: add SEV-SNP PSP request hypercall Wei Hu
2026-09-22 4:10 ` [PATCH v7 5/9] mshv: add SEV-SNP isolated page hypercalls Wei Hu
2026-09-22 4:10 ` [PATCH v7 6/9] mshv: wire SEV-SNP partition ioctls Wei Hu
2026-09-22 4:10 ` [PATCH v7 7/9] mshv: detect and report SEV-SNP support at init Wei Hu
2026-09-22 4:10 ` [PATCH v7 8/9] mshv: use safe partition CPU feature defaults Wei Hu
2026-09-22 4:10 ` [PATCH v7 9/9] mshv: set up own SynIC registers on a nested root partition Wei Hu
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20260922041043.171543-1-weh@linux.microsoft.com \
--to=weh@linux.microsoft.com \
--cc=decui@microsoft.com \
--cc=haiyangz@microsoft.com \
--cc=kys@microsoft.com \
--cc=linux-hyperv@vger.kernel.org \
--cc=linux-kernel@vger.kernel.org \
--cc=longli@microsoft.com \
--cc=wei.liu@kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®