From: Tom Lendacky Date: Tue, 26 Jan 2021 17:36:45 +0000 (-0600) Subject: sev/i386: Require in-kernel irqchip support for SEV-ES guests X-Git-Url: http://git.maquefel.me/?a=commitdiff_plain;h=9681f8677f26320fff488e56b500a3d7d5cf1a49;p=qemu.git sev/i386: Require in-kernel irqchip support for SEV-ES guests In prep for AP booting, require the use of in-kernel irqchip support. This lessens the Qemu support burden required to boot APs. Cc: Paolo Bonzini Cc: Richard Henderson Cc: Eduardo Habkost Reviewed-by: Dr. David Alan Gilbert Signed-off-by: Tom Lendacky Reviewed-by: Venu Busireddy Message-Id: Signed-off-by: Paolo Bonzini --- diff --git a/target/i386/sev.c b/target/i386/sev.c index dc0e53019b..35b9259bfc 100644 --- a/target/i386/sev.c +++ b/target/i386/sev.c @@ -753,6 +753,12 @@ int sev_kvm_init(ConfidentialGuestSupport *cgs, Error **errp) sev->api_minor = status.api_minor; if (sev_es_enabled()) { + if (!kvm_kernel_irqchip_allowed()) { + error_report("%s: SEV-ES guests require in-kernel irqchip support", + __func__); + goto err; + } + if (!(status.flags & SEV_STATUS_FLAGS_CONFIG_ES)) { error_report("%s: guest policy requires SEV-ES, but " "host SEV-ES support unavailable",