On 7/17/19 3:51 PM, Ian Zimmerman wrote: > pti=0 ibrs=0 ibpb=1 retp=1 -> fix variant #1 #2 if the microcode update > is applied > pti=0 ibrs=2 ibpb=1 retp=1 -> fix variant #1 #2 on older processors that > can disable indirect branch prediction without microcode updates > > Note: A microcode patch provided by the vendor must be applied in order > for the tunables to be visible. > > which of course is self-contradictory, so not a full answer but maybe a > clue. > > Are those settings meant to go on a boot command line? > As for what Red Hat / Fedora is doing, no idea.
The parameters I used came from the kernel documentation. Corbin