On 7/17/19 3:51 PM, Ian Zimmerman wrote:
>     pti=0 ibrs=0 ibpb=1 retp=1 -> fix variant #1 #2 if the microcode update 
> is applied
>     pti=0 ibrs=2 ibpb=1 retp=1 -> fix variant #1 #2 on older processors that 
> can disable indirect branch prediction without microcode updates
>
>     Note: A microcode patch provided by the vendor must be applied in order 
> for the tunables to be visible.
>
> which of course is self-contradictory, so not a full answer but maybe a
> clue.
>
> Are those settings meant to go on a boot command line?
>
As for what Red Hat / Fedora is doing, no idea.

The parameters I used came from the kernel documentation.


Corbin


Reply via email to