Would there be any interest in having a sysctl to enable/disable
meltdown and mds mitigations?
I was poking around 'sys/arch/amd64/amd64/cpu.c' and it appears that
these mitigations are currently hardcoded.

The benefit of having these sysctl's is that they would allow users to
disable the mitigations for a tradeoff in performance. For example, I
have an OpenBSD router only running dhcpd and pf which is struggling
to keep up with a gigabit connection. Given that the system is only
doing routing, I would assume it would be relatively low risk to
disable the mitigations to get better performance.

Thoughts?
Elias

Reply via email to