Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-12-01 Thread Stefano Stabellini
On Thu, 1 Dec 2016, Volodymyr Babchuk wrote: > > - TEE may run in parallel of the guest OS, this means that we have > > to make sure the page will never be removed by the guest OS (see > > XENMEM_decrease_reservation hypercall). > Hmmm... I don't know how XEN handles guest memory in

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-12-01 Thread Stefano Stabellini
On Thu, 1 Dec 2016, Volodymyr Babchuk wrote: > Hello Julien, > > > > On 1 December 2016 at 16:24, Julien Grall wrote: > > Hi Stefano, > > > > > > On 30/11/16 21:53, Stefano Stabellini wrote: > >> > >> On Mon, 28 Nov 2016, Julien Grall wrote: > > > > If not, then

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-12-01 Thread Volodymyr Babchuk
Hi Julien On 1 December 2016 at 17:19, Julien Grall wrote: > On 29/11/16 19:19, Volodymyr Babchuk wrote: >> >> Hi Julien, > > > Hi Volodymyr, > > >> >> >> On 29 November 2016 at 20:55, Julien Grall wrote: >>> >>> Hi Volodymyr, >>> >>> On 29/11/16

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-12-01 Thread Julien Grall
On 29/11/16 19:19, Volodymyr Babchuk wrote: Hi Julien, Hi Volodymyr, On 29 November 2016 at 20:55, Julien Grall wrote: Hi Volodymyr, On 29/11/16 17:40, Volodymyr Babchuk wrote: On 29 November 2016 at 18:02, Julien Grall wrote: On 29/11/16

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-12-01 Thread Volodymyr Babchuk
Hello Julien, On 1 December 2016 at 16:24, Julien Grall wrote: > Hi Stefano, > > > On 30/11/16 21:53, Stefano Stabellini wrote: >> >> On Mon, 28 Nov 2016, Julien Grall wrote: > > If not, then it might be worth to consider a 3rd solution where the TEE > SMC

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-12-01 Thread Julien Grall
Hi Stefano, On 30/11/16 21:53, Stefano Stabellini wrote: On Mon, 28 Nov 2016, Julien Grall wrote: If not, then it might be worth to consider a 3rd solution where the TEE SMC calls are forwarded to a specific domain handling the SMC on behalf of the guests. This would allow to upgrade the TEE

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-30 Thread Stefano Stabellini
On Mon, 28 Nov 2016, Julien Grall wrote: > > > If not, then it might be worth to consider a 3rd solution where the TEE > > > SMC > > > calls are forwarded to a specific domain handling the SMC on behalf of the > > > guests. This would allow to upgrade the TEE layer without having to > > > upgrade

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-29 Thread Volodymyr Babchuk
Hi Julien, On 29 November 2016 at 20:55, Julien Grall wrote: > Hi Volodymyr, > > On 29/11/16 17:40, Volodymyr Babchuk wrote: >> >> On 29 November 2016 at 18:02, Julien Grall wrote: >>> >>> On 29/11/16 15:27, Volodymyr Babchuk wrote: On 28

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-29 Thread Julien Grall
Hi Volodymyr, On 29/11/16 17:40, Volodymyr Babchuk wrote: On 29 November 2016 at 18:02, Julien Grall wrote: On 29/11/16 15:27, Volodymyr Babchuk wrote: On 28 November 2016 at 22:10, Julien Grall wrote: On 28/11/16 18:09, Volodymyr Babchuk wrote:

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-29 Thread Volodymyr Babchuk
On 29 November 2016 at 18:02, Julien Grall wrote: > Hello Volodymyr, > > On 29/11/16 15:27, Volodymyr Babchuk wrote: >> >> On 28 November 2016 at 22:10, Julien Grall wrote: >>> >>> On 28/11/16 18:09, Volodymyr Babchuk wrote: On 28 November

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-29 Thread Julien Grall
Hello Volodymyr, On 29/11/16 15:27, Volodymyr Babchuk wrote: On 28 November 2016 at 22:10, Julien Grall wrote: On 28/11/16 18:09, Volodymyr Babchuk wrote: On 28 November 2016 at 18:14, Julien Grall wrote: On 24/11/16 21:10, Volodymyr Babchuk

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-29 Thread Volodymyr Babchuk
On 28 November 2016 at 22:10, Julien Grall wrote: > > > On 28/11/16 18:09, Volodymyr Babchuk wrote: >> >> Hello, > > > Hello Volodymyr, > >> On 28 November 2016 at 18:14, Julien Grall wrote: >>> >>> On 24/11/16 21:10, Volodymyr Babchuk wrote:

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-29 Thread Volodymyr Babchuk
Hi Dongli! On 29 November 2016 at 06:47, Dongli Zhang wrote: > 2016-11-25 5:10 GMT+08:00 Volodymyr Babchuk : >> Hello all, > > Hi Volodymyr! > >> >> My name is Volodymyr Babchuk, I'm working on EPAM Systems with bunch >> of other guys like

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-28 Thread Dongli Zhang
2016-11-25 5:10 GMT+08:00 Volodymyr Babchuk : > Hello all, Hi Volodymyr! > > My name is Volodymyr Babchuk, I'm working on EPAM Systems with bunch > of other guys like Artem Mygaiev or Andrii Anisov. My responsibility > there is security in embedded systems. > > I would

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-28 Thread Julien Grall
On 28/11/16 18:09, Volodymyr Babchuk wrote: Hello, Hello Volodymyr, On 28 November 2016 at 18:14, Julien Grall wrote: On 24/11/16 21:10, Volodymyr Babchuk wrote: My name is Volodymyr Babchuk, I'm working on EPAM Systems with bunch of other guys like Artem Mygaiev

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-28 Thread Volodymyr Babchuk
Hello, On 28 November 2016 at 18:14, Julien Grall wrote: > On 24/11/16 21:10, Volodymyr Babchuk wrote: >> >> Hello all, > > > Hello, > >> My name is Volodymyr Babchuk, I'm working on EPAM Systems with bunch >> of other guys like Artem Mygaiev or Andrii Anisov. My

Re: [Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-28 Thread Julien Grall
On 24/11/16 21:10, Volodymyr Babchuk wrote: Hello all, Hello, My name is Volodymyr Babchuk, I'm working on EPAM Systems with bunch of other guys like Artem Mygaiev or Andrii Anisov. My responsibility there is security in embedded systems. I would like to discuss approaches to OP-TEE support

[Xen-devel] [RFD] OP-TEE (and probably other TEEs) support

2016-11-24 Thread Volodymyr Babchuk
Hello all, My name is Volodymyr Babchuk, I'm working on EPAM Systems with bunch of other guys like Artem Mygaiev or Andrii Anisov. My responsibility there is security in embedded systems. I would like to discuss approaches to OP-TEE support in XEN. But first small introduction for those who is