From: Dave Hansen Date: Fri, 8 Dec 2023 17:07:40 +0000 (-0800) Subject: x86/virt/tdx: Disable TDX host support when kexec is enabled X-Git-Url: https://repo.jachan.dev/J-linux.git/commitdiff_plain/cb8eb06d50fcf4a478813a612f68c38cca45c742 x86/virt/tdx: Disable TDX host support when kexec is enabled TDX host support currently lacks the ability to handle kexec. Disable TDX when kexec is enabled. Signed-off-by: Dave Hansen Link: https://lore.kernel.org/all/20231208170740.53979-20-dave.hansen%40intel.com --- diff --git a/arch/x86/Kconfig b/arch/x86/Kconfig index e255d8ae5e77..01cdb16acff6 100644 --- a/arch/x86/Kconfig +++ b/arch/x86/Kconfig @@ -1973,6 +1973,7 @@ config INTEL_TDX_HOST depends on X86_X2APIC select ARCH_KEEP_MEMBLOCK depends on CONTIG_ALLOC + depends on !KEXEC_CORE help Intel Trust Domain Extensions (TDX) protects guest VMs from malicious host and certain physical attacks. This option enables necessary TDX