From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.4 (2020-01-24) on inbox.vuxu.org X-Spam-Level: * X-Spam-Status: No, score=1.0 required=5.0 tests=DKIM_ADSP_DISCARD,DKIM_SIGNED, DKIM_VALID,HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI, RCVD_IN_DNSWL_NONE autolearn=no autolearn_force=no version=3.4.4 Received: from tb-ob0.topicbox.com (tb-ob0.topicbox.com [64.147.108.117]) by inbox.vuxu.org (Postfix) with ESMTP id 7D7882224F for ; Fri, 15 Nov 2024 17:13:08 +0100 (CET) Received: from tb-mx0.topicbox.com (tb-mx0.nyi.icgroup.com [10.90.30.73]) by tb-ob0.topicbox.com (Postfix) with ESMTP id 442DC1FB27 for ; Fri, 15 Nov 2024 11:13:07 -0500 (EST) (envelope-from bounce.mMf349e5c2944c94ccad60379b.r81958daa-7202-11ef-bbf2-18142b2d11b0@illumos.bounce.topicbox.com) Received: by tb-mx0.topicbox.com (Postfix, from userid 1132) id 428E32E9AF9; Fri, 15 Nov 2024 11:13:07 -0500 (EST) ARC-Authentication-Results: i=2; topicbox.com; arc=pass; dkim=pass (1024-bit rsa key sha256) header.d=fiddaman.net header.i=@fiddaman.net header.b=cZcaFYiD header.a=rsa-sha256 header.s=boomer x-bits=1024; dmarc=none policy.published-domain-policy=none policy.applied-disposition=none policy.evaluated-disposition=none (p=none,d=none,d.eval=none) policy.policy-from=p header.from=fiddaman.net; spf=pass smtp.mailfrom="prvs=1049976e29=illumos@fiddaman.net" smtp.helo=mail.citrus-it.net; x-internal-arc=fail (as.1.topicbox.com=pass, ams.1.topicbox.com=fail (message has been altered)) (Message modified while forwarding at Topicbox) ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d= topicbox.com; h=date:from:to:message-id:mime-version :content-type:list-help:list-id:list-post:list-subscribe :reply-to:subject:content-transfer-encoding:list-unsubscribe; s= sysmsg-1; t=1731687187; bh=h+8cnLZUAkXi70cHHD4c6d8DEdyy6uZ1xAGHj QYE4EU=; b=kvCLLo87pXC1q55VXElgNvFWbxlEERtDLNPoqkO4o4Lf0ANOLJ8Ob OX9DHaGV03tYTzMVRqDno/kS3iwwQ/dla2N5Z2z5aKHkpmx5hafCwBwMExl6W5kd XlQHrt0RvbtVLNc2edi/Fa0/iEKc0Po+1QUSodq9Y8PPnpBFU8D6+w= ARC-Seal: i=2; a=rsa-sha256; cv=pass; d=topicbox.com; s=sysmsg-1; t= 1731687187; b=Q4xFD7JfbKHQUAtsLNVgV44Tc0Lg72yKWNW3dxS9NEAvi7qwOD /3iT4AVbEkl+IQY2O3BwW2Kp4bcTvEv/LfKVRFJgrNuO0INxdY+CC3SZe4pM01ZY rTXHiNbQpRLuaw5CjAYXW4UFbIUNpizmXoyv2v2W0x3LicaY4Dp4ExzxU= Authentication-Results: topicbox.com; arc=pass; dkim=pass (1024-bit rsa key sha256) header.d=fiddaman.net header.i=@fiddaman.net header.b=cZcaFYiD header.a=rsa-sha256 header.s=boomer x-bits=1024; dmarc=none policy.published-domain-policy=none policy.applied-disposition=none policy.evaluated-disposition=none (p=none,d=none,d.eval=none) policy.policy-from=p header.from=fiddaman.net; spf=pass smtp.mailfrom="prvs=1049976e29=illumos@fiddaman.net" smtp.helo=mail.citrus-it.net; x-internal-arc=fail (as.1.topicbox.com=pass, ams.1.topicbox.com=fail (message has been altered)) (Message modified while forwarding at Topicbox) X-Received-Authentication-Results: citrusmail; dkim=pass header.i=@fiddaman.net X-Received-Authentication-Results: tb-mx1.topicbox.com; arc=none (no signatures found); bimi=skipped (DMARC did not pass); dkim=pass (1024-bit rsa key sha256) header.d=fiddaman.net header.i=@fiddaman.net header.b=cZcaFYiD header.a=rsa-sha256 header.s=boomer x-bits=1024; dmarc=none policy.published-domain-policy=none policy.applied-disposition=none policy.evaluated-disposition=none (p=none,d=none,d.eval=none) policy.policy-from=p header.from=fiddaman.net; iprev=pass smtp.remote-ip=89.248.55.103 (mail.citrus-it.net); spf=pass smtp.mailfrom="prvs=1049976e29=illumos@fiddaman.net" smtp.helo=mail.citrus-it.net; x-aligned-from=domain_pass (Domain match); x-me-sender=none; x-ptr=pass smtp.helo=mail.citrus-it.net policy.ptr=mail.citrus-it.net; x-return-mx=pass header.domain=fiddaman.net policy.is_org=yes (MX Records found: mail21.citrus-it.net,mail30.citrus-it.net,mail98.citrus-it.net,mail99.citrus-it.net); x-return-mx=pass smtp.domain=fiddaman.net policy.is_org=yes (MX Records found: mail21.citrus-it.net,mail30.citrus-it.net,mail98.citrus-it.net,mail99.citrus-it.net); x-tls=pass smtp.version=TLSv1.2 smtp.cipher=ECDHE-RSA-AES256-GCM-SHA384 smtp.bits=256/256; x-vs=clean score=0 state=0 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed; d=lists.illumos.org; h= date:from:to:message-id:mime-version:content-type:list-help :list-id:list-post:list-subscribe:reply-to:subject :content-transfer-encoding:list-unsubscribe; s=dkim-1; t= 1731687187; x=1731773587; bh=KOqJqj4cu9zwdZl5Z5Xsp4VHw1IyeAMEhLu XrLBCCkg=; b=bY7MAtagkm99ik9X8dguxDhgpMXm9E90cLfamjeRVvAolilYpLl l9hW5ylxZRvCSDk1lSbxk/neYKQ5yyxm4sA+cbwTG/3B3iwnJi650fMETDqh1ZcR iBtedsmlu+zD+z827VGTrq9Kqq+2W+ef0WTSv/5QwlkwuJW/kzqJH1AQ= Received: from tb-mx1.topicbox.com (localhost.local [127.0.0.1]) by tb-mx1.topicbox.com (Postfix) with ESMTP id 7D6582E10AC for ; Fri, 15 Nov 2024 11:11:29 -0500 (EST) (envelope-from prvs=1049976e29=illumos@fiddaman.net) Received: from tb-mx1.topicbox.com (localhost [127.0.0.1]) by tb-mx1.topicbox.com (Authentication Milter) with ESMTP id 078B626434D; Fri, 15 Nov 2024 11:11:29 -0500 ARC-Seal: i=1; a=rsa-sha256; cv=none; d=topicbox.com; s=arcseal; t= 1731687089; b=oYb2/Sdu0FMzrHJIxowzlvouRsifjwrrHCmryPIscWHpNb5vUz vgMVH4903iCthdaqeuJrI+jDC0F0AZLLknO5eYevoEoWZ84h24yuLmrLiA7/RJTQ YRfJCgPrbSe8H/bwCPQHGSa4TLQisQmDGABm74nH8T4xUoPOCrKOfIl5KVXf+e1h zqj8CbV1c+O/IjpWXi6kFV5j6uee2xiihIVirNugVYEvgGsR7jNw9hxr8l4PWKsd L9MqPCzSm1LzHl1yj8UTSuEQJjiEkp3q1g1aPAgmfh2AFCsPZ0bB6EBbPWYkdLTm j4jhy0mfU/ByDUOhHF84aouYzgayXTKE/kaQ== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d= topicbox.com; h=date:from:to:subject:message-id:mime-version :content-type; s=arcseal; t=1731687089; bh=SzkN/lLH4Lr/pfAB5nGoh 0xJRVOOr5aq8W2um3HOzA4=; b=wMWtEG1Hd+AG+0e43NsqT/ip7qWq1i3xFRkp4 P7MWwZPbNzDbzwkbB6U2Zt946880jWBBJNraXIfgr/cTZXNT8Wduk4QfafsvsG+X feI14SLeq3Ks5jZyFhukF5wlbcGEurw4Ue4RSCAXNh0dpT1H0M2K2v7xd+xpR4s8 o9kjZcW8CagHRCh1xZ2CDWDVcWeHqiET+agyFSkHm0GyrNDZCPaQgep09PwpCq/M d3ay5e5NX9FBImb7fGAB2b+0oITxQA1DPvhPBynzQwF7cwfW2Doxkh9ygs+I1Ked Q4Rw4Y/Jy8S0NKvJ/ouE1p7AGnb9/WMU1UYwG4Jk4FgxxJMLQ== ARC-Authentication-Results: i=1; tb-mx1.topicbox.com; arc=none (no signatures found); bimi=skipped (DMARC did not pass); dkim=pass (1024-bit rsa key sha256) header.d=fiddaman.net header.i=@fiddaman.net header.b=cZcaFYiD header.a=rsa-sha256 header.s=boomer x-bits=1024; dmarc=none policy.published-domain-policy=none policy.applied-disposition=none policy.evaluated-disposition=none (p=none,d=none,d.eval=none) policy.policy-from=p header.from=fiddaman.net; iprev=pass smtp.remote-ip=89.248.55.103 (mail.citrus-it.net); spf=pass smtp.mailfrom="prvs=1049976e29=illumos@fiddaman.net" smtp.helo=mail.citrus-it.net; x-aligned-from=domain_pass (Domain match); x-me-sender=none; x-ptr=pass smtp.helo=mail.citrus-it.net policy.ptr=mail.citrus-it.net; x-return-mx=pass header.domain=fiddaman.net policy.is_org=yes (MX Records found: mail21.citrus-it.net,mail30.citrus-it.net,mail98.citrus-it.net,mail99.citrus-it.net); x-return-mx=pass smtp.domain=fiddaman.net policy.is_org=yes (MX Records found: mail21.citrus-it.net,mail30.citrus-it.net,mail98.citrus-it.net,mail99.citrus-it.net); x-tls=pass smtp.version=TLSv1.2 smtp.cipher=ECDHE-RSA-AES256-GCM-SHA384 smtp.bits=256/256; x-vs=clean score=0 state=0 X-ME-VSCause: gggruggvucftvghtrhhoucdtuddrgeefuddrvdeggdekfecutefuodetggdotefrodftvf curfhrohhfihhlvgemucfhrghsthforghilhdpggftfghnshhusghstghrihgsvgdpuffr tefokffrpgfnqfghnecuuegrihhlohhuthemuceftddtnecunecujfgurhepfffhvffukf ggtggusehttdertddttddvnecuhfhrohhmpeetnhguhicuhfhiuggurghmrghnuceoihhl lhhumhhoshesfhhiuggurghmrghnrdhnvghtqeenucggtffrrghtthgvrhhnpeetueffud eiheeuudeghfegudelhfehueehheeiieduudekjeejvdefudevhfekueenucffohhmrghi nhepihhllhhumhhoshdrohhrghenucfkphepkeelrddvgeekrdehhedruddtfedpkeelrd dvgeekrdehhedrjeelnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehinhgv thepkeelrddvgeekrdehhedruddtfedphhgvlhhopehmrghilhdrtghithhruhhsqdhith drnhgvthdpmhgrihhlfhhrohhmpeeophhrvhhspedutdegleeljeeivgdvleepihhllhhu mhhoshesfhhiuggurghmrghnrdhnvghtqedpnhgspghrtghpthhtohepuddprhgtphhtth hopeeouggvvhgvlhhophgvrheslhhishhtshdrihhllhhumhhoshdrohhrgheq X-ME-VSScore: 0 X-ME-VSCategory: clean Received-SPF: pass (fiddaman.net: 89.248.55.103 is authorized to use 'prvs=1049976e29=illumos@fiddaman.net' in 'mfrom' identity (mechanism 'ip4:89.248.55.64/26' matched)) receiver=tb-mx1.topicbox.com; identity=mailfrom; envelope-from="prvs=1049976e29=illumos@fiddaman.net"; helo=mail.citrus-it.net; client-ip=89.248.55.103 Received: from mail.citrus-it.net (mail.citrus-it.net [89.248.55.103]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by tb-mx1.topicbox.com (Postfix) with ESMTPS for ; Fri, 15 Nov 2024 11:11:28 -0500 (EST) (envelope-from prvs=1049976e29=illumos@fiddaman.net) Received: from reaper.citrus-it.net (reaper.citrus-it.net [89.248.55.79]) by mail.citrus-it.net with ESMTP id 4AFGBPUk025335 for ; Fri, 15 Nov 2024 16:11:27 GMT Date: Fri, 15 Nov 2024 16:11:25 +0000 From: Andy Fiddaman To: developer@lists.illumos.org Message-ID: <20241115161125.GA15241@reaper.citrus-it.net> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Disposition: inline X-Citrus-Version: 6.0.3ba253c X-Citrus-ID: 54AFGBPUk025335 X-Citrus-Virus-Scanned: Clean X-Citrus-Spam: Whitelisted X-Citrus-Trust: Trusted Topicbox-Policy-Reasoning: allow: sender is a member Topicbox-Message-UUID: 48871e8e-a36c-11ef-b71b-cdd9a7916749 Archived-At: =?UTF-8?B?PGh0dHBzOi8vaWxsdW1vcy50b3BpY2JveC5jb20vZ3JvdXBz?= =?UTF-8?B?L2RldmVsb3Blci9UNjJiYTNjMjM5ZjI1OWZkZS1NZjM0OWU1YzI5NDRjOTRj?= =?UTF-8?B?Y2FkNjAzNzliPg==?= List-Help: List-Id: "illumos-developer" List-Post: List-Software: Topicbox v0 List-Subscribe: Precedence: list Reply-To: illumos-developer Subject: [developer] Review - 16890 bhyve upstream sync 2024 November Content-Transfer-Encoding: quoted-printable List-Unsubscribe: , Topicbox-Delivery-ID: 2:illumos:a901537c-2aea-11e7-965f-d98f9f16e227:81958daa-7202-11ef-bbf2-18142b2d11b0:Mf349e5c2944c94ccad60379b:1:ZolCV9H2SCoF6M7BmLyE59QISjp-5oPx4Hzvp-YVMUg Please can you review the following change? This is pulling in the latest changes from upstream FreeBSD bhyve, which are mostly around security hardening in various places. There aren't too many commits here since the last sync was fairly recent. There's also a new TPM backend to use swtpm which I'm planning to test prior to integration if I can get swtpm built and running on illumos, other= wise I will disable it as I did for TPM-pass-through (not usable until our TPM driver supports 2.0). 16890 bhyve upstream sync 2024 November https://www.illumos.org/issues/16890 https://code.illumos.org/c/illumos-gate/+/3809 Thanks, Andy ------------------------------------------ illumos: illumos-developer Permalink: https://illumos.topicbox.com/groups/developer/T62ba3c239f259fde-= Mf349e5c2944c94ccad60379b Delivery options: https://illumos.topicbox.com/groups/developer/subscription