Get the latest tech news
Linux Attack Vector Controls Updated To More Easily Controlling CPU Security Mitigations
Last year an AMD engineer proposed the notion of 'Attack Vector Controls' for the Linux kernel to re-think how the CPU security mitigation handling is done and making it easier for system administrators/users to toggle the mitigations they are concerned about or not.
With this approach, particularly for Linux servers, it makes it easier managing the CPU security mitigations based on the intended role of the instance being deployed. David Kaplan of AMD last week sent out the third iteration of these Attack Vector Controls patches. As summed up in the patch series:"While many users may not be intimately familiar with the details of these CPU vulnerabilities, they are likely better able to understand the intended usage of their system.
Or read this on Phoronix