Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 10 Jul 2019 12:56:26 -0400
From:      Mike Tancsa <mike@sentex.net>
To:        "damian@damianek.be" <damian@damianek.be>, freebsd-hackers@freebsd.org
Subject:   Re: FreeBSD mds mitigation.
Message-ID:  <babedd6c-2c8b-eb5d-7a55-bd403c131054@sentex.net>
In-Reply-To: <CA%2B6J3veBFdeTbeeQ_9EZo4L36A0cMREQjab8E6Z1LgNAvJAZ1Q@mail.gmail.com>
References:  <CA%2B6J3vcK_FxBbnx%2Bzyo3kFr3dB2LF5C4qQoiH5=bMd04aTjzKQ@mail.gmail.com> <20190710095247.GC47193@kib.kiev.ua> <CA%2B6J3veBFdeTbeeQ_9EZo4L36A0cMREQjab8E6Z1LgNAvJAZ1Q@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On 7/10/2019 6:15 AM, damian@damianek.be wrote:
>
>> How did you installed the microcode ?  Was it loaded ?
>> Show the dmesg output after the 'cpucontrol -e /dev/cpuctl0'.
>>
> I install microcode in /usr/local/share/cpucontrol,
> load at boot.
>
Try the port

sysutils/devcpu-data/

and install the firmware from the bootloader.  You do need a more recent
RELENG_11 or 11.3R

in /boot/loader.conf

cpu_microcode_load="YES"
cpu_microcode_name="/boot/firmware/intel-ucode.bin"

At bootup time you will see something like

CPU microcode: updated from 0x1d to 0x27


CPU: Intel(R) Xeon(R) CPU E3-1226 v3 @ 3.30GHz (3300.07-MHz K8-class CPU)
  Origin="GenuineIntel"  Id=0x306c3  Family=0x6  Model=0x3c  Stepping=3
 
Features=0xbfebfbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CLFLUSH,DTS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE>
 
Features2=0x7ffafbff<SSE3,PCLMULQDQ,DTES64,MON,DS_CPL,VMX,SMX,EST,TM2,SSSE3,SDBG,FMA,CX16,xTPR,PDCM,PCID,SSE4.1,SSE4.2,x2APIC,MOVBE,POPCNT,TSCDLT,AESNI,XSAVE,OSXSAVE,AVX,F16C,RDRAND>
  AMD Features=0x2c100800<SYSCALL,NX,Page1GB,RDTSCP,LM>
  AMD Features2=0x21<LAHF,ABM>
  Structured Extended
Features=0x27ab<FSGSBASE,TSCADJ,BMI1,AVX2,SMEP,BMI2,ERMS,INVPCID,NFPUSG>
  Structured Extended Features3=0x9c000400<MD_CLEAR,IBPB,STIBP,L1DFL,SSBD>
  XSAVE Features=0x1<XSAVEOPT>
  VT-x: PAT,HLT,MTF,PAUSE,EPT,UG,VPID
  TSC: P-state invariant, performance statistics


    ---Mike



-- 
-------------------
Mike Tancsa, tel +1 519 651 3400 x203
Sentex Communications, mike@sentex.net
Providing Internet services since 1994 www.sentex.net
Cambridge, Ontario Canada   




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?babedd6c-2c8b-eb5d-7a55-bd403c131054>