From owner-svn-src-all@freebsd.org Mon Jul 30 18:00:13 2018 Return-Path: Delivered-To: svn-src-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id E547C105CD0C for ; Mon, 30 Jul 2018 18:00:12 +0000 (UTC) (envelope-from shawn.webb@hardenedbsd.org) Received: from mail-ed1-x529.google.com (mail-ed1-x529.google.com [IPv6:2a00:1450:4864:20::529]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 5B3297CF05 for ; Mon, 30 Jul 2018 18:00:12 +0000 (UTC) (envelope-from shawn.webb@hardenedbsd.org) Received: by mail-ed1-x529.google.com with SMTP id b20-v6so4500569edt.10 for ; Mon, 30 Jul 2018 11:00:12 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=hardenedbsd.org; s=google; h=date:from:to:cc:subject:message-id:references:mime-version :content-disposition:in-reply-to:user-agent; bh=w+Eree0B3p2i/8oSvWrhuiQ330bcqkq9A8AZboFbZHg=; b=eHhD6QK5uBK0ugb6Bl7jtz8bjbD9EutG8QTXxJuZAi3BBUeb4p87V0ObWXJlnXtgb/ 1flZcgBFZxCBkbP0V9r8ztpgrCGYyc8oahm1xsVELPw2/VssS4+dZxeBDbukmU+aL8Xq q9QMlVha+ZmE9El1SgA0o+4qQoVrWJya6Cdr58vUMSEhY9CbYqXTSraIVP5WC1j730dY /lY97i53aXIM43segRJd5jaCFQbIQOh0jtnG9yUNWgy8GV9nWqZa6KRxuGMy5qhHbHw+ pFtk48IOF8u51OrWT/0QXC+Q0rI60ENkKsqc7kzaUo9/T/hctqywvfbRJpj6O4coVy6l +npw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:date:from:to:cc:subject:message-id:references :mime-version:content-disposition:in-reply-to:user-agent; bh=w+Eree0B3p2i/8oSvWrhuiQ330bcqkq9A8AZboFbZHg=; b=c1nZojSwJ+G4C/xq/sLxdbif/yoBYP9GzJsc1Ze3C/OBug3/BNDuP4TyX11k7fi5m4 Zj87V72OmhpfN4fLain37ntEtz8Twovxib76tZHNF6AE1Y8zjecvsNYg51YiJCLw3t81 YC3uUkeegSKoKmDDGAFX/+Oy6Gi706c8yv2Z7llAXH5rcuQxQPUalRSNjVFzF0Gi6QEq uHFWfzkAxcGk6gZj78XS8aRC8LCkMGHaCptzuEElePXItOdVaUrrqXDrZmzy02dmwHbv l4JgedIAN6iAUezXzzVxOfS6lrCz2V86OkkzFGI8bQYGmLSsi7qebQDVGMczDFYp+zY2 ogKg== X-Gm-Message-State: AOUpUlHcSmd371/Zsn4JCyUlUMYxtI5eQsz7VQpxbBXeEmmQRf4KLtq7 rFd69WvoYys5HDqg8fkynYIN1JaqZcO5VQ== X-Google-Smtp-Source: AAOMgpfjzWo+8nK21bTyuAKe+C6cePlu2KXLAAMhEcYAiWJsf8sTcBJSf+5YzEhT+4QrTqLjmuMT8Q== X-Received: by 2002:a50:87a8:: with SMTP id a37-v6mr9127729eda.31.1532973610854; Mon, 30 Jul 2018 11:00:10 -0700 (PDT) Received: from mutt-hbsd ([178.17.166.148]) by smtp.gmail.com with ESMTPSA id i15-v6sm2650744edq.56.2018.07.30.11.00.06 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Mon, 30 Jul 2018 11:00:09 -0700 (PDT) Date: Mon, 30 Jul 2018 13:59:23 -0400 From: Shawn Webb To: Kyle Evans Cc: src-committers@freebsd.org, svn-src-all@freebsd.org, svn-src-head@freebsd.org Subject: Re: svn commit: r336919 - head/sys/dev/efidev Message-ID: <20180730175923.vtha72pcvzilsspu@mutt-hbsd> References: <201807301740.w6UHeRM0077138@repo.freebsd.org> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="bmsssuyu4hjjv3su" Content-Disposition: inline In-Reply-To: <201807301740.w6UHeRM0077138@repo.freebsd.org> X-Operating-System: FreeBSD mutt-hbsd 12.0-CURRENT FreeBSD 12.0-CURRENT X-PGP-Key: http://pgp.mit.edu/pks/lookup?op=vindex&search=0x6A84658F52456EEE User-Agent: NeoMutt/20180622 X-BeenThere: svn-src-all@freebsd.org X-Mailman-Version: 2.1.27 Precedence: list List-Id: "SVN commit messages for the entire src tree \(except for " user" and " projects" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 30 Jul 2018 18:00:13 -0000 --bmsssuyu4hjjv3su Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Mon, Jul 30, 2018 at 05:40:27PM +0000, Kyle Evans wrote: > Author: kevans > Date: Mon Jul 30 17:40:27 2018 > New Revision: 336919 > URL: https://svnweb.freebsd.org/changeset/base/336919 >=20 > Log: > efirt: Add tunable to allow disabling EFI Runtime Services > =20 > Leading up to enabling EFIRT in GENERIC, allow runtime services to be > disabled with a new tunable: efi.rt_disabled. This makes it so that EFI= RT > can be disabled easily in case we run into some buggy UEFI implementati= on > and fail to boot. > =20 > Discussed with: imp, kib > MFC after: 1 week >=20 > Modified: > head/sys/dev/efidev/efirt.c >=20 > Modified: head/sys/dev/efidev/efirt.c > =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D > --- head/sys/dev/efidev/efirt.c Mon Jul 30 17:03:15 2018 (r336918) > +++ head/sys/dev/efidev/efirt.c Mon Jul 30 17:40:27 2018 (r336919) > @@ -133,7 +133,12 @@ efi_init(void) > struct efi_md *map; > caddr_t kmdp; > size_t efisz; > + int rt_disabled; > =20 > + rt_disabled =3D 0; > + TUNABLE_INT_FETCH("efi.rt_disabled", &rt_disabled); Would it be a good idea to document this tunable in loader(8)? Thanks, --=20 Shawn Webb Cofounder and Security Engineer HardenedBSD Tor-ified Signal: +1 443-546-8752 Tor+XMPP+OTR: lattera@is.a.hacker.sx GPG Key ID: 0x6A84658F52456EEE GPG Key Fingerprint: 2ABA B6BD EF6A F486 BE89 3D9E 6A84 658F 5245 6EEE --bmsssuyu4hjjv3su Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEKrq2ve9q9Ia+iT2eaoRlj1JFbu4FAltfUfcACgkQaoRlj1JF bu77uRAAsvnFbf1X+VPWde3niomyp8HY2jF5a8LUuIbbcmjvTDOogVnZa8yFi1iE snTspDZFMqBuLrVhM943qFuG+rYQ6E60tNpngC9rvxvZHcQVarJVtYyi5Qnnbh2H bwklLkrmazLwGTe9sf3ncPdYiNnTtYOfRz9LcATZg88+d6Qmb+cz+wGD0S87SZxm dFVSA//2YnvNqvBVQBwAGU5vRIx0AfIGVxQwnBygL0dzGa/uUyXj8KFoX7Mdrq5o ZGPWb6MQIQdL1hvyIGuM9oDc01yevT1CoxIFzpzUDD95o8eOaGdkoDTFCevcPlGU cW0WTMmz1j/IWRKBxwygPJsMeashzQrlSwRnHDDqpXvwoW54uLZ+IuuHPOsGBVEP pJnSER8Sc/lJW+L2Tu/4Gs1LZFyyiFbhAKZ0AxbXb/iM7tkRiy3FqxAadVjpgbqP E8BmrFHsEsVVIUSx6eUKxNEPnTGNSTCruktL4kWkpppcc7rgM8lsIwWRJ+D7Dq5V zr1ANPxutobFZo4RAhISlrfkrZXJQo7wFwW1AQbky4F2pi51jTkq7bvDkO3bzIxY khx9ZiQCtKsbAfMHPwZVMrN2Jdt3UaTwTtl4S/kmIi8AEtNOg3Ch7y5YypzuzZN7 NITN5vm6NBlZGPdIiqWErQj9yFYrp9iFNVkB3yLGi2mPxiURbjw= =qAeG -----END PGP SIGNATURE----- --bmsssuyu4hjjv3su--