KVM: SEV: Allow some commands for mirror VM
A mirrored SEV-ES VM will need to call KVM_SEV_LAUNCH_UPDATE_VMSA to
setup its vCPUs and have them measured, and their VMSAs encrypted. Without
this change, it is impossible to have mirror VMs as part of SEV-ES VMs.
Also allow the guest status check and debugging commands since they do
not change any guest state.
Signed-off-by: Peter Gonda <email@example.com>
Cc: Marc Orr <firstname.lastname@example.org>
Cc: Nathan Tempelman <email@example.com>
Cc: Paolo Bonzini <firstname.lastname@example.org>
Cc: Sean Christopherson <email@example.com>
Cc: Steve Rutherford <firstname.lastname@example.org>
Cc: Brijesh Singh <email@example.com>
Fixes: 54526d1fd593 ("KVM: x86: Support KVM VMs sharing SEV context", 2021-04-21)
Signed-off-by: Paolo Bonzini <firstname.lastname@example.org>
1 file changed