On Wed, Sep 04, 2019 at 09:44:58AM -0700, Jim Mattson wrote: > On Tue, Sep 3, 2019 at 5:59 PM Krish Sadhukhan > <krish.sadhukhan@xxxxxxxxxx> wrote: > > Is it OK to keep this Guest check in software for now and then remove it > > once we have a solution in place ? > > Why do you feel that getting the priority correct is so important for > this one check in particular? I'd be surprised if any hypervisor ever > assembled a VMCS that failed this check. Agreed. I don't see much value in adding a subset of guest state checks, and adding every check will be painfully slow. IMO we're better off finding a solution that allows deferring guest state checks to hardware.