On 2/2/21 3:56 PM, Sean Christopherson wrote: >> I'll ask around internally at Intel and see what folks say. Basically, >> should we be afraid of a big bad EPC access? > If bad accesses to the EPC can cause machine checks, then EPC should never be > mapped into userspace, i.e. the SGX driver should never have been merged. That's a good point. However, I've learned not to assume too much about the SGX architecture. Either way, I think we need some architectural clarification. If it can't *possibly* be harmful, then the architecture docs should at least put a stake in the ground and say so. I'll go rattle some cages.