> My preference would be that we never have SEV-SNP code in the kernel > that can panic() the host from guest userspace. If that means waiting > until there's common guest unmapping infrastructure around, then I think > we should wait. Perhaps I'm missing some context ... but guests must NEVER be allowed to panic the host. -Tony