On Sat, 2023-01-07 at 00:38 +0000, Sean Christopherson wrote: > On Fri, Dec 09, 2022, Robert Hoo wrote: > > If LAM enabled, CR4.LAM_SUP is owned by guest; otherwise, reserved. > > Why is it passed through to the guest? I think no need to intercept guest's control over CR4.LAM_SUP, which controls LAM appliance to supervisor mode address. Same pass-through happens to CR3.LAM_U{48, 57} when EPT is effective.