>> IP requires platform integration to take responsibility to prevent >> this. >> >> To safely use VFIO in KVM the platform must guarantee full safety >> in the guest where no action taken against a MMIO mapping can >> trigger an uncontainer failure. We belive that most VFIO PCI >> platforms support this for both mapping types, at least in common >> flows, based on some expectations of how PCI IP is integrated. This >> can be enabled more broadly, for instance into vfio-platform >> drivers, but only after the platform vendor completes auditing for >> safety. > > I like it, please incorporate into the next version. Yes, will fix the typos and add it.