metal/kickstart
Jim Somerville 2a7cb246a1 Security: Handle nospectre_v1 in the bootargs
Most of the v1 mitigation is baked into the kernel and not
optional.  The swapgs barriers are, however, optional.
They have a negative performance impact so we disable them
by using the nospectre_v1 kernel bootarg.

Partial-Bug: 1860193
Depends-On: https://review.opendev.org/#/c/705300
Signed-off-by: Jim Somerville <Jim.Somerville@windriver.com>
(cherry picked from commit 91f488af02)

Change-Id: I88c8fafe558c5f03a9d0af7c42a668decef18f5a
2020-02-03 10:28:14 -05:00
..
centos Security: Handle nospectre_v1 in the bootargs 2020-02-03 10:28:14 -05:00
opensuse Add openSUSE OBS Artifacts for Maintenance services 2019-09-20 09:18:54 -05:00
LICENSE StarlingX open source release updates 2018-05-31 07:36:43 -07:00