From: Borislav Petkov bp@suse.de
Now that the required bits have been addressed, reenable PARAVIRT.
Signed-off-by: Borislav Petkov bp@suse.de Signed-off-by: Greg Kroah-Hartman gregkh@linuxfoundation.org (cherry picked from commit 750fb627d764eb66430c36961b94ab0002694c02) Signed-off-by: Pavel Tatashin pasha.tatashin@oracle.com --- security/Kconfig | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/security/Kconfig b/security/Kconfig index 9d63046e4794..ae44b94d63b2 100644 --- a/security/Kconfig +++ b/security/Kconfig @@ -34,7 +34,7 @@ config SECURITY config KAISER bool "Remove the kernel mapping in user mode" default y - depends on X86_64 && SMP && !PARAVIRT + depends on X86_64 && SMP help This enforces a strict kernel and user space isolation, in order to close hardware side channels on kernel address information.