mds mitigation

This commit is contained in:
Daniel Langbein 2023-11-16 11:08:11 +01:00
parent 7faed5e5ba
commit 1c36a7dcaa
Signed by: langfingaz
GPG Key ID: 6C47C753F0823002
2 changed files with 8 additions and 2 deletions

View File

@ -36,6 +36,9 @@
yoda.btrfsFileSystems = ["/" "/mnt/data" "/mnt/backup"]; yoda.btrfsFileSystems = ["/" "/mnt/data" "/mnt/backup"];
#yoda.btrfsMounts = yoda.btrfsFileSystems; #yoda.btrfsMounts = yoda.btrfsFileSystems;
boot.kernelParams = []; boot.kernelParams = [
# Microarchitectural Data Sampling (MDS), see https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/mds.html#mitigation-control-on-the-kernel-command-line
"mds=full,nosmt"
];
boot.kernelPackages = pkgs.linuxPackages; boot.kernelPackages = pkgs.linuxPackages;
} }

View File

@ -35,6 +35,9 @@
yoda.btrfsFileSystems = ["/"]; yoda.btrfsFileSystems = ["/"];
#yoda.btrfsMounts = yoda.btrfsFileSystems; #yoda.btrfsMounts = yoda.btrfsFileSystems;
boot.kernelParams = []; boot.kernelParams = [
# Microarchitectural Data Sampling (MDS), see https://www.kernel.org/doc/html/latest/admin-guide/hw-vuln/mds.html#mitigation-control-on-the-kernel-command-line
"mds=full,nosmt"
];
boot.kernelPackages = pkgs.linuxPackages; boot.kernelPackages = pkgs.linuxPackages;
} }