Yes. For the verification to hold, DMA needs to be off, or the driver (and hardware) for the DMA device needs to be trusted/verified.
We're working on eliminating that for A15 with SystemMMUs, but that will be a while.
Cheers,
Gerwin
On 05.08.2014, at 3:09 pm, Tim Newsham <tim.newsham@gmail.com> wrote:
> Does the use of DMA invalidate security guarantees
> in the ARM ports (and KZM in particular) currently?
>
> --
> Tim Newsham | www.thenewsh.com/~newsham | @newshtwit | thenewsh.blogspot.com
>
> _______________________________________________
> Devel mailing list
> Devel@sel4.systems
> https://sel4.systems/lists/listinfo/devel
_______________________________________________
Devel mailing list
Devel@sel4.systems
https://sel4.systems/lists/listinfo/devel