summaryrefslogtreecommitdiff
path: root/src/cpu/intel/common/Kconfig
blob: 01f2721b5976614166d22e58d8792cd7b702ffe8 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
config CPU_INTEL_COMMON
	bool

if CPU_INTEL_COMMON

config ENABLE_VMX
	bool "Enable VMX for virtualization"
	default y

config SET_IA32_FC_LOCK_BIT
	bool "Set IA32_FEATURE_CONTROL lock bit"
	default y
	help
	  Although the Intel manual says you must set the lock bit in addition
	  to the VMX bit in order for VMX to work, this isn't strictly true, so
	  we have the option to leave it unlocked and allow the OS (e.g. Linux)
	  to manage things itself. This is beneficial for testing purposes as
	  there is no need to reflash the firmware just to toggle the lock bit.
	  However, leaving the lock bit unset will break Windows' detection of
	  VMX support and built-in virtualization features like Hyper-V.

config SET_MSR_AESNI_LOCK_BIT
	bool "Lock the AES-NI enablement state"
	default y
	help
	  This config sets the AES-NI lock bit, if available, to prevent any
	  further change of AES-NI enablement. This may be disabled for e.g.
	  testing or debugging.

config CPU_INTEL_COMMON_TIMEBASE
	bool

endif

config CPU_INTEL_COMMON_SMM
	bool
	default y if CPU_INTEL_COMMON