diff --git a/_includes/sections/operating-systems.html b/_includes/sections/operating-systems.html index 945b434d..bd6d4c47 100644 --- a/_includes/sections/operating-systems.html +++ b/_includes/sections/operating-systems.html @@ -53,16 +53,17 @@ gitlab="https://salsa.debian.org/qa/debsources"
sudo mkdir /etc/default/grub.d/
to create a directory for additional grub configurationecho GRUB_CMDLINE_LINUX_DEFAULT="$GRUB_CMDLINE_LINUX_DEFAULT mds=full,nosmt" | sudo tee /etc/default/grub.d/mds.conf
to create a new grub config file source with the echoed contentsudo grub-mkconfig -o /boot/grub/grub.cfg
to generate a new grub config file including this new kernel boot flagecho GRUB_CMDLINE_LINUX_DEFAULT="$GRUB_CMDLINE_LINUX_DEFAULT l1tf=full,force mds=full,nosmt mitigations=auto,nosmt nosmt=force" | sudo tee /etc/default/grub.d/mitigations.cfg
to create a new grub config file source with the echoed contentsudo grub-mkconfig -o /boot/grub/grub.cfg
to generate a new grub config file including these new kernel boot flagssudo reboot
to reboottail -n +1 /sys/devices/system/cpu/vulnerabilities/*
again to see that MDS now says "SMT disabled."tail -n +1 /sys/devices/system/cpu/vulnerabilities/*
again to see that everything referring to SMT now says "SMT disabled."