1 <cpu mode='custom' match='exact'>
2 <model fallback='forbid'>Skylake-Server-IBRS</model>
4 <feature policy='require' name='vmx'/>
5 <feature policy='require' name='hypervisor'/>
6 <feature policy='require' name='ss'/>
7 <feature policy='require' name='tsc_adjust'/>
8 <feature policy='require' name='mpx'/>
9 <feature policy='require' name='clflushopt'/>
10 <feature policy='require' name='umip'/>
11 <feature policy='require' name='pku'/>
12 <feature policy='require' name='md-clear'/>
13 <feature policy='require' name='stibp'/>
14 <feature policy='require' name='arch-capabilities'/>
15 <feature policy='require' name='ssbd'/>
16 <feature policy='require' name='xsaves'/>
17 <feature policy='require' name='skip-l1dfl-vmentry'/>