AMDEPYC / AMDEPYC/sev-certify

Include ID block when launching guests

Aperta
#246 1 commento 0 reazioni 1 assegnatario Rivendicata da @markg-github Vedi su GitHub
enhancement
Lingua principale
Python
Stelle
3
Fork
7
Merge medio
1g 21h
PR unite (30g)
8

Descrizione

An SEV-SNP "ID block" allows additional properties to be associated with/bound to an SEV-SNP CVM, for example, a "guest policy", a guest SVN and a Family ID. More guest tests are possible when SNP CVMs have these properties.

ID blocks need to be signed, but self-signing is allowed as the verifier checks the signature and the public key, which is included in the "ID authentication information structure". Both the ID block and the authentication information structure must be provided, for example, on the QEMU command line.

Note that ID blocks were introduced with SEV-SNP.

Guida per i contributori

Apri la guida per i contributori

Valutazione

Questa issue non è ancora stata valutata.

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.