AMDEPYC / AMDEPYC/sev-certify

Include ID block when launching guests

Ouverte
#246 1 commentaire 0 réactions 1 personne assignée Réclamée par @markg-github Voir sur GitHub
enhancement
Langage dominant
Python
Étoiles
3
Forks
7
Merge moyen
1 j 21 h
PR mergées (30 j)
8

Description

An SEV-SNP "ID block" allows additional properties to be associated with/bound to an SEV-SNP CVM, for example, a "guest policy", a guest SVN and a Family ID. More guest tests are possible when SNP CVMs have these properties.

ID blocks need to be signed, but self-signing is allowed as the verifier checks the signature and the public key, which is included in the "ID authentication information structure". Both the ID block and the authentication information structure must be provided, for example, on the QEMU command line.

Note that ID blocks were introduced with SEV-SNP.

Guide de contribution

Ouvrir le guide de contribution

Évaluation

Cette issue n'a pas encore été évaluée.

Recevez les nouvelles issues par e-mail

Un résumé court des issues GitHub adaptées aux débutants.