Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Missing SEV-SNP attestation steps #154

Open
1 task
haraldh opened this issue Dec 21, 2022 · 1 comment
Open
1 task

Missing SEV-SNP attestation steps #154

haraldh opened this issue Dec 21, 2022 · 1 comment
Labels
attestation Issues related to attestation

Comments

@haraldh
Copy link
Member

haraldh commented Dec 21, 2022

Watching this talk: AMD SEV-SNP Attestation: Establishing Trust in Guests - Jeremy Powell, Advanced Micro Devices(Slides)

we are missing:

  • Check COMMITTED_TCB: Does this TCB address all the vulnerabilities we care about?

TCB: Reported <= Committed <= Current

Further reading

From: https://developer.amd.com/sev/

Versioned Chip Endorsement Key (VCEK) Certificate and KDS Interface Specification

@rjzak rjzak added the attestation Issues related to attestation label Dec 21, 2022
@haraldh
Copy link
Member Author

haraldh commented Dec 21, 2022

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
attestation Issues related to attestation
Projects
None yet
Development

No branches or pull requests

2 participants