issues
search
SNPGuard
/
snp-guard
Open Source Implemenation of Secure SEV-SNP bootup workflow
MIT License
13
stars
1
forks
source link
Check all relevant fields of attestation report, not only the digest
#3
Closed
its-luca
closed
8 months ago
its-luca
commented
8 months ago
exact difference between, CURRENT_TCB, COMMITTED_TCB and LAUNCH_TCB in Table 22. in
https://www.amd.com/content/dam/amd/en/documents/epyc-technical-docs/specifications/56860.pdf
? A bit more explanation is in
https://www.amd.com/content/dam/amd/en/documents/developer/lss-snp-attestation.pdf
Current vs launch kind of makes sense when you think about migration but comitted does not make sense to me
digest of id key and auth key, if we used the id-block at launch
information from the id block (family id etc), if we used it at launch
other relevant fields?
other relevant fields?