google / go-tdx-guest

go-tdx-guest offers a library to wrap the /dev/tdx-guest device in Linux, as well as a library for attestation verification of fundamental components of an attestation quote.
Apache License 2.0
53 stars 12 forks source link

Update TCB Info verification logic. #38

Closed vbalain closed 8 months ago

vbalain commented 8 months ago

Verifier fails to verify TCB on TDX 1.5. TCB info shows error when attempting to use the Intel PCS API service to verify the TDX quote when COLLATERAL is enabled. Updated logic as per the latest documentation - https://api.portal.trustedservices.intel.com/content/documentation.html#pcs-tcb-info-tdx-v4

Screenshot 2024-01-31 at 10 25 01