Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add secure hardware support for uvmboot #1390

Merged
merged 1 commit into from
May 18, 2022

Conversation

anmaxvl
Copy link
Contributor

@anmaxvl anmaxvl commented May 6, 2022

Fix a bug where resource modifications are not rejected when running
in non-snp mode by setting a default open door policy when no
security policy is passed and making sure that security policy is
always set for UVM. Additionally, don't assume that security hardware
is present when a security policy is set explicitly.

Add a flag to boot from VMGS file.

Signed-off-by: Maksim An maksiman@microsoft.com

Fix a bug where resource modifications are not rejected when running
in non-snp mode by setting a default open door policy when no
security policy is passed and making sure that security policy is
always set for UVM. Additionally, don't assume that security hardware
is present when a security policy is set explicitly.

Add a flag to boot from VMGS file.

Signed-off-by: Maksim An <maksiman@microsoft.com>
@anmaxvl anmaxvl requested a review from a team as a code owner May 6, 2022 20:14
@anmaxvl anmaxvl merged commit 2e6e81a into microsoft:master May 18, 2022
@anmaxvl anmaxvl deleted the uvmboot-support-for-snp branch May 18, 2022 17:17
anmaxvl added a commit that referenced this pull request Feb 7, 2023
princepereira pushed a commit to princepereira/hcsshim that referenced this pull request Aug 29, 2024
Fix a bug where resource modifications are not rejected when running
in non-snp mode by setting a default open door policy when no
security policy is passed and making sure that security policy is
always set for UVM. Additionally, don't assume that security hardware
is present when a security policy is set explicitly.

Add a flag to boot from VMGS file.

Signed-off-by: Maksim An <maksiman@microsoft.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants