Uploaded image for project: 'CKI Project'
  1. CKI Project
  2. CKI-6909

fedora: CONFIG_CRYPTO_DEV_CCP_DD should be "m"

XMLWordPrintable

      Since https://gitlab.com/cki-project/kernel-ark/-/commit/e67703d7de465030b3e5a3e8176cc4fe4e29739e `CONFIG_CRYPTO_DEV_CCP_DD` moved from `m` to `y`, but this makes it practically impossible to update the SEV firmware without rebooting the machine, whereas if CCP is a module, simply unloading and re-loading the module would be enough to trigger an update, as documented at https://github.com/AMDESE/AMDSEV?tab=readme-ov-file#faq-8:
      > Since, on Linux, the firmware is updated on driver load of the ccp module, it is possible to update the firmware level after the system has booted. At this time, all guests would need to be shutdown and the kvm_amd module unloaded before the ccp module could be unloaded and reloaded.

      @jwrdegoede can we move this back to `m`?

      CC @osteffen

      Jira: CKI-6909(https://issues.redhat.com/browse/CKI-6909)

              Unassigned Unassigned
              rh-ee-tdaapare Tales Lelo da Aparecida
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: