Uploaded image for project: 'Openshift sandboxed containers'
  1. Openshift sandboxed containers
  2. KATA-2943

Build downstream attestation component with support for TEE

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: High High
    • OSC 1.7.0
    • None
    • podvm
    • None
    • 3
    • Kata Sprint #256
    • 0
    • 0

      Currently AA is built with support for only offline_fs_kbc as shown in the code ref below

      https://gitlab.cee.redhat.com/cpaas-midstream/osc-operator/-/blob/osc-1.6-rhel-9/distgit/containers/osc-podvm-payload/Dockerfile.in?ref_type=heads#L4

       

      For CoCo AA (x86_64) needs to be built with support for

      ATTESTER="az_snp_vtpm_attester,az_tdx_vtpm_attester"

      For s390x ATTESTER=none

            beraldoleal Beraldo Leal
            bpradipt Pradipta Banerjee
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated:
              Resolved: