Uploaded image for project: 'Openshift sandboxed containers'
  1. Openshift sandboxed containers
  2. KATA-4654

Test reference TEE measurements for the initrd to do remote attestation

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Unresolved
    • Icon: Medium Medium
    • OSC 1.12
    • None
    • None
    • None
    • OSC Sprint #2026/1, Blanc #2026/3
    • 0

      Goal and why this matters

      TEE measurements are critical to enforce fool proof confidentiality through the hardware root-of-trust mechanism. This requires remote attestation of the TEE (TDX and SNP) measurements by comparing the hash values with reference values available with Trustee. Currently, our build pipeline doesn't compute and publish the reference hash value for initrd to Trustee/RVPS. 

      The goal of this story is to complete the internal documentation on the implementation of reference value generation of measurements for the initrd with TDX/SNP TEE at build pipeline for Trustee RVPS and do end-to-end testing as per the internal documentation.

      Refer https://issues.redhat.com/browse/KATA-3977 for guidance on documentation.

      Acceptance Criteria

      Successful documentation (input to the user guide creation for customer documentation) and end-to-end testing of the initrd reference value in Trustee for remote attestation based on the internal documentation.

       

       

       

       

       

              rhn-support-pezhang Pei Zhang
              jfreiman Jens Freimann
              Emanuele Giuseppe Esposito
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: