-
Story
-
Resolution: Done-Errata
-
Undefined
-
None
-
edk2-20240524-1.el9
-
None
-
rhel-sst-virtualization
-
ssg_virtualization
-
5
-
False
-
-
Yes
-
None
-
Pass
-
Automated
-
Feature
-
-
Proposed
-
None
MOR is a security feature, it will clear all memory in case of a unclean reboot,
to make sure no secrets are left there.
More background:
https://learn.microsoft.com/en-us/windows-hardware/drivers/bringup/device-guard-requirements
Upstream edk2 ships drivers, on a quick glance it looks like we only need to include them in the OVMF builds.
Note: TPM is required to see this feature active.
- relates to
-
RHEL-26340 [RFE] Windows VBS can not be enabled properly on Win11
- New
- links to
-
RHSA-2024:128995 edk2 bug fix and enhancement update