Граф коммитов

61 Коммитов

Автор SHA1 Сообщение Дата
Amaury Chamayou d3ba218586
Set and enforce VMPL in SNP attestation (#6583) 2024-10-21 15:02:36 +01:00
Amaury Chamayou df70e25263
Switch to generic Python3 executable (#6575) 2024-10-17 12:52:31 +01:00
Amaury Chamayou 19561ddc2f
Ignore time in did:x509 resolve (#6576) 2024-10-17 10:51:32 +01:00
Amaury Chamayou 4b167078d3
Only the KV-defined set of UVM roots of trust should be used to accept joining nodes (#6489) 2024-09-23 19:07:21 +00:00
Amaury Chamayou 5661eefc12
Make collateral fetching retries configurable, and shut down when they are exhausted (#6478) 2024-09-17 12:30:18 +00:00
Amaury Chamayou 0d6b1cc351
Remove SGX JWT key filter and policy support (#6450) 2024-08-23 15:49:36 +00:00
Max b4afd5d123
Fixup channels test (#6265) 2024-06-13 16:36:13 +00:00
Amaury Chamayou 957474138c
Host data can be extracted on platforms other than SNP (#6244) 2024-06-11 11:57:43 +01:00
Amaury Chamayou 8c07653961
Verify UVM endorsements signed with ECDSA (#6243) 2024-06-10 20:59:54 +01:00
Amaury Chamayou 0acc0a94e3
Fix consistency trace test on SNP (#6149) 2024-04-25 18:36:26 +01:00
Eddy Ashton d2d3fbf320
SNP CI: Login to az cli with VM's user-managed identity (#6123) 2024-04-16 14:57:36 +01:00
Amaury Chamayou 61d8e47f91
Un-remove arrow sources from CI jobs (#6100) 2024-03-28 14:23:26 +00:00
Amaury Chamayou bdb6290a8e
Switch SNP tests to use THIM (#6084) 2024-03-27 13:11:09 +00:00
Amaury Chamayou 4ee5d71aee
Unblock CI by removing arrow repo from apt source temporarily (#6090) 2024-03-25 13:01:18 +00:00
Amaury Chamayou 5aa81bb990
Publish SNP test workspace (#6085) 2024-03-22 10:09:15 +00:00
Eddy Ashton b16d2f7825
SNP test fix: renamed response field (#6030) 2024-02-21 13:45:38 +00:00
Amaury Chamayou 2faaec358d
Remove now-unused security_context_directory (#5868) 2023-12-19 13:30:59 +00:00
Amaury Chamayou 7b3f22fb62
Pin UVM roots of trust and add snp_uvm_endorsements_file to configuration (#5867) 2023-12-15 16:12:43 +00:00
Amaury Chamayou ccc9c3170d
Add snp_security_policy_file to configuration (#5865) 2023-12-13 10:37:14 +00:00
Amaury Chamayou 98091b5ce5
Resolve env vars in SNP endorsements (#5862) 2023-12-12 11:36:27 +00:00
Amaury Chamayou d4ce99368f
Enable LTO in release virtual and SNP (#5857) 2023-12-08 13:29:37 +00:00
Amaury Chamayou 5c11f4778d
Allow explicit port in SNP endorsements config (#5858) 2023-12-08 10:50:25 +00:00
Amaury Chamayou 71194e42a0
Add support for THIM as a source of collateral (#5854) 2023-12-06 16:55:12 +00:00
Amaury Chamayou 1b9be61c81
Add support for SEV attestion in 6.x kernels (#5848) 2023-12-04 11:55:33 +00:00
Amaury Chamayou 65d7819aaa
Build check script (#5639) 2023-10-24 15:50:02 +00:00
Eddy Ashton e73cf2f4cf
Use new governance API throughout our infra (#5698) 2023-10-04 15:43:32 +01:00
Dominic Ayre b1fa955287
Fix out of bounds copy in SNP attestation report req (#5693) 2023-09-28 13:01:18 +01:00
Eddy Ashton a5f3b4c535
Add CLI argument for SNP context directory (#5686) 2023-09-26 11:41:04 +01:00
Dominic Ayre 6e7caf0098
Expose SNP Attestation validation in TS (#5653) 2023-09-26 08:39:56 +01:00
Julien Maffre 26ddc784db
Fix `REQUIRE_OPENENCLAVE=OFF` builds (#5659) 2023-09-19 11:32:15 +00:00
Julien Maffre c49ca859c6
SEV-SNP: Make UVM endorsements SVN an arbitrary string (#5620) 2023-09-05 18:26:01 +01:00
Julien Maffre bc78dd9cf8
Remove code to do with 1.x compatibility (#5596) 2023-08-30 13:52:08 +01:00
Julien Maffre bebafb19ac
Fix SNP CI pipeline (#5310) 2023-06-01 12:24:02 +01:00
Julien Maffre 18c50d862f
Re-enable NPM modules test on SNP (#5210) 2023-04-25 16:57:21 +01:00
Amaury Chamayou e55469bbfa
Upgrade doctest from 2.4.8 to 2.4.11 (#5120) 2023-03-17 15:09:54 +00:00
Julien Maffre 1f7143963d
Disaster recovery test from SGX to SNP (#5115) 2023-03-17 09:43:26 +00:00
Amaury Chamayou 42d9f25a6b
Use clang 15 in virtual builds (#5111) 2023-03-16 13:12:55 +00:00
Julien Maffre ec60628645
SEV-SNP: Remove SNP-specific endpoints (#5067) 2023-03-03 15:36:04 +00:00
Julien Maffre 23dfa31620
SEV-SNP: support for multiple measurement types on same node (#5063) 2023-02-28 21:34:27 +00:00
Julien Maffre 47fa9d0d31
SNP: Disable containerised executor test in SNP CI (#5069) 2023-02-28 16:45:54 +00:00
Julien Maffre 48ca1e2bfc
SEV-SNP ACI: Store and cross-verify UVM endorsements (#5022) 2023-02-22 10:38:33 +00:00
Amaury Chamayou 7ce933a314
Print full file contents on all retries (#5020) 2023-02-20 09:24:59 +00:00
Mahati Chamarthy 710a7e5fe6
Stop waiting if the `pem` file is fetched successfully (#5021) 2023-02-16 11:44:43 +00:00
Amaury Chamayou 41621e4325
Do not expect a whole PEM file at first (#5017) 2023-02-16 08:21:24 +00:00
Julien Maffre e02dbdeaee
SEV-SNP ACI: Verify UVM endorsements (#4915) 2023-02-14 17:27:42 +00:00
Julien Maffre fc7f85799f
Update SEV-SNP ACI file share to North Europe (#4988) 2023-02-10 11:37:31 +00:00
Julien Maffre 3e17ebcfee
Setup environment variables for ACI (#4888) 2023-01-27 10:41:40 +00:00
Dominic Ayre 1a2766cffe
Stop SNP measurement test enforcing specific measurement (#4886) 2023-01-24 18:44:59 +00:00
Dominic Ayre 8c8904cc4e
Update SNP Measurement (#4875) 2023-01-23 08:53:29 +00:00
Dominic Ayre c5be44747d
Install a common ssh key on deployed ACIs (#4866) 2023-01-20 15:47:20 +00:00