Skip to content

Commit 800df7f

Browse files
committed
amd-sev: secure_virt_attest to secure_virt_measure
In the legacy AMD SEV implementation, the sev_secure_virt_attest function performed pre-boot attestation for a VM. This implementation was removed, and SEV-SNP uses post-boot attestation. As such, the SEV-SNP implementation only measures each region for guests, and does not attest anything, making the function name a bit misleading. Signed-off-by: Tyler Fanelli <[email protected]>
1 parent 51ce66e commit 800df7f

File tree

2 files changed

+2
-2
lines changed

2 files changed

+2
-2
lines changed

src/vmm/src/builder.rs

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -845,7 +845,7 @@ pub fn build_microvm(
845845
.map_err(VstateError::KvmCpuId)
846846
.map_err(StartMicrovmError::SecureVirtAttest)?;
847847
vmm.kvm_vm()
848-
.snp_secure_virt_attest(
848+
.snp_secure_virt_measure(
849849
cpuid,
850850
vmm.guest_memory(),
851851
measured_regions,

src/vmm/src/linux/vstate.rs

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -551,7 +551,7 @@ impl Vm {
551551
}
552552

553553
#[cfg(feature = "amd-sev")]
554-
pub fn snp_secure_virt_attest(
554+
pub fn snp_secure_virt_measure(
555555
&self,
556556
cpuid: CpuId,
557557
guest_mem: &GuestMemoryMmap,

0 commit comments

Comments
 (0)