Skip to content

Conversation

@ameba23
Copy link
Collaborator

@ameba23 ameba23 commented Nov 25, 2025

This targets #19 - not main

I was imagining we do an azure attestation by hitting the MAA api with a quote and HCL runtime data, and getting a JWT token from microsoft, which the verifier checks the signature of.

But now i understand the attestation code in cvm-reverse-proxy a bit better, i realize thats not what we are doing - we are verifying everything ourselves.

This adds a similar attestation flow here - but does not yet have the vTPM certificate verification from flashbots/cvm-reverse-proxy#47

@ameba23 ameba23 marked this pull request as draft November 25, 2025 09:26
@ameba23 ameba23 marked this pull request as ready for review November 26, 2025 08:35
@ameba23 ameba23 merged commit dd6bea7 into peg/add-maa Nov 26, 2025
2 checks passed
@ameba23 ameba23 deleted the peg/local-azure-verification branch November 26, 2025 08:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant