Skip to content

Commit b7eed20

Browse files
authored
Merge branch 'opencomputeproject:main' into corim
2 parents 3405278 + 9027f58 commit b7eed20

6 files changed

+57
-2
lines changed

.github/workflows/hello.yml

Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,11 @@
1+
name: Hello World Workflow
2+
3+
on:
4+
workflow_dispatch:
5+
6+
jobs:
7+
greet:
8+
runs-on: ubuntu-latest
9+
steps:
10+
- name: Say Hello
11+
run: echo "Hello, World!"

Documentation/storage_sanitization.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -17,12 +17,12 @@ The Internal Key is one of the two keys required to derive or access the MEK. It
1717
* The Internal Key must never be disclosed outside the drive.
1818
* Debug and manufacturing-related interfaces must be unable to access the Internal Key.
1919
* Debug dumps must not contain the Internal Key.
20-
* The Internal Key must be protected against exfiltration via Differential Power Analysis side-channel attacks.
20+
* The Internal Key must be protected against exfiltration via Differential Power Analysis side-channel attacks (Scope 3 only).
2121
* Rate limiting may be used to mitigate attacks.
2222
* The Internal Key should be encrypted at rest with a unique key derived from secrets burned into fuses, in order to protect against physical exfiltration.
2323
* The Internal Key must be erasable.
2424
* An erase command may only report success after all old copies of the Internal Key have been destroyed irreversibly. Status must be reported, so that failures can be addressed externally.
25-
* Advanced attackers with physical access to the drive must be unable to recover the Internal Key.
25+
* Advanced attackers with physical access to the drive must be unable to recover the Internal Key (Scope 3 only).
2626
* As a subjective guideline: The Internal Key should be unrecoverable with a budget of up to $10M.
2727
* It should be possible to destroy the Internal Key even when other parts of the drive are faulty, such as motors, magnetic platters, heads or flash chips that have reached the maximum number of write-cycles.
2828

Original file line numberDiff line numberDiff line change
@@ -0,0 +1,21 @@
1+
{
2+
"review_framework_version": "1.1",
3+
"device": {
4+
"vendor": "NVIDIA Corporation",
5+
"product": "NVIDIA Blackwell GPU",
6+
"category": "GPU - Confidential Compute - Work Launch, Key Manager",
7+
"repo_tag": "36264796",
8+
"fw_version": "580.65.06",
9+
"fw_hash_sha2_384": "e34265a7befc266931d4c2757fb006dc0fcc0e383037ef9aa77ab7959deabca64bbb0962a417da9e5686fe3642f0c28b",
10+
"fw_hash_sha2_512": ""
11+
},
12+
"audit": {
13+
"srp": "Tetrel Security Inc.",
14+
"methodology": "Whitebox Review",
15+
"completion_date": "2025-02-05",
16+
"report_version": "1.1",
17+
"scope_number": 1.0,
18+
"cvss_version": "4.0",
19+
"issues": []
20+
}
21+
}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
eyJraWQiOiAidGV0cmVsLW9jcC1zZnItc2lnbmluZy1rZXkiLCAiYWxnIjogIkVTNTEyIiwgInR5cCI6ICJqd3QifQ.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.AD_vDYu27blqcuU8mcgSAKZ2bfn9N2Ke9m7JbyO2Iwojwr9liq7OBlDJG-Ecb92r412dUgyB8cLVdk3ELvPo8fUOAb2AagrE75YN5ZMEOTtPAhtMg96OBUXlYLHVKKRbQlFW62NASlqyORA_WiMEFa9uSJREmK-Jc57fyjeUmXSCZq43
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,21 @@
1+
{
2+
"review_framework_version": "1.1",
3+
"device": {
4+
"vendor": "NVIDIA Corporation",
5+
"product": "NVIDIA Hopper GPU",
6+
"category": "GPU - Confidential Compute - Work Launch, Key Manager",
7+
"repo_tag": "36264796",
8+
"fw_version": "580.65.06",
9+
"fw_hash_sha2_384": "11baaa3599e7a7b70151cf427c62fc95556d9102a9f87499085b3ec122ba64c35b78d505ce847e8b7b1bd90e0c59dcce",
10+
"fw_hash_sha2_512": ""
11+
},
12+
"audit": {
13+
"srp": "Tetrel Security Inc.",
14+
"methodology": "Whitebox Review",
15+
"completion_date": "2025-02-05",
16+
"report_version": "1.1",
17+
"scope_number": 1.0,
18+
"cvss_version": "4.0",
19+
"issues": []
20+
}
21+
}
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
eyJraWQiOiAidGV0cmVsLW9jcC1zZnItc2lnbmluZy1rZXkiLCAiYWxnIjogIkVTNTEyIiwgInR5cCI6ICJqd3QifQ.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.ASTZR0yXvYpyfjzm6YdgTBtbLoE8zq902QwbUmstxUxyzM1NIv2kVIIFW1aJ3cS018xfMoFAHi1wlDCpRVz5XYSPAGQ2ykWPTkv_lU3XOHz2KbbwuCfmbddL6rO8nh4a5oXYD2dPgvDuZxaxtClcyZa56zKF8hpc45T-2siQnsSe1L-N

0 commit comments

Comments
 (0)