Skip to content

Commit d4c124a

Browse files
committed
Update NEWS with latest changes
1 parent 205c1da commit d4c124a

File tree

1 file changed

+5
-0
lines changed

1 file changed

+5
-0
lines changed

NEWS

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -238,6 +238,11 @@ CHANGES WITH 254 in spe:
238238
and will also set a SYSTEMD_CONFIDENTIAL_VIRTUALIZATION= environment
239239
variable for unit generators. Finally, udev rules can match on a new
240240
'cvm' key that will be set when in a confidential VM.
241+
Additionally, when running in a 'Confidential Virtual Machine', SMBIOS
242+
strings and QEMU's fw_cfg protocol will not be used to import
243+
credentials and kernel command line parameters by the system manager,
244+
systemd-boot and systemd-stub, because the hypervisor is considered
245+
untrusted in this particular setting.
241246

242247
Journal:
243248

0 commit comments

Comments
 (0)