Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ARM CCA and virtCCA support in CoCo #631

Open
5 of 9 tasks
huoqifeng opened this issue Dec 16, 2024 · 9 comments
Open
5 of 9 tasks

ARM CCA and virtCCA support in CoCo #631

huoqifeng opened this issue Dec 16, 2024 · 9 comments

Comments

@huoqifeng
Copy link
Contributor

huoqifeng commented Dec 16, 2024

This issue is created to track the work to support CCA and virtCCA in CoCo, include:

CC @fitzthum @Xynnn007 @stevenhorsman and CC my friends in ARM @seungukshin (Seunguk Shin), Nick Connolly, Tao Xu and friends in Linaro @chendave @kevinzs2048 @thomas-fossati who have done many great work in this area already!

@Xynnn007
Copy link
Member

btw CCA attester and verifier has already been supported somehow.
https://github.com/confidential-containers/trustee/tree/main/deps/verifier/src/cca
https://github.com/confidential-containers/guest-components/tree/main/attestation-agent/attester/src/cca

Is there any difference between the potential support?

@kevinzs2048
Copy link

Thanks @huoqifeng , I will also cc @thomas-fossati as he will upstream the trustee support for CCA quite soon.

@huoqifeng
Copy link
Contributor Author

Thanks @huoqifeng , I will also cc @thomas-fossati as he will upstream the trustee support for CCA quite soon.

Thanks! @kevinzs2048 @thomas-fossati

@huoqifeng
Copy link
Contributor Author

btw CCA attester and verifier has already been supported somehow. https://github.com/confidential-containers/trustee/tree/main/deps/verifier/src/cca https://github.com/confidential-containers/guest-components/tree/main/attestation-agent/attester/src/cca

Is there any difference between the potential support?

@Xynnn007 I think @kevinzs2048 and @thomas-fossati is still working on that.

@seungukshin
Copy link

Thank you for creating this issue @huoqifeng . I'm working to enable push AS / RVPS, KBS and KBS-client images for arm64.

@mythi
Copy link
Contributor

mythi commented Feb 3, 2025

@seungukshin note this comment related to #639. Would you be able to check the image builds using podman too?

@seungukshin
Copy link

@mythi sure, I'll test #684 with podman on arm and add a comment there.

@mythi
Copy link
Contributor

mythi commented Feb 3, 2025

@mythi sure, I'll test #684 with podman on arm and add a comment there.

thanks. The ask was to update Dockerfile arm support so that podman builds can also work

@seungukshin
Copy link

I created #689

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

5 participants