-
Notifications
You must be signed in to change notification settings - Fork 1
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
CoRIM standard for TDX #25
Comments
There are examples in https://github.com/nedmsmith/draft-cds-rats-intel-corim-profile/tree/main/cddl/examples that show Reference Values in cbor diag format. MRENCLAVE is modeled as a digest type. The Intel profile uses a different name from |
Thanks for your reply @nedmsmith There is a practical problem. If I want to give a reference value manifest for
And also quote.body format for TDX defined in DCAP
So the implied mapping here is
Right? |
I believe that is a correct mapping. The thing to note is the profile relies on |
Thanks very much. Do you have any plan inside Intel to publish reference values of TDX stack using CoRIM? |
Hi @nedmsmith . I am Ding from Confidential Containers which aiming to provide cloud native way to leverage TEE ability for containerized workload. Now I am working on the reference value publishment and consumption of the components running inside TEE (like kernel, guest firmware, ..., e.g.
mr_td
,rtmr
s for TDX, etc.).Two aims from my side
I have read the slides about CoRIM based attestation framework which follows the
measurement-values-map-extension
fields defined in this repo. This could help SGX to give reference values for fields likeMRENCLAVE
.My question is how to apply this standard on TDX and other platforms? Is there anything I ignored or do you have any plan?
Thanks a lot!
The text was updated successfully, but these errors were encountered: