From 981f0a1f0fa829c995ebee8c4b1d364689717f68 Mon Sep 17 00:00:00 2001 From: Hyounggyu Choi Date: Wed, 11 Oct 2023 20:57:43 +0200 Subject: [PATCH] cc|rootfs: Define SEALED_SECRET for cc-rootfs-initrd-tarball This is to define `SEALED_SECRET` as yes for a make target `cc-rootfs-initrd-tarball`, which makes a service `confidential-data-hub` available with an initrd-based VM creation. Fixes: #8210 Signed-off-by: Hyounggyu Choi --- tools/packaging/kata-deploy/local-build/kata-deploy-binaries.sh | 1 + 1 file changed, 1 insertion(+) diff --git a/tools/packaging/kata-deploy/local-build/kata-deploy-binaries.sh b/tools/packaging/kata-deploy/local-build/kata-deploy-binaries.sh index 4e9b6e219e..0993840d3b 100755 --- a/tools/packaging/kata-deploy/local-build/kata-deploy-binaries.sh +++ b/tools/packaging/kata-deploy/local-build/kata-deploy-binaries.sh @@ -481,6 +481,7 @@ install_cached_kernel_tarball_component() { install_cc_initrd() { export AA_KBC="${AA_KBC:-offline_fs_kbc}" + export SEALED_SECRET=yes info "Create CC initrd configured with AA_KBC=${AA_KBC}" install_initrd }