mirror of
https://github.com/kata-containers/kata-containers.git
synced 2025-08-19 00:17:54 +00:00
Merge pull request #5546 from jimcadden/allow_empty_keysets
CC | runtime: Enable kernel hashes for all SEV guests
This commit is contained in:
commit
1b93cd1661
@ -349,6 +349,7 @@ func (q *qemuAmd64) appendSEVObject(devices []govmmQemu.Device, firmware, firmwa
|
|||||||
CBitPos: cpuid.AMDMemEncrypt.CBitPosition,
|
CBitPos: cpuid.AMDMemEncrypt.CBitPosition,
|
||||||
ReducedPhysBits: cpuid.AMDMemEncrypt.PhysAddrReduction,
|
ReducedPhysBits: cpuid.AMDMemEncrypt.PhysAddrReduction,
|
||||||
SevPolicy: config.Policy,
|
SevPolicy: config.Policy,
|
||||||
|
SevKernelHashes: true,
|
||||||
}), "", nil
|
}), "", nil
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
Loading…
Reference in New Issue
Block a user