mirror of
https://github.com/kata-containers/kata-containers.git
synced 2026-05-16 20:37:15 +00:00
Add install_image_coco_addon() to kata-deploy-binaries.sh which: - Unpacks the CoCo guest components and pause image tarballs into a temporary rootfs directory (under the repo root so Docker-in-Docker volume mounts resolve correctly) - Calls image_builder.sh with USE_DOCKER=1, FS_TYPE=erofs, MEASURED_ROOTFS=yes, SKIP_DAX_HEADER=yes, and SKIP_ROOTFS_CHECK=yes to produce kata-containers-coco-addon.img + root_hash_coco-addon.txt Add the rootfs-image-coco-addon-tarball Makefile target with dependencies on pause-image-tarball and coco-guest-components-tarball. Remove pause-image-tarball and coco-guest-components-tarball from the standard confidential image dependencies -- those components now live exclusively in the CoCo addon image. NVIDIA confidential images retain them until the NVIDIA addon split lands. Signed-off-by: Fabiano Fidêncio <ffidencio@nvidia.com> Assisted-by: Cursor <cursoragent@cursor.com>