Skip to content

Conversation

@rouming
Copy link
Contributor

@rouming rouming commented Mar 26, 2025

In keeping with the tool's approach, which handles the entire SEV certificate chain, make the same adjustment for the validate command: allow the file path to the entire certificate chain instead of just a single file with the PEK certificate, as extracting the PEK alone is not possible with sevctl.

Testing this PR should be done in conjunction with the following fixes: virtee/sev#293

@rouming
Copy link
Contributor Author

rouming commented Apr 3, 2025

@tylerfanelli have addressed your comments, please take a look

tylerfanelli
tylerfanelli previously approved these changes Apr 3, 2025
@tylerfanelli
Copy link
Member

Could you run cargo fmt and resubmit?

In keeping with the tool's approach, which handles the entire SEV
certificate chain, make the same adjustment for the `validate`
command: allow the file path to the entire certificate chain instead
of just a single file with the PEK certificate, as extracting the PEK
alone is not possible with `sevctl`.

Signed-off-by: Roman Penyaev <[email protected]>
@rouming
Copy link
Contributor Author

rouming commented Apr 3, 2025

@tylerfanelli done

@tylerfanelli
Copy link
Member

LGTM. @larrydewey @DGonzalezVillal please take a look.

@tylerfanelli tylerfanelli merged commit 279ddf6 into virtee:main Apr 17, 2025
8 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants