Commit Graph

  • 45857859ec versions: Bump td-shim to v0.2.0 Fabiano Fidêncio 2022-11-04 13:54:41 +01:00
  • 542b42ad58 versions: Bump attestation-agent to v0.2.0 Fabiano Fidêncio 2022-11-04 13:53:58 +01:00
  • d45f7e54c4 Merge pull request #5592 from fidencio/topic/CC-backport-static-checks-split Fabiano Fidêncio 2022-11-07 10:47:46 +01:00
  • 3e9c3f12ce docs: Fix configuration path Mathis Joffre 2022-10-21 14:56:41 +02:00
  • 62c5e4e9a9 snap: Unbreak docker install James O. D. Hunt 2022-11-02 09:53:05 +00:00
  • 5f122a0760 snap: Use metadata for dependencies James O. D. Hunt 2022-11-02 09:50:29 +00:00
  • 2adb1c1823 Dragonball: enable mem_file_path config into hugetlbfs process Chao Wu 2022-11-02 14:07:37 +08:00
  • 7250be3601 Merge pull request #5584 from fengyehong/clh-thread Fabiano Fidêncio 2022-11-07 08:22:40 +01:00
  • 98121472da github: Parallelise static checks Fabiano Fidêncio 2022-11-04 12:34:08 +01:00
  • 3b1750e8e8 Merge pull request #5586 from fidencio/topic/paralelise-static-checks Fabiano Fidêncio 2022-11-07 07:54:48 +01:00
  • 824ea83c3c Merge pull request #5573 from pmores/fill-in-virtiofsd-standalone-impl Bin Liu 2022-11-07 14:19:45 +08:00
  • 83d052f82b Merge pull request #4476 from LitFlwr0/vcpu-pinning-frq Bin Liu 2022-11-07 10:37:22 +08:00
  • daeee26a1e cloud-hypervisor: Fix GetThreadIDs function Guanglu Guo 2022-11-03 11:59:54 +08:00
  • 427b01e298 Merge pull request #5548 from justxuewei/fix/share-fs-permission Bin Liu 2022-11-04 21:21:50 +08:00
  • 40d514aa2c github: Parallelise static checks Fabiano Fidêncio 2022-11-04 12:34:08 +01:00
  • 656a3e06a7 Merge pull request #5580 from fidencio/topic/CC-build-and-provide-yet-another-tdx-runtime-class Fabiano Fidêncio 2022-11-04 13:22:36 +01:00
  • 1b93cd1661 Merge pull request #5546 from jimcadden/allow_empty_keysets Fabiano Fidêncio 2022-11-04 13:22:01 +01:00
  • 2508d39b7c runtime: added vcpus pinning logics Core VCPU threads pinning logics for issue 4476. Also provided docs. LitFlwr0 2022-06-09 00:25:49 +08:00
  • fef8e92af1 runtime-rs:add hypervisor interface capabilities Zhongtao Hu 2022-11-02 17:52:47 +08:00
  • b0c7bcce7c Merge pull request #5556 from ManaSugi/runk/fix-kill-behavior Bin Liu 2022-11-04 08:42:27 +08:00
  • 02fa6b8dad Merge pull request #5557 from ManaSugi/runk/update-cargolock-libseccomp Bin Liu 2022-11-04 08:41:45 +08:00
  • bb38901550 Merge pull request #5571 from jodh-intel/snap-unbreak-docker Fabiano Fidêncio 2022-11-03 23:47:07 +01:00
  • 411482bf19 runtime: Enable kernel hashes for all SEV guests Jim Cadden 2022-10-31 15:03:05 -04:00
  • 3dd655d60d Merge pull request #5337 from dubek/runtime-add-sev-tests Steve Horsman 2022-11-03 11:15:16 +00:00
  • 1f799d6a29 config: Add AGENT_AA_KBC_PARAMS to the kernel config Fabiano Fidêncio 2022-11-03 10:37:47 +01:00
  • b14921937a config: Add specific config for TDX + EAA KBC Fabiano Fidêncio 2022-11-01 14:40:29 +01:00
  • c72fdaf916 packaging: Build TDX specific guest image Fabiano Fidêncio 2022-11-01 13:53:02 +01:00
  • 05db886e27 osbuilder: Remove non-needed packages at the end Fabiano Fidêncio 2022-11-02 16:41:12 +01:00
  • af75ce04c1 osbuilder: Manually add universe repo Fabiano Fidêncio 2022-11-02 16:39:41 +01:00
  • 68956ad127 osbuilder: Add /etc/tdx-attest.conf when using eaa_kbc Fabiano Fidêncio 2022-11-01 14:32:57 +01:00
  • 6f16071359 guest-image: Allow passing the image / initrd suffix Fabiano Fidêncio 2022-11-01 13:45:52 +01:00
  • 95fbe46891 Merge pull request #5552 from stevenhorsman/sig-ver-param Fabiano Fidêncio 2022-11-03 11:22:31 +01:00
  • 27b1913584 runtime-rs: blanks filled & fixes made to virtiofsd launch Pavel Mores 2022-11-02 15:01:25 +01:00
  • 360e01c0f4 agent: Set image_client security_validate stevenhorsman 2022-10-11 14:39:15 +01:00
  • b6bf1c3f2c Merge pull request #5574 from fidencio/topic/CC-increase-clh-timeouts Fabiano Fidêncio 2022-11-02 21:45:01 +01:00
  • 76ef07a22d clh: Increase the timeouts when using Conf Guests Fabiano Fidêncio 2022-11-02 17:12:28 +01:00
  • 9aa4afee63 runtime: Disable signature verification in config stevenhorsman 2022-10-11 14:33:52 +01:00
  • 46a6c52ef4 agent: Add enable_signature_verification config stevenhorsman 2022-10-11 12:00:43 +01:00
  • 5b1df532da Merge pull request #5562 from fitzthum/params_cmdline Fabiano Fidêncio 2022-11-02 18:20:01 +01:00
  • d71e7bbd59 Agent: Allow agent config to be overwritten Tobin Feldman-Fitzthum 2022-10-26 17:41:44 +00:00
  • 990e6359b7 snap: Unbreak docker install James O. D. Hunt 2022-11-02 09:53:05 +00:00
  • ca69a9ad6d snap: Use metadata for dependencies James O. D. Hunt 2022-11-02 09:50:29 +00:00
  • 5f5b4f7da9 Merge pull request #5374 from Alex-Carter01/AA-tag-version Steve Horsman 2022-11-01 17:42:35 +00:00
  • 3623c033c7 Merge pull request #5554 from Megan-Wright/CCv0 Megan Wright 2022-11-01 16:42:45 +00:00
  • fe9ea1351f Merge pull request #5542 from arronwy/image-rs Fabiano Fidêncio 2022-11-01 12:49:33 +01:00
  • df092185ee runk: Upgrade libseccomp crate to v0.3.0 in Cargo.lock Manabu Sugimoto 2022-11-01 20:22:29 +09:00
  • 16dca4ecd4 runk: Ignore an error when calling kill cmd with --all option Manabu Sugimoto 2022-11-01 17:01:19 +09:00
  • 61ec234b6a CCv0: Merge main into CCv0 branch Megan Wright 2022-11-01 10:55:33 +00:00
  • b74c18024a runtime-rs: fix shared volume permission issue Xuewei Niu 2022-11-01 11:00:38 +08:00
  • 8f56ad57ad Merge pull request #5544 from fidencio/topic/CC-install-rats-tls-tdx Fabiano Fidêncio 2022-11-01 09:39:09 +01:00
  • 936fe35acb runtime-rs : fix shim source is ambiguous Chen TaoTao 2022-10-28 15:33:19 +08:00
  • aa4d803e35 Merge pull request #5533 from arronwy/aa_kbc_params Fabiano Fidêncio 2022-10-31 22:37:20 +01:00
  • 04f0fcc5eb Merge pull request #5398 from GabyCT/topic/qemucccached GabyCT 2022-10-31 14:25:52 -06:00
  • 72a13f6064 CCv0: Use cached cc qemu tarball Gabriela Cervantes 2022-10-11 16:58:16 +00:00
  • 68c962601c Merge pull request #5537 from GabyCT/updateclh Fabiano Fidêncio 2022-10-31 18:55:04 +01:00
  • 112a3d2bae config: Export aa_kbc_params to be set in guest kernel command line Wang, Arron 2022-10-28 14:42:25 +08:00
  • a1571721dd osbuilder: Install rats-tls-tdx Fabiano Fidêncio 2022-10-31 09:27:05 +01:00
  • 5885f005f1 ubuntu: 20.04 is focal, not bionic Fabiano Fidêncio 2022-10-31 10:46:41 +01:00
  • 30990872f1 ubuntu: Ensure RATS-TLS is only installed on 20.04 Fabiano Fidêncio 2022-10-24 13:12:44 +02:00
  • 27affb2a63 agent: Bump pinned version of image-rs to support cosign signature Wang, Arron 2022-10-31 11:14:10 +08:00
  • 288e337a6f Merge pull request #5434 from Rouzip/remove-doNetNS snir911 2022-10-30 11:19:07 +02:00
  • 1b8b2f9dce tools: Fix indentation of build static clh script Gabriela Cervantes 2022-10-27 21:09:34 +00:00
  • e04ad49c1b Merge pull request #5530 from GabyCT/topic/fixclhscript GabyCT 2022-10-28 11:52:56 -05:00
  • 0ed7da30d7 tools: Fix indentation of build static clh script Gabriela Cervantes 2022-10-27 21:09:34 +00:00
  • 63e6abfa9d osbuilder: specify Attestation Agent tag for rootfs build Alex Carter 2022-10-07 14:54:14 +00:00
  • 423778aec7 runtime: sev: Add unittests; allow measurement without kernel Dov Murik 2022-10-06 14:46:37 +03:00
  • 0bb005093e Merge pull request #5523 from BbolroC/s390x-virtiofsd Bin Liu 2022-10-27 20:42:57 +08:00
  • b30deca617 Merge pull request #5518 from fidencio/topic/CC-allow-passing-a-builder-image-to-the-kata-deploy-scripts Fabiano Fidêncio 2022-10-27 14:07:33 +02:00
  • 43fcb8fd09 virtiofsd: Not use "link-self-contained=yes" on s390x The compile option link-self-contained=yes asks rustc to use C library startup object files that come with the compiler, which are not available on the target s390x-unknown-linux-gnu. A build does not contain any startup files leading to a broken executable entry point (causing segmentation fault). Hyounggyu Choi 2022-10-26 23:43:22 +02:00
  • 37f0cd1c8f Merge pull request #5436 from amshinde/kata-ctl-drop-privs David Esparza 2022-10-26 11:37:27 -05:00
  • 64009be3d7 packaging: Allow passing a container builder to the scripts Fabiano Fidêncio 2022-10-26 14:09:47 +02:00
  • 8b0c830a23 Merge pull request #5513 from bergwolf/github/golang-ci-lint David Esparza 2022-10-26 07:36:45 -05:00
  • 059b09b0a8 Merge pull request #5510 from bergwolf/github/runtime-rs-makefile Bin Liu 2022-10-26 20:29:17 +08:00
  • 4d6c3bd0fa Merge pull request #5515 from cmaf/docs-fix-sgx-k8s-volumemount David Esparza 2022-10-26 07:24:31 -05:00
  • 2ac01cac0d Merge pull request #5458 from Megan-Wright/CCv0 Fabiano Fidêncio 2022-10-26 08:53:09 +02:00
  • 219919e9f7 docs: Fix volumeMounts in SGX usage example Chelsea Mafrica 2022-10-25 23:16:00 -07:00
  • c0f5bc81b7 cargo: Add Cargo.lock to version control Archana Shinde 2022-10-13 17:50:41 -07:00
  • 474927ec90 gitignore: Add gitignore file Archana Shinde 2022-10-13 17:49:08 -07:00
  • 699f821e12 utils: Add function to drop priveleges Archana Shinde 2022-10-13 17:35:43 -07:00
  • a6fb4e2a68 versions: bump golangci-lint version Peng Tao 2022-10-26 10:41:24 +08:00
  • b015f34aff runtime-rs: generate config files with the default target Peng Tao 2022-10-25 15:30:13 +08:00
  • 6cd021ce86 Merge branch 'CCv0' into CCv0 Fabiano Fidêncio 2022-10-25 17:59:04 +02:00
  • 855e63a121 Merge pull request #5508 from fidencio/topic/CC-fix-up-issues-with-cached-images Fabiano Fidêncio 2022-10-26 00:30:12 +02:00
  • 86905cdcdf packaging: Append $(uname -m) to the images tags Fabiano Fidêncio 2022-10-25 21:58:01 +02:00
  • c720869eef initramfs: Build dependencies as part of the Dockerfile Fabiano Fidêncio 2022-10-25 20:35:45 +02:00
  • c3cb65d0bb Revert "packaging: Use existing image for the kata-deploy-build" Fabiano Fidêncio 2022-10-25 20:16:24 +02:00
  • 959dc3226b Revert "packaging: Add infra to push the kata-deploy builder image" Fabiano Fidêncio 2022-10-25 20:16:18 +02:00
  • 44414e1708 lib.sh: Fix get_last_modification() Fabiano Fidêncio 2022-10-25 20:14:26 +02:00
  • 712177a337 Merge pull request #5482 from fidencio/topic/CC-cache-images-used-to-build-the-artefacts Fabiano Fidêncio 2022-10-25 17:55:13 +02:00
  • 25a961f5f3 initramfs: Add build script to generate initramfs Wang, Arron 2022-09-01 13:02:22 +08:00
  • c916c98ab5 actions: Push the builder images as part of the payload generation Fabiano Fidêncio 2022-10-20 18:27:36 +02:00
  • 111ad87828 packaging: Add infra to push the initramfs builder image Fabiano Fidêncio 2022-10-25 15:09:11 +02:00
  • ebf6c83839 packaging: Use exissting image to build the initramfs Fabiano Fidêncio 2022-10-25 15:07:11 +02:00
  • 94807e73e7 packaging: Don't remove QEMU image Fabiano Fidêncio 2022-10-20 11:12:09 +02:00
  • d4db7ed3c8 packaging: Add infra to push the QEMU builder image Fabiano Fidêncio 2022-10-20 09:41:34 +02:00
  • 9e1df04e66 packaging: Use existing image to build QEMU Fabiano Fidêncio 2022-10-20 09:40:14 +02:00
  • b26cd250c8 qemu: Re-work static-build Dockerfile Fabiano Fidêncio 2022-10-19 21:12:08 +02:00
  • a036584ed9 packaging: Add infra to push the virtiofsd builder image Fabiano Fidêncio 2022-10-19 17:28:52 +02:00
  • 29f64d6181 packaging: Use existing image to build virtiofsd Fabiano Fidêncio 2022-10-19 17:12:18 +02:00
  • 9ba01f36de virtiofsd: Pass the expected toolchain to the build container Fabiano Fidêncio 2022-10-19 17:20:27 +02:00