[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Qemu-devel] [RFC PATCH v2 11/16] sev: add LAUNCH_FINISH command
From: |
Brijesh Singh |
Subject: |
[Qemu-devel] [RFC PATCH v2 11/16] sev: add LAUNCH_FINISH command |
Date: |
Thu, 22 Sep 2016 10:53:46 -0400 |
User-agent: |
StGit/0.17.1-dirty |
The command is used to finalize the SEV guest launch process.
The command returns a measurement value of the data encrypted through
the LAUNCH_UPDATE command. This measurement can be handed to the guest
owner to verify that the guest was launched into SEV-enabled mode.
User can retrieve the measurement via 'measurement' property defined
in 'sev-launch-info' object.
Signed-off-by: Brijesh Singh <address@hidden>
---
sev.c | 17 +++++++++++++++--
1 file changed, 15 insertions(+), 2 deletions(-)
diff --git a/sev.c b/sev.c
index dcd7c48..21c491c 100644
--- a/sev.c
+++ b/sev.c
@@ -955,7 +955,21 @@ sev_launch_start(SEVState *s)
static int
sev_launch_finish(SEVState *s)
{
- // add the command to finalize the launch in next patches
+ int ret;
+ struct kvm_sev_launch_finish *finish = s->launch_finish;
+
+ assert(s->state == SEV_STATE_LAUNCHING);
+
+ ret = sev_ioctl(KVM_SEV_LAUNCH_FINISH, finish);
+ if (ret) {
+ return -1;
+ }
+
+ DPRINTF("SEV: LAUNCH_FINISH ");
+ DPRINTF_U8_PTR(" measurement", finish->measurement,
+ sizeof(finish->measurement));
+
+ s->state = SEV_STATE_RUNNING;
return 0;
}
@@ -1058,7 +1072,6 @@ sev_guest_launch_finish(void *handle)
if (s->state == SEV_STATE_LAUNCHING) {
return sev_launch_finish(s);
- // use launch_finish commands
} else if (s->state == SEV_STATE_RECEIVING) {
// use receive_finish commands
} else {
- [Qemu-devel] [RFC PATCH v2 06/16] sev: add Secure Encrypted Virtulization (SEV) support, (continued)
- [Qemu-devel] [RFC PATCH v2 07/16] hmp: display memory encryption support in 'info kvm', Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 08/16] core: loader: create memory encryption context before copying data, Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 09/16] sev: add LAUNCH_START command, Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 10/16] sev: add LAUNCH_UPDATE command, Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 11/16] sev: add LAUNCH_FINISH command,
Brijesh Singh <=
- [Qemu-devel] [RFC PATCH v2 12/16] sev: add DEBUG_DECRYPT command, Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 13/16] sev: add DEBUG_ENCRYPT command, Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 14/16] i386: set memory encryption ops for PC.BIOS and PC.RAM regions, Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 15/16] target-i386: add cpuid Fn8000_001f, Brijesh Singh, 2016/09/22
- [Qemu-devel] [RFC PATCH v2 16/16] i386: clear C-bit in SEV guest page table walk, Brijesh Singh, 2016/09/22
- Re: [Qemu-devel] [RFC PATCH v2 00/16] x86: Secure Encrypted Virtualization (AMD), no-reply, 2016/09/22
- Re: [Qemu-devel] [RFC PATCH v2 00/16] x86: Secure Encrypted Virtualization (AMD), no-reply, 2016/09/22