Re: [edk2-devel] [PATCH 01/10] OvmfPkg: Introduce IntelTdxX64 for TDVF Config-B

2021-12-15 Thread Gerd Hoffmann
Hi, > - Remove unnecessary drivers to reduce attack surface, such as >network stack. > + # > + # Defines for default states. These can be changed on the command line. > + # -D FLAG=VALUE > + # > + DEFINE SECURE_BOOT_ENABLE = FALSE > + DEFINE SMM_REQUIRE = FALSE > +

[edk2-devel] [PATCH 01/10] OvmfPkg: Introduce IntelTdxX64 for TDVF Config-B

2021-12-14 Thread Min Xu
RFC: https://bugzilla.tianocore.org/show_bug.cgi?id=3429 Intel's Trust Domain Extensions (Intel TDX) refers to an Intel technology that extends Virtual Machines Extensions (VMX) and Multi-Key Total Memory Encryption (MKTME) with a new kind of virutal machines guest called a Trust Domain (TD). A TD