render / rpms / edk2

Forked from rpms/edk2 6 months ago
Clone

Blame SOURCES/edk2-OvmfPkg-AmdSev-SecretPei-Mark-SEV-launch-secret-area.patch

7439a5
From c4096f74a41bde4fc62576222e0c9622152d7701 Mon Sep 17 00:00:00 2001
7439a5
From: Pawel Polawski <ppolawsk@redhat.com>
7439a5
Date: Tue, 4 Jan 2022 15:16:40 +0800
7439a5
Subject: [PATCH 2/2] OvmfPkg/AmdSev/SecretPei: Mark SEV launch secret area as
7439a5
 reserved
7439a5
7439a5
RH-Author: Pawel Polawski <ppolawsk@redhat.com>
7439a5
RH-MergeRequest: 10: OvmfPkg/AmdSev/SecretPei: Mark SEV launch secret area as reserved
7439a5
RH-Commit: [1/1] a8f099d508e2e7b39697945acaa767c43577b1e6 (elkoniu/edk2)
7439a5
RH-Bugzilla: 2041754
7439a5
RH-Acked-by: Oliver Steffen <osteffen@redhat.com>
7439a5
RH-Acked-by: Gerd Hoffmann <kraxel@redhat.com>
7439a5
7439a5
Mark the SEV launch secret MEMFD area as reserved, which will allow the
7439a5
guest OS to use it during the lifetime of the OS, without creating
7439a5
copies of the sensitive content.
7439a5
7439a5
Cc: Ard Biesheuvel <ardb+tianocore@kernel.org>
7439a5
Cc: Jordan Justen <jordan.l.justen@intel.com>
7439a5
Cc: Gerd Hoffmann <kraxel@redhat.com>
7439a5
Cc: Brijesh Singh <brijesh.singh@amd.com>
7439a5
Cc: Erdem Aktas <erdemaktas@google.com>
7439a5
Cc: James Bottomley <jejb@linux.ibm.com>
7439a5
Cc: Jiewen Yao <jiewen.yao@intel.com>
7439a5
Cc: Min Xu <min.m.xu@intel.com>
7439a5
Cc: Tom Lendacky <thomas.lendacky@amd.com>
7439a5
Cc: Tobin Feldman-Fitzthum <tobin@linux.ibm.com>
7439a5
Signed-off-by: Dov Murik <dovmurik@linux.ibm.com>
7439a5
Acked-by: Gerd Hoffmann <kraxel@redhat.com>
7439a5
Acked-by: Jiewen Yao <Jiewen.Yao@intel.com>
7439a5
Reviewed-by: Brijesh Singh <brijesh.singh@amd.com>
7439a5
---
7439a5
 OvmfPkg/AmdSev/SecretPei/SecretPei.c | 2 +-
7439a5
 1 file changed, 1 insertion(+), 1 deletion(-)
7439a5
7439a5
diff --git a/OvmfPkg/AmdSev/SecretPei/SecretPei.c b/OvmfPkg/AmdSev/SecretPei/SecretPei.c
7439a5
index db94c26b54..6bf1a55dea 100644
7439a5
--- a/OvmfPkg/AmdSev/SecretPei/SecretPei.c
7439a5
+++ b/OvmfPkg/AmdSev/SecretPei/SecretPei.c
7439a5
@@ -19,7 +19,7 @@ InitializeSecretPei (
7439a5
   BuildMemoryAllocationHob (
7439a5
     PcdGet32 (PcdSevLaunchSecretBase),
7439a5
     ALIGN_VALUE (PcdGet32 (PcdSevLaunchSecretSize), EFI_PAGE_SIZE),
7439a5
-    EfiBootServicesData
7439a5
+    EfiReservedMemoryType
7439a5
     );
7439a5
 
7439a5
   return EFI_SUCCESS;
7439a5
-- 
7439a5
2.27.0
7439a5