enable CONFIG_INTEL_TDX_HOST in linux >= 6.7 for noble
Bug #2046040 reported by
Andrea Righi
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
linux (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Noble |
Won't Fix
|
Undecided
|
Unassigned |
Bug Description
[Impact]
Intel Trust Domain Extensions (TDX) protects guest VMs from malicious host and certain physical attacks.
Linux 6.7 introduced the TDX support for the host to run confidential VMs (TDX guests).
[Test case]
We should probably define with Intel a proper test case to test this feature, since it requires special hardware/firmware support.
[Fix]
Enable CONFIG_
[Regression potential]
The TDX host support may introduce potential performance regressions, so we should probably do some performance evaluation with vs without CONFIG_
affects: | linux-lowlatency (Ubuntu) → linux (Ubuntu) |
Changed in linux (Ubuntu Noble): | |
status: | New → Fix Committed |
To post a comment you must log in.
This bug was fixed in the package linux - 6.8.0-11.11
---------------
linux (6.8.0-11.11) noble; urgency=medium
* noble/linux: 6.8.0-11.11 -proposed tracker (LP: #2053094)
* Miscellaneous Ubuntu changes
- [Packaging] riscv64: disable building unnecessary binary debs
-- Paolo Pisati <email address hidden> Wed, 14 Feb 2024 00:04:31 +0100