2019-10-23 03:23:45

by Brijesh Singh

[permalink] [raw]
Subject: Re: [PATCH] crypto: ccp - Retry SEV INIT command in case of integrity check failure.


On 10/17/19 3:35 PM, Kalra, Ashish wrote:
> From: Ashish Kalra <[email protected]>
>
> SEV INIT command loads the SEV related persistent data from NVS
> and initializes the platform context. The firmware validates the
> persistent state. If validation fails, the firmware will reset
> the persisent state and return an integrity check failure status.
>
> At this point, a subsequent INIT command should succeed, so retry
> the command. The INIT command retry is only done during driver
> initialization.
>
> Additional enums along with SEV_RET_SECURE_DATA_INVALID are added
> to sev_ret_code to maintain continuity and relevance of enum values.
>
> Signed-off-by: Ashish Kalra <[email protected]>


Reviewed-by: Brijesh Singh <[email protected]>

thanks