Rate This Document
Findability
Accuracy
Completeness
Readability

Change Description

Kunpeng BoostKit 24.0.RC2 Confidential Computing in V1.0.0 mainly involves updating virtCCA-related features. The virtCCA feature enables VMs to run in the Trusted Execution Environment (TEE).

Table 1 New features of BoostKit-virtCCA_1.0.0

Feature

Change Description

hardware unique key (HUK)-based key derivation capability for user applications

The TMM provides the HUK-based key derivation capability, which is invoked by the SDK deployed in a confidential VM. Users can input personalized parameters as the salt value for key derivation.

Measurement startup and remote attestation

  1. virtCCA performs initial measurement of confidential VMs when starting and running them and provides attestation reports.
  2. The Integrity Measurement Architecture (IMA) result is incorporated into attestation reports to implement application-level remote attestation.