Rate This Document
Findability
Accuracy
Completeness
Readability

Change Description

Kunpeng BoostKit 24.0.RC2 Confidential Computing in V1.0.0 mainly involves updating virtCCA-related features. The virtCCA feature enables VMs to run in the Trusted Execution Environment (TEE).

Table 1 New features of BoostKit-virtCCA_1.0.0

Feature

Description

hardware unique key (HUK)-based key derivation capability for user applications

The TMM provides the HUK-based key derivation capability, which is invoked by the SDK deployed in a cVM. Users can input personalized parameters as the salt value for key derivation.

Measurement startup and remote attestation

  1. virtCCA supports performing initial measurements of cVMs at boot time and runtime, and providing corresponding attestation reports.
  2. The Integrity Measurement Architecture (IMA) result is incorporated into attestation reports to implement application-level remote attestation.