summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorDov Murik <dovmurik@linux.ibm.com>2022-01-04 15:16:40 +0800
committermergify[bot] <37929162+mergify[bot]@users.noreply.github.com>2022-01-04 08:06:53 +0000
commit079a58276b98dc97ca363e3bc8b35cc7baa56d76 (patch)
tree51985a88c69240bdd4a31b55290dd2ea93786c7d
parent13d9e8ec98ee3f9f14a45471b38a22b9fd66d1ce (diff)
downloadedk2-079a58276b98dc97ca363e3bc8b35cc7baa56d76.tar.gz
edk2-079a58276b98dc97ca363e3bc8b35cc7baa56d76.tar.bz2
edk2-079a58276b98dc97ca363e3bc8b35cc7baa56d76.zip
OvmfPkg/AmdSev/SecretPei: Mark SEV launch secret area as reserved
Mark the SEV launch secret MEMFD area as reserved, which will allow the guest OS to use it during the lifetime of the OS, without creating copies of the sensitive content. Cc: Ard Biesheuvel <ardb+tianocore@kernel.org> Cc: Jordan Justen <jordan.l.justen@intel.com> Cc: Gerd Hoffmann <kraxel@redhat.com> Cc: Brijesh Singh <brijesh.singh@amd.com> Cc: Erdem Aktas <erdemaktas@google.com> Cc: James Bottomley <jejb@linux.ibm.com> Cc: Jiewen Yao <jiewen.yao@intel.com> Cc: Min Xu <min.m.xu@intel.com> Cc: Tom Lendacky <thomas.lendacky@amd.com> Cc: Tobin Feldman-Fitzthum <tobin@linux.ibm.com> Signed-off-by: Dov Murik <dovmurik@linux.ibm.com> Acked-by: Gerd Hoffmann <kraxel@redhat.com> Acked-by: Jiewen Yao <Jiewen.Yao@intel.com> Reviewed-by: Brijesh Singh <brijesh.singh@amd.com>
-rw-r--r--OvmfPkg/AmdSev/SecretPei/SecretPei.c2
1 files changed, 1 insertions, 1 deletions
diff --git a/OvmfPkg/AmdSev/SecretPei/SecretPei.c b/OvmfPkg/AmdSev/SecretPei/SecretPei.c
index db94c26b54..6bf1a55dea 100644
--- a/OvmfPkg/AmdSev/SecretPei/SecretPei.c
+++ b/OvmfPkg/AmdSev/SecretPei/SecretPei.c
@@ -19,7 +19,7 @@ InitializeSecretPei (
BuildMemoryAllocationHob (
PcdGet32 (PcdSevLaunchSecretBase),
ALIGN_VALUE (PcdGet32 (PcdSevLaunchSecretSize), EFI_PAGE_SIZE),
- EfiBootServicesData
+ EfiReservedMemoryType
);
return EFI_SUCCESS;