From 079a58276b98dc97ca363e3bc8b35cc7baa56d76 Mon Sep 17 00:00:00 2001 From: Dov Murik Date: Tue, 4 Jan 2022 15:16:40 +0800 Subject: OvmfPkg/AmdSev/SecretPei: Mark SEV launch secret area as reserved Mark the SEV launch secret MEMFD area as reserved, which will allow the guest OS to use it during the lifetime of the OS, without creating copies of the sensitive content. Cc: Ard Biesheuvel Cc: Jordan Justen Cc: Gerd Hoffmann Cc: Brijesh Singh Cc: Erdem Aktas Cc: James Bottomley Cc: Jiewen Yao Cc: Min Xu Cc: Tom Lendacky Cc: Tobin Feldman-Fitzthum Signed-off-by: Dov Murik Acked-by: Gerd Hoffmann Acked-by: Jiewen Yao Reviewed-by: Brijesh Singh --- OvmfPkg/AmdSev/SecretPei/SecretPei.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/OvmfPkg/AmdSev/SecretPei/SecretPei.c b/OvmfPkg/AmdSev/SecretPei/SecretPei.c index db94c26b54..6bf1a55dea 100644 --- a/OvmfPkg/AmdSev/SecretPei/SecretPei.c +++ b/OvmfPkg/AmdSev/SecretPei/SecretPei.c @@ -19,7 +19,7 @@ InitializeSecretPei ( BuildMemoryAllocationHob ( PcdGet32 (PcdSevLaunchSecretBase), ALIGN_VALUE (PcdGet32 (PcdSevLaunchSecretSize), EFI_PAGE_SIZE), - EfiBootServicesData + EfiReservedMemoryType ); return EFI_SUCCESS; -- cgit v1.2.3