[pve-devel] [PATCH pve-docs] added Memory Encryption documentation

Markus Frank m.frank at proxmox.com
Fri Jun 10 10:51:45 CEST 2022


Not really. All i could find are these patches:
https://marc.info/?l=kvm&m=156278967226011&w=2
https://lore.kernel.org/all/20190809185434.GH2840@work-vm/T/#m902085a219bdad35007dd7fffa0ed0765fd2322a

In the documentation of qemu snapshots&live migration is still a TODO:
https://www.qemu.org/docs/master/system/i386/amd-memory-encryption.html

Current Limitations Section in the suse documentation:
https://documentation.suse.com/sles/15-SP3/html/SLES-amd-sev/article-amd-sev.html

Also interesting "Migration Attack" when using these patches:
https://github.com/PSPReverse/amd-sev-migration-attack

On 6/10/22 06:37, Dietmar Maurer wrote:
> Live migration works?
> 
>> +Limitations:
>> +
>> +* Memory usage on host is always wrong and around 82% Usage
>> +* Snapshots do not work
>> +* edk2-OVMF required
>> +* Recommendable: VirtIO RNG for more entropy (VMs sometimes will not





More information about the pve-devel mailing list