[pve-devel] partially-applied: [PATCH edk2-firmware/manager/qemu-server v3 0/9] Add support for Intel TDX

Anton Iacobaeus anton.iacobaeus at canarybit.eu
Fri Nov 14 07:39:43 CET 2025


On 11/13/25 12:21, Fiona Ebner wrote:
> Many thanks! Since the Proxmox VE 9.1 minor release is not too-far off,
> I went ahead and partially applied the series, so that the initial
> feature is in :) I left out attestation for now, I'll send a response to
> that patch afterwards.
> 
> Am 28.10.25 um 1:56 PM schrieb Anton Iacobaeus:
>> pve-edk2-firmware:
>>
>> Philipp Giersfeld (3):
>>    Change name of SEV-related OVMF files
>>    Add firmware target for TDFV
>>    Add SCSI in NCCFV for TD guest
> 
> Applied these three while adding my suggested follow-up for enrollment:
> 
> 836ab12370 Change name of SEV-related OVMF files
> 8bd1c1afa3 Add firmware target for TDFV
> 9fdf1a8994 Add SCSI in NCCFV for TD guest
> 3bcde1f645 d/{rules,.install}: tdx: ship image with pre-enrolled keys
> 

Thanks! We tested with secure boot and it seems to work well and your 
suggested follow-up looks solid.

>> qemu-server:
>>
>> Philipp Giersfeld (3):
>>    Adapt AMD SEV code for compatibility with other platforms
>>    Add check for TDX support
>>    Add support for Intel TDX
> Applied these three and added a follow-up to only query supported
> features for the matching CPU vendor:
> 
> b518383f Adapt AMD SEV code for compatibility with other platforms
> 96a23d39 Add check for TDX support
> db96e126 Add support for Intel TDX
> c1934a5d query machine capabilities: only query features of matching CPU
> vendor
> 
> Best Regards,
> Fiona
> 




More information about the pve-devel mailing list