From 1ea2d85a605a201081d3a7581c4ded3e68c7cd9a Mon Sep 17 00:00:00 2001 From: Tom Dohrmann Date: Fri, 16 Aug 2024 10:00:09 +0200 Subject: [PATCH] nix: bump reference values for SNP on AKS We observed these new TCB values in a report on 08/14/2024. For safety, we shouldn't merge this until 08/28/2024. --- packages/by-name/contrast/package.nix | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/packages/by-name/contrast/package.nix b/packages/by-name/contrast/package.nix index 05e54d9d98..f16e6aa589 100644 --- a/packages/by-name/contrast/package.nix +++ b/packages/by-name/contrast/package.nix @@ -55,10 +55,10 @@ let snp = [ { minimumTCB = { - bootloaderVersion = 3; + bootloaderVersion = 4; teeVersion = 0; - snpVersion = 8; - microcodeVersion = 115; + snpVersion = 21; + microcodeVersion = 221; }; trustedMeasurement = lib.removeSuffix "\n" (builtins.readFile microsoft.kata-igvm.launch-digest); }