====== SEV CERTIFICATE ======
SEV VERSION: 3.0-0
=== TEST ENVIRONMENT DETAILS ===
Host Environment Details:
Host Operating System: Ubuntu 25.04
OVMF Version: 2025.02-3ubuntu2.2
QEMU Version: 1:9.2.1+ds-1ubuntu5.2
Host Kernel Version: 6.14.0-37-generic
Guest Environment Details:
Guest Operating System: Ubuntu 25.04
Guest Kernel version: 6.14.0-37-generic
=== SUMMARY ===
[ ✅ ] SEV VERSION 3.0-0 SNP HOST TESTS
✅ snphost-ok.service : Run snphost ok to make sure host is correctly set-up for SNP functionalities....
✅ calculate-measurement.service : Calculate guest measurement...
✅ verify-guest.service : Verify the SEV-SNP guest booted correctly...
✅ display-guest-logs.service : Show the guest logs for the appropriate services in the host...
[ ✅ ] SEV VERSION 3.0-0 SNP GUEST TESTS
✅ snpguest-ok.service : Run snguest ok to verify SNP enablement on guest...
✅ snpguest-attestation.service : Run SNP Regular Attestation after boot...
✅ Generation of SNP Guest Report
✅ Fetch of CA certificate chain
✅ Fetch of VCEK certificate chain
✅ Verification of ARK, ASK and VCEK cert-chain
✅ Verification of SNP Attestation Report
✅ Display of SNP Attestation Report
=== SEV VERSION 3.0-0 LOG ===
Mar 21 23:07:00 systemd[1]: Starting calculate-measurement.service - Calculate guest measurement...
Mar 21 23:07:00 systemd[1]: Starting snphost-ok.service - Run snphost ok to make sure host is correctly set-up for SNP functionalities....
Mar 21 23:07:01 snphost[1742]: [ PASS ] - AMD CPU
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Microcode support
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Secure Memory Encryption (SME)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SME: Enabled in MSR
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Secure Encrypted Virtualization (SEV)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV firmware version: 1.55
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Encrypted State (SEV-ES)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV-ES initialized
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV initialized: Initialized, no guests running
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Secure Nested Paging (SEV-SNP)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - VM Permission Levels
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Number of VMPLs: 4
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SNP: Enabled in MSR
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SNP initialized
Mar 21 23:07:01 snphost[1742]: [ PASS ] - RMP table addresses: 0x7ffe500000 - 0x807edfffff
Mar 21 23:07:01 snphost[1742]: [ PASS ] - RMP table initialized
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Alias check: Completed since last system update, no aliasing addresses
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Physical address bit reduction: 5
Mar 21 23:07:01 snphost[1742]: [ PASS ] - C-bit location: 51
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Number of encrypted guests supported simultaneously: 509
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Minimum ASID value for SEV-enabled, SEV-ES disabled guest: 100
Mar 21 23:07:01 snphost[1742]: [ PASS ] - /dev/sev readable
Mar 21 23:07:01 snphost[1742]: [ PASS ] - /dev/sev writable
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Page flush MSR: ENABLED
Mar 21 23:07:01 snphost[1742]: [ PASS ] - KVM supported: API version: 12
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV enabled in KVM
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV-ES enabled in KVM
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV-SNP enabled in KVM
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Memlock resource limit: Soft: 8388608 | Hard: 8388608
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Comparing TCB values: TCB versions match
Mar 21 23:07:01 snphost[1742]: Platform TCB version: TCB Version:
Mar 21 23:07:01 snphost[1742]: Microcode: 219
Mar 21 23:07:01 snphost[1742]: SNP: 25
Mar 21 23:07:01 snphost[1742]: TEE: 0
Mar 21 23:07:01 snphost[1742]: Boot Loader: 4
Mar 21 23:07:01 snphost[1742]: FMC: None
Mar 21 23:07:01 snphost[1742]: Reported TCB version: TCB Version:
Mar 21 23:07:01 snphost[1742]: Microcode: 219
Mar 21 23:07:01 snphost[1742]: SNP: 25
Mar 21 23:07:01 snphost[1742]: TEE: 0
Mar 21 23:07:01 snphost[1742]: Boot Loader: 4
Mar 21 23:07:01 snphost[1742]: FMC: None
Mar 21 23:07:01 systemd[1]: snphost-ok.service: Deactivated successfully.
Mar 21 23:07:01 systemd[1]: Finished snphost-ok.service - Run snphost ok to make sure host is correctly set-up for SNP functionalities..
Mar 21 23:07:01 guest_measurement.sh[1620]: 0xc9d29dd7ff38505323614393b8e167d0816eeb9c8cd8729adf19f832f3147664a511762d5a7d38a86558e8c61c585f38
Mar 21 23:07:01 systemd[1]: calculate-measurement.service: Deactivated successfully.
Mar 21 23:07:01 systemd[1]: Finished calculate-measurement.service - Calculate guest measurement.
Mar 21 23:07:01 systemd[1]: calculate-measurement.service: Consumed 329ms CPU time, 232.7M memory peak.
Mar 21 23:07:01 systemd[1]: Starting verify-guest.service - Verify the SEV-SNP guest booted correctly...
Mar 21 23:07:16 verify-guest.sh[1757]: Guest boot successful.
Mar 21 23:07:16 systemd[1]: verify-guest.service: Deactivated successfully.
Mar 21 23:07:16 systemd[1]: Finished verify-guest.service - Verify the SEV-SNP guest booted correctly.
Mar 21 23:07:16 systemd[1]: Starting display-guest-logs.service - Show the guest logs for the appropriate services in the host...
Mar 21 23:07:18 display-guest-logs.sh[1820]: SEV-SNP guest test results:
Mar 21 23:07:18 display-guest-logs.sh[1820]: For more information check journals in /var/log/journal/guest-logs
Mar 21 23:07:18 display-guest-logs.sh[1820]: Starting snpguest-ok.service - Run snguest ok to verify SNP enablement on guest...
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SEV: ENABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SEV-ES: ENABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SNP: ENABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Optional Features statuses:
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VTOM: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - ReflectVC: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Restricted Injection: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Alternate Injection: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Debug Swap: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Prevent Host IBS: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SNP BTB Isolation: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VMPL SSS: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Secure TSE: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VMG Exit Parameter: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - IBS Virtualization: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VMSA Reg Prot: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SMT Protection: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: snpguest-ok.service: Deactivated successfully.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Perform Regular Attestation workflow using snpguest tool ...
Mar 21 23:07:18 display-guest-logs.sh[1820]: Finished snpguest-ok.service - Run snguest ok to verify SNP enablement on guest.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Starting snpguest-attestation.service - Run SNP Regular Attestation after boot...
Mar 21 23:07:18 display-guest-logs.sh[1820]: The AMD ARK was self-signed!
Mar 21 23:07:18 display-guest-logs.sh[1820]: The AMD ASK was signed by the AMD ARK!
Mar 21 23:07:18 display-guest-logs.sh[1820]: The VCEK was signed by the AMD ASK!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB Boot Loader from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB TEE from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB SNP from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB Microcode from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: VEK signed the Attestation Report!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Version: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest SVN: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest Policy (0x30000):
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Major: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Minor: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Allowed: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: Migrate MA: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Debug Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Single Socket: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: CXL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: AEX 256 XTS: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext hiding: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Page Swap Disable: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Family ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Image ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: VMPL: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature Algorithm: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Platform Info (39):
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: TSME Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: ECC Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Disabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext Hiding Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Alias Check Complete: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: SEV-TIO Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Key Information:
Mar 21 23:07:18 display-guest-logs.sh[1820]: author key enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: mask chip key: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: signing key: vcek
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: CE 37 D0 93 CF 0F A9 21 8C 6D 9D A7 9C 83 E0 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: AF B0 A6 0D 1A 05 58 30 9F A1 65 53 A0 BB A1 57
Mar 21 23:07:18 display-guest-logs.sh[1820]: 09 B5 B8 0B AF AF 60 DB 31 C5 9B 91 75 3F D2 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: EE 98 E1 43 DE 8F B5 CB 4A 88 63 E3 B3 DD 68 46
Mar 21 23:07:18 display-guest-logs.sh[1820]: Measurement:
Mar 21 23:07:18 display-guest-logs.sh[1820]: C9 D2 9D D7 FF 38 50 53 23 61 43 93 B8 E1 67 D0
Mar 21 23:07:18 display-guest-logs.sh[1820]: 81 6E EB 9C 8C D8 72 9A DF 19 F8 32 F3 14 76 64
Mar 21 23:07:18 display-guest-logs.sh[1820]: A5 11 76 2D 5A 7D 38 A8 65 58 E8 C6 1C 58 5F 38
Mar 21 23:07:18 display-guest-logs.sh[1820]: Host Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6F E4 6D A9 B5 60 A9 23 FE 4B 27 BE C0 8C 74 11
Mar 21 23:07:18 display-guest-logs.sh[1820]: C4 DF 58 1F A2 30 B1 D4 E8 91 4B 0B 78 99 42 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: ID Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Author Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: DB AA 11 2D 73 21 FC 3A D8 53 0C B9 EC 6B E5 43
Mar 21 23:07:18 display-guest-logs.sh[1820]: D9 F1 69 CE 3C AC 54 12 8C 87 DA 96 B3 17 B1 BD
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID Migration Agent:
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: snpguest-attestation.service: Deactivated successfully.
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 systemd[1]: display-guest-logs.service: Deactivated successfully.
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Family ID: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Model ID: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Stepping: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Chip ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 9F AF 18 72 54 4D E3 23 82 6F B8 37 A9 30 0B
Mar 21 23:07:18 display-guest-logs.sh[1820]: 79 F0 B5 9C FB CC 94 83 E7 85 AB FE E8 FF DA 91
Mar 21 23:07:18 display-guest-logs.sh[1820]: C1 21 07 80 60 87 1B CC D5 62 EC CF 0A 23 DF F7
Mar 21 23:07:18 display-guest-logs.sh[1820]: 0A 42 4B 5C 71 A2 B3 0C 34 F8 DF 03 CB 48 0F 59
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature:
Mar 21 23:07:18 display-guest-logs.sh[1820]: R:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 53 F0 CA 00 5A 4F 27 59 07 5F 80 FC 28 B9 39
Mar 21 23:07:18 display-guest-logs.sh[1820]: FE B3 46 2B 87 89 C3 39 BC CC F3 2F C6 74 BB 1E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 5B 55 C6 47 47 BF 7E 6C CC C3 0B A2 C0 2A 11 48
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: S:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 39 C0 57 33 9C 00 2F 96 D3 4A 32 26 DA 2B 4E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 29 2C AE 6B 51 44 02 BA A5 71 CD 7B 32 B0 A8 87
Mar 21 23:07:18 display-guest-logs.sh[1820]: 83 40 DC 9D D1 E6 20 00 9E 6F 1F 1A F4 15 F9 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP Attestation Report generated successfully !!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Version: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest SVN: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest Policy (0x30000):
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Major: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Minor: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Allowed: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: Migrate MA: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Debug Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Single Socket: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: CXL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: AEX 256 XTS: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext hiding: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Page Swap Disable: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Family ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Image ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: VMPL: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature Algorithm: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Platform Info (39):
Mar 21 23:07:18 display-guest-logs.sh[1820]: Finished snpguest-attestation.service - Run SNP Regular Attestation after boot.
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Enabled: true
Mar 21 23:07:18 systemd[1]: Finished display-guest-logs.service - Show the guest logs for the appropriate services in the host.
Mar 21 23:07:18 display-guest-logs.sh[1820]: TSME Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: ECC Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Disabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext Hiding Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Alias Check Complete: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: SEV-TIO Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Key Information:
Mar 21 23:07:18 display-guest-logs.sh[1820]: author key enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: mask chip key: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: signing key: vcek
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: CE 37 D0 93 CF 0F A9 21 8C 6D 9D A7 9C 83 E0 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: AF B0 A6 0D 1A 05 58 30 9F A1 65 53 A0 BB A1 57
Mar 21 23:07:18 display-guest-logs.sh[1820]: 09 B5 B8 0B AF AF 60 DB 31 C5 9B 91 75 3F D2 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: EE 98 E1 43 DE 8F B5 CB 4A 88 63 E3 B3 DD 68 46
Mar 21 23:07:18 display-guest-logs.sh[1820]: Measurement:
Mar 21 23:07:18 display-guest-logs.sh[1820]: C9 D2 9D D7 FF 38 50 53 23 61 43 93 B8 E1 67 D0
Mar 21 23:07:18 display-guest-logs.sh[1820]: 81 6E EB 9C 8C D8 72 9A DF 19 F8 32 F3 14 76 64
Mar 21 23:07:18 display-guest-logs.sh[1820]: A5 11 76 2D 5A 7D 38 A8 65 58 E8 C6 1C 58 5F 38
Mar 21 23:07:18 display-guest-logs.sh[1820]: Host Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6F E4 6D A9 B5 60 A9 23 FE 4B 27 BE C0 8C 74 11
Mar 21 23:07:18 display-guest-logs.sh[1820]: C4 DF 58 1F A2 30 B1 D4 E8 91 4B 0B 78 99 42 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: ID Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Author Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: DB AA 11 2D 73 21 FC 3A D8 53 0C B9 EC 6B E5 43
Mar 21 23:07:18 display-guest-logs.sh[1820]: D9 F1 69 CE 3C AC 54 12 8C 87 DA 96 B3 17 B1 BD
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID Migration Agent:
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Family ID: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Model ID: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Stepping: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Chip ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 9F AF 18 72 54 4D E3 23 82 6F B8 37 A9 30 0B
Mar 21 23:07:18 display-guest-logs.sh[1820]: 79 F0 B5 9C FB CC 94 83 E7 85 AB FE E8 FF DA 91
Mar 21 23:07:18 display-guest-logs.sh[1820]: C1 21 07 80 60 87 1B CC D5 62 EC CF 0A 23 DF F7
Mar 21 23:07:18 display-guest-logs.sh[1820]: 0A 42 4B 5C 71 A2 B3 0C 34 F8 DF 03 CB 48 0F 59
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature:
Mar 21 23:07:18 display-guest-logs.sh[1820]: R:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 53 F0 CA 00 5A 4F 27 59 07 5F 80 FC 28 B9 39
Mar 21 23:07:18 display-guest-logs.sh[1820]: FE B3 46 2B 87 89 C3 39 BC CC F3 2F C6 74 BB 1E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 5B 55 C6 47 47 BF 7E 6C CC C3 0B A2 C0 2A 11 48
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: S:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 39 C0 57 33 9C 00 2F 96 D3 4A 32 26 DA 2B 4E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 29 2C AE 6B 51 44 02 BA A5 71 CD 7B 32 B0 A8 87
Mar 21 23:07:18 display-guest-logs.sh[1820]: 83 40 DC 9D D1 E6 20 00 9E 6F 1F 1A F4 15 F9 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Validate Request Data Attribute ...
Mar 21 23:07:18 display-guest-logs.sh[1820]: Random Request Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: ce37d093cf0fa9218c6d9da79c83e075afb0a60d1a0558309fa16553a0bba15709b5b80bafaf60db31c59b91753fd2dfee98e143de8fb5cb4a8863e3b3dd6846
Mar 21 23:07:18 display-guest-logs.sh[1820]: Request Data from SNP Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: ce37d093cf0fa9218c6d9da79c83e075afb0a60d1a0558309fa16553a0bba15709b5b80bafaf60db31c59b91753fd2dfee98e143de8fb5cb4a8863e3b3dd6846
Mar 21 23:07:18 display-guest-logs.sh[1820]: The random request data generated matches the snp guest report request data!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Validate Measurement Attribute ...
Mar 21 23:07:18 display-guest-logs.sh[1820]: Expected Measurement:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6fe46da9b560a923fe4b27bec08c7411c4df581fa230b1d4e8914b0b78994275
Mar 21 23:07:18 display-guest-logs.sh[1820]: Measurement from SNP Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6fe46da9b560a923fe4b27bec08c7411c4df581fa230b1d4e8914b0b78994275
Mar 21 23:07:18 display-guest-logs.sh[1820]: The expected measurement matches the snp guest report measurement!
====== SEV CERTIFICATE ======
SEV VERSION: 3.0-0
=== TEST ENVIRONMENT DETAILS ===
Host Environment Details:
Host Operating System: Ubuntu 25.04
OVMF Version: 2025.02-3ubuntu2.2
QEMU Version: 1:9.2.1+ds-1ubuntu5.2
Host Kernel Version: 6.14.0-37-generic
Guest Environment Details:
Guest Operating System: Ubuntu 25.04
Guest Kernel version: 6.14.0-37-generic
=== SUMMARY ===
[ ✅ ] SEV VERSION 3.0-0 SNP HOST TESTS
✅ snphost-ok.service : Run snphost ok to make sure host is correctly set-up for SNP functionalities....
✅ calculate-measurement.service : Calculate guest measurement...
✅ verify-guest.service : Verify the SEV-SNP guest booted correctly...
✅ display-guest-logs.service : Show the guest logs for the appropriate services in the host...
[ ✅ ] SEV VERSION 3.0-0 SNP GUEST TESTS
✅ snpguest-ok.service : Run snguest ok to verify SNP enablement on guest...
✅ snpguest-attestation.service : Run SNP Regular Attestation after boot...
✅ Generation of SNP Guest Report
✅ Fetch of CA certificate chain
✅ Fetch of VCEK certificate chain
✅ Verification of ARK, ASK and VCEK cert-chain
✅ Verification of SNP Attestation Report
✅ Display of SNP Attestation Report
=== SEV VERSION 3.0-0 LOG ===
Mar 21 23:07:00 systemd[1]: Starting calculate-measurement.service - Calculate guest measurement...
Mar 21 23:07:00 systemd[1]: Starting snphost-ok.service - Run snphost ok to make sure host is correctly set-up for SNP functionalities....
Mar 21 23:07:01 snphost[1742]: [ PASS ] - AMD CPU
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Microcode support
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Secure Memory Encryption (SME)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SME: Enabled in MSR
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Secure Encrypted Virtualization (SEV)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV firmware version: 1.55
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Encrypted State (SEV-ES)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV-ES initialized
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV initialized: Initialized, no guests running
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Secure Nested Paging (SEV-SNP)
Mar 21 23:07:01 snphost[1742]: [ PASS ] - VM Permission Levels
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Number of VMPLs: 4
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SNP: Enabled in MSR
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SNP initialized
Mar 21 23:07:01 snphost[1742]: [ PASS ] - RMP table addresses: 0x7ffe500000 - 0x807edfffff
Mar 21 23:07:01 snphost[1742]: [ PASS ] - RMP table initialized
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Alias check: Completed since last system update, no aliasing addresses
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Physical address bit reduction: 5
Mar 21 23:07:01 snphost[1742]: [ PASS ] - C-bit location: 51
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Number of encrypted guests supported simultaneously: 509
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Minimum ASID value for SEV-enabled, SEV-ES disabled guest: 100
Mar 21 23:07:01 snphost[1742]: [ PASS ] - /dev/sev readable
Mar 21 23:07:01 snphost[1742]: [ PASS ] - /dev/sev writable
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Page flush MSR: ENABLED
Mar 21 23:07:01 snphost[1742]: [ PASS ] - KVM supported: API version: 12
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV enabled in KVM
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV-ES enabled in KVM
Mar 21 23:07:01 snphost[1742]: [ PASS ] - SEV-SNP enabled in KVM
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Memlock resource limit: Soft: 8388608 | Hard: 8388608
Mar 21 23:07:01 snphost[1742]: [ PASS ] - Comparing TCB values: TCB versions match
Mar 21 23:07:01 snphost[1742]: Platform TCB version: TCB Version:
Mar 21 23:07:01 snphost[1742]: Microcode: 219
Mar 21 23:07:01 snphost[1742]: SNP: 25
Mar 21 23:07:01 snphost[1742]: TEE: 0
Mar 21 23:07:01 snphost[1742]: Boot Loader: 4
Mar 21 23:07:01 snphost[1742]: FMC: None
Mar 21 23:07:01 snphost[1742]: Reported TCB version: TCB Version:
Mar 21 23:07:01 snphost[1742]: Microcode: 219
Mar 21 23:07:01 snphost[1742]: SNP: 25
Mar 21 23:07:01 snphost[1742]: TEE: 0
Mar 21 23:07:01 snphost[1742]: Boot Loader: 4
Mar 21 23:07:01 snphost[1742]: FMC: None
Mar 21 23:07:01 systemd[1]: snphost-ok.service: Deactivated successfully.
Mar 21 23:07:01 systemd[1]: Finished snphost-ok.service - Run snphost ok to make sure host is correctly set-up for SNP functionalities..
Mar 21 23:07:01 guest_measurement.sh[1620]: 0xc9d29dd7ff38505323614393b8e167d0816eeb9c8cd8729adf19f832f3147664a511762d5a7d38a86558e8c61c585f38
Mar 21 23:07:01 systemd[1]: calculate-measurement.service: Deactivated successfully.
Mar 21 23:07:01 systemd[1]: Finished calculate-measurement.service - Calculate guest measurement.
Mar 21 23:07:01 systemd[1]: calculate-measurement.service: Consumed 329ms CPU time, 232.7M memory peak.
Mar 21 23:07:01 systemd[1]: Starting verify-guest.service - Verify the SEV-SNP guest booted correctly...
Mar 21 23:07:16 verify-guest.sh[1757]: Guest boot successful.
Mar 21 23:07:16 systemd[1]: verify-guest.service: Deactivated successfully.
Mar 21 23:07:16 systemd[1]: Finished verify-guest.service - Verify the SEV-SNP guest booted correctly.
Mar 21 23:07:16 systemd[1]: Starting display-guest-logs.service - Show the guest logs for the appropriate services in the host...
Mar 21 23:07:18 display-guest-logs.sh[1820]: SEV-SNP guest test results:
Mar 21 23:07:18 display-guest-logs.sh[1820]: For more information check journals in /var/log/journal/guest-logs
Mar 21 23:07:18 display-guest-logs.sh[1820]: Starting snpguest-ok.service - Run snguest ok to verify SNP enablement on guest...
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SEV: ENABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SEV-ES: ENABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SNP: ENABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Optional Features statuses:
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VTOM: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - ReflectVC: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Restricted Injection: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Alternate Injection: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Debug Swap: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Prevent Host IBS: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SNP BTB Isolation: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VMPL SSS: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - Secure TSE: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VMG Exit Parameter: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - IBS Virtualization: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - VMSA Reg Prot: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: [ PASS ] - SMT Protection: DISABLED
Mar 21 23:07:18 display-guest-logs.sh[1820]: snpguest-ok.service: Deactivated successfully.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Perform Regular Attestation workflow using snpguest tool ...
Mar 21 23:07:18 display-guest-logs.sh[1820]: Finished snpguest-ok.service - Run snguest ok to verify SNP enablement on guest.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Starting snpguest-attestation.service - Run SNP Regular Attestation after boot...
Mar 21 23:07:18 display-guest-logs.sh[1820]: The AMD ARK was self-signed!
Mar 21 23:07:18 display-guest-logs.sh[1820]: The AMD ASK was signed by the AMD ARK!
Mar 21 23:07:18 display-guest-logs.sh[1820]: The VCEK was signed by the AMD ASK!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB Boot Loader from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB TEE from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB SNP from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB Microcode from certificate matches the attestation report.
Mar 21 23:07:18 display-guest-logs.sh[1820]: VEK signed the Attestation Report!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Version: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest SVN: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest Policy (0x30000):
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Major: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Minor: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Allowed: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: Migrate MA: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Debug Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Single Socket: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: CXL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: AEX 256 XTS: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext hiding: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Page Swap Disable: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Family ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Image ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: VMPL: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature Algorithm: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Platform Info (39):
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: TSME Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: ECC Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Disabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext Hiding Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Alias Check Complete: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: SEV-TIO Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Key Information:
Mar 21 23:07:18 display-guest-logs.sh[1820]: author key enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: mask chip key: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: signing key: vcek
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: CE 37 D0 93 CF 0F A9 21 8C 6D 9D A7 9C 83 E0 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: AF B0 A6 0D 1A 05 58 30 9F A1 65 53 A0 BB A1 57
Mar 21 23:07:18 display-guest-logs.sh[1820]: 09 B5 B8 0B AF AF 60 DB 31 C5 9B 91 75 3F D2 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: EE 98 E1 43 DE 8F B5 CB 4A 88 63 E3 B3 DD 68 46
Mar 21 23:07:18 display-guest-logs.sh[1820]: Measurement:
Mar 21 23:07:18 display-guest-logs.sh[1820]: C9 D2 9D D7 FF 38 50 53 23 61 43 93 B8 E1 67 D0
Mar 21 23:07:18 display-guest-logs.sh[1820]: 81 6E EB 9C 8C D8 72 9A DF 19 F8 32 F3 14 76 64
Mar 21 23:07:18 display-guest-logs.sh[1820]: A5 11 76 2D 5A 7D 38 A8 65 58 E8 C6 1C 58 5F 38
Mar 21 23:07:18 display-guest-logs.sh[1820]: Host Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6F E4 6D A9 B5 60 A9 23 FE 4B 27 BE C0 8C 74 11
Mar 21 23:07:18 display-guest-logs.sh[1820]: C4 DF 58 1F A2 30 B1 D4 E8 91 4B 0B 78 99 42 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: ID Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Author Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: DB AA 11 2D 73 21 FC 3A D8 53 0C B9 EC 6B E5 43
Mar 21 23:07:18 display-guest-logs.sh[1820]: D9 F1 69 CE 3C AC 54 12 8C 87 DA 96 B3 17 B1 BD
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID Migration Agent:
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: snpguest-attestation.service: Deactivated successfully.
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 systemd[1]: display-guest-logs.service: Deactivated successfully.
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Family ID: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Model ID: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Stepping: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Chip ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 9F AF 18 72 54 4D E3 23 82 6F B8 37 A9 30 0B
Mar 21 23:07:18 display-guest-logs.sh[1820]: 79 F0 B5 9C FB CC 94 83 E7 85 AB FE E8 FF DA 91
Mar 21 23:07:18 display-guest-logs.sh[1820]: C1 21 07 80 60 87 1B CC D5 62 EC CF 0A 23 DF F7
Mar 21 23:07:18 display-guest-logs.sh[1820]: 0A 42 4B 5C 71 A2 B3 0C 34 F8 DF 03 CB 48 0F 59
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature:
Mar 21 23:07:18 display-guest-logs.sh[1820]: R:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 53 F0 CA 00 5A 4F 27 59 07 5F 80 FC 28 B9 39
Mar 21 23:07:18 display-guest-logs.sh[1820]: FE B3 46 2B 87 89 C3 39 BC CC F3 2F C6 74 BB 1E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 5B 55 C6 47 47 BF 7E 6C CC C3 0B A2 C0 2A 11 48
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: S:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 39 C0 57 33 9C 00 2F 96 D3 4A 32 26 DA 2B 4E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 29 2C AE 6B 51 44 02 BA A5 71 CD 7B 32 B0 A8 87
Mar 21 23:07:18 display-guest-logs.sh[1820]: 83 40 DC 9D D1 E6 20 00 9E 6F 1F 1A F4 15 F9 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP Attestation Report generated successfully !!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Version: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest SVN: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Guest Policy (0x30000):
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Major: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: ABI Minor: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Allowed: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: Migrate MA: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Debug Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Single Socket: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: CXL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: AEX 256 XTS: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Allowed: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext hiding: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Page Swap Disable: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Family ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Image ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: VMPL: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature Algorithm: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Platform Info (39):
Mar 21 23:07:18 display-guest-logs.sh[1820]: Finished snpguest-attestation.service - Run SNP Regular Attestation after boot.
Mar 21 23:07:18 display-guest-logs.sh[1820]: SMT Enabled: true
Mar 21 23:07:18 systemd[1]: Finished display-guest-logs.service - Show the guest logs for the appropriate services in the host.
Mar 21 23:07:18 display-guest-logs.sh[1820]: TSME Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: ECC Enabled: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: RAPL Disabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Ciphertext Hiding Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Alias Check Complete: true
Mar 21 23:07:18 display-guest-logs.sh[1820]: SEV-TIO Enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: Key Information:
Mar 21 23:07:18 display-guest-logs.sh[1820]: author key enabled: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: mask chip key: false
Mar 21 23:07:18 display-guest-logs.sh[1820]: signing key: vcek
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: CE 37 D0 93 CF 0F A9 21 8C 6D 9D A7 9C 83 E0 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: AF B0 A6 0D 1A 05 58 30 9F A1 65 53 A0 BB A1 57
Mar 21 23:07:18 display-guest-logs.sh[1820]: 09 B5 B8 0B AF AF 60 DB 31 C5 9B 91 75 3F D2 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: EE 98 E1 43 DE 8F B5 CB 4A 88 63 E3 B3 DD 68 46
Mar 21 23:07:18 display-guest-logs.sh[1820]: Measurement:
Mar 21 23:07:18 display-guest-logs.sh[1820]: C9 D2 9D D7 FF 38 50 53 23 61 43 93 B8 E1 67 D0
Mar 21 23:07:18 display-guest-logs.sh[1820]: 81 6E EB 9C 8C D8 72 9A DF 19 F8 32 F3 14 76 64
Mar 21 23:07:18 display-guest-logs.sh[1820]: A5 11 76 2D 5A 7D 38 A8 65 58 E8 C6 1C 58 5F 38
Mar 21 23:07:18 display-guest-logs.sh[1820]: Host Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6F E4 6D A9 B5 60 A9 23 FE 4B 27 BE C0 8C 74 11
Mar 21 23:07:18 display-guest-logs.sh[1820]: C4 DF 58 1F A2 30 B1 D4 E8 91 4B 0B 78 99 42 75
Mar 21 23:07:18 display-guest-logs.sh[1820]: ID Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Author Key Digest:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: DB AA 11 2D 73 21 FC 3A D8 53 0C B9 EC 6B E5 43
Mar 21 23:07:18 display-guest-logs.sh[1820]: D9 F1 69 CE 3C AC 54 12 8C 87 DA 96 B3 17 B1 BD
Mar 21 23:07:18 display-guest-logs.sh[1820]: Report ID Migration Agent:
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
Mar 21 23:07:18 display-guest-logs.sh[1820]: Reported TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Family ID: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Model ID: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: CPUID Stepping: 1
Mar 21 23:07:18 display-guest-logs.sh[1820]: Chip ID:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 9F AF 18 72 54 4D E3 23 82 6F B8 37 A9 30 0B
Mar 21 23:07:18 display-guest-logs.sh[1820]: 79 F0 B5 9C FB CC 94 83 E7 85 AB FE E8 FF DA 91
Mar 21 23:07:18 display-guest-logs.sh[1820]: C1 21 07 80 60 87 1B CC D5 62 EC CF 0A 23 DF F7
Mar 21 23:07:18 display-guest-logs.sh[1820]: 0A 42 4B 5C 71 A2 B3 0C 34 F8 DF 03 CB 48 0F 59
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Committed Version: 1.55.31
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch TCB:
Mar 21 23:07:18 display-guest-logs.sh[1820]: TCB Version:
Mar 21 23:07:18 display-guest-logs.sh[1820]: Microcode: 219
Mar 21 23:07:18 display-guest-logs.sh[1820]: SNP: 25
Mar 21 23:07:18 display-guest-logs.sh[1820]: TEE: 0
Mar 21 23:07:18 display-guest-logs.sh[1820]: Boot Loader: 4
Mar 21 23:07:18 display-guest-logs.sh[1820]: FMC: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Launch Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Current Mitigation Vector: None
Mar 21 23:07:18 display-guest-logs.sh[1820]: Signature:
Mar 21 23:07:18 display-guest-logs.sh[1820]: R:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 2A 53 F0 CA 00 5A 4F 27 59 07 5F 80 FC 28 B9 39
Mar 21 23:07:18 display-guest-logs.sh[1820]: FE B3 46 2B 87 89 C3 39 BC CC F3 2F C6 74 BB 1E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 5B 55 C6 47 47 BF 7E 6C CC C3 0B A2 C0 2A 11 48
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: S:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 39 C0 57 33 9C 00 2F 96 D3 4A 32 26 DA 2B 4E
Mar 21 23:07:18 display-guest-logs.sh[1820]: 29 2C AE 6B 51 44 02 BA A5 71 CD 7B 32 B0 A8 87
Mar 21 23:07:18 display-guest-logs.sh[1820]: 83 40 DC 9D D1 E6 20 00 9E 6F 1F 1A F4 15 F9 DF
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: 00 00 00 00 00 00 00 00
Mar 21 23:07:18 display-guest-logs.sh[1820]: Validate Request Data Attribute ...
Mar 21 23:07:18 display-guest-logs.sh[1820]: Random Request Data:
Mar 21 23:07:18 display-guest-logs.sh[1820]: ce37d093cf0fa9218c6d9da79c83e075afb0a60d1a0558309fa16553a0bba15709b5b80bafaf60db31c59b91753fd2dfee98e143de8fb5cb4a8863e3b3dd6846
Mar 21 23:07:18 display-guest-logs.sh[1820]: Request Data from SNP Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: ce37d093cf0fa9218c6d9da79c83e075afb0a60d1a0558309fa16553a0bba15709b5b80bafaf60db31c59b91753fd2dfee98e143de8fb5cb4a8863e3b3dd6846
Mar 21 23:07:18 display-guest-logs.sh[1820]: The random request data generated matches the snp guest report request data!
Mar 21 23:07:18 display-guest-logs.sh[1820]: Validate Measurement Attribute ...
Mar 21 23:07:18 display-guest-logs.sh[1820]: Expected Measurement:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6fe46da9b560a923fe4b27bec08c7411c4df581fa230b1d4e8914b0b78994275
Mar 21 23:07:18 display-guest-logs.sh[1820]: Measurement from SNP Attestation Report:
Mar 21 23:07:18 display-guest-logs.sh[1820]: 6fe46da9b560a923fe4b27bec08c7411c4df581fa230b1d4e8914b0b78994275
Mar 21 23:07:18 display-guest-logs.sh[1820]: The expected measurement matches the snp guest report measurement!