Skip to content

Measure GPU attestation evidence into RTMR with a new CEL event#659

Merged
Sibcgh merged 1 commit intogoogle:mainfrom
Sibcgh:gpu_rtmr_cel_event
Mar 11, 2026
Merged

Measure GPU attestation evidence into RTMR with a new CEL event#659
Sibcgh merged 1 commit intogoogle:mainfrom
Sibcgh:gpu_rtmr_cel_event

Conversation

@Sibcgh
Copy link
Copy Markdown
Collaborator

@Sibcgh Sibcgh commented Feb 12, 2026

Binding GPU measurements into RTMR. Measurements need to completed before GPU is in ready state to avoid malicious GPU workload from potentially tampering with GPU measurements before CPU can adds measurements into RTMR.

@Sibcgh Sibcgh marked this pull request as draft February 12, 2026 18:49
@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch 5 times, most recently from 6ada49a to ce039d9 Compare February 13, 2026 21:49
@Sibcgh Sibcgh closed this Feb 13, 2026
@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch from 9790cba to 3b011bd Compare February 13, 2026 21:53
@Sibcgh Sibcgh reopened this Feb 13, 2026
@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch 3 times, most recently from b152413 to d4fd8b4 Compare February 13, 2026 23:17
@Sibcgh Sibcgh marked this pull request as ready for review February 13, 2026 23:33
@Sibcgh
Copy link
Copy Markdown
Collaborator Author

Sibcgh commented Feb 13, 2026

/gcbrun

1 similar comment
@Sibcgh
Copy link
Copy Markdown
Collaborator Author

Sibcgh commented Feb 13, 2026

/gcbrun

@Sibcgh Sibcgh requested review from alexmwu and yawangwang February 13, 2026 23:36
Comment thread launcher/container_runner.go Outdated
@Sibcgh Sibcgh enabled auto-merge (squash) February 17, 2026 18:19
@Sibcgh Sibcgh disabled auto-merge February 17, 2026 18:19
@Sibcgh Sibcgh enabled auto-merge (squash) February 17, 2026 18:19
@Sibcgh Sibcgh requested review from jkl73 and removed request for alexmwu February 23, 2026 21:43
@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch from d4fd8b4 to ac3710b Compare February 24, 2026 19:33
@Sibcgh
Copy link
Copy Markdown
Collaborator Author

Sibcgh commented Feb 24, 2026

/gcbrun

@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch 2 times, most recently from 4a2ff30 to 94a742a Compare March 6, 2026 20:30
Comment thread launcher/internal/gpu/driverinstaller.go
Comment thread launcher/container_runner.go Outdated
Comment thread launcher/container_runner.go Outdated
Comment thread launcher/container_runner.go Outdated
Comment thread launcher/container_runner.go Outdated
Comment thread launcher/container_runner.go
Comment thread server/eventlog.go
Comment thread server/eventlog.go
@yawangwang
Copy link
Copy Markdown
Collaborator

Please fix the failed CI test failure too.

@yawangwang
Copy link
Copy Markdown
Collaborator

Could you squash your commits? Most of them are to fix linter issues and can be squashed to keep history tidy.

@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch 5 times, most recently from 5b03a4c to 6ebea36 Compare March 10, 2026 18:46
@Sibcgh
Copy link
Copy Markdown
Collaborator Author

Sibcgh commented Mar 10, 2026

/gcbrun

Comment thread launcher/internal/gpu/attestation.go Outdated
Comment thread launcher/internal/gpu/attestation.go Outdated
Comment thread launcher/container_runner.go Outdated
Comment thread launcher/internal/gpu/driverinstaller.go Outdated
Comment thread launcher/container_runner.go Outdated
Comment thread launcher/container_runner.go Outdated
Comment thread launcher/container_runner.go
Comment thread launcher/container_runner.go Outdated
@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch 4 times, most recently from 36851b1 to 795d845 Compare March 10, 2026 22:01
Comment thread launcher/container_runner.go
Comment thread launcher/container_runner.go Outdated
@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch 3 times, most recently from 721c3b6 to ccd4ee9 Compare March 10, 2026 23:06
@Sibcgh Sibcgh closed this Mar 10, 2026
auto-merge was automatically disabled March 10, 2026 23:10

Pull request was closed

@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch from cf9156e to c9fbf6f Compare March 10, 2026 23:10
@Sibcgh Sibcgh reopened this Mar 10, 2026
@Sibcgh Sibcgh force-pushed the gpu_rtmr_cel_event branch from 05551ad to c5f201d Compare March 10, 2026 23:53
@Sibcgh Sibcgh requested review from jkl73 and yawangwang March 10, 2026 23:54
@jkl73 jkl73 requested a review from alexmwu March 11, 2026 00:32
Copy link
Copy Markdown
Collaborator

@yawangwang yawangwang left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM contingent on successful presubmit tests

Copy link
Copy Markdown
Contributor

@alexmwu alexmwu left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

You

Comment thread launcher/container_runner.go
Comment thread launcher/container_runner.go
@Sibcgh Sibcgh merged commit 49d04ab into google:main Mar 11, 2026
11 of 12 checks passed
@Sibcgh Sibcgh deleted the gpu_rtmr_cel_event branch March 11, 2026 17:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants