More Intel TDX Improvements Come With Linux 6.7

Written by Michael Larabel in Intel on 2 November 2023 at 06:30 AM EDT. Add A Comment
INTEL
More Linux kernel code around Intel's Trust Domain Extensions (TDX) has landed with the in-development Linux 6.7 kernel.

Intel Trust Domain Extensions is for providing hardware-based isolation, confidentiality, and integrity at the virtual machine level. This hardware-based trusted execution environment premiered with select Sapphire Rapids CPU models for public cloud providers and hyperscalers. With upcoming Emerald Rapids processors we are expecting to see broader TDX availability, which is good now that much of the Linux operating system support has since worked its way upstream over the past year.

With Linux 6.7 there is a rework of the Assembly and C wrappers that are used for interfacing with the TDX module and VMM. This clean-up is part of their work for handling where Linux is the TDX VMM. Plus this pull request has some TDX improvements around working better with Microsoft Hyper-V and enabling use of hardware timestamp calibration (TSC).

Intel TDX overview


As part of the Linux 6.7 pull request is also adding the "CONFIG_INTEL_TDX_HOST" Kconfig option for toggling build-time support for TDX host support. The Intel TDX host code has been undergoing 14+ rounds of review.

More details for those interested via the TDX pull.
Related News
About The Author
Michael Larabel

Michael Larabel is the principal author of Phoronix.com and founded the site in 2004 with a focus on enriching the Linux hardware experience. Michael has written more than 20,000 articles covering the state of Linux hardware support, Linux performance, graphics drivers, and other topics. Michael is also the lead developer of the Phoronix Test Suite, Phoromatic, and OpenBenchmarking.org automated benchmarking software. He can be followed via Twitter, LinkedIn, or contacted via MichaelLarabel.com.

Popular News This Week