On Mon, Jun 30, 2025 at 02:17:23PM +0800, Zhenzhong Duan wrote:
> Add element "quoteGenerationSocket" to tdx launch security type.
> It contains only an optional unix socket address attribute,
> when omitted, libvirt will use default QGS server address
> "/var/run/tdx-qgs/qgs.socket".
> 
> UNIX sockets offer the required functionality with greater
> security than vsock, so libvirt only provides support for unix
> socket.
> 
> XML example:
> 
>   <launchSecurity type='tdx'>
>     <policy>0x0</policy>
>     <mrConfigId>xxx</mrConfigId>
>     <mrOwner>xxx</mrOwner>
>     <mrOwnerConfig>xxx</mrOwnerConfig>
>     <quoteGenerationSocket path="/var/run/tdx-qgs/qgs.socket"/>

Minor nitpick - lets call the element 'quoteGenerationService'
still.



With regards,
Daniel
-- 
|: https://berrange.com      -o-    https://www.flickr.com/photos/dberrange :|
|: https://libvirt.org         -o-            https://fstop138.berrange.com :|
|: https://entangle-photo.org    -o-    https://www.instagram.com/dberrange :|

Reply via email to