v0.9.0
What's Changed
- kbs/config: add RVPS config by @wainersm in #321
- ci: set certs/key as makefile deps in e2e test by @mkulke in #325
- ci: add az-tdx-vtpm workflow for e2e tests by @mkulke in #323
- kbs: improvements to quickstart and misc by @wainersm in #324
- CI: Fix nightly lint error & fix rust nightly version by @Xynnn007 in #331
- bump: jsonwebtoken to 9 by @Xynnn007 in #292
- ci: fix DCAP package install by @mythi in #336
- KBS: add a guide for HTTPS kbs usage by @Xynnn007 in #340
- Add configuration file for RVPS and add support for JSON fs storage by @Xynnn007 in #339
- az-snp/tdx-vtpm-verifier: add PCRs to claims map by @mkulke in #334
- docs: fix repo name from kbs to Trustee by @Xynnn007 in #337
- build(deps): Bump github.com/open-policy-agent/opa from 0.61.0 to 0.62.1 in /attestation-service/attestation-service/src/cgo by @dependabot in #347
- Verifier: Refactor errors in csv module by @kartikjoshi21 in #330
- Use the Trustee name in a few more places by @fitzthum in #355
- Verifeir: Add support for TDX quote v5 by @Xynnn007 in #354
- Build and push kbs-client binary by @portersrc in #349
- Fix build warnings by @fitzthum in #360
- Add write-packages permission for kbs-client-build-and-push workflow by @portersrc in #358
- AS & KBS | Optimize log by @Xynnn007 in #362
- attestation-service: Refactor errors in attestation module by @kartikjoshi21 in #327
- Azsnpvtpm: Replace anyhow error crate with thiserror crate by @kartikjoshi21 in #341
- [RFC] Initdata specification by @Xynnn007 in #348
- kbs: switch to Regorus for resource policy by @fitzthum in #357
- docker: Use Ubuntu 22.04 as kbs base image by @mkulke in #368
- AS: Optimize policy management mechanism by @jialez0 in #351
- k8s-config: Add support for NodePort service type by @surajssd in #371
- Add a helper script for releasing trustee by @portersrc in #373
- Tidy the readme and documents by @Xynnn007 in #365
- KBS: fix session status by @Xynnn007 in #376
- k8s: docs: DCAP kustomization + non-release images by @mythi in #375
- AS/verifier: Enhance quote verification with multi-thread support in tdx by @ChengyuZhu6 in #387
- workflows: Rename Docker build step from gRPC to RESTful by @ChengyuZhu6 in #389
- add: snp updates and mods to support VLEK by @wobito in #385
- kbs: Add support for configurable policy by @kartikjoshi21 in #392
- Update SNP Verifier with report and init claims by @fitzthum in #253
- AS | Refactor the policy module by @Xynnn007 in #390
- tdx: sgx: Bump DCAP dependency by @fidencio in #398
- kbs-client: encode policies with nopad-url-b64 by @mkulke in #400
- CI: set expected tee in policy within the kbs e2e test by @mkulke in #401
- attestation: fix clippy error in intel_trust_authority AS by @mythi in #402
- Add Dockerfile for Red Hat UBI by @spotlesstofu in #403
- Verifier: Add IBM Secure Execution driver framework by @huoqifeng in #345
- AS | Fix SGX verifier & Optimization by @Xynnn007 in #404
- drop Golang from builds by @mythi in #405
- Enable artifacts for s390x by @BbolroC in #383
- chore: bump guest-components and reqwest by @mythi in #412
- ibmsse: change ec to rsa key by @huoqifeng in #411
- ibmse: add development document for ibmse verifier by @huoqifeng in #413
- Fix KBS AS build warning by @larrydewey in #421
- kbs: shrink the size of docker image by @Xynnn007 in #417
- Add runtime dependencies to Dockerfile.rhel-ubi by @spotlesstofu in #422
- ibmse: add debug_assertions for debug and release branch by @huoqifeng in #420
- kbs: simplify tee-pubkey reading from the attestation token by @mythi in #414
- intel-trust-authority-as: add runtime data to attestation request by @mythi in #406
- AS/verifier: fix tdx quote verification unit test by @Xynnn007 in #426
- ibmse: use optional root_ca when launch kbs by @huoqifeng in #423
- ci: added publishing intel trust authority AS docker by @pawelpros in #410
- opa: Refactor opa module errors by @kartikjoshi21 in #409
- ibmse: update attestation-service documents for ibmse by @liudalibj in #428
- bump: guest-components to candidate v0.9.0 by @Xynnn007 in #425
- kbs: Revert support for configurable policy by @mkulke in #431
- Release: Update KBS for v0.9.0 by @portersrc in #432
New Contributors
- @wainersm made their first contribution in #321
- @wobito made their first contribution in #385
- @fidencio made their first contribution in #398
- @spotlesstofu made their first contribution in #403
- @huoqifeng made their first contribution in #345
- @larrydewey made their first contribution in #421
- @pawelpros made their first contribution in #410
- @liudalibj made their first contribution in #428
Full Changelog: v0.8.2...v0.9.0