cloud-hypervisor/docs/amd_sev_snp.md
Yi Wang 34b8aed662 docs: fix some syntax and format issues in tdx/sev
There are some syntax and format issues in tdx/sev documents.
Make some modification to make the description more natural.

And the link of SEV-SNP is invalid, fix it.

Signed-off-by: Yi Wang <foxywang@tencent.com>
2026-01-14 09:20:34 +00:00

1.2 KiB

AMD SEV-SNP

WARNING

This feature is currently only supported on MSHV.

AMD Secure Encrypted Virtualization & Secure Nested Paging (SEV-SNP) is an AMD technology designed to add strong memory integrity protection to help prevent malicious hypervisor-based attacks like data replay, memory-remapping and more in order to create an isolated execution environment. Here are some useful links:

  • SNP Homepage: more information about SEV-SNP technical aspects, design and specification.

Cloud Hypervisor support

A machine with AMD SEV-SNP support which is enabled in the BIOS is required.

On the Cloud Hypervisor side, all you need is to build the project with the sev_snp feature enabled:

cargo build --no-default-features --features "sev_snp"

Note Please note that sev_snp cannot be enabled in conjunction with the tdx feature flag.

You can run a SEV-SNP VM using the following command:

./cloud-hypervisor \
     --platform sev_snp=on \
     --cpus boot=1 \
     --memory size=1G \
     --disk path=ubuntu.img

For more information related to Microsoft Hypervisor, please see mshv.md