Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add confidential inference for penetration testing #208

Open
wants to merge 71 commits into
base: branch-dev/pentests
Choose a base branch
from

Conversation

BuJianlin
Copy link
Contributor

No description provided.

RodgerZhu and others added 30 commits August 25, 2022 11:22
Signed-off-by: Liang Fang <liang.a.fang@intel.com>
Signed-off-by: Liang Fang <liang.a.fang@intel.com>
Add support with docker and Tencent CCP
enable users to input parameters
Signed-off-by: Liang Fang <liang.a.fang@intel.com>
Branch dev/cross lang: revise dockerfile and build_docker script
Signed-off-by: Liang Fang <liang.a.fang@intel.com>
Signed-off-by: Liang Fang <liang.a.fang@intel.com>
…amework

add separated client app docker file and fix a bug
revise convert_docker file and add readme for ccp
* enable psi in anolisos

* fixup! enable psi in anolisos

* fixup! enable psi in anolisos
Signed-off-by: Liang Fang <liang.a.fang@intel.com>
pengyuabc and others added 30 commits December 6, 2022 15:48
…tel#195)

* Change gramine build type to release to workaround python extract tarfile error in encrypted file system

* Fix anolisos image build error && Add usage help for gramine-sgx-dev
* First commit for httpa

* update index.rst for httpa

* Update for adding PoC texts
Signed-off-by: <RodgerZhu>
- fix typo
- move ca_cert from trust file to allowed file, so that ca_cert can be mapped
  in in container environment.

Signed-off-by: Liang Fang <liang.a.fang@intel.com>
…amework

fix typo & let ca_cert in sample app can be replaced via docker volume map
* Add Private Set Intersection support for Azure deployments

* Revert PSI changes to start_container.sh that started containers detached
* Upgrade gramine to v1.2 in tensorflow-serving-cluster

* Enable tf-serving-cluster in Anolisos (intel#139)

* Upgrade gramine to v1.2 in tensorflow-serving-cluster
* Enable tf-serving-cluster in Anolis OS

* Ccp 3 (intel#137)

* Set CLF copyright to Apache2.0

copyright set as below:

/*
 *
 * Copyright (c) 2022 Intel Corporation
 *
 * Licensed under the Apache License, Version 2.0 (the "License");
 * you may not use this file except in compliance with the License.
 * You may obtain a copy of the License at
 *
 *     http://www.apache.org/licenses/LICENSE-2.0
 *
 * Unless required by applicable law or agreed to in writing, software
 * distributed under the License is distributed on an "AS IS" BASIS,
 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
 * See the License for the specific language governing permissions and
 * limitations under the License.
 *
 */

Signed-off-by: Liang Fang <liang.a.fang@intel.com>

* modify code to fit Gramine code change

Gramine changed secret_prov file path and API, we do code change to fit that.

Signed-off-by: Liang Fang <liang.a.fang@intel.com>

* modify code to fit Gramine code change

Gramine changed secret_prov file path and API, we do code change to fit that.

Signed-off-by: Liang Fang <liang.a.fang@intel.com>

* Update hfl.md

* Add ccp support for tf serving

* Add ccp support for tf serving

* Add replace process for ssl.cfg in tf-serving

* fixup! update docs and readme

* Add TF Serving integration in Anolis  (intel#147)

* Upgrade gramine to v1.2 in tensorflow-serving-cluster

* Enable tf-serving-cluster in Anolisos (intel#139)

* Upgrade gramine to v1.2 in tensorflow-serving-cluster
* Enable tf-serving-cluster in Anolis OS

Co-authored-by: Liang, Ma <liang3.ma@intel.com>

* Add HFL integration in Anolis docker

* Add Ubuntu 20.04 support, upgrade gramine to v1.2 and update doc

* Update doc

* Modify the image path

* enable gramine in anolisos and update docs and readme

* fixup! enable gramine in anolisos and update docs and readme

* Fix bug for anolisos in hfl

Co-authored-by: Zhu Yunge <yunge.zhu@intel.com>
Co-authored-by: Hsy-Intel <siyuan.hui@intel.com>
Co-authored-by: Liang,Ma <liang3.ma@intel.com>

* Update ehsm rats-tls sourcecode download method in the docs.

Signed-off-by: pengyuabc <pengyux.ji@intel.com>

* Fix CCP script errors

* Update sgx_default_qcnl.conf

Signed-off-by: Liang Fang <liang.a.fang@intel.com>
Signed-off-by: pengyuabc <pengyux.ji@intel.com>
Co-authored-by: Liang Fang <liang.a.fang@intel.com>
Co-authored-by: Zhu Yunge <yunge.zhu@intel.com>
Co-authored-by: Bu Jianlin <jianlinx.bu@intel.com>
Co-authored-by: Liang, Ma <liang3.ma@intel.com>
Co-authored-by: Hsy-Intel <siyuan.hui@intel.com>

* Upgrade gramine from v1.2 to v1.3.1 in tf-serving-cluster (intel#171)

* Modify tensorflow_model_server install method (intel#176)

---------

Signed-off-by: Liang Fang <liang.a.fang@intel.com>
Signed-off-by: pengyuabc <pengyux.ji@intel.com>
Co-authored-by: Liang, Ma <liang3.ma@intel.com>
Co-authored-by: pengyuabc <109656991+pengyuabc@users.noreply.github.com>
Co-authored-by: Liang Fang <liang.a.fang@intel.com>
Co-authored-by: Bu Jianlin <jianlinx.bu@intel.com>
Co-authored-by: Hsy-Intel <siyuan.hui@intel.com>
* update document

* Update README.md

* Update README.md

* Update README.md

* Update README.md

---------

Co-authored-by: root <RodgerZhu>
* add backup schema of machine binding Rootkey

* rename folder name to machine_binding_key_backup

Signed-off-by: Liang Fang <liang.a.fang@intel.com>

* revise README to correct solution name

Signed-off-by: Liang Fang <liang.a.fang@intel.com>

---------

Signed-off-by: Liang Fang <liang.a.fang@intel.com>
Co-authored-by: JinkaiYang <jinkai.yang@intel.com>
Co-authored-by: Liang Fang <liang.a.fang@intel.com>
Remove libsecret_prov_attest.so since it will be found in system path.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

10 participants