You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
AMD SEV-SNP builds are currently on Ubuntu 20.04 and so OpenSSL 1.1.x is used there. This lets us make use of OpenSSL's ENGINE_x API to use RDSEED/RDRAND. However, on SGX builds, RDSEED/RDRAND are implicitly used via Open Enclave's OpenSSL 3.x (see here).
When AMD builds are moved to OpenSSL 3.x (e.g. via the upgrade to Ubuntu 22.04), we should change the use of the ENGINE_x API which is deprecated on OpenSSL 3.x, and instead make us of the new provider API. As discussed with @achamayou, this is better than building OpenSSL 3.x with --with-rand-seed=rdcpu ourselves).
The text was updated successfully, but these errors were encountered:
AMD SEV-SNP builds are currently on Ubuntu 20.04 and so OpenSSL 1.1.x is used there. This lets us make use of OpenSSL's
ENGINE_x
API to useRDSEED
/RDRAND
. However, on SGX builds,RDSEED
/RDRAND
are implicitly used via Open Enclave's OpenSSL 3.x (see here).When AMD builds are moved to OpenSSL 3.x (e.g. via the upgrade to Ubuntu 22.04), we should change the use of the
ENGINE_x
API which is deprecated on OpenSSL 3.x, and instead make us of the new provider API. As discussed with @achamayou, this is better than building OpenSSL 3.x with--with-rand-seed=rdcpu
ourselves).The text was updated successfully, but these errors were encountered: