Get hands-on experience with 20+ free Google Cloud products and $300 in free credit for new customers.

Intel TDX module build parameters

How can we find the following build information about Intel TDX modules used by GCP TDX services: the date it was compiled, the build number, and the module's update version?

0 4 310
4 REPLIES 4

Hi @asadujjaman,

Welcome to Google Cloud Community!

You can request attestation reports from the Google-managed vTPM, AMD's Secure Processor, and Intel's TDX module. Attestation reports include measurements of bootloader activity, hardware setup, firmware configuration, and other boot-time events that assist in verifying the state and identity of the Confidential VM instance.

I hope the above information is helpful.

Hi @kensan,

Thanks for your reply.

We checked the attestation report before posting this question. Unfortunately, that information was not found in the report.

I hope to hear from you soon again.

TDX report will have the CPU SVN and TEE SVN values which are the security version numbers and not the module version numbers. 
For more information please check https://download.01.org/intel-sgx/latest/dcap-latest/linux/docs/Intel_TDX_DCAP_Quoting_Library_API.p... and  TDX module spec.

Hi, thanks for your reply. We have checked: CPU SVN is unrelated to the TDX module and TEE SVN does not contain its build information (e.g., compilation date) either.

Top Labels in this Space
Top Solution Authors