Ensure no AVF debug policy in locked device

VM can't know whether the host is locked or unlocked, so it will
mindlessly enable debug policies in its device tree.

Add CddTest and documentation to ensure that debug policy doesn't exist
in locked devices.

Test: atest
Bug: 275328279
Change-Id: I77d6cec6416200ffe9e60914aed00bcf0d9edbe7
3 files changed
tree: 7b7256cd1e9425165f1c9df49b6909fb798c4e5d
  1. apex/
  2. apkdmverity/
  3. authfs/
  4. compos/
  5. demo/
  6. docs/
  7. encryptedstore/
  8. javalib/
  9. launcher/
  10. libs/
  11. microdroid/
  12. microdroid_manager/
  13. pvmfw/
  14. rialto/
  15. tests/
  16. virtualizationmanager/
  17. virtualizationservice/
  18. vm/
  19. vm_payload/
  20. vmbase/
  21. vmclient/
  22. zipfuse/
  23. .clang-format
  24. .gitignore
  25. Android.bp
  26. OWNERS
  27. PREUPLOAD.cfg
  28. README.md
  29. TEST_MAPPING
README.md

Virtualization

This repository contains userspace services related to running virtual machines on Android, especially protected virtual machines. See the getting started documentation and Microdroid README for more information.