commit | 3397b360b2614bfbe6340b55365a7aa4764e95c6 | [log] [tgz] |
---|---|---|
author | Alice Wang <aliceywang@google.com> | Fri Dec 01 13:57:10 2023 +0000 |
committer | Alice Wang <aliceywang@google.com> | Wed Dec 13 08:46:59 2023 +0000 |
tree | 1c101c6a17343eb731c02445ab27d2a0426927a3 | |
parent | d870b20f46c81d4251a497b7699616f6719175eb [diff] |
[attestation] Validate DICE chain signatures and CSR signature With subject public keys in the DICE certificates. A wrapper has been added around ED25519_verify to support ED25519 signature verification. The existing EVP_PKEY is not used because the verification with EVP_PKEY requires converting the ED25519 public key to EVP_PKEY. This conversion with EVP_PKEY_new_raw_public_key increases the rialto image size by an extra 90KB. Bug: 314266221 Bug: 310931749 Test: atest rialto_test Change-Id: I82cc58441b4f4730e46e9de7a0efa03959d8d137
Android Virtualization Framework (AVF) provides secure and private execution environments for executing code. AVF is ideal for security-oriented use cases that require stronger isolation assurances over those offered by Android’s app sandbox.
Visit our public doc site to learn more about what AVF is, what it is for, and how it is structured. This repository contains source code for userspace components of AVF.
If you want a quick start, see the getting started guideline and follow the steps there.
For in-depth explanations about individual topics and components, visit the following links.
AVF components:
AVF APIs:
How-Tos: