Skip to content

Commit

Permalink
Remove lingering continuum script/azure stuff
Browse files Browse the repository at this point in the history
  • Loading branch information
AnthonyRonning committed Feb 11, 2025
1 parent 1942a56 commit 79a0f87
Show file tree
Hide file tree
Showing 4 changed files with 0 additions and 209 deletions.
39 changes: 0 additions & 39 deletions docs/nitro-deploy.md
Original file line number Diff line number Diff line change
Expand Up @@ -779,45 +779,6 @@ A restart should not be needed but if you need to:
sudo systemctl restart vsock-billing-proxy.service
```

### Continuum Attestation Updator

We need to run a script on the parent that updates the URL for the continuum azure attestation endpoint.

On the parent:

```
scp update_continuum_url.sh ec2-user@[aws-parent-instance-ip]:~/
```

```
sudo vim /etc/systemd/system/update-continuum-url.service
```

```
[Unit]
Description=Update Continuum URL Service
After=network-online.target
Wants=network-online.target
[Service]
ExecStart=/home/ec2-user/update_continuum_url.sh
User=ec2-user
Group=ec2-user
Type=simple
Restart=on-failure
RestartSec=30s
[Install]
WantedBy=multi-user.target
```

```
sudo systemctl daemon-reload
sudo systemctl enable update-continuum-url.service
sudo systemctl start update-continuum-url.service
sudo systemctl status update-continuum-url.service
```

## KMS Key

You need to create an AWS KMS key that the enclave can encrypt/decrypt things to. Name it according to your environment:
Expand Down
8 changes: 0 additions & 8 deletions entrypoint.sh
Original file line number Diff line number Diff line change
Expand Up @@ -359,14 +359,6 @@ else
log "AMD KDS Interface connection failed"
fi

# Test the connection to Azure Attestation
log "Testing connection to Azure Attestation:"
if timeout 5 bash -c '</dev/tcp/127.0.0.7/443'; then
log "Azure Attestation connection successful"
else
log "Azure Attestation connection failed"
fi

# Test the connection to GitHub
log "Testing connection to GitHub:"
if timeout 5 bash -c '</dev/tcp/127.0.0.9/443'; then
Expand Down
12 changes: 0 additions & 12 deletions justfile
Original file line number Diff line number Diff line change
Expand Up @@ -187,18 +187,6 @@ update-continuum-proxy:
{{container}} cp "${containerID}":/bin/privatemode-proxy ./continuum-proxy && \
{{container}} rm "${containerID}"

# SCP the update_continuum_url.sh script to the AWS parent instance (dev)
scp-update-continuum-url-dev:
scp -i $DEV_SSH_KEY update_continuum_url.sh $DEV_SERVER:~/

# SCP the update_continuum_url.sh script to the AWS parent instance (prod)
scp-update-continuum-url-prod:
scp -i $PROD_SSH_KEY update_continuum_url.sh $PROD_SERVER:~/

# SCP the update_continuum_url.sh script to the AWS parent instance (preview)
scp-update-continuum-url-preview:
scp -i $PREVIEW_SSH_KEY update_continuum_url.sh $PREVIEW_SERVER:~/

### Enclave Management ###

# Terminate the running enclave (dev)
Expand Down
150 changes: 0 additions & 150 deletions update_continuum_url.sh

This file was deleted.

0 comments on commit 79a0f87

Please sign in to comment.