Bug 2149227

Summary: VMs requiring vTPM fails to create
Product: Container Native Virtualization (CNV) Reporter: lpivarc
Component: VirtualizationAssignee: sgott
Status: CLOSED ERRATA QA Contact: vsibirsk
Severity: urgent Docs Contact:
Priority: urgent    
Version: 4.13.0CC: acardace, jlejosne, kbidarka
Target Milestone: ---Keywords: TestOnly
Target Release: 4.13.0   
Hardware: All   
OS: All   
Whiteboard:
Fixed In Version: hco-bundle-registry-container-v4.13.0.rhel9-1639 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of:
: 2150004 (view as bug list) Environment:
Last Closed: 2023-05-18 02:55:56 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2150004, 2152188    
Bug Blocks:    

Description lpivarc 2022-11-29 09:23:13 UTC
Description of problem:
Recent upstream changes in Kubevirt removed ptrace capability. This means downstream builds need to remove the capability too, causing the Libvirt to fail when vTPM is requested.

This is impacting Windows VMs (as they require vTPM) but not exclusively.

Version-Release number of selected component (if applicable):


How reproducible:
100%


Steps to Reproduce:
1.
2.
3.

Actual results:


Expected results:


Additional info:

Comment 2 Jed Lejosne 2023-01-20 19:52:40 UTC
@lpivarc I believe this is fixed by https://gitlab.cee.redhat.com/cpaas-midstream/openshift-virtualization/kubevirt/-/merge_requests/1187, right?

Comment 3 lpivarc 2023-01-30 08:12:54 UTC
Thank you, Jed, indeed.

Comment 4 vsibirsk 2023-04-27 11:57:26 UTC
Verified with
Openshift version: 4.13.0-rc.5
CNV version: 4.13.0
HCO image: brew.registry.redhat.io/rh-osbs/iib:486653

Windows 11 VM with tpm in spec successfully created/started.

Comment 7 errata-xmlrpc 2023-05-18 02:55:56 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Moderate: OpenShift Virtualization 4.13.0 Images security, bug fix, and enhancement update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2023:3205