-
Notifications
You must be signed in to change notification settings - Fork 0
/
test.yml
66 lines (66 loc) · 2.24 KB
/
test.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
kernel:
image: intelanalytics/linuxkit-kernel-5.1.0-tdx:2.4.0-SNAPSHOT
cmdline: "root=/dev/sda1 console=hvc0 console=ttyS0 vring_force_dma_api"
init:
- linuxkit/init:144c9cee8aed9e30a16940f2bf1d3813883aceda
- linuxkit/runc:436357ce16dd663e24f595bcec26d5ae476c998e
- linuxkit/containerd:d445de33c7f08470187b068d247b1c0dea240f0a
- linuxkit/ca-certificates:4de36e93dc87f7ccebd20db616ed10d381911d32
onboot:
- name: sysctl
image: linuxkit/sysctl:a88a50c104d538b58da5e1441f6f0b4b738f76a6
- name: dhcpcd
image: linuxkit/dhcpcd:2a8ed08fea442909ba10f950d458191ed3647115
command: ["/sbin/dhcpcd", "--nobackground", "-f", "/dhcpcd.conf", "-1"]
- name: format
image: linuxkit/format:5161fe240e5824da04d51bcf5e00afcb0c18dc25
command: ["/usr/bin/format", "-type", "ext4", "-label", "DATA", "-verbose", "/dev/nvme1n1"]
- name: mount
image: linuxkit/mount:f671cb94a8999a65e33b3fe79f3def58e3d58b07
command: ["/usr/bin/mountie", "/dev/nvme1n1", "/var/secure_storage"]
services:
- name: getty
image: linuxkit/getty:06f34bce0facea79161566d67345c3ea49965437
env:
- INSECURE=true
binds.add:
- /:/var/tmp/root
- name: rngd
image: linuxkit/rngd:310c16ec5315bd07d4b8f5332cfa7dc5cbc7d368
- name: sshd
image: linuxkit/sshd:62036c2a279715d05e8298b9269a0659964f2619
binds.add:
- /root/.ssh:/root/.ssh
- name: llm-image
image: intelanalytics/bigdl-ppml-trusted-bigdl-llm-tdx:debug
capabilities:
- all
devices:
- path: "/dev/tdx_guest"
type: c
major: 10
minor: 126
mode: "0660"
binds.add:
- /dev:/dev
- /etc/resolv.conf:/etc/resolv.conf
env:
- ATTESTATION=true
- ATTESTATION_URL=xx.xx.xx.xx:xxxx
- APP_ID=xxxxxxxxxxxxxxxxxx
- API_KEY=xxxxxxxxxxxxxxxxxx
- KMS_URL=xx.xx.xx.xx:xxxx
- KMS_USER=bigdl
- KMS_TOKEN=bigdl
- KMS_PRIMARY_KEY=llm-demo
- KMS_DATA_KEY=model-key
- BASE64_MODEL_IV=xxxxxxxxxxxxxx
files:
- path: root/.ssh/authorized_keys
source: ~/.ssh/id_rsa.pub
mode: "0600"
optional: true
- path: etc/dm-crypt/key
# the below key is just to keep the example self-contained
# !!! provide a proper key for production use here !!!
contents: "abcdefghijklmnopqrstuvwxyz123456"