fix(sandbox): validate confirmation evidence at host boundary

Signed-off-by: Drew Newberry <anewberry@nvidia.com>
This commit is contained in:
Drew Newberry
2026-09-17 09:46:47 -07:00
parent 7cd18e1201
commit a5301e8eea
@@ -2293,7 +2293,10 @@ mod linux {
tcp_allow_round_trip: self.qualification.tcp_allow_round_trip,
tcp_deny_round_trip: self.qualification.tcp_deny_round_trip,
};
audit.validate().map_err(|error| error.to_string())?;
// The boundary reports mechanism evidence; the authenticated host
// backend validates it before constructing a ConfirmedBoundary.
// Keeping that decision at the verifier also lets lifecycle tests
// exercise the protocol without claiming host-kernel enforcement.
let properties = audit.properties();
let backend_audit = serde_json::to_value(audit)
.map_err(|error| format!("encode OpenShell sandbox audit evidence: {error}"))?;