Block a user
idiomatic error handling
Did we a test with a corrupted disk to see what error is displayed for the CLI?
idiomatic error handling
I don't see mention of /dev/sev-guest
anywhere. I believe it is important to mention this file if the firmware fails to open.