pub(crate) const PROTECTED_VM_FW_MAX_SIZE: u64 = 0x40_0000;