Загрузка...

AMD SEV-TIO: Trusted I/O for Secure Encrypted Virtualization

AMD Secure Encrypted Virtualization (SEV) technologies provide support for confidential computing, where guest VMs are isolated from the hosting environment through confidentiality and integrity protection of data-in-use. AMD SEV-TIO is a new technology which enables bringing PCI devices inside the trust boundary of an AMD SEV-SNP guest providing enhanced security and improved I/O performance. This is enabled by the new PCI TEE Device Interface Security Protocol (TDISP) specification which standardizes the way in which devices interact with confidential computing technologies like AMD SEV-SNP.

In this talk, we will discuss the benefits of SEV-TIO technology and how host software like KVM/QEMU may manage secure device-guest bindings and lifecycles, including initialization, attestation, resource assignment, etc.

Видео AMD SEV-TIO: Trusted I/O for Secure Encrypted Virtualization канала KVM Forum
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять