Главная
Study mode:
on
1
Intro
2
Work of many people
3
Confidential Computing setting
4
The problem
5
AMD SEV
6
VM boot process with -kernel
7
Host attack on boot with -kernel
8
Vulnerability
9
Hashes GUIDed table
10
Solution details
11
Attack mitigation
12
Caveat
13
Implementation status
14
Accessing injected secrets
15
Future plans
Description:
Explore the intricacies of securing Linux virtual machine boot processes using AMD Secure Encrypted Virtualization (SEV) measurement in this informative conference talk. Delve into the challenges faced in Confidential Computing settings and understand the vulnerabilities present in VM boot processes with -kernel. Learn about the innovative solution involving a Hashes GUIDed table and its implementation to mitigate host attacks. Discover the current status of this security measure, methods for accessing injected secrets, and gain insights into future plans for enhancing VM boot security. This presentation, delivered by experts from IBM Research, offers valuable knowledge for professionals working in virtualization, cloud computing, and cybersecurity.

Securing Linux VM Boot with AMD SEV Measurement

Linux Foundation
Add to list
0:00 / 0:00