Extending Secure Encrypted Virtualization with SEV-ES - Thomas Lendacky

preview_player
Показать описание
AMD has enhanced the capabilities of its hardware-based memory encryption to further extend the security protections provided by Secure Encrypted Virtualization (SEV). This talk will focus on the Encrypted State (ES) technology which extends the SEV support to minimize exposure of the guest register state for added isolation and protection from the hypervisor. The presentation will discuss the technical details of this technology with a focus on how it is being integrated into KVM.

---

Thomas Lendacky
PMTS Software Engineer
AMD

Tom Lendacky is a member of the Linux OS group at Advanced Micro Devices. He is responsible for enabling and enhancing support for AMD processor features in the Linux kernel. He is currently working on extending the SEV support to enable SEV-ES (Secure Encrypted Virtualization - Encrypted State). He has spoken at various Linux events, most recently at KVM Forum 2016.
Рекомендации по теме