|
|
Log in / Subscribe / Register

AMD memory encryption technologies

AMD memory encryption technologies

Posted Sep 11, 2016 1:22 UTC (Sun) by Cyberax (✭ supporter ✭, #52523)
In reply to: AMD memory encryption technologies by bdell
Parent article: AMD memory encryption technologies

It's the code inside the VM. If you have a trusted external system then you build an authentication chain that includes the guest VM to obtain an encryption key to unlock important data.


to post comments

AMD memory encryption technologies

Posted Sep 11, 2016 2:18 UTC (Sun) by bdell (subscriber, #84268) [Link]

I guess I was going by slide 10 where the "guest owner" box is outside the box with all the hardware bits. The diagrams with the sequence of steps augment the box with "user". The secure processor supplies info about what was launched after the hypervisor can no longer tamper with it ultimately to the guest owner in slide 15 where it can be validated and authenticated before the disk encryption key is supplied to the VM. I don't see how the guest owner is inside the VM or can be tricked.


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds