Providing Confidential Guest Services with a Secure VM Service Module on AMD - Thomas Lendacky, AMD

Описание к видео Providing Confidential Guest Services with a Secure VM Service Module on AMD - Thomas Lendacky, AMD

Providing Confidential Guest Services with a Secure VM Service Module on AMD - Thomas Lendacky, AMD

The AMD SEV-SNP architecture supports sub-dividing a confidential guest through the use of VM Privilege Levels (VMPLs). The software running in the highest privilege level, the Secure VM Service Module (SVSM) can be used to provide secure services, such as secure boot, to the rest of the guest. The SVSM is also a key component to enable live migration of the guest image. In this talk, we’ll explore the VMPL architecture, the Linux kernel and KVM support necessary, and the work being done toward creating an open source SVSM for Linux.

Комментарии

Информация по комментариям в разработке