Abstract:
Confidential computing allows processing sensitive workloads in securely isolated spaces. Following earlier adoption of process-based approaches to isolation, vendors are...Show MoreMetadata
Abstract:
Confidential computing allows processing sensitive workloads in securely isolated spaces. Following earlier adoption of process-based approaches to isolation, vendors are now enabling hardware and firmware support for virtualization-based confidential computing on several server platforms. Due to variations in the technology stack, threat model, implementation and functionality, the available solutions offer somewhat different capabilities, trade-offs and security guarantees. In this paper we review, compare and contextualize four virtualization-based confidential computing technologies for enterprise server platforms - AMD SEV, ARM CCA, IBM PEF and Intel TDX.
Published in: 2022 IEEE International Symposium on Secure and Private Execution Environment Design (SEED)
Date of Conference: 26-27 September 2022
Date Added to IEEE Xplore: 04 November 2022
ISBN Information: