YoVDO

Live Migration Architecture for Intel TDX-based Confidential VMs

Offered By: Linux Foundation via YouTube

Tags

Confidential Computing Courses Cybersecurity Courses Cloud Computing Courses Virtualization Courses Hardware Security Courses Virtual Machines Courses Data Privacy Courses KVM Courses Intel TDX Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the architecture for live migration of Intel TDX-based Confidential VMs in this 38-minute conference talk by Ravi Sahita and Jun Nakajima from Intel. Delve into the Intel Trust Domain Extension (TDX) recap, live migration goals, security properties, and functional requirements. Examine the components of Intel TDX live migration, new architectural interfaces, and cross-platform perspectives. Understand the lifecycle of TD migration and various security objectives, including confidentiality and integrity of content and exports, access control of migration TD assets, and integrity of TD migration policy. Learn about software implications on KVM, iterative pre-copy techniques, and considerations for scalability and efficiency in implementing live migration for confidential computing environments.

Syllabus

Intro
OUTLINE
INTEL TRUST DOMAIN EXTENSION (INTEL TDX) - RECAP
TO LIVE MIGRATION ARCHITECTURE GOALS
TD LIVE MIGRATION SECURITY & FUNCTIONAL PROPERTIES
INTEL TDX LIVE MIGRATION COMPONENTS
NEW INTEL TDX ARCHITECTURAL INTERFACES & MIG TD
INTEL TDX LIVE MIGRATION-CROSS PLATFORM VIEW
TD MIGRATION - LIFECYCLE
SECURITY OBJECTIVE-CONFIDENTIALITY AND INTEGRITY OF CONTA
SECURITY OBJECTIVE-CONFIDENTIALITY & INTEGRITY OF EXPORTE
SECURITY OBJECTIVE - ACCESS-CONTROL OF MIG TD ASSETS
SECURITY OBJECTIVE-INTEGRITY OF TD MIGRATION POLICY
SOFTWARE IMPLICATIONS ON KVM (CONT.)
ITERATIVE PRE-COPY
SCALABILITY AND EFFICIENCY


Taught by

Linux Foundation

Tags

Related Courses

Linux High Availability Clustering on RHEL 8 (2023)
Udemy
CentOS Enterprise Linux 7 Virtualization Management
Pluralsight
OpenStack Installation and Deployment
Udemy
Linux Foundation Cert Prep: Virtualization (Ubuntu)
LinkedIn Learning
Linux System Engineer: Network Bonding, IPv6, Routing, and Virtual Systems
LinkedIn Learning