CPC: Flexible, Secure, and Efficient CVM Maintenance with Confidential Procedure Calls
Offered By: USENIX via YouTube
Course Description
Overview
Explore a groundbreaking approach to confidential virtual machine (CVM) maintenance in this 20-minute conference talk from USENIX ATC '24. Delve into the challenges of maintaining CVMs while preserving data privacy for cloud tenants. Learn about Confidential Procedure Calls (CPCs), a novel method that enables efficient and secure execution of maintenance modules from within the guest. Discover how CPCs overcome limitations of traditional host-based maintenance and existing approaches that require hardware modifications. Examine the implementation of CPC prototypes on AMD SEV and ARM CCA platforms, showcasing significant performance improvements and enhanced security. Gain insights into the potential of CPCs to increase the popularity and cross-platform compatibility of CVMs in cloud environments.
Syllabus
USENIX ATC '24 - CPC: Flexible, Secure, and Efficient CVM Maintenance with Confidential Procedure...
Taught by
USENIX
Related Courses
vSGX: Virtualizing SGX Enclaves on AMD SEVIEEE via YouTube Securing Linux VM Boot with AMD SEV Measurement
Linux Foundation via YouTube Improving Bootup Performance of Containers with Overlay Images in TEE Environments
Linux Foundation via YouTube Protected KVM on Arm64: A Technical Deep Dive
Linux Foundation via YouTube No More Turtles: The SecondaryVM Framework - An Alternative to Nested Virtualization
Linux Foundation via YouTube