Loading…
Advanced [clear filter]
Friday, October 30
 

06:00 GMT

Intel Virtualization Technology Extensions to Enable Hardware Isolated VMs - Sean Christopherson, Intel
Deploying virtual machines in an unsecured environment might expose a cloud tenant to risk of losing confidentiality and integrity of its sensitive data and IP, e.g. via attacks from privileged software, offline memory analysis, and active memory attacks at system interfaces. This talk will present an upcoming Intel technology to isolate VMs from many hardware and most software-based threats, by providing capabilities for confidentiality and integrity of memory, address translation, and cpu state, as well as secure interrupt and exception delivery, and remote attestation. Sean will provide an overview of the technology and its unique, novel features, and briefly cover the state of enabling in KVM and Qemu.

Speakers
avatar for Sean Christopherson

Sean Christopherson

Software Engineer, Google
Sean is an engineer at Google Cloud focused on KVM, and is an upstream co-maintainer for x86 KVM.



Friday October 30, 2020 06:00 - 06:30 GMT
KVM Theater
  KVM Forum, KVM
 

Twitter Feed

Filter sessions
Apply filters to sessions.
  • 101 Essentials - Cloud Administration
  • 101 Essentials - Embedded Linux
  • 101 Essentials - Linux Administration
  • AI/ML/DL
  • Ask the Experts Sessions
  • Cloud + Cloud Native
  • Community Leadership
  • Diversity Empowerment Summit
  • Embedded Linux Conference (ELC)
  • Interactive Learning + Special Events
  • Internet of Things
  • Keynote Sessions
  • KVM Forum
  • LF Project Mini-Summits
  • Linux Security Summit (LSS)
  • Linux Systems
  • OS Databases
  • OS Dependability
  • OS Program Office
  • Sponsor Showcase Booth Hours
  • Wildcard