Enarx - secured, attested execution on any cloud
Action | Key |
---|---|
Play / Pause | K or space |
Mute / Unmute | M |
Toggle fullscreen mode | F |
Select next subtitles | C |
Select next audio track | A |
Show slide in full page or toggle automatic source change | V |
Seek 5s backward | left arrow |
Seek 5s forward | right arrow |
Seek 10s backward | shift + left arrow or J |
Seek 10s forward | shift + right arrow or L |
Seek 60s backward | control + left arrow |
Seek 60s forward | control + right arrow |
Decrease volume | shift + down arrow |
Increase volume | shift + up arrow |
Decrease playback rate | < |
Increase playback rate | > |
Seek to end | end |
Seek to beginning | beginning |
Share this media
HLS video stream
You can use an external player to play this stream (like VLC).
HLS video streamWhen subscribed to notifications, an email will be sent to you for all added annotations.
Your user account has no email address.
Information on this media
Traditionally, when you run a workload in a VM, container or in a serverless environment, that workload is vulnerable to interference by any person or software with hypervisor, root or kernel access. That turns out to be quite a few people one has little choice but to trust, both in the cloud, of course, but also on one’s own hardware.
The Enarx project aims to mitigate this by leveraging the hardware-based security properties offered by the Trusted Execution Environments (TEEs) found on recent CPUs. Enarx will make it simple to deploy workloads to a variety of TEEs in the public cloud, making it possible to deploy confidential workloads to third party servers without needing to relinquish trust to those who operate them.
We’ve known for a long time that we need encryption for data at rest and in transit; Enarx helps you do encryption for data in use.
Enarx handles two crucial aspects of using TEEs: attestation and delivery of an application into a run-time, what we call a “Keep”.
CPU-architecture independent, Enarx enables the same application code to be deployed across multiple targets, abstracting issues such as cross-compilation and differing attestation mechanisms between hardware vendors.
Applications deployed to Enarx are based on WebAssembly, offering developers a wide range of language choice for implementation and eliminating the need to rewrite the application for a particular platform or SDK. Work is currently underway on AMD SEV and Intel SGX. The Enarx project is open source and looking to expand our community involvement.
Speaker
Axel Simon (Red Hat)
Other media in the channel "2020"
- 18 views, 1 this yearConclusion talkJuly 2nd, 2020
- 205 views, 10 this year, 1 this monthPique curiosity, not diabetic fingersJuly 2nd, 2020
- 39 views, 2 this yearWars of the machines: build your own Seek and Destroy RobotJuly 2nd, 2020
- 51 viewsTackling security issues in virtualizationJuly 2nd, 2020
- 55 views, 1 this yearRemote Forensic Investigations For The WinJuly 2nd, 2020
- 98 viewsCONCERT de Musique Libre / Chanson Française par -KPTN-June 30th, 2020