Enarx - secured, attested execution on any cloud
Key | Action |
---|---|
K or space | Play / Pause |
M | Mute / Unmute |
C | Select next subtitles |
A | Select next audio track |
V | Show slide in full page or toggle automatic source change |
left arrow | Seek 5s backward |
right arrow | Seek 5s forward |
shift + left arrow or J | Seek 10s backward |
shift + right arrow or L | Seek 10s forward |
control + left arrow | Seek 60s backward |
control + right arrow | Seek 60s forward |
shift + down arrow | Decrease volume |
shift + up arrow | Increase volume |
shift + comma | Decrease playback rate |
shift + dot or shift + semicolon | Increase playback rate |
end | Seek to end |
beginning | Seek to beginning |
Share this media
HLS video stream
You can use an external player to play this stream (like VLC).
HLS video streamInformation on this media
Links:
Number of views:
26 (this month: 1)Creation date:
July 1, 2020Speakers:
Axel SimonLicense:
CC BY-SA v4Description
Traditionally, when you run a workload in a VM, container or in a serverless environment, that workload is vulnerable to interference by any person or software with hypervisor, root or kernel access. That turns out to be quite a few people one has little choice but to trust, both in the cloud, of course, but also on one’s own hardware.
The Enarx project aims to mitigate this by leveraging the hardware-based security properties offered by the Trusted Execution Environments (TEEs) found on recent CPUs. Enarx will make it simple to deploy workloads to a variety of TEEs in the public cloud, making it possible to deploy confidential workloads to third party servers without needing to relinquish trust to those who operate them.
We’ve known for a long time that we need encryption for data at rest and in transit; Enarx helps you do encryption for data in use.
Enarx handles two crucial aspects of using TEEs: attestation and delivery of an application into a run-time, what we call a “Keep”.
CPU-architecture independent, Enarx enables the same application code to be deployed across multiple targets, abstracting issues such as cross-compilation and differing attestation mechanisms between hardware vendors.
Applications deployed to Enarx are based on WebAssembly, offering developers a wide range of language choice for implementation and eliminating the need to rewrite the application for a particular platform or SDK. Work is currently underway on AMD SEV and Intel SGX. The Enarx project is open source and looking to expand our community involvement.
Speaker
Axel Simon (Red Hat)
Other media in the channel "2020"
17 viewsConclusion talkJuly 2nd, 2020
173 views, 3 this monthPique curiosity, not diabetic fingersJuly 2nd, 2020
37 views, 1 this monthWars of the machines: build your own Seek and Destroy RobotJuly 2nd, 2020
50 viewsTackling security issues in virtualizationJuly 2nd, 2020
50 views, 1 this monthRemote Forensic Investigations For The WinJuly 2nd, 2020
94 views, 1 this monthCONCERT de Musique Libre / Chanson Française par -KPTN-June 30th, 2020