Loading…
Attending this event?
September 16-17, 2024 | Vienna, Austria
View More Details & Registration
Note: The schedule is subject to change.

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Linux Security Summit Europe 2024 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

This schedule is automatically displayed in Central European Summer Time (UTC+2). To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date."
Monday September 16, 2024 12:00 - 12:30 CEST
Confidential computing (CC) is about processing application data in a trusted execution environment (TEE) that is provided by the hardware platform. Moreover, CC includes one crucial feature: remote attestation is used to get a proof of the TEE and the runtime environment authenticity and integrity before any secrets get provisioned. To ease confidential computing adoption, a smooth transition is critical. While confidential virtual machines allow users to easily move their existing workloads to run in TEEs making them attestation aware may still be disruptive. Ideally, no changes should be needed even when attestation gets involved. Linux Keyring offers an interesting choice to solve the challenge. By design, it can handle and store secrets without forcing workloads having to know about the security details involved. In this talk, we are going to cover the basics of CC and Linux Keyring. The main focus of the talk is to discuss how Linux Keyring can be leveraged to hide the attestation details in different use cases and some of the benefits it brings. We'll be demonstrating the ideas using two examples: filesystem encryption key provisioning and attestation token provisioning.
Speakers
avatar for Mikko Yinen

Mikko Yinen

Cloud Software Architect, Intel
Mikko is a cloud software architect at Intel’s Cloud Software Engineering team. He comes with an embedded Linux and operating systems engineering background but has most recently worked on security related topics in confidential computing/containers and cloud infrastructure. He... Read More →
Monday September 16, 2024 12:00 - 12:30 CEST
Hall L3

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link