Hacker News new | ask | show | jobs
by snoopy_telex 1288 days ago
I'd like to offload a required security software to a stand-alone device that exposes the software endpoints directly to the host via PCIe. The goal would be to ensure that if an attacker gets into the host, they are unable to modify the security software or limit its functionality.

Ideally the card would have a TPM module and supports some sort of signed boot/firmware validation.

I know I'm being a bit coy, but hopefully that helps you understand the requirements a bit better?