|
|
|
|
|
by rwmj
1287 days ago
|
|
Right now it's just defence in depth, to protect you if Amazon screws up their physical security. It will make more sense as confidential computing[1] becomes more common. This is because the data can't be accessed by the cloud vendor, assuming the key is generated inside the trusted VM. [1] The trust moves to the CPU vendors instead of the cloud vendors, but if you don't trust CPU vendors then you're going to have a hard time doing anything with computers in the modern world. |
|