|
|
|
|
|
by sweis
4697 days ago
|
|
You must first remotely attest the hypervisor using TXT before deploying a VM to run on it. Today, that attestation process relies on a TPM and a signed certificate chain baked in by the TPM manufacturer. This is standard stuff out of the Trusted Computing Group. One more thing to add, this isn't just a personal side project. We're a company and have a beta product deployed to early adopters. |
|
Are you aware of:
and: It's an interesting use of TPM -- and sounds like a sound approach, assuming there aren't any bugs in the TPM software... which might be too big an assumption.I don't suppose any of your software is available as open source? Where can I/we learn more?