Linux Foundation
Lub hom phiaj ntawm qhov kawg yog los muab txoj hauv kev los txhawb lub voj voog tag nrho ntawm kev ua cov ntaub ntawv hauv daim ntawv encrypted, tsis pom cov ntaub ntawv qhib rau ntawm tus kheej theem. Consortium thaj tsam ntawm kev txaus siab feem ntau suav nrog cov thev naus laus zis ntsig txog kev siv cov ntaub ntawv encrypted hauv cov txheej txheem suav, uas yog, kev siv cov enclaves cais, cov txheej txheem rau
Cov haujlwm hauv qab no tau raug xa mus rau kev txhim kho kev ywj pheej raws li ib feem ntawm Confidential Computing Consortium:
- Intel tau xa mus rau kev txhim kho txuas ntxiv
qhib yav dhau los
cov khoom siv rau kev siv tshuabSGX (Software Guard Extensions) ntawm Linux, suav nrog SDK nrog cov cuab yeej thiab cov tsev qiv ntawv. SGX thov kom siv cov txheej txheem tshwj xeeb cov lus qhia los faib cov chaw nco ntiag tug rau cov neeg siv cov ntawv thov, cov ntsiab lus uas tau muab zais thiab tsis tuaj yeem nyeem lossis hloov kho txawm tias los ntawm cov ntsiav thiab cov lej khiav hauv ring0, SMM thiab VMM hom; - Microsoft tau muab lub moj khaum
Qhib Enclav , tso cai rau koj los tsim cov ntawv thov rau ntau yam TEE (Trusted Execution Environment) architectures siv ib qho API thiab cov sawv cev paub daws teeb. Ib daim ntawv thov npaj siv Open Enclav tuaj yeem khiav ntawm cov tshuab nrog cov kev siv sib txawv. Ntawm TEEs, tsuas yog Intel SGX tam sim no txhawb nqa. Code los txhawb ARM TrustZone tab tom txhim kho. Hais txog kev txhawb nqaKeystone , AMD PSP (Platform Security Processor) thiab AMD SEV (Secure Encryption Virtualization) tsis tau tshaj tawm. - Red Hat tau muab qhov project
Enarx , uas muab cov txheej txheem abstraction los tsim cov ntawv thov thoob ntiaj teb kom khiav hauv cov kab ke uas txhawb nqa ntau yam TEE ib puag ncig, ywj siab ntawm cov khoom siv kho vajtse thiab tso cai rau siv ntau yam lus programming (WebAssembly-based runtime yog siv). Txoj haujlwm tam sim no txhawb nqa AMD SEV thiab Intel SGX thev naus laus zis.
Ntawm cov haujlwm zoo sib xws uas tau saib dhau los, peb tuaj yeem nco txog lub moj khaum
Nco qab tias lub enclave (
Yog tias lub kaw lus tseem ceeb raug cuam tshuam, tus neeg tawm tsam yuav tsis tuaj yeem txiav txim siab cov ntaub ntawv khaws cia hauv lub enclave thiab tsuas yog txwv rau sab nraud software interface. Kev siv cov khoom siv kho vajtse tuaj yeem suav tias yog lwm txoj hauv kev siv cov txheej txheem raws li
Tau qhov twg los: opennet.ru