当前位置:首页 > 报告详情

揭秘认证:通过密码学方法验证执行环境.pdf

上传人: 明**** 编号:1013642 2025-12-21 62页 1.04MB

1、 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.CMP317Sudhir ReddyHe/himSr Solutions Architect,EC2AWSAlex GrafHe/himPrincipal SDE,EC2AWSDemystify

2、attestation:Cryptographically verify execution environment 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.Amazon Confidential and Trademark.3 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AI 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.A

3、I 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AI 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AI 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AI 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AI 2025,Amazon Web Se

4、rvices,Inc.or its affiliates.All rights reserved.AI 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AIAI 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AIAIConfidential Computing 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AIConfidential

5、Computing 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AIaccount operatorConfidential Computing 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AINitroaccount operatorConfidential Computing 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.AI

6、Nitroaccount operatorAWS operatorConfidential Computing 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.Confidential Computing 2025,Amazon Web Services,Inc.or its affiliates.All rights reserved.3rd party validation and design details18WhitepaperSecurity Design of the AWS Nitro Sys

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
根据报告的内容,全文主要围绕AWS Nitro系统的安全设计和 Confidential Computing技术展开。以下是关键点: 1. **安全特性**:AWS Nitro系统通过无操作员访问(Zero-Operator-Access)和第三方验证确保安全。 2. **数据保护**:支持数据在用(Data in Use)、数据在传输中(Data in Transit)和数据在静止(Data at Rest)的加密和认证。 3. **加密认证**:使用EC2实例认证、Nitro TPM和Nitro Enclaves等技术进行加密认证。 4. **实例隔离**:Nitro Enclaves提供CPU、内存和vsock的隔离,适用于执行受信任的应用和临时工作负载。 5. **应用案例**:展示了如何使用Confidential Computing保护大型语言模型(LLM)和执行多方协作应用。 6. **工具和方法**:介绍了使用Kiwi-ng和Nix等工具打包和认证应用程序的方法。
AWS Nitro系统安全设计?" "如何实现无操作员访问的加密环境?" "LLM模型安全协作,AWS如何保障?
客服
商务合作
小程序
服务号
折叠