lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <YgT0jKIMYWqkuOj6@8bytes.org>
Date:   Thu, 10 Feb 2022 12:18:36 +0100
From:   Jörg Rödel <joro@...tes.org>
To:     linux-coco@...ts.linux.dev
Cc:     Andi Kleen <ak@...ux.intel.com>, Andy Lutomirski <luto@...nel.org>,
        Borislav Petkov <bp@...en8.de>,
        Brijesh Singh <brijesh.singh@....com>,
        "Dr. David Alan Gilbert" <dgilbert@...hat.com>,
        Dave Hansen <dave.hansen@...ux.intel.com>,
        David Hildenbrand <david@...hat.com>,
        David Kaplan <David.Kaplan@....com>,
        David Rientjes <rientjes@...gle.com>,
        Joerg Roedel <jroedel@...e.de>,
        Jun Nakajima <jun.nakajima@...el.com>,
        "Kirill A. Shutemov" <kirill.shutemov@...ux.intel.com>,
        Marc Orr <marcorr@...gle.com>, Mike Rapoport <rppt@...nel.org>,
        Paolo Bonzini <pbonzini@...hat.com>,
        Peter Gonda <pgonda@...gle.com>,
        Sathya Kuppuswamy <sathyanarayanan.kuppuswamy@...el.com>,
        Sean Christopherson <seanjc@...gle.com>,
        Tom Lendacky <thomas.lendacky@....com>, kvm@...r.kernel.org,
        virtualization@...ts.linux-foundation.org,
        linux-kernel@...r.kernel.org
Subject: Confidential Computing microconference 2022 planning kick-off

Hi,

the organizers of the Linux Plumbers Conference 2022 have recently
opened the CfP for microconferences and I thought it would be great to
have another Confidential Computing microconference to bring everyone
together and discuss open problems.

I drafted a proposal for review, feel free to make improvements and/or
add more topics. Please also forward this email to other people who
might be interested, but which I missed here.

If anyone is interested in co-organizing this microconference, please
contact me. I am open to any helping hand :)

I plan to submit the proposal to the LPC website end of next week to get
things going. 

Thanks,

	Joerg

Here is the current proposal text:

Confidential Computing Microconference
======================================

Last years inaugural Confidential Computing microconference brought
together plumbers enabling secure execution features in hypervisors,
firmware, Linux Kernel, over low-level user space up to container
runtimes.

Good progress was made on a couple of topics, most outstanding here is
the development of Linux guest support for Intel TDX[1] and AMD
SEV-SNP[2].  The patch-sets for both are under intensive review and come
close to be merged upstream.

The discussions in the microconference also helped to move other topics
forward, such as support for un-accepted memory[3] or deferred memory
pinning[4] for confidential guests.

But enabling Confidential Computing in the Linux ecosystem is an ongoing
process, and there are still many problems to solve. The most important
ones are:

	* Design and implementation of Intel TDX and AMD SEV-SNP host
	  support
	* Linux kernel memory management changes for secure execution
	  environments
	* Support of upcoming secure execution hardware extensions
	  from ARM and RISC-V
	* Pre-launch and runtime attestation workflows
	* Interrupt security for AMD SEV-SNP
	* Debuggability and live migration of encrypted virtual machines
	* Proper testing of confidential computing support code

The Confidential Computing Microconference wants to bring together
plumbers working on secure execution features to discuss these and other
open problems.

[1] https://lore.kernel.org/all/20220124150215.36893-1-kirill.shutemov@linux.intel.com/
[2] https://lore.kernel.org/all/20220209181039.1262882-1-brijesh.singh@amd.com/
[3] https://lore.kernel.org/all/20220128205906.27503-1-kirill.shutemov@linux.intel.com/
[4] https://lore.kernel.org/all/20220118110621.62462-1-nikunj@amd.com/

Key Attendees:

	* Andi Kleen <ak@...ux.intel.com>
	* Andy Lutomirski <luto@...nel.org>
	* Borislav Petkov <bp@...en8.de>
	* Brijesh Singh <brijesh.singh@....com>
	* Dr. David Alan Gilbert <dgilbert@...hat.com>
	* Dave Hansen <dave.hansen@...ux.intel.com>
	* David Hildenbrand <david@...hat.com>
	* David Kaplan <David.Kaplan@....com>
	* David Rientjes <rientjes@...gle.com>
	* Joerg Roedel <jroedel@...e.de>
	* Jun Nakajima <jun.nakajima@...el.com>
	* Kirill A. Shutemov <kirill.shutemov@...ux.intel.com>
	* Marc Orr <marcorr@...gle.com>
	* Mike Rapoport <rppt@...nel.org>
	* Paolo Bonzini <pbonzini@...hat.com>
	* Peter Gonda <pgonda@...gle.com>
	* Sathya Kuppuswamy <sathyanarayanan.kuppuswamy@...el.com>
	* Sean Christopherson <seanjc@...gle.com>
	* Tom Lendacky <thomas.lendacky@....com>

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ