master, 4.2.0
Trusted compute pools with Intel Trusted Execution Technology enable isolation and tamper detection in boot process and complement run time protections. Meanwhile, hardware-based trust provides verification useful in compliance and trust status, which security and policy applications use to control workload.
Using Intel's TXT technology, a number of painpoints of a secure computing environments can be addressed. For example, Isolation is a key concern in a shared infrastructure where a lack of traditional guarantees of physical separation are lacking and multiple workloads may interfere with each other. Enforcement i.e. controls needed to enforce protection of Infrastructure can prevent pre-runtime environments are target of new attacks and low-level attacks are hard to detect and can be difficult to recover from.Encryption is another problem that can get worse in a cloud where data protection can be harder due to lack of boundaries and multi-tenancy.
Source: Intel TXT Overview
This document describes the specifications and design of the feature.
Author |
Description |
Date |
|---|---|---|
Hari Kannan |
Inital Requirement |
01/10/2013 |
Devdeep Singh |
Draft of the FS |
03/7/2013 |