A Linux Bus for SVSM Services - Build New, Reuse VIRTIO, or Both?
Linux Plumbers Conference via YouTube
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the architectural decisions for implementing a Linux bus to manage Secure VM Service Module (SVSM) services in confidential virtual machines through this 19-minute conference talk from the Linux Plumbers Conference. Examine the challenge of creating proper kernel infrastructure for discovery and enumeration of multiple services and virtual devices that SVSM exposes to Linux guests. Compare three potential approaches: developing a new minimalist bus from scratch, adapting the existing standardized VIRTIO framework to leverage its broad ecosystem support, or implementing a hybrid solution that combines benefits from both approaches. Analyze the trade-offs, technical considerations, and implications of each architectural path for confidential computing environments, gaining insights into the decision-making process for critical kernel infrastructure design in secure virtualization contexts.
Syllabus
A Linux Bus for SVSM Services: Build New, Reuse VIRTIO, or Both? - Stefano Garzarella (Red Hat)
Taught by
Linux Plumbers Conference