Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the latest developments in confidential computing through this 23-minute conference talk that builds upon previous foundational concepts to provide an in-depth technical update for both enthusiasts and professionals. Dive into the architectural components that create Trusted Execution Environments (TEEs), examining their current development status and roadmaps while understanding how they integrate to enable confidential computing across containers, virtual machines, and edge environments. Learn about critical hardware and kernel-level technologies including AMD SEV-SNP and Intel TDX kernel modifications, then progress through system-level components such as Secure Virtual Service Machines (SVSM), paravisors, and Virtual Trusted Platform Modules (vTPMs). Understand the role of SecureBoot and Unified Kernel Images (UKIs) in maintaining security integrity, and explore essential userspace tools and libraries including snphost, snpguest, and sgx-dcap. Examine the attestation infrastructure encompassing validators, brokers, and clients that verify system trustworthiness. Discover how these technologies combine in real-world applications including artificial intelligence implementations with confidential containers, legacy and third-party operating system support through confidential virtualization, and edge computing scenarios utilizing image-mode operating systems with immutable filesystems.
Syllabus
Demystifying Confidential Computing: An update for enthusiasts & professionals - DevConf.US 2025
Taught by
DevConf