Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Virtual Secure Boot in 2025 - The Confidential Computing Edition

KVM Forum via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the evolution of secure boot support for virtual machines in this conference talk that addresses the challenges and solutions for implementing secure boot without SMM emulation dependency. Learn how the landscape has changed since secure boot's debut ten years ago for x86 architecture and q35 machine type, and discover why traditional SMM-based approaches are incompatible with modern confidential computing technologies like SEV-ES, SEV-SNP, and TDX. Examine the limitations faced by aarch64 and riscv64 platforms where secure world emulation remains challenging, and understand the implications of CONFIG_KVM_SMM becoming optional in KVM to reduce complexity. Discover ongoing work across multiple projects including tianocore edk2, qemu, and coconut svsm that aims to enable secure boot functionality in confidential computing environments without relying on SMM emulation, providing practical solutions for next-generation virtualized security implementations.

Syllabus

virtual secure boot in 2025 -- the confidential computing edition by Gerd Hoffmann

Taught by

KVM Forum

Reviews

Start your review of Virtual Secure Boot in 2025 - The Confidential Computing Edition

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.