Secure computing mechanism

A system comprising a hosting service configured to perform: providing, to a trusted entity on a central processing unit, a command for a launch of a virtual machine (VM); assigning, to the VM, at least a portion of memory for the guest operating system; submitting, to the trusted entity, a request...

Full description

Saved in:
Bibliographic Details
Main Authors Costa, Manuel, Allen, Sean, Nino Diaz, Antonio, Starks, John, Volos, Stavros, Clebsch, Sylvan, Gordon, Kenneth
Format Patent
LanguageEnglish
Published 06.08.2024
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:A system comprising a hosting service configured to perform: providing, to a trusted entity on a central processing unit, a command for a launch of a virtual machine (VM); assigning, to the VM, at least a portion of memory for the guest operating system; submitting, to the trusted entity, a request to measure an address space of the VM to provide a measurement digest of the address space of the guest operating system; including, in a configuration object, a policy provided by the user for the service logic, wherein the policy defines one or more rules for the service logic, wherein the one or more rules include at least one rule for which containers may run in the guest operating system; hashing the policy to provide a hash digest of the policy; submitting, to the trusted entity, the hash digest of the policy; and completing the launch of the VM.
Bibliography:Application Number: US202117357999