Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
The Security Design of the AWS Nitro System (amazon.com)
10 points by timf on Nov 18, 2022 | hide | past | favorite | 1 comment


I found the side channel protection and CPU/L1 isolation between customers to be particularly interesting.

Very cool to see the physical hardware interconnects for resetting the system. Also the PCI bus as one of the isolating boundaries.

I have worked on an open source project for managing Nitro Enclaves (https://github.com/edgebitio/enclaver), so it is cool to see how these build on this foundation to provide even more protection.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: