[RFC 00/12] Multi-Key Total Memory Encryption API (MKTME)
Sakkinen, Jarkko
jarkko.sakkinen at intel.com
Mon Sep 10 17:29:52 UTC 2018
On Fri, 2018-09-07 at 15:23 -0700, Alison Schofield wrote:
> Seeking comments on the APIs supporting MKTME on future Intel platforms.
>
> MKTME (Multi-Key Total Memory Encryption) is a technology supporting
> memory encryption on upcoming Intel platforms. Whereas TME allows
> encryption of the entire system memory using a single key, MKTME
> allows mulitple encryption domains, each having their own key. While
> the main use case for the feature is virtual machine isolation, the
> API needs the flexibility to work for a wide range of use cases.
Is it a common knowledge what TME is? I kind of dropped out of the wagon
in the 2nd sentence of this paragraph.
/Jarkko
More information about the Linux-security-module-archive
mailing list