TwinVisor

Dingji Li,Zeyu Mi,Yubin Xia,Binyu Zang,Haibo Chen,Haibing Guan
DOI: https://doi.org/10.1145/3477132.3483554
2021-01-01
Abstract:Confidential VM, which offers an isolated execution environment for cloud tenants with limited trust in the cloud provider, has recently been deployed in major clouds such as AWS and Azure. However, while ARM has become increasingly popular in cloud data centers, existing confidential VM designs mainly leverage specialized x86 hardware extensions (e.g., AMD SEV and Intel TDX) to isolate VMs upon a shared hypervisor.
What problem does this paper attempt to address?