Conversation

Amazon EC2 exposes Memory Protection Keys and uses Skylake-SP Xeons for t3.nano and above so I'll be testing the initial implementation of metadata hardening via MPK on EC2. It wasn't exposed in Google Cloud Engine VMs despite compatible processors.
Quote Tweet
I'm working on integrating Memory Protection Keys (lwn.net/Articles/64379) into my hardened allocator for protecting the metadata. Unfortunately, I can't verify it works and has low enough overhead until I get access to a Skylake-SP CPU so it will be stuck in a separate branch.
Show this thread
1
5