5 ms·
So did AMD CPUs: "For years AMD’s processors for business PCs supported additional security technologies (collectively known as AMD Secure Processor and Platfo
by sambe 9y ago
So did AMD CPUs:
"For years AMD’s processors for business PCs supported additional security technologies (collectively known as AMD Secure Processor and Platform Security Processor before that) enabled by the ARM TrustZone platform with the ARM Cortex-A5 core. AMD’s previous-gen PRO-series APUs included Secure Boot, Content Protection, per-Application security, fTPM 2.0, and support for Microsoft Device Guard, Windows Hello, fingerprint security, data protection and so on."
I honestly don't know who uses them. I've not seen it in finance or health. Government?
- tremon 9y agoTrustZone is not a "management" feature in the sense that Intel AMT is; it is a security feature that can prevent/obscure certain hardware access (basically Ring 0 for peripherals), but does not allow for out-of-band machine access like AMT (although in-band machine access, with the firmware circumventing the user OS is a possibility).
- julian_1 9y agoTrustzone is ARM's hardware access control. But I suspect AMD's PSP which incorporates an on-die ARM core rather than just implement the Trustzone ip, is doing a lot more. Reportedly it can manage DMA actions itself independently of the amd64 core.
- bryanbuckley 9y agoSeems like a catch-22 of adoption. Not worth the effort to develop on unless it is ubiquitous enough? I'm sure there will be growing (security) pains as well. Also not sure exactly how AMD allows development for the PSP (specific vendor keys?).