Microsoft will bring "trusted execution environment" support to Linux operating system
This function operates under the project "secure Computing" (Confidential Computing) and is designed to allow applications to execute in a protected environment to avoid damage to the operating system itself, data, and code.
Speaking of which, some friends may have thought of various similar DRM schemes on the Windows platform. As part of the effort, Microsoft will also contribute Open Enclave SDK, which allows developers to build applications that run in a trusted execution environment.
The SDK stipulates that each application will contain two components, half of which are untrusted parts that can run in an untrusted operating system, and the other half are protected parts.
Of course, this kind of reliable computing is very dependent on hardware support, which is where Intel can contribute. It is reported that the chip giant will provide its software protection extension chip function, putting a layer of mandatory security on the execution of Open Enclave code.
In addition, Red Hat, which has just been acquired by IBM, is also contributing its Enrax framework. It is similar to Microsoft's Open Enclave, but mainly for public cloud services.
Finally, with the cooperation of the above-mentioned enterprises, Linux may be able to take off the hat of the long-standing "toy operating system". Original text link https://www.linuxprobe.com/linux-enclave.html