AMD Secure Encrypted Virtualisation with Secure Nested Paging (SEV-SNP) is an advanced confidential computing technology designed to enhance the security of virtual machines (VMs) in multi-tenant environments. SEV-SNP encrypts VM memory to protect against cross-VM and hypervisor attacks, ensuring that data remains confidential and secure. Similar to Intel TDX, this technology safeguards sensitive information from threats posed by untrusted BIOS, hypervisor, device drivers, and cloud management software.
SEV-SNP enhances the overall security posture of virtualised workloads by addressing the risks associated with shared physical hardware resources in multi-tenant cloud environments. It introduces mechanisms for strong memory encryption and isolation, protecting the integrity and confidentiality of VM data. SEV-SNP also provides features such as secure nested paging and advanced attestation capabilities to verify the security state of VMs. Like other confidential computing offerings, AMD SEV-SNP implements robust encryption and isolation techniques that help protect sensitive data in shared cloud infrastructure, making confidential computing an essential component of secure and trustworthy virtualised environments.
Go to OBLV Deploy
Read the blog
Learn about Oblivious