Integrating Intel TDX remote attestation into SSH
- Track: Attestation
- Room: K.4.401
- Day: Sunday
- Start: 10:00
- End: 10:15
- Video only: k4401
- Chat: Join the conversation!
In this talk, I will present a prototype integration of Intel TDX’s remote attestation feature into the SSH protocol.
By extending SSH, we ensure connections are only made to hosts within Trusted Domains. Since SSH is a widely used protocol for data transfer and network tunneling, many applications can benefit from this effort.
The focus will be on the design and principles of the challenge-response protocol, which has been prototyped using OpenSSH and the Microsoft Azure Attestation service.
Speakers
Fabian Wesemann |