Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I know Azure has a confidential computing offering for GPUs, which I'm hoping will get broader uptake soon. It seems like the best way to address these concerns to me.

https://azure.microsoft.com/en-us/blog/azure-confidential-co...



how would you propose this might work?


I'm not an expert on the area, but I've attended some conference talks on the subject at fosdem so I'll give it a go.

Essentially you're trying to provide a way to prove that the code running on the machine is what you instructed. This is achieved by a series of hardware attestations that measure and check the code to make sure it's what you requested. Generally this means encrypted ram at a minimum, and checks/balances that give you confidence this is the case (you have to trust someone, eg: Intel)

Is it perfect, probably not, but it's a lot better than just running VMs with unencrypted memory that any operator can jump into.

To my understanding most GPU workloads are not run in this way currently, and the operator can see/manipulate everything executed




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: