Can NitroTPM have an IAM user in the chain of trust on non-enclave vms?

0

Hi,

We would like to use TPM to protect a private key so it is locked to a machine and an IAM user.

Is it possible to have the IAM user in the chain of trust on non-enclave aws VMS with NitroTPM enabled?

Thanks

Graham
gefragt vor einem Jahr228 Aufrufe
1 Antwort
2

AWS Nitro Enclaves with NitroTPM is a technology designed for isolating sensitive data and computation on EC2 instances. NitroTPM provides a root of trust for the Nitro Enclave, giving you a way to verify the enclave's identity and integrity. However, the NitroTPM functionality is not directly tied to IAM users. It does not provide a method to bind an IAM user to a TPM or establish a chain of trust involving an IAM user. The AWS IAM service is designed to handle authentication and authorization for AWS services, while Nitro Enclaves with NitroTPM provide a hardware-based root of trust and isolated compute environment for sensitive data.

profile picture
EXPERTE
beantwortet vor einem Jahr

Du bist nicht angemeldet. Anmelden um eine Antwort zu veröffentlichen.

Eine gute Antwort beantwortet die Frage klar, gibt konstruktives Feedback und fördert die berufliche Weiterentwicklung des Fragenstellers.

Richtlinien für die Beantwortung von Fragen