Can NitroTPM have an IAM user in the chain of trust on non-enclave vms?

0

Hi,

We would like to use TPM to protect a private key so it is locked to a machine and an IAM user.

Is it possible to have the IAM user in the chain of trust on non-enclave aws VMS with NitroTPM enabled?

Thanks

Graham
posta un anno fa228 visualizzazioni
1 Risposta
2

AWS Nitro Enclaves with NitroTPM is a technology designed for isolating sensitive data and computation on EC2 instances. NitroTPM provides a root of trust for the Nitro Enclave, giving you a way to verify the enclave's identity and integrity. However, the NitroTPM functionality is not directly tied to IAM users. It does not provide a method to bind an IAM user to a TPM or establish a chain of trust involving an IAM user. The AWS IAM service is designed to handle authentication and authorization for AWS services, while Nitro Enclaves with NitroTPM provide a hardware-based root of trust and isolated compute environment for sensitive data.

profile picture
ESPERTO
con risposta un anno fa

Accesso non effettuato. Accedi per postare una risposta.

Una buona risposta soddisfa chiaramente la domanda, fornisce un feedback costruttivo e incoraggia la crescita professionale del richiedente.

Linee guida per rispondere alle domande