Can NitroTPM have an IAM user in the chain of trust on non-enclave vms?

0

Hi,

We would like to use TPM to protect a private key so it is locked to a machine and an IAM user.

Is it possible to have the IAM user in the chain of trust on non-enclave aws VMS with NitroTPM enabled?

Thanks

Graham
已提問 1 年前檢視次數 228 次
1 個回答
2

AWS Nitro Enclaves with NitroTPM is a technology designed for isolating sensitive data and computation on EC2 instances. NitroTPM provides a root of trust for the Nitro Enclave, giving you a way to verify the enclave's identity and integrity. However, the NitroTPM functionality is not directly tied to IAM users. It does not provide a method to bind an IAM user to a TPM or establish a chain of trust involving an IAM user. The AWS IAM service is designed to handle authentication and authorization for AWS services, while Nitro Enclaves with NitroTPM provide a hardware-based root of trust and isolated compute environment for sensitive data.

profile picture
專家
已回答 1 年前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南