Using Trusted Platform Modules (TPMs) at scale for protecting keys (asg2024) episode artwork

EPISODE · Sep 25, 2024 · 26 MIN

Using Trusted Platform Modules (TPMs) at scale for protecting keys (asg2024)

from Chaos Computer Club - archive feed · host Jonathan McDowell

Meta runs a large production fleet of servers, all making extensive use of TLS for inter-host communication. As part of a general approach of securing keys against exfiltration a project has been undertaken to make use of existing TPM chips to provide secure storage for high privilege private keys. This talk will touch upon the approach taken to allow for the use of a hardware backed key without compromising performance, but mostly focus on the software infrastructure that needed to be built to provision and monitor TPM health across the fleet (a prerequisite for confirmation of viability). Licensed to the public under https://creativecommons.org/licenses/by/4.0/de/ about this event: https://cfp.all-systems-go.io/all-systems-go-2024/talk/JQZ78P/

Episode metadata supplied by the publisher feed · Published Sep 25, 2024

Embed this episode

NOW PLAYING

Using Trusted Platform Modules (TPMs) at scale for protecting keys (asg2024)

0:00 26:08

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Chaos Computer Club - archive feed?

This episode is 26 minutes long.

When was this Chaos Computer Club - archive feed episode published?

This episode was published on September 25, 2024.

Can I download this Chaos Computer Club - archive feed episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!