Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I am interested in what Yishan has to say about Amazon AWS

https://www.reddit.com/r/yishan/comments/4cub02/transparency...

Does that inform anyone's choice of cloud infrastructure?



Until we get workable homomorphic encryption, the bit about encrypted machine images is (charitably) optimistic. I wrote about this a year ago: http://blackkettle.org/blog/2015/02/19/youve-got-to-trust-yo...


Unless you're willing to trust the hardware manufacturer, at which point something like Intel SGX could be a runner.


You also have to trust your VM host not to provide an emulated SGX (which is what https://github.com/sslab-gatech/opensgx is, unless I'm very much mistaken).


I think you're mistaken. Intel provides infrastructure to ensure you're talking to an enclave running on an actual Intel machine, and you can then do a remote attestation to verify the contents of that enclave.


I thought this was well known already? if you send your data to someone else's server (even if you are renting it), there is no way you can be reasonably sure it will remain untouched.




Consider applying for YC's Winter 2027 batch! Applications are open till November 2.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: