<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>Zhen-Rong Wu - Confidential VMs on FreeBSD: A Complete AMD SEV Host Stack for bhyve, with Attestation</title>
        <link>https://exquisite.tube/videos/watch/cba81a43-5995-4148-8a62-cb9b97aedaee</link>
        <description>AMD SEV encrypts a VM's memory with a per-VM key hidden from the hypervisor, but encryption is only useful if the guest owner can prove what was actually launched. This talk presents a complete AMD SEV host stack for FreeBSD bhyve, running today on AMD EPYC hardware, with pre-attestation. I will follow one encrypted Ubuntu 25.04 guest through the stack, and a new asp(4) driver for AMD Secure Processor, vmm/SVM changes for SEV ASIDs, bhyve userspace and a FreeBSD port of sevctl for measurement verification and launch secret injection, and a clean BhyveSevX64 OVMF platform. The result boots attested SEV guests with SMP, tested with 8 vCPUs, and working virtio-net 1.0 on Ubuntu 25.04.</description>
        <lastBuildDate>Tue, 15 Sep 2026 16:06:49 GMT</lastBuildDate>
        <docs>https://validator.w3.org/feed/docs/rss2.html</docs>
        <generator>PeerTube - https://exquisite.tube</generator>
        <image>
            <title>Zhen-Rong Wu - Confidential VMs on FreeBSD: A Complete AMD SEV Host Stack for bhyve, with Attestation</title>
            <url>https://exquisite.tube/lazy-static/avatars/15cdbc2e-7773-4916-99e9-38207b20252d.png</url>
            <link>https://exquisite.tube/videos/watch/cba81a43-5995-4148-8a62-cb9b97aedaee</link>
        </image>
        <copyright>All rights reserved, unless otherwise specified in the terms specified at https://exquisite.tube/about and potential licenses granted by each content's rightholder.</copyright>
        <atom:link href="https://exquisite.tube/feeds/video-comments.xml?videoId=cba81a43-5995-4148-8a62-cb9b97aedaee" rel="self" type="application/rss+xml"/>
    </channel>
</rss>