Get the latest tech news
Project Oak: Meaningful control of data in distributed systems
Meaningful control of data in distributed systems. - project-oak/oak
Oak Restricted Kernel applications are suitable for cases where review of the entire trusted code base inside the TEE is critical, and the limited features and reduced performance is an acceptable trade-off. As part of the remote attestation process, a node obtains the identity of the Enclave Application in the form of one or more binary digests (e.g. usually at least one per each layer of the boot chain); it then needs to establish whether these measurements are trustworthy. most hardware (memory, disk, motherboard, network card, external devices) Host Operating System (kernel, drivers, libraries, applications) Hypervisor / VMM
Or read this on Hacker News