Hi does anyone know and how the new Ryzen 9000 CPU support memory encryption (either SME or preferable SEV) and respective attestation services?
Thanks
Thanks for your repsonse. For EPYC this is all clear and you can leveerage SEV capabilities since its second generation and very good from EPYC 3 onwoard. The missing calrity is with its Ryzan processors. What is incuded where and how.
Walbrodt, if the document center cannot answer your questions I suggest you ask AMD directly. John.
That seems to be a Server type processor feature according to AMD Support: https://www.amd.com/en/developer/sev.html
The above link has many links to several sources concerning SEV.
Found this previous GITHUB FORUM thread that mentions that AMD Ryzen Pro processors uses SEV: https://www.amd.com/en/developer/sev.html
From one of the replies from above thread at Github:
From what I find online, Ryzen and Threadripper don't support SME/SEV, but Ryzen Pro does support SME. What I can't determine reliably is if Ryzen Pro supports SEV, and if it does, whether its final availability also depends on the motherboard/chipset/BIOS. E.g., Forbes says: "Some things that are new for Ryzen PRO, however, are support Transparent Secure Memory Encryption (TSME) and Secure Encrypted Virtualization (SEV) support." source Similar reports: "Moving on, AMD's other big security feature for the PRO lineup is Secure Virtualized Encyrption (SEV). SEV in many ways resembles the SME, but in this case, it enables owners to encrypt virtual machines, isolating them from each other, hypervisors, and hosting software." anandtech "Ryzen PRO also incorporates Secure Encrypted Virtualization (SEV) support. This integrates main memory encryption capabilities with the existing AMD-V virtualization architecture to support encrypted virtual machines." hothardware "Ryzen Pro CPUs offers built-in hardware-based AES 128-bit encryption. The encryption offers two features, Secure Memory Encryption (SME) and Secure Encrypted Virtualization (SEV)." tweaktown But I also find reports that PRO doesn't support SEV. The official AMD website provides no details. As you're working for AMD and working on the SEV feature, could you please shed some light on this, or better yet point to any official statement/documentation?
Found one Ryzen ThreadRipper Pro 5000 "WX" Series that all uses SME feature at CPU WORLD: https://www.cpu-world.com/CPUs/Zen/AMD-Ryzen%20Threadripper%20PRO%205995WX.html
|
Reread your OP. To find out if the new AMD 9000 Series uses SEV or SME you will need to contact AMD SUPPORT and see if they can answer your query from here: https://www.amd.com/en/forms/contact-us/support.html
If the AMD 9000 has a "PRO" version then it might support SME like the ThreadRipper Pros processors.