10341: Data Protection in Linux With IBM Z and LinuxONE Crypto Hardware
Project and Program:
Core Platform,
Linux
Tags:
Proceedings ,
SHARE Orlando 2024 ,
2024
Whenever data leaves a system be it as a message to an external receiver or when
stored on a storage subsystem it requires special protection as the access
control mechanisms provided by the operating system no longer apply.
Cryptography is the method of choice to protect data in-flight and at-rest. In
this presentation, we give an overview of the crypto hardware available with IBM
Z and LinuxONE systems and describe how they can be used in Linux to accelerate
secure communication, encrypt complete volumes (block devices) and how to manage
and protect the cryptographic key used for encryption and digital signatures.
The presentation will describe how cryptographic HW can be configured, and which
libraries can be used to (implicitly) benefit from the cryptographic hardware. -- Presented by Reinhard Buendgen
Back to Proceedings File Library