Michał
Junior embedded systems engineer at 3mdeb, working on embedded Linux, CI/CD, drivers, and internal tooling - much of it Yocto-based.
Free time goes to electronics, trying out open-source projects for daily use, and posting patches upstream with fixes and features.
Session
TrenchBoot is an open source project led by 3mdeb, Apertus Solutions, and Oracle. It aims at the security and integrity of the boot process by leveraging advanced silicon security features, like Intel Trusted Execution Technology (TXT) and AMD Secure Startup. It integrates with open source projects like GRUB2, Xen, and Linux, to perform a measured launch of the operating system software, also called Dynamic Root of Trust for Measurement (DRTM).
This presentation takes a hands-on approach: it will demonstrate TrenchBoot performing a measured launch on platforms that are running vendor firmware, showing how DRTM works in practice on real, off-the-shelf hardware.