Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


Shells Virtual Desktop
BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
Shells Virtual Desktop
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

Need full disk encryption or manual image installs

2»

Comments

  • MannDudeMannDude Patron Provider, Veteran
    edited March 2025

    On our new plans, that should be available in the next few days or week:

    All nodes will have SME (Secure Memory Encryption) enabled by default. It's an AMD Epyc security feature that offers physical memory encryption on the host node.

    For mission-critical applications and for the truly paranoid, we are testing the implementation of Secure Encrypted Virtualization-Encrypted State (SEV-ES), something we wish to offer for an additional cost or one time fee.

    I'd expect to see others copying this in the future.

  • layer7layer7 Member, Host Rep, LIR

    @anonuser1211 said:
    Looking for a provider that is:

    • Trustworthy and reliable
    • Has history of being able to be trusted with sensitive data
    • Able to provide full disk encryption / or allow custom image installs where I can configure encrypted disks during installation
    • Good laws where server is housed to protect server data

    Hi,

    we provide that by default.

  • WebProjectWebProject Veteran, 🚩 Host Rep Tag Suspended

    You’re welcome to give us a try. You do have the option to install any operating system from your ISO, so you can encrypt the data on your virtual machine.

  • olokeoloke Member, Host Rep
    edited March 2025

    @MannDude said:
    On our new plans, that should be available in the next few days or week:

    All nodes will have SME (Secure Memory Encryption) enabled by default. It's an AMD Epyc security feature that offers physical memory encryption on the host node.

    For mission-critical applications and for the truly paranoid, we are testing the implementation of Secure Encrypted Virtualization-Encrypted State (SEV-ES), something we wish to offer for an additional cost or one time fee.

    I'd expect to see others copying this in the future.

    Once you're able to get SEV-ES working, I'm buying it instantly.

    Thanked by 1MannDude
  • MannDudeMannDude Patron Provider, Veteran

    @oloke said:

    @MannDude said:
    On our new plans, that should be available in the next few days or week:

    All nodes will have SME (Secure Memory Encryption) enabled by default. It's an AMD Epyc security feature that offers physical memory encryption on the host node.

    For mission-critical applications and for the truly paranoid, we are testing the implementation of Secure Encrypted Virtualization-Encrypted State (SEV-ES), something we wish to offer for an additional cost or one time fee.

    I'd expect to see others copying this in the future.

    Once you're able to get SEV-ES working, I'm buying it instantly.

    Will make a thread once available.

    Thanked by 1oloke
  • @MannDude said:
    On our new plans, that should be available in the next few days or week:

    All nodes will have SME (Secure Memory Encryption) enabled by default. It's an AMD Epyc security feature that offers physical memory encryption on the host node.

    For mission-critical applications and for the truly paranoid, we are testing the implementation of Secure Encrypted Virtualization-Encrypted State (SEV-ES), something we wish to offer for an additional cost or one time fee.

    I'd expect to see others copying this in the future.

    Im buying this as soon as its out too :)

    Thanked by 1oloke
  • vicayavicaya Member
    edited March 2025

    @MannDude said:
    On our new plans, that should be available in the next few days or week:

    All nodes will have SME (Secure Memory Encryption) enabled by default. It's an AMD Epyc security feature that offers physical memory encryption on the host node.

    I'd be interested if they're Zen4+ EPYCs and Ryzen PROs with TSME (Transparent SME). Otherwise, the host would need enlightened OSes and a TPM, with SecureBoot enabled, which is too much trouble to bother.

    For mission-critical applications and for the truly paranoid, we are testing the implementation of Secure Encrypted Virtualization-Encrypted State (SEV-ES), something we wish to offer for an additional cost or one time fee.

    Hopefully it's not SEV-ES but SEV-SNP, as the former is worse than nothing, IMO, since it provides false sense of security for people not closely following the tech, as SEV-ES threat model is "benign and/or accidental vulnerable" hypervisor, which is chuckle worthy :smile: . SEV-ES has well known exploits that are not fixable, and even worse, not detectable via attestation.

    SEV-SNP with guest attestation is the current way to go, which could actually work with compromised host and hypervisor, assuming user with sufficient knowledge in the space.

    I'd be happy to try any provider with SEV-SNP offerings.

    Thanked by 2MannDude oloke
Sign In or Register to comment.