My guess is that AI accelerators will have some difficult-to-modify persistent memory based on similar chips having it, but I’m not sure if it would be on the same die or not. I wrote more about how a firmware-based implementation of Offline Licensing might use H100 secure memory, clocks, and secure boot here: https://arxiv.org/abs/2404.18308
My guess is that AI accelerators will have some difficult-to-modify persistent memory based on similar chips having it, but I’m not sure if it would be on the same die or not. I wrote more about how a firmware-based implementation of Offline Licensing might use H100 secure memory, clocks, and secure boot here: https://arxiv.org/abs/2404.18308