Introduction#

The NVIDIA Remote Attestation Service (NRAS) is a cloud-based service that verifies the integrity and authenticity of NVIDIA GPUs and platforms. NRAS validates evidence collected from GPUs against trusted reference values and produces cryptographically signed attestation tokens that establish trust in downstream applications. This comprehensive solution eliminates the need for on-premises attestation infrastructure, allowing organizations to focus on their core business objectives while ensuring the security of their NVIDIA hardware deployments.

Key Advantages#

  • REST API Based GPU Attestation: Provides a simple, RESTful API interface for seamless integration into existing applications and workflows, enabling developers to implement attestation with minimal complexity.

  • Signed EAT Tokens: Issues cryptographically signed Entity Attestation Token (EAT) format tokens that follow industry standards, ensuring attestation results are verifiable, tamper-proof, and widely compatible with security frameworks.

  • Secure Enclave Deployment: Deployed in a secure, attested enclave in the cloud, ensuring that the attestation process itself runs in a protected environment isolated from potential threats and tampering.

  • Comprehensive Ecosystem Integration: Seamlessly integrates with NVIDIA’s attestation services including RIM Service for reference values, OCSP Service for certificate validation, Access Management for authentication, and Attestation SDK for client-side operations.

  • Scalability: Built on cloud infrastructure to handle attestation requests at scale, supporting everything from single-GPU workstations to large data centers with thousands of GPUs without performance degradation.

  • Future-Proof Architecture: Designed to support additional attestation types and device categories in the future, ensuring long-term compatibility as NVIDIA’s attestation capabilities expand beyond GPUs.

Privacy Notice#

NVIDIA will collect IP addresses and information about your GPU, including the device’s unique identity and device certificates that uniquely identify your GPU, in order to provide this GPU Attestation Service and for security, debugging, and troubleshooting purposes. Data collected will be deleted when it is no longer needed for these purposes.