ExpressVPN Uses AWS Nitro Enclaves to Strengthen Privacy for Thousands of VPN Users
Learn how ExpressVPN, a virtual private network provider, strengthens user privacy protection by using AWS Nitro Enclaves.
Overview
ExpressVPN, a virtual private network provider, wanted to enhance security for subscribers who use dedicated IP (DIP) addresses. The goal was to prevent both external and internal parties from associating specific DIP addresses with individual users to mitigate potential tracking risks.
ExpressVPN was already using Amazon Web Services (AWS) for its infrastructure, including Amazon Elastic Compute Cloud (Amazon EC2), which provides secure and resizable compute capacity for virtually any workload. The ExpressVPN team built its DIP solution using AWS Nitro Enclaves to create isolated compute environments to further protect and securely process highly sensitive data. ExpressVPN’s solution helps allocate DIP addresses privately in a secure runtime environment, improving user information security by masking users’ identities along with their browsing activity.
About ExpressVPN
ExpressVPN offers a virtual private network, password manager, and ad blocker through its app, which is available in 17 languages for all major operating systems. It serves millions of subscribers in 105+ countries through its worldwide network of VPN servers.
Figure 1.
System architecture and enclave deployment process
AWS Services Used
Did you find what you were looking for today?
Let us know so we can improve the quality of the content on our pages.