mirror of
https://github.com/confidential-containers/confidential-containers.git
synced 2025-09-18 08:47:45 +00:00
4b2f89ee4728133b024242ca0aa56e59e2f0f32b
The shim now supports a nmber of annotations for SEV(-ES), meaning that we no longer need to modify the config file to set things like the guest policy or kbs uri. Update the quickstart guide to spread the news. Signed-off-by: Tobin Feldman-Fitzthum <tobin@ibm.com>
Confidential Containers Documentation
Confidential Containers is an open source community working to leverage Trusted Execution Environments to protect containers and data and to deliver cloud native confidential computing.
We have a new release every 6 weeks! See Release Notes or Quickstart Guide
Our key considerations are:
- Allow cloud native application owners to enforce application security requirements
- Transparent deployment of unmodified containers
- Support for multiple TEE and hardware platforms
- A trust model which separates Cloud Service Providers (CSPs) from guest applications
- Least privilege principles for the Kubernetes cluster administration capabilities which impact delivering Confidential Computing for guest applications or data inside the TEE
Further Detail
Associated Repositories
- Kubernetes Operator for Confidential Computing : An operator to deploy confidential containers runtime (and required configs) on a Kubernetes cluster
License
Description
Languages
Markdown
100%