mirror of
https://github.com/confidential-containers/confidential-containers.git
synced 2025-09-17 16:27:58 +00:00
dfb080c50899d30c4acd9c482b09551a0d38c702
The offline_fs_kbc file needs to be updated to use a kbs-uri compatible name for the key, and the container image has been regenerated to reference the decryption key via kbs uri in it's annotation. The image has two tags: encrypted and decrypted. Fixes: #6604 Signed-off-by: Jeremi Piotrowski <jpiotrowski@microsoft.com>
Confidential Containers Documentation
Confidential Containers is an open source community working to leverage Trusted Execution Environments to protect containers and data and to deliver cloud native confidential computing.
We have a new release every 6 weeks! See Release Notes or Quickstart Guide
Our key considerations are:
- Allow cloud native application owners to enforce application security requirements
- Transparent deployment of unmodified containers
- Support for multiple TEE and hardware platforms
- A trust model which separates Cloud Service Providers (CSPs) from guest applications
- Least privilege principles for the Kubernetes cluster administration capabilities which impact delivering Confidential Computing for guest applications or data inside the TEE
Further Detail
Associated Repositories
- Kubernetes Operator for Confidential Computing : An operator to deploy confidential containers runtime (and required configs) on a Kubernetes cluster
License
Description
Languages
Markdown
100%