Hide
.Confidential containers on bare metal
This release supports confidential containers on bare-metal servers Intel TDX and AMD SEV-SNP Trusted Execution Environments (TEEs). Confidential container pods run in hardware-isolated, confidential VMs (CVM) with memory encryption, verified through remote attestation using the Red Hat build of Trustee. Support is also provided for sealed secrets provisioning inside the CVM after successful attestation.
Show
.Confidential containers on bare metal
This release supports confidential containers on bare-metal servers Intel TDX and AMD SEV-SNP Trusted Execution Environments (TEEs). Confidential container pods run in hardware-isolated, confidential VMs (CVM) with memory encryption, verified through remote attestation using the Red Hat build of Trustee. Support is also provided for sealed secrets provisioning inside the CVM after successful attestation.