-
Epic
-
Resolution: Unresolved
-
Undefined
-
None
-
None
-
None
-
Podman enclaves on AWS Nitro Enclaves
-
None
-
FutureFeature
-
rhel-virt-confidential-virt
-
ssg_virtualization
-
None
-
False
-
False
-
-
None
-
Red Hat Enterprise Linux
-
None
-
None
-
None
-
Unspecified
-
Unspecified
-
Unspecified
-
None
Description
podman offers the ability to run "enclaves" (currently known as "confidential workloads"), containerized applications that are isolated within confidential VMs. Current offerings revolve around hardware TEE technologies like AMD SEV-SNP and Intel TDX.
AWS has recently offered "Nitro enclaves", a very similar technology to hardware TEEs. In Nitro enclaves, applications are run within isolated compute environments to further protect and securely process highly sensitive data such as personally identifiable information (PII), healthcare, financial, and intellectual property data within their Amazon EC2 instances.
This epic intends to extend podman enclaves to support AWS Nitro enclaves.