Rate This Document
Findability
Accuracy
Completeness
Readability

Change Description

Kunpeng BoostKit 25.1.RC1 Confidential Computing mainly introduces updates to virtCCA-related features.

Table 1 New features of BoostKit-virtCCA_1.4.0

Feature

Change Description

Confidential virtual machine (cVM) management on OpenStack

cVMs are provisioned, used, and managed by OpenStack.

cVM pass-through to SR-IOV devices

  • cVMs support the SR-IOV technology, allowing VMs to directly access virtual function (VF) devices.
  • The following devices are supported: Huawei ES3000 V6 NVMe SSD (using the NVMe driver), Huawei 1823 NIC (using the hinic3 driver), and Mellanox NIC (using the MLX5 driver).

Kata confidential containers of later versions

  • virtCCA adapts to the later versions of the CoCo community: kata 3.15.0 + guest-components v0.12.0.
  • When the operator manages the Kata runtime, the kata-deploy automatic compilation and deployment are supported.