Rate This Document
Findability
Accuracy
Completeness
Readability

Change Description

Kunpeng BoostKit 24.0.RC5 Confidential Computing in V1.1.0 mainly involves updating virtCCA-related features. The virtCCA feature enables VMs to run in the Trusted Execution Environment (TEE).

Table 1 New features of BoostKit-virtCCA_1.1.0

Feature

Description

Secure storage

cVMs' drive images can be encrypted and decryption based on Linux Unified Key Setup (LUKS), and cVMs with encrypted drive images can be started.

Confidential containers

  1. virtCCA cVMs are adapted to Kata confidential containers. cVMs can be started using virtCCA Kata confidential containers.
  2. virtCCA Kata confidential containers can be managed by Kubernetes.
  3. Kata confidential container images can be encrypted and decrypted, and support signature verification.