Rate This Document
Findability
Accuracy
Completeness
Readability

Change Description

Kunpeng BoostKit 24.0.RC5 Confidential Computing in V1.1.0 mainly involves updating virtCCA-related features. The virtCCA feature enables VMs to run in the Trusted Execution Environment (TEE).

Table 1 New features of BoostKit-virtCCA_1.1.0

Feature

Change Description

Secure storage

Confidential VMs' drive images can be encrypted and decryption based on Linux Unified Key Setup (LUKS), and confidential VMs with encrypted drive images can be started.

Confidential containers

  1. virtCCA confidential VMs are adapted to Kata confidential containers. Confidential VMs can be started using virtCCA Kata confidential containers.
  2. virtCCA Kata confidential containers can be managed by Kubernetes.
  3. Kata confidential container images can be encrypted and decrypted, and support signature verification.