Description

libkrun-sev allows running confidential workloads in a lightweight VM within a container. I'd like to experiment with libkrun-sev, the oci2cw image tool, and attestation using reference-kbs.

Goals

Start a container with confidential workload on an LUKS encrypted disk. Attest the container against a reference KBS, which on success provides a key to unlock the disk and start running the workload.

Resources

Looking for hackers with the skills:

Nothing? Add some keywords!

This project is part of:

Hack Week 24

Activity

  • 1 day ago: jfehlig started this project.
  • 1 day ago: jfehlig originated this project.

  • Comments

    Be the first to comment!

    Similar Projects

    This project is one of its kind!