
Confidential Computing on Kubernetes with Moritz | Live Workshop
Source: YouTube · Kubesimplify · published Aug 1, 2024 · 2:12:21
This workshop introduces confidential Computing, a technology that creates hardware-secured "safe spaces" for applications in untrusted environments like the cloud 0:04-0:06. The presenter explains how confidential Computing protects data "in use" - while applications are running - which was previously unprotected compared to data at rest and in transit 15:01-16:03.
Key Takeaways:
• Confidential Computing addresses the fundamental problem of protecting applications running in potentially hostile environments like cloud infrastructure 13:36-13:49
• The technology relies on hardware extensions to create isolated, encrypted execution environments called enclaves or Trusted Execution Environments (TEEs) 21:20-21:33
• Early implementations like Intel SGX isolated individual processes but required code modifications, while newer approaches like Intel TDX and AMD SEV isolate entire virtual machines 29:36-30:06
• Major cloud providers now offer confidential VMs as infrastructure services, allowing users to run workloads in hardware-protected environments 41:19-41:42
The workshop will continue with practical demonstrations of implementing confidential containers on Kubernetes, showing how this technology can be applied to real-world scenarios including AI workloads 12:11-12:24.
Sources:
- 0:04-0:06 Introduction to confidential Computing workshop
- 13:36-13:49 Core problem of protecting applications in untrusted environments
- 21:20-21:33 Ha
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 2 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Cloud Security. Commonly maps to: Security Architecture and Engineering, Communication and Network Security. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
hello everyone and welcome to CU simplify uh my name is I am bak and you are watching today one of the very interesting workshops and topics that we'll dive into which is all about confidential Computing and confidential containers uh very excited for this one so thank you so much for tuning in first of all and wherever you are joining in from please um put in the comment section where are you joining in from and which part of the world and are you already familiar with confidential Computing or is it completely new to you or you have some familiarity um so would like to know that another thing is uh before we get started one of the prerequisite is that you should be aware you you should have the basic familiarity with talk and kubernetes like the containers what containers are how they wo…