Skip to content
This repository has been archived by the owner on Jul 20, 2023. It is now read-only.

Adding Initial Overview #3

Merged
merged 2 commits into from
Oct 20, 2021

Conversation

magowan
Copy link
Member

@magowan magowan commented Oct 11, 2021

Adding Initial Overview covering Why/How, What.

Signed-off-by: James Magowan [email protected]

magowan added a commit to magowan/.github that referenced this pull request Oct 11, 2021
Addressing PR reviews
- Updated confidential-containers organization ReadMe to guide people to right repo (operator v documentation.
- split original PR
- Moved content to documentationn repo PRs (confidential-containers/documentation#3) and (confidential-containers/documentation#4)

Signed-off-by: James Magowan [email protected]
Copy link
Member

@fitzthum fitzthum left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

looks pretty good. I wonder if we can be even clearer about the highlights and what the best way to introduce pods is.

Overview.md Outdated

# Confidential Containers
We are interested in integrating existing [Trusted Execution Environments](https://en.wikipedia.org/wiki/Trusted_execution_environment) (TEE)
infrastructure support and technologies with the cloud native world. Our focus is to place a kubernetes pod into a TEE.
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Are Confidential Containers inherently connected to pod-centric virtualization? Could we support other runtimes that isolate one container at a time?

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks, updated this section to try annd include more detail around this

Overview.md Outdated

# Confidential Containers
We are interested in integrating existing [Trusted Execution Environments](https://en.wikipedia.org/wiki/Trusted_execution_environment) (TEE)
infrastructure support and technologies with the cloud native world. Our focus is to place a kubernetes pod into a TEE.
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

In the first sentence do we want to mention 1) Transparent deployment of unmodified containers 2) Support for multiple hardware platforms 3) A strict trust model that separates the CSP from guest applications

Copy link
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks, updated this section to try annd include more detail around this

Adding Initial Overview covering Why/How, What.

Signed-off-by: James Magowan [email protected]
Responding to PR comments

Signed-off-by: James Magowan [email protected]
ariel-adam pushed a commit to confidential-containers/.github that referenced this pull request Oct 18, 2021
Addressing PR reviews
- Updated confidential-containers organization ReadMe to guide people to right repo (operator v documentation.
- split original PR
- Moved content to documentationn repo PRs (confidential-containers/documentation#3) and (confidential-containers/documentation#4)

Signed-off-by: James Magowan [email protected]
Copy link
Member

@fitzthum fitzthum left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM. I agree that maybe we can extend the section about the virtualization boundary with some diagrams at some point, maybe in another doc.

@magowan magowan merged commit 84f25fe into confidential-containers:main Oct 20, 2021
@magowan magowan deleted the initialOverview branch November 9, 2021 21:37
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants