YoVDO

Confidential Containers with the Crun-Krun Container Runtime

Offered By: Linux Foundation via YouTube

Tags

Confidential Computing Courses Virtualization Courses Podman Courses KVM Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the crun-krun container runtime in this informative conference talk. Learn how it enables running OCI containers within lightweight KVM-based VMs, providing enhanced process isolation for potentially buggy or malicious workloads. Discover the emerging technology of confidential computing and its role in CPU encryption of guest memory for VM's, preventing malicious hypervisors from accessing or tampering with guest VM memory. Gain insights into crun-krun's recent support for various TEE architectures, allowing for lightweight KVM-based containers with added confidential computing capabilities. Examine the architecture of crun-krun, particularly the libkrun virtualization project that powers it. Understand how it achieves process isolation with minimal performance impact and incorporates confidential computing to run secure containers. Additionally, learn about Podman's recent introduction of support for building crun-krun containers.

Syllabus

Confidential Containers with the Crun-Krun Container Runtime - Tyler Fanelli, Red Hat


Taught by

Linux Foundation

Tags

Related Courses

Confidential Computing in Cloud and Edge
RSA Conference via YouTube
The Rise of Confidential Computing
RSA Conference via YouTube
Enabling Rack-Scale Confidential Computing Using Heterogeneous Trusted Execution Environment
IEEE via YouTube
Architectural Extensions for Hardware Virtual Machine Isolation to Advance Confidential Computing in Public Clouds
Linux Foundation via YouTube
The Open Enclave SDK - Confidential Computing with Trusted Apps
Linux Foundation via YouTube