Hacker News new | ask | show | jobs
Constellation: The First Confidential Kubernetes Distribution (thenewstack.io)
11 points by m1ghtym0 1350 days ago
1 comments

From a security perspective, Constellation is designed to keep all data always encrypted and to prevent any access from the underlying (cloud) infrastructure. This includes access from datacenter employees, privileged cloud admins, and attackers coming through the infrastructure. Such attackers could be malicious co-tenants escalating their privileges or hackers who managed to compromise a cloud server.