nitriding-daemon icon indicating copy to clipboard operation
nitriding-daemon copied to clipboard

Tool kit for building secure, scalable, and networked services on top of AWS Nitro Enclaves.

Results 25 nitriding-daemon issues
Sort by recently updated
recently updated
newest added

We currently have no easy-to-use test to measure the requests per second that nitriding can sustain. This is important because we occasionally change the networking code and we ought to...

enhancement

With our current setup, it will be difficult to run more than one enclave in Kubernetes: When an enclave requests an HTTPS certificate from Let's Encrypt using the HTTP challenge,...

bug

I noticed that the user ID change we implemented in https://github.com/brave-experiments/star-randsrv/pull/33 is ineffective in an enclave. The UID always remains 0. I reached out to our AWS contacts and was...

E.g., `default-src 'none'; frame-ancestors 'none'; base-uri 'none';`

enhancement
security

We currently have the following direct dependencies: - github.com/brave-experiments/viproxy v0.1.0 - github.com/go-chi/chi/v5 v5.0.7 - github.com/hf/nsm v0.0.0-20211106132757-1ae65a6a69ae - github.com/mdlayher/vsock v1.1.1 - github.com/milosgajdos/tenus v0.0.3 - golang.org/x/crypto v0.0.0-20200622213623-75b288015ac9 - golang.org/x/sys v0.0.0-20220319134239-a9b59b0215f8 At least...

enhancement
good first issue

I've been working on some tooling that can help us measure nitriding's networking performance. So far, I have a minimal Go Web server that implements a simple "hello world" handler....

enhancement

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [github/codeql-action](https://redirect.github.com/github/codeql-action) | action | digest | `eb055d7` -> `c36620d` | --- ### Configuration...

- Worker gets own hostname/IP from vsock-relay IP provider server - Wait for networking to be setup before starting key sync process - Change flow to contact GET and PUT...

puLL-Merge

This PR contains the following updates: | Package | Change | Age | Adoption | Passing | Confidence | |---|---|---|---|---|---| | golang.org/x/crypto | `v0.24.0` -> `v0.28.0` | [![age](https://developer.mend.io/api/mc/badges/age/go/golang.org%2fx%2fcrypto/v0.28.0?slim=true)](https://docs.renovatebot.com/merge-confidence/) | [![adoption](https://developer.mend.io/api/mc/badges/adoption/go/golang.org%2fx%2fcrypto/v0.28.0?slim=true)](https://docs.renovatebot.com/merge-confidence/)...

This PR contains the following updates: | Package | Change | Age | Adoption | Passing | Confidence | |---|---|---|---|---|---| | [github.com/containers/gvisor-tap-vsock](https://togithub.com/containers/gvisor-tap-vsock) | `v0.7.3` -> `v0.7.5` | [![age](https://developer.mend.io/api/mc/badges/age/go/github.com%2fcontainers%2fgvisor-tap-vsock/v0.7.5?slim=true)](https://docs.renovatebot.com/merge-confidence/) | [![adoption](https://developer.mend.io/api/mc/badges/adoption/go/github.com%2fcontainers%2fgvisor-tap-vsock/v0.7.5?slim=true)](https://docs.renovatebot.com/merge-confidence/)...