tag-security
tag-security copied to clipboard
[Suggestion] CNSWPv2+: Add new content on confidential computing
Description: During the public CNSWPv2 RFC, a proposal was made to add a section about confidential computing and use cases it enables for cloud native. The comment was made too late and the conclusion was to plan it for post CNSWPv2.
Impact: Typical data protection ensures data is encrypted while in transit and at rest. Confidential computing (CC) adds data protection while data is in use, in memory, enabling end-to-end protection. Highly regulated industries such as finance and health care are driving the market for confidential computing in clouds.
Scope/tasks:
- [ ] update existing CNSWP sections to mention CC (e.g., runtime environment / compute)
- [ ] add new section to cover confidential computing in depth, use cases etc.
- [ ] update Cloud Native Security Lexicon
Additional info:
This issue has been automatically marked as inactive because it has not had recent activity.
added whitepaper label so it will be picked up next update
This issue has been automatically marked as inactive because it has not had recent activity.
This issue has been automatically marked as inactive because it has not had recent activity.
This issue has been automatically marked as inactive because it has not had recent activity.
still relevant
This issue has been automatically marked as inactive because it has not had recent activity.
I agree that it is still very relevant. Since it has been captured in the outline for v3, I will close the issue to keep the issue tracker tidy. Hopefully, we can count on your contribution to help write that section. If it's something you feel like starting to draft, that would be a great start. Thanks again for raising the issue for CC to be included.
If it's something you feel like starting to draft, that would be a great start.
Yes I will be working on it