Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Constellation stands out as a Kubernetes distribution certified by the CNCF, utilizing confidential computing to ensure the encryption and isolation of entire clusters, thus safeguarding data at rest, in transit, and during processing by executing control and worker planes within hardware-enforced trusted execution environments. The platform guarantees workload integrity through the use of cryptographic certificates and robust supply-chain security practices, including SLSA Level 3 and sigstore-based signing, while successfully meeting the benchmarks set by the Center for Internet Security for Kubernetes. Additionally, it employs Cilium alongside WireGuard to facilitate precise eBPF traffic management and comprehensive end-to-end encryption. Engineered for high availability and automatic scaling, Constellation enables near-native performance across all leading cloud providers and simplifies the deployment process with an intuitive CLI and kubeadm interface. It ensures the implementation of Kubernetes security updates within a 24-hour timeframe, features hardware-backed attestation, and offers reproducible builds, making it a reliable choice for organizations. Furthermore, it integrates effortlessly with existing DevOps tools through standard APIs, streamlining workflows and enhancing overall productivity.

Description

Google Cloud's Confidential Computing offers hardware-based Trusted Execution Environments (TEEs) that encrypt data while it is actively being used, thus completing the encryption process for data both at rest and in transit. This suite includes Confidential VMs, which utilize AMD SEV, SEV-SNP, Intel TDX, and NVIDIA confidential GPUs, alongside Confidential Space facilitating secure multi-party data sharing, Google Cloud Attestation, and split-trust encryption tools. Confidential VMs are designed to support workloads within Compute Engine and are applicable across various services such as Dataproc, Dataflow, GKE, and Vertex AI Workbench. The underlying architecture guarantees that memory is encrypted during runtime, isolates workloads from the host operating system and hypervisor, and includes attestation features that provide customers with proof of operation within a secure enclave. Use cases are diverse, spanning confidential analytics, federated learning in sectors like healthcare and finance, generative AI model deployment, and collaborative data sharing in supply chains. Ultimately, this innovative approach minimizes the trust boundary to only the guest application rather than the entire computing environment, enhancing overall security and privacy for sensitive workloads.

API Access

Has API

API Access

Has API

Screenshots View All

Screenshots View All

Integrations

Google Kubernetes Engine (GKE)
AMD Radeon ProRender
Amazon EKS
Anjuna Confidential Computing Software
Azure Kubernetes Service (AKS)
Cilium
Google Cloud Dataflow
Google Cloud Dataproc
Google Cloud Platform
HashiCorp Vault
Intel Open Edge Platform
Kubernetes
Microsoft Azure
NVIDIA DRIVE
Oasis Parcel
OpenStack
Terraform
Thales Commander
Vertex AI
WireGuard

Integrations

Google Kubernetes Engine (GKE)
AMD Radeon ProRender
Amazon EKS
Anjuna Confidential Computing Software
Azure Kubernetes Service (AKS)
Cilium
Google Cloud Dataflow
Google Cloud Dataproc
Google Cloud Platform
HashiCorp Vault
Intel Open Edge Platform
Kubernetes
Microsoft Azure
NVIDIA DRIVE
Oasis Parcel
OpenStack
Terraform
Thales Commander
Vertex AI
WireGuard

Pricing Details

Free
Free Trial
Free Version

Pricing Details

$0.005479 per hour
Free Trial
Free Version

Deployment

Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook

Deployment

Web-Based
On-Premises
iPhone App
iPad App
Android App
Windows
Mac
Linux
Chromebook

Customer Support

Business Hours
Live Rep (24/7)
Online Support

Customer Support

Business Hours
Live Rep (24/7)
Online Support

Types of Training

Training Docs
Webinars
Live Training (Online)
In Person

Types of Training

Training Docs
Webinars
Live Training (Online)
In Person

Vendor Details

Company Name

Edgeless Systems

Founded

2020

Country

Germany

Website

www.edgeless.systems/products/constellation

Vendor Details

Company Name

Google

Founded

1998

Country

United States

Website

cloud.google.com/security/products/confidential-computing

Product Features

Container Security

Access Roles / Permissions
Application Performance Tracking
Centralized Policy Management
Container Stack Scanning
Image Vulnerability Detection
Reporting
Testing
View Container Metadata

Product Features

Virtual Machine

Backup Management
Graphical User Interface
Remote Control
VDI
Virtual Machine Encryption
Virtual Machine Migration
Virtual Machine Monitoring
Virtual Server

Alternatives

Alternatives

Falco Reviews

Falco

Sysdig
Privatemode AI Reviews

Privatemode AI

Privatemode
KubeArmor Reviews

KubeArmor

AccuKnox