Encrypted and secure docker containers

前端 未结 7 1188
清酒与你
清酒与你 2020-12-04 19:18

We all know situations when you cannot go open source and freely distribute software - and I am in one of these situations.

I have an app that consists of a number o

7条回答
  •  情书的邮戳
    2020-12-04 19:57

    I have exactly the same problem. Currently what I was able to discover is bellow.

    A. Asylo(https://asylo.dev)

    1. Asylo requires programs/algorithms to be written in C++.
    2. Asylo library is integrated in docker and it seems to be feаsable to create custom dоcker image based on Asylo .
    3. Asylo depends on many not so popular technologies like "proto buffers" and "bazel" etc. To me it seems that learning curve will be steep i.e. the person who is creating docker images/(programs) will need a lot of time to understand how to do it.
    4. Asylo is free of charge
    5. Asylo is bright new with all the advantages and disadvantages of being that.
    6. Asylo is produced by Google but it is NOT an officially supported Google product according to the disclaimer on its page.
    7. Asylo promises that data in trusted environment could be saved even from user with root privileges. However, there is lack of documentation and currently it is not clear how this could be implemented.

    B. Scone(https://sconedocs.github.io)

    1. It is binded to INTEL SGX technology but also there is Simulation mode(for development).
    2. It is not free. It has just a small set of functionalities which are not paid.
    3. Seems to support a lot of security functionalities.
    4. Easy for use.
    5. They seems to have more documentation and instructions how to build your own docker image with their technology.

提交回复
热议问题