Constellation is the first always-encrypted Kubernetes. Constellation shields entire Kubernetes clusters from the (cloud) infrastructure using confidential computing.
Hey ProductHunt community,
I'm Moritz, an engineer/cybersecurity enthusiast + co-maker of Constellation. We've built Constellation with the belief that always encrypted and verifiable processing of data in the public cloud should be a matter of course just like HTTPS is today.
Why? Because we believe that customers should stay in control and take full ownership of their data. Full isolation against the infrastructure and always encrypted processing will fundamentally change the security model of cloud computing and enable organizations to use the cloud to its full potential. Think everything is always encrypted, always verifiable, compliant, and at scale. We understand that security should not compromise usability and convenience. That’s why Constellation lifts these powerful confidential computing capabilities into a Kubernetes platform so customers can just pick them up from where they are today.
What does that mean?
- From a security perspective, Constellation is designed to keep all data always encrypted and to prevent access from the infrastructure layer (i.e., remove the infrastructure from the TCB). This includes access from data center employees, privileged cloud admins, and attackers coming through the infrastructure (e.g., malicious co-tenants escalating their privileges).
- From a DevOps perspective, Constellation is designed to work just like what you would expect from a modern K8s engine.
We believe in open-source and communities, so we've published the source code on GitHub., and we have a community on Discord. Also, we have online documentation. Check it out :)
By making Constellation available to everyone we can help accelerate the adoption of more secure cloud computing.
Community, we're so excited to share this with you today. Feel free to leave a comment below or on GitHub, join our Discord, or reach out via Twitter. Cheers! 🙏🏻
Hey, I'm one of the co-founders of Edgeless. Many thanks to @chrismessina for hunting!
I've been in the "confidential computing" space for almost a decade now. This is a super-important milestone. If you're interested in learning more about how we ended up here (starting with an internship at Microsoft Research), I wrote the story down a while ago: https://blog.edgeless.systems/fo...
Hello people of ProductHunt, Lara here. Super stoked about this launch :)
I've been working at Edgeless only for a few months but and it's been really exciting to see that a lot of important goals have been reached in this time. It's also inspiring seeing the dev team build such a complex and cool product.
With Constellation, companies can leverage all the benefits of public clouds, as they were private clouds. No one will be able to get access, not even cloud providers, and it's easy to start with!
I can't wait to see all the different applications of Constellation 🙌 Let us know your feedback!
Constellation
LogoliveryAI
Constellation
Constellation
LogoliveryAI
Constellation
LogoliveryAI