Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Constellation stands out as a Kubernetes distribution certified by the CNCF, utilizing confidential computing to ensure the encryption and isolation of entire clusters, thus safeguarding data at rest, in transit, and during processing by executing control and worker planes within hardware-enforced trusted execution environments. The platform guarantees workload integrity through the use of cryptographic certificates and robust supply-chain security practices, including SLSA Level 3 and sigstore-based signing, while successfully meeting the benchmarks set by the Center for Internet Security for Kubernetes. Additionally, it employs Cilium alongside WireGuard to facilitate precise eBPF traffic management and comprehensive end-to-end encryption. Engineered for high availability and automatic scaling, Constellation enables near-native performance across all leading cloud providers and simplifies the deployment process with an intuitive CLI and kubeadm interface. It ensures the implementation of Kubernetes security updates within a 24-hour timeframe, features hardware-backed attestation, and offers reproducible builds, making it a reliable choice for organizations. Furthermore, it integrates effortlessly with existing DevOps tools through standard APIs, streamlining workflows and enhancing overall productivity.

Description

Google Cloud's Confidential Computing offers hardware-based Trusted Execution Environments (TEEs) that encrypt data while it is actively being used, thus completing the encryption process for data both at rest and in transit. This suite includes Confidential VMs, which utilize AMD SEV, SEV-SNP, Intel TDX, and NVIDIA confidential GPUs, alongside Confidential Space facilitating secure multi-party data sharing, Google Cloud Attestation, and split-trust encryption tools. Confidential VMs are designed to support workloads within Compute Engine and are applicable across various services such as Dataproc, Dataflow, GKE, and Gemini Enterprise Agent Platform Notebooks. The underlying architecture guarantees that memory is encrypted during runtime, isolates workloads from the host operating system and hypervisor, and includes attestation features that provide customers with proof of operation within a secure enclave. Use cases are diverse, spanning confidential analytics, federated learning in sectors like healthcare and finance, generative AI model deployment, and collaborative data sharing in supply chains. Ultimately, this innovative approach minimizes the trust boundary to only the guest application rather than the entire computing environment, enhancing overall security and privacy for sensitive workloads.

API Access

Has API Yes 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Google Kubernetes Engine (GKE) Yes 
Amazon EKS Yes 
Anjuna Confidential Computing Software No 
Azure Kubernetes Service (AKS) Yes 
Cilium Yes 
Gemini Enterprise Agent Platform No 
GitHub Yes 
Google Cloud Dataflow No 
Google Cloud Managed Service for Apache Spark No 
Google Cloud Platform No 
HashiCorp Vault No 
Intel Open Edge Platform No 
Kubernetes Yes 
Microsoft Azure Yes 
NVIDIA DRIVE No 
Oasis Parcel No 
OpenStack Yes 
Terraform Yes 
Thales Commander No 
WireGuard Yes 

Integrations

Google Kubernetes Engine (GKE) Yes 
Amazon EKS No 
Anjuna Confidential Computing Software Yes 
Azure Kubernetes Service (AKS) No 
Cilium No 
Gemini Enterprise Agent Platform Yes 
GitHub No 
Google Cloud Dataflow Yes 
Google Cloud Managed Service for Apache Spark Yes 
Google Cloud Platform Yes 
HashiCorp Vault Yes 
Intel Open Edge Platform Yes 
Kubernetes No 
Microsoft Azure No 
NVIDIA DRIVE Yes 
Oasis Parcel Yes 
OpenStack No 
Terraform No 
Thales Commander Yes 
WireGuard No 

Pricing Details

Free
Free Trial No 
Free Version Yes 

Pricing Details

$0.005479 per hour
Free Trial Yes 
Free Version No 

Deployment

Web-Based Yes 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) Yes 
In Person No 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) Yes 
In Person No 

Vendor Details

Company Name

Edgeless Systems

Founded

2020

Country

Germany

Website

www.edgeless.systems/products/constellation

Vendor Details

Company Name

Google

Founded

1998

Country

United States

Website

cloud.google.com/security/products/confidential-computing

Product Features

Container Security

Access Roles / Permissions No 
Application Performance Tracking No 
Centralized Policy Management No 
Container Stack Scanning No 
Image Vulnerability Detection No 
Reporting No 
Testing No 
View Container Metadata No 

Product Features

Virtual Machine

Backup Management No 
Graphical User Interface No 
Remote Control No 
VDI No 
Virtual Machine Encryption No 
Virtual Machine Migration No 
Virtual Machine Monitoring No 
Virtual Server No 

Alternatives

Alternatives

Falco Reviews

Falco

Sysdig
Privatemode AI Reviews

Privatemode AI

Privatemode
KubeArmor Reviews

KubeArmor

AccuKnox