Confidential Kubernetes, also known as Dyneemes, is a managed container deployment platform that operates both master and worker nodes within confidential virtual machines. The platform utilizes hardware-based security features, including secure enclaves, to isolate containerized applications and protect code and data during processing, at rest, and in transit.
The system assigns unique cryptographic identities to each workload, allowing for real-time verification via remote attestation. It supports fine-grained access control, integrated auditing, and rolling updates. Confidential Kubernetes is designed for integration into hyperscaler cloud ecosystems and can be deployed across private, public, hybrid, and multi-cloud environments.