Loading...

Service mesh for Intel SGX enclave orchestration with remote attestation.
Service mesh for Intel SGX enclave orchestration with remote attestation.
MarbleRun is an open-source orchestration framework for clusters of Intel SGX enclaves. It functions as a service mesh layer for confidential computing environments, handling the coordination and security of enclave-based microservices deployments. Core capabilities include: - Remote attestation: Generates a single, unified attestation statement for an entire deployment, verifying that it conforms to a defined manifest. - Key management: Securely distributes and manages cryptographic keys for enclave workloads, including secret provisioning. - Mutual TLS (mTLS): Establishes encrypted and authenticated communication channels between enclaves. - Secure recovery: Supports recovery mechanisms for enclave deployments. - Manifest-based policy: Deployments are defined and governed through a JSON manifest, which is enforced at runtime. MarbleRun is compatible with SGX-enabled Kubernetes clusters (including Azure Kubernetes Service) and can also be run standalone. It supports enclaves built with Gramine, EGo, and Occlum runtimes. The CLI is used to install MarbleRun and apply manifests. The product is designed to simplify the deployment of confidential computing workloads such as AI pipelines and big data processing on sensitive data in cloud environments. Edgeless Systems also provides enterprise support for MarbleRun.
Common questions about Edgeless Systems MarbleRun including features, pricing, alternatives, and user reviews.
Edgeless Systems MarbleRun is Service mesh for Intel SGX enclave orchestration with remote attestation. developed by Edgeless Systems. It is a Cloud Security solution designed to help security teams with Encryption, Kubernetes, Cloud Native.
Multi-cloud KMS for centralized BYOK encryption key management and rotation
Get strategic cybersecurity insights in your inbox
Cloud & telecom HSM with formal OS verification, FIPS 140-3 L3, and PQC support.
Cloud-hosted HSM service for key management and cryptographic operations on Alibaba Cloud.
Managed cloud key management and cryptography service with HSM support on Alibaba Cloud.