Open Itxaka opened 2 weeks ago
We would like to investigate how we can port the KMS to UKI scenarios.
High level scenario:
https://www.redhat.com/en/blog/attestation-confidential-computing https://docs.system-transparency.org/st-1.1.0/docs/selected-topics/remote-attestation/ https://kairos.io/docs/advanced/partition_encryption/#discoverable-key-management-server-kms
Seems we basically had this around already: https://github.com/kairos-io/kairos/issues/2166
We would like to investigate how we can port the KMS to UKI scenarios.
High level scenario:
Reference
https://www.redhat.com/en/blog/attestation-confidential-computing https://docs.system-transparency.org/st-1.1.0/docs/selected-topics/remote-attestation/ https://kairos.io/docs/advanced/partition_encryption/#discoverable-key-management-server-kms