Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Approval of GCP as a Public Cloud TEE #64

Open
renanfel opened this issue Apr 25, 2024 · 0 comments
Open

Approval of GCP as a Public Cloud TEE #64

renanfel opened this issue Apr 25, 2024 · 0 comments

Comments

@renanfel
Copy link

Following our publication of the Public Cloud TEE requirements explainer, we are posting the details on the review and approval for GCP, using the CSP template provided in the explainer. We’ll keep this issue open for a few weeks for feedback from the ecosystem.

Name and web address for the Cloud Service Provider:

Google Cloud (GCP), https://cloud.google.com/

Short description of the Cloud TEE solution, including security properties, remote attestation and workload capabilities. Please include links to supporting documentation:

GCP provides a commercially available Cloud TEE solution using Confidential Space, built on top of the Confidential VM product. Confidential Space provides secure, private and isolated environments, which the operator and CSP cannot access. GCP further provides an Attestation process for the environments. Confidential Space can run Linux-based containerized workloads.

Short description of security and trust of the CSP, including compliance with ISO standards, Certification from cloud security industry bodies (such as STAR Level 2), and inclusion in a research report on public cloud offerings (such as Gartner’s public cloud report). Please include links to supporting documentation.

GCP meets the ISO 27001, 27017, and ISO 27018 standards and obtained Level 2 in the CSA STAR Registry. The Confidential Space security model is documented, and partially supported by an independent security report. GCP is included in Gartner’s public cloud report. GCP (Google) is headquartered in the US.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant