-
公开(公告)号:US20220335139A1
公开(公告)日:2022-10-20
申请号:US17853800
申请日:2022-06-29
Applicant: Intel Corporation
Inventor: Ziye YANG , Malini K. BHANDARU , Jiangyun ZHU , Yu WANG
Abstract: A method is described. The method includes sending a first request for portions of the container image. The method includes sending a second request for respective security keys for the portions of the container image. The method includes receiving the portions of the container image in encrypted form. The method includes receiving the respective security keys encrypted with a public key of an enclave of a trusted execution environment. The method includes decrypting the respective security keys with a private key of the enclave of the trusted execution environment. The method includes decrypting the encrypted portions of the container image with the decrypted respective keys.