This article provides an overview of new features, improvements, bug fixes, and known issues in the Fortanix Confidential Computing Manager (CCM) 3.19 release.
Prerequisites
A container registry account to push the converted application container Image(s).
A subscription account on Azure Portal to create Compute Node/s.
New Features
CCM SaaS:
This release adds support for Intel Attestation Service (IAS) v4.
Improvements
CCM SaaS:
This release adds pagination support for the CCM workflows list.
From this release onwards, application conversion using the SGX Converter Tool is deprecated and hence the SGX converter tool page is removed from the UI. SGX conversion can be done using the regular "Create Image" functionality since it uses the same underlying converter.
Known Issues
CCM SaaS issues:
The
get PCK certAPI does not require authentication currently.Node agents are presenting an invalid certificate chain length.
The converter should throw an error if the certificate key is not in an encrypted folder.
Nitro Converter does not return an error during conversion even when the output image credentials are wrong.
Limitations
Fortanix has a fair usage policy in this Early Customer Access Program. Hence, Fortanix has limited the resources one can create per account. Therefore, it is expected to observe a resource creation failure message once you have reached the max limit.
To report an issue/bug, visit https://support.fortanix.com/hc/en-us/requests/new.
Node Agent Download
Download link for SGX Platform: https://support.fortanix.com/hc/en-us/articles/360043407012-Fortanix-Node-Agent-Software-Intel-SGX-Platform
Download link for AWS Nitro Platform: https://support.fortanix.com/hc/en-us/articles/4412575587732-Fortanix-Node-Agent-Software-AWS-Nitro-Platform
NOTE
The current version of the node agent on Azure Marketplace will not create certificates.