Confidential Computing Manager Azure Managed Application
1.0 Introduction
This article describes compute nodes and explains how to manage them using Fortanix Confidential Computing Manager (CCM).
1.1 Compute Nodes
Compute nodes are bare metal servers or virtual machines running in the cloud or on-premises.
Users can assign labels to compute nodes during registration with Fortanix CCM to support identity and policy management on the compute nodes. Before a compute node can run applications, it must be enrolled in the Fortanix CCM. This process is referred to as node enrollment.
1.2 Node Agent
Fortanix Node Agent software enables compute nodes to register with Fortanix CCM when installed on a compute node.
The Node Agent assists in verifying the hardware and platform software running on the compute nodes.
The Node Agent also supports application attestation and visibility within Fortanix CCM.
1.3 Manage Nodes using Fortanix CCM
Perform the following steps to view and manage CCM nodes:
In the CCM user interface (UI) left navigation panel, click Infrastructure.
Click the IP address of the node that you want to investigate. The compute node details page opens.
On the information screen, you can deactivate or delist the node or download the node attestation certificate.
1.4 Download CCM Node Attestation Certificate
Perform the following steps to download the CCM node attestation certificate:
In the CCM UI left navigation bar, navigate to Infrastructure → COMPUTE NODES, and click the compute node for which you want to download the attestation certificate.
Click ATTESTATION tab → DOWNLOAD CERTIFICATE. The certificate contains subject name, issuer name, and platform attestation details.