We're sorry but this page doesn't work properly without JavaScript enabled. Please enable it to continue.
Feedback

Nydus Image Service for Confidential Containers

Formal Metadata

Title
Nydus Image Service for Confidential Containers
Title of Series
Number of Parts
542
Author
License
CC Attribution 2.0 Belgium:
You are free to use, adapt and copy, distribute and transmit the work or content in adapted or unchanged form for any legal purpose as long as the work is attributed to the author in the manner specified by the author or licensor.
Identifiers
Publisher
Release Date
Language

Content Metadata

Subject Area
Genre
Abstract
In order to ensure the confidentiality and integrity of container images, we need to download all container images from the registry within trusted domains when creating pods. Current solutions have many disadvantages. The pod/container startup time is extremely slow, the pressure on the network and container registry is high, and additional CPU, memory, and disk IO are consumed. The Nydus Image Service project aims to reduce container startup time and resource consumption through techniques such as lazy loading and data deduplication, which may help to solve the problems of container image management for confidential containers.