An overview of confidential containers on OpenShift bare metal

26 · Red Hat · June 4, 2026, 7:53 a.m.
Summary
This blog post provides an in-depth overview of Confidential Containers on OpenShift bare metal, detailing how they utilize trusted execution environments for workload isolation in Kubernetes. Key topics include the architecture of confidential containers, remote attestation processes, bootstrap configurations, and integration with secret management solutions like HashiCorp Vault. The article highlights enhancements in security and deployment scenarios, especially focusing on the confidentiality and integrity guarantees they offer to workloads without changing existing applications.