Intel SGX
Process-level protected execution for modular, containerized Service Endlets.
Run approved workloads in hardware-protected confidential environments using Intel SGX and TDX capabilities where supported, at the edge or in the cloud.
Operational value
Confidential Execution extends the fabric beyond protected transport. Eligible Service Endlets can place sensitive code and data inside hardware-backed trusted execution environments, reducing exposure during processing while preserving network, identity, and lifecycle governance.
Inside the capability
A confidential Service Endlet uses hardware-backed Trusted Execution Environments to isolate approved code, protected keys, and sensitive data in use. Attestation binds identity, software measurement, feature profile, and cryptographic authority into one admission decision.
Process-level protected execution for modular, containerized Service Endlets.
Virtual-machine trust-domain isolation for protected cloud and on-premises VM execution.
Identity, attestation, encryption, monitoring, and policy surround the trusted execution boundary.
The Endlet operating model
Why it matters
Use supported hardware-backed environments to protect selected code and data during execution.
Run approved confidential workloads in eligible cloud and edge environments near operations.
Coordinate workload placement with Endlet identity, policy, locality, and lifecycle requirements.
How it operates
Select processing that requires a protected execution boundary and supported hardware.
Choose an approved edge or cloud environment based on locality, capacity, and operating requirements.
Maintain identity, connectivity, and lifecycle control around the confidential service.
Coordinated by design
Design your fabric
Bring your current topology, providers, workloads and continuity requirements. We’ll map the 21Packets capabilities that fit.
Book a working session