Trustworthy Workload Identity (TWI) Specifications

A working group and set of Internet Draft specifications under the Confidential Computing Consortium that define how confidential workloads establish, prove, and consume identity using remote attestation evidence. TWI work intersects with the IETF RATS (Remote Attestation Procedures) and WIMSE (Workload Identity in a Multi-System Environment) groups, providing the foundation for attested, portable workload identity.

API entry from apis.yml

apis.yml Raw ↑
aid: confidential-computing-consortium:trustworthy-workload-identity
name: Trustworthy Workload Identity (TWI) Specifications
description: A working group and set of Internet Draft specifications under the Confidential Computing
  Consortium that define how confidential workloads establish, prove, and consume identity using remote
  attestation evidence. TWI work intersects with the IETF RATS (Remote Attestation Procedures) and WIMSE
  (Workload Identity in a Multi-System Environment) groups, providing the foundation for attested, portable
  workload identity.
humanURL: https://github.com/confidential-computing/twi
baseURL: https://github.com/confidential-computing/twi
image: https://kinlane-productions2.s3.amazonaws.com/apis-json/apis-json-logo.jpg
tags:
- Attestation
- IETF
- Specifications
- Workload Identity
properties:
- type: Documentation
  url: https://github.com/confidential-computing/twi
- type: GitHub
  url: https://github.com/confidential-computing/twi
- type: Related
  url: https://github.com/confidential-computing/twi-rats
- type: Related
  url: https://github.com/confidential-computing/twi-wimse
x-features:
- Workload Identity Standards
- Remote Attestation Mappings
- IETF Drafts
x-use-cases:
- Define identity for confidential workloads
- Bind workload identity to hardware attestation
- Interoperate across cloud providers and hardware vendors