GKE Now Supports Confidential Nodes with Intel TDX on c3-standard-LSSD VMs
Google Kubernetes Engine (GKE) now offers general availability support for c3-standard-*-lssd machine types as Confidential GKE Nodes, utilizing Intel TDX for robust data-in-use encryption. This enhancement provides organizations with stronger hardware-based isolation and memory encryption for sensitive containerized workloads running on GKE. Building upon Google Compute Engine's Confidential VM technology, this feature expands the options for deploying highly secure applications. Users can leverage this capability by configuring supported machine types and zones within their GKE clusters.
Features (1) ›
- Google Kubernetes Engine
GKE support for using the c3-standard-*-lssd machine types as Confidential GKE Nodes with Intel TDX is generally available. For more information, see the following: To use this feature with GKE, see Encrypt workload data in-use with Confidential GKE Nodes . To learn more about the feature from Compute Engine, see Confidential VM overview . To see supported configurations, including machine support, see Supported configurations and its "Machine types, CPUs, and zones" section.
https://docs.cloud.google.com/release-notes#September_03_2026
Related releases
- Google Cloud Cluster Toolkit v1.101.0 Adds Persistent Disk Storage Pools and GKE Node Pool Support Google Cloud release notes ·
- Google Cloud Named a Leader in Gartner Magic Quadrant for Strategic Cloud Platform Services Google Cloud Blog ·
- Google Recognized as a Leader in Gartner Magic Quadrant for Strategic Cloud Platform Services Google Cloud Blog ·
- Google Kubernetes Engine Updates Cluster Versions Across All Channels Google Cloud release notes ·
- Cloud SDK 583.0.0 delivers updates for AlloyDB, BigQuery, Composer, and Cloud Run Google Cloud release notes ·
- Cloud Service Mesh updates proxy version for Gateway API on GKE, addresses vulnerabilities Google Cloud release notes ·