gcp Google Cloud release notes ·

GKE Now Supports Confidential Nodes with Intel TDX on c3-standard-LSSD VMs

securitygcpgaarchitectgcp-gkegcp-compute-engine
feature

Google Kubernetes Engine (GKE) now offers general availability support for c3-standard-*-lssd machine types as Confidential GKE Nodes, utilizing Intel TDX for robust data-in-use encryption. This enhancement provides organizations with stronger hardware-based isolation and memory encryption for sensitive containerized workloads running on GKE. Building upon Google Compute Engine's Confidential VM technology, this feature expands the options for deploying highly secure applications. Users can leverage this capability by configuring supported machine types and zones within their GKE clusters.

Features (1)
  • Google Kubernetes Engine

    GKE support for using the c3-standard-*-lssd machine types as Confidential GKE Nodes with Intel TDX is generally available. For more information, see the following: To use this feature with GKE, see Encrypt workload data in-use with Confidential GKE Nodes . To learn more about the feature from Compute Engine, see Confidential VM overview . To see supported configurations, including machine support, see Supported configurations and its "Machine types, CPUs, and zones" section.

Read the original announcement →

https://docs.cloud.google.com/release-notes#September_03_2026

Related releases