本頁面中的部分或全部資訊可能不適用於 Trusted Cloud by S3NS。
關於機密 VM
機密 VM 是指使用特定機器類型的 Compute Engine VM,可在處理過程中將機密程式碼和其他資料儲存至記憶體並加密,也就是執行使用中加密。機密 VM 搭配靜態加密和傳輸中加密,可隨時加密保護資料和應用程式。
如需更詳細的概念總覽,請參閱「Confidential VM 總覽」。
如要開始使用 Confidential VM,請參閱「建立 Confidential VM 執行個體」。
您可以透過下列幾種方式管理機密 VM:
如要透過機密 VM 強化區塊儲存空間安全性,可以使用 Hyperdisk Balanced 機密模式。啟用磁碟資料的硬體式加密功能,為 Hyperdisk Balanced 機密模式增添一層安全防護。機密模式下的 Hyperdisk 磁碟區會使用 Cloud HSM 和受信任的執行環境 (TEE),提供額外的加密隔離功能。如要進一步瞭解 TEE,請參閱「可信執行環境說明」。
除非另有註明,否則本頁面中的內容是採用創用 CC 姓名標示 4.0 授權,程式碼範例則為阿帕契 2.0 授權。詳情請參閱《Google Developers 網站政策》。Java 是 Oracle 和/或其關聯企業的註冊商標。
上次更新時間:2025-08-19 (世界標準時間)。
[[["容易理解","easyToUnderstand","thumb-up"],["確實解決了我的問題","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["缺少我需要的資訊","missingTheInformationINeed","thumb-down"],["過於複雜/步驟過多","tooComplicatedTooManySteps","thumb-down"],["過時","outOfDate","thumb-down"],["翻譯問題","translationIssue","thumb-down"],["示例/程式碼問題","samplesCodeIssue","thumb-down"],["其他","otherDown","thumb-down"]],["上次更新時間:2025-08-19 (世界標準時間)。"],[[["Confidential VMs are Compute Engine VMs that encrypt sensitive code and data in memory during processing, using N2D, C2D, `c3-standard-*`, or C3D machine types."],["Confidential VMs provide encryption-in-use, complementing encryption-at-rest and encryption-in-transit, ensuring continuous data and application encryption."],["Organization policies can be implemented to mandate the creation of Confidential VMs, and Cloud Monitoring and Cloud Logging are available to monitor and validate Confidential VM instances."],["For enhanced security, Confidential mode for Hyperdisk Balanced can be used with Confidential VMs, leveraging hardware-based disk data encryption through Cloud HSM and trusted execution environments (TEEs)."],["Security perimeter for Confidential VM interaction can be set up using shared VPC networks, org policies and firewall rules, allowing them to interact only with other Confidential VM instances."]]],[]]