Skip to main content
Cloud / STACKIT / Products / STACKIT Confidential Server - Hardware-Encrypted VMs

STACKIT Confidential Server - Hardware-Encrypted VMs

STACKIT Confidential Server: virtual machines with hardware-based encryption (AMD SEV) in German data centers.

Confidential
Pricing Model Currently available only on a limited basis and on request; price on request
Availability German STACKIT data centers, access currently on request
Data Sovereignty 100% German data centers + hardware-based isolation
Reliability SLA as published by the provider SLA

What is STACKIT Confidential Server?

STACKIT Confidential Server provides scalable, self-managed Confidential Virtual Machines (CVMs). These can be secured with modern, hardware-based security technologies such as AMD SEV, allowing applications to run in an environment shielded from the underlying cloud infrastructure. According to STACKIT, the service is currently available only on a limited basis and on request.

Core Features

  • Hardware-based encryption at the processor level (e.g. AMD SEV)
  • Support for custom operating system images for full control and transparency
  • Different system sizes for different use cases
  • Verifiable encryption to support compliance evidence
  • Separation of different system environments via project scopes

Typical Use Cases

Financial services: Processing sensitive financial data where additional proof of data isolation is required by regulators.

Healthcare and patient data: Processing particularly sensitive medical data with heightened confidentiality requirements.

Law firms: Processing confidential client data and attorney-client privileged communication.

Separating system environments: Structured isolation of different environments (e.g. production, test) via separate CVMs within a project.

Benefits

  • Enables migration of even highly critical workloads to the public cloud, which takes on private-cloud characteristics
  • Operated in German data centers with hardware-based isolation
  • Full control over the operating system images used
  • Verifiable encryption as a basis for compliance documentation

Integration with innFactory

As an official STACKIT partner, innFactory supports access to and adoption of Confidential Server: architecture for isolated environments, migration of existing workloads, and compliance documentation.

Available Tiers & Options

Typical Use Cases

Financial services
Healthcare and patient data
Law firms
Separating different system environments (multi-tenancy)

Frequently Asked Questions

How does Confidential Server differ from regular VMs?

Confidential Servers are Confidential Virtual Machines (CVMs) secured with hardware-based security technologies such as AMD SEV. This allows applications to run in an environment shielded from the underlying cloud infrastructure.

Is STACKIT Confidential Server generally available?

No, according to STACKIT the service is currently available only on a limited basis and on request. Interested customers can request access and an individual quote through STACKIT sales.

What operating systems are supported?

STACKIT Confidential Server supports custom operating system images, giving customers full control and transparency over the system components used.

What compliance benefits does confidential computing provide?

Verifiable, hardware-based encryption supports evidence for data protection and regulatory requirements, for example when processing particularly sensitive data in the cloud.

Can I separate different system environments?

Yes. Project scopes allow different system environments to be structurally separated based on individual CVMs, supporting a range of requirement scenarios.

Note: All product information on this page has been compiled with care, but is provided without guarantee and may be outdated or incomplete. Cloud services evolve rapidly — features, pricing, SLAs, and availability change frequently. Authoritative and up-to-date information can only be found on the official product page of STACKIT (official documentation). This page does not represent an offer by STACKIT.

STACKIT Partner

innFactory is an official STACKIT Partner. We provide consulting, implementation, and managed services for the sovereign cloud.

STACKIT Official Partner

Ready to start with STACKIT Confidential Server - Hardware-Encrypted VMs?

Our certified STACKIT experts help you with architecture, integration, and optimization.

Schedule Consultation