Run an application in a Realm using the Arm Confidential Compute Architecture (CCA)
Introduction
Overview: Realms
Run the Arm CCA stack using a pre-built docker container
Run an application in a Realm
Use memory encryption
Next Steps
Run an application in a Realm using the Arm Confidential Compute Architecture (CCA)
Who is this for?
This is an introductory topic for software developers who want to learn how to run their applications in a Realm using the Arm Confidential Compute Architecture (CCA).
What will you learn?
Upon completion of this Learning Path, you will be able to:
- Run the Arm reference CCA software stack on an Armv-A AEM Base FVP (Fixed Virtual Platform) with support for RME extensions.
- Create a virtual machine in a Realm running guest Linux using a pre-built docker container.
- Run a simple application in a Realm running guest Linux.
- Obtain a CCA attestation token from the virtual guest in a Realm.
- Run the CCA software stack using MEC (Memory Encryption Contexts)
Prerequisites
Before starting, you will need the following:
- An AArch64 or x86_64 computer running Linux or macOS. You can use cloud instances, refer to the list of Arm cloud service providers .
Summary
This summary was drafted with an approved AI-assisted workflow and reviewed by Arm contributors before publication. Human technical review remains part of the process so the final page reflects engineering rigor, accuracy, and Arm editorial standards.
Frequently asked questions
These FAQs were drafted with an approved AI-assisted workflow and reviewed by Arm contributors before publication. Human technical review remains part of the process so the final page reflects engineering rigor, accuracy, and Arm editorial standards.
armswdev/cca-learning-path:cca-simulation-v3. Run docker image list and check that this repository and tag appear in the output.