Skip to main content

Your submission was sent successfully! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates from Canonical and upcoming events where you can meet our team.Close

Thank you for contacting our team. We will be in touch shortly.Close

  1. Blog
  2. Article

regis paquette
on 14 April 2020

IBM Z delivers a Trusted Execution Environment with Ubuntu 20.04 LTS and new single frame models


In September 2019, IBM released z15 and LinuxONE III, the most secure cloud environment in the market featuring pervasive encryption built-in at its core with Ubuntu. This offered a solid foundation to launch hardened security offerings for the mainframe across platforms such as MongoDB, Postgres, IDAA, IBM Cloud Private and the IBM Hyper Protect services family. 

Security and flexibility made affordable with 2 new single-frame platforms

Today, IBM Z seeks to extend these industry-leading capabilities in security, encryption, data privacy, compression and platform overall flexibility to a broader client and prospect base at lower cost for entry with two new single-frame, air-cooled systems – the z15 T02 and LinuxONE III LT2. These hardware-based security and acceleration enhancements are supported in the latest Ubuntu Server 20.04 LTS (Long Term Support) release, being launched on 23rd April. The two new IBM platforms with Ubuntu 20.04 LTS are targeted for availability in May.

Critical workloads safer than ever with Secure Execution for Linux

The IBM z15 and LinuxONE III are designed to enhance security for critical customer data and workloads, such as sensitive databases, crypto services and blockchain services. IBM Secure Execution for Linux on IBM z15 and LinuxONE III is a Trusted Execution Environment that protects and isolates critical workloads better than a standard software environment, from both internal and external threats. IBM and Canonical worked on a design that protects the contents of containers in heterogeneous workloads without extensive software code changes by preventing memory share at the kernel level. Confidentiality and integrity for sensitive data and workloads on IBM Z are secured in a multi cloud environment, allowing a Kubernetes container admin to manage workloads on both Z and x86, without allowing access to data in the secure containers.

Hardware acceleration and IFL-consumption optimised software

Another key innovation brought by IBM Z is on chip compression acceleration to reduce the cost of encrypting, processing, transporting and storing data. Ubuntu 20.04 LTS is the first Linux release on IBM Z and LinuxONE to fully leverage those acceleration capabilities out of the box, and without the need to manually enable. Running Ubuntu 20.04 LTS on the z15 T02 or LinuxONE III LT2 platforms is the most IFL-efficient way to run Linux workloads on the mainframe, bringing 20% to 40% storage improvement to those transactions without making application changes, allowing for substantial cost optimisations along the way.

The best of open source infrastructure, with the security of z15, at unmatched economic efficiency

With Ubuntu 20.04 LTS on these two new IBM z15 systems, customers enjoy the best of innovation on Linux – kernel 5.4, the most extensive set of libraries, packages, tool-chain, and security updates – alongside feature parity to other compute platforms, while keeping the unique security features IBM brings to that combination.

Ubuntu 20.04 LTS on IBM Z is the latest collaboration between Canonical and IBM Z. Every quarter, together we have brought all key open source infrastructure innovation on Z and LinuxONE. This ranges from bare metal tools such as MAAS.io to provision KVM pods to enable virtual machines on Z, Charmed OpenStack distribution to embrace scale out compute from Mitaka to Ussuri release, LXD hypervisor for both virtual machines and containers, and Charmed Kubernetes to provide a full cloud native environment on IBM Z and LinuxONE.

Cost-efficiency with Canonical continues to be a critical component in advancing digital transformation. Canonical optimises the full support offering into Ubuntu Advantage Infrastructure, meaning customers can execute a full cloud native environment on IBM Z and LinuxONE, at a yearly price as low as $4k per IFL and $19.5k per drawer.

<Get in touch>

For more information, visit:
https://partners.ubuntu.com/ibm

To read the announcement by Ross Mauri, GM of IBM Z, visit:https://www.ibm.com/blogs/systems/secure-z-linuxone

Related posts


ijlal-loutfi
7 April 2023

Build the foundation for your zero trust strategy with Ubuntu confidential computing

Confidential computing Confidential computing

Why do we want to eliminate trust? Isn’t trust a good thing that we should foster and grow? And shouldn’t computing platforms trust their end-users, and vice versa? The short answer is no. And I would argue that the very goal of system security has always been to reduce trust.  For instance, because you do ...


ijlal-loutfi
21 March 2023

Canonical joins the confidential computing consortium

Confidential computing Confidential computing

We are happy to announce we have joined the confidential computing consortium, a project community at the Linux Foundation that is focused on accelerating the adoption of confidential computing and driving cross-industry collaboration around relevant open source software, standards and tools. ...


ijlal-loutfi
13 December 2022

What’s confidential, generally available, and open source? It’s Canonical Ubuntu 22.04 on Microsoft Azure!

Confidential computing Confidential computing

On behalf of all Canonical teams, I am happy to announce the general availability of Ubuntu 22.04 Confidential VMs (CVMs) on Microsoft Azure! They are part of the Microsoft Azure DCasv5/ECasv5 series that leverage the latest security extensions of the third generation of AMD CPUs, Secure Encrypted Virtualization-Secure Nested Paging (SEV- ...