Overview
Edera is a secure-by-default, cloud-native platform built on a reimagined memory-safe type-1 hypervisor. It unlocks hard multitenancy and container isolation—without the performance hit. Unlike traditional container runtimes that share a kernel, Edera runs containers in lightweight VM environments (called zones) completely isolated from other that each have their own Linux kernel.
This architecture removes the need for nested virtualization, meaning Edera can run anywhere containers run—across clouds, on-prem, and edge environments.
Why Edera?
Edera provides performant container isolation to all cloud or on-premise environments, unlocking a single platform to secure containers without management burden and costly migration. Deploying Edera to nodes in your Kubernetes cluster enables the ability to run a separate lightweight virtual machine for each workload, which has its own Linux kernel. This eliminates the risk of a shared kernel, and provides a high degree of isolation without the standard tradeoffs.
Edera’s hypervisor is built on Xen, re-engineered in Rust for the modern cloud-native world. Each zone boots fast, supports pluggable system extensions, and can safely run sensitive workloads like AI/ML training and GPU-accelerated compute.
Key Advantages
- Run anywhere: No hardware virtualization required
- Performance: Delivers near-native speed—within 5% of baseline and over 50% faster than other isolation technologies in real-world workloads
- Security: No shared kernel, isolated drivers, memory-safe Rust core
- Flexibility: GPUs, TPUs, and other devices can be shared securely across workloads
- Composable: Built entirely from OCI images—including drivers
Products
Edera for Kubernetes
With our container-native Type 1 hypervisor, we deliver VMwarelike resource optimization for container workloads without performance trade-offs. Maximize infrastructure utilization while gaining complete workload isolation.
Edera for AI
Accelerate AI innovation with optimized resource utilization. Our enhanced GPU virtualization technology lets you safely share expensive GPU resources across multiple workloads, reducing cloud costs while maintaining full performance and isolation.
Edera OSS & research
We have have released several open source projects including:
- Styrolite, our programmatic low-level container runtime designed to operate as a microservice
- OpenPaX, an open source kernel security utility
- Am I Isolated, a container security benchmark and Rust-based container runtime scanner
Want more?