TDX Hardware — Attestation
The hardware-signed TDX quote, verified against Intel's PCS collateral — the Intel DCAP signature chain, not Intel Trust Authority.
raw Intel TDX quote (hex)
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 verify this quote ↗
Source Code — Compose
The measured app-compose that pins exactly which container images run.
| Container | Image | Digest | Verify |
|---|---|---|---|
| keystore | docker.io/outlayer/near-outlayer-keystoreOutLayer-built | sha256:9c41b041538a38dc2ad00ae3320ddc008069d962e1b9ad63cd8b238b7151f76e | Sigstore ↗ release ↗ |
Each digest above is the one measured into RTMR3, so the attestation binds the running code to this exact image; the Sigstore link ties that digest back to its build provenance.
app-compose (measured source identity)
{
"manifest_version": 2,
"name": "outlayer-keystore-testnet-0.1.41",
"runner": "docker-compose",
"docker_compose_file": "# OutLayer keystore — deployed as a dstack CVM on a self-hosted TDX node.\n#\n# - image is pinned BY DIGEST (verifiable, Sigstore-attested release build) so the\n# app-compose hash (measured into RTMR3) is deterministic. 40-deploy-keystore.sh\n# rewrites this digest for the chosen --version from the GitHub release.\n# - secrets are NOT here: env VALUES come via `vmm-cli ... --env-file keystore.env`\n# (encrypted by the per-node KMS + embedded as a ciphertext blob). The compose text\n# keeps only ${VAR} references, so plaintext secrets never enter the measured compose;\n# dstack decrypts the env inside the CVM and docker-compose substitutes at runtime.\n# - the keystore is an INBOUND axum HTTP server on 8081 (callers: workers + coordinator).\n# It authenticates every caller itself (Bearer token + TEE challenge-response), so the\n# transport in front of it only needs to terminate TLS / route — no auth logic there.\n# - 8081 is exposed by the deploy script via a LOOPBACK host port only (node-local smoke\n# tests); production traffic arrives over the WireGuard mesh / dstack-gateway, NOT this\n# port. The compose just declares the container port; the host mapping is set at deploy.\n# - /var/run/dstack.sock is provided by dstack inside the CVM (TDX quotes for registration).\n# - single keystore service: no COMPILATION_MODE / executor knobs — this is the keystore,\n# not the worker.\n\nservices:\n keystore:\n image: docker.io/outlayer/near-outlayer-keystore@sha256:9c41b041538a38dc2ad00ae3320ddc008069d962e1b9ad63cd8b238b7151f76e\n restart: on-failure:5\n environment:\n SERVER_HOST: ${SERVER_HOST}\n SERVER_PORT: ${SERVER_PORT}\n NEAR_NETWORK: ${NEAR_NETWORK}\n NEAR_RPC_URL: ${NEAR_RPC_URL}\n OFFCHAINVM_CONTRACT_ID: ${OFFCHAINVM_CONTRACT_ID}\n NEAR_CONTRACT_ID: ${NEAR_CONTRACT_ID}\n ALLOWED_WORKER_TOKEN_HASHES: ${ALLOWED_WORKER_TOKEN_HASHES}\n ALLOWED_COORDINATOR_TOKEN_HASHES: ${ALLOWED_COORDINATOR_TOKEN_HASHES}\n # TEE + DAO registration\n TEE_MODE: ${TEE_MODE}\n USE_TEE_REGISTRATION: ${USE_TEE_REGISTRATION}\n # Signature scheme for the keystore's registration key: ed25519 (default) or ml-dsa-65.\n KEYSTORE_KEY_TYPE: ${KEYSTORE_KEY_TYPE:-ed25519}\n # Which worker signature schemes this keystore accepts for TEE-session auth.\n TEE_ALLOWED_KEY_TYPES: ${TEE_ALLOWED_KEY_TYPES:-ed25519}\n OPERATOR_ACCOUNT_ID: ${OPERATOR_ACCOUNT_ID}\n KEYSTORE_DAO_CONTRACT: ${KEYSTORE_DAO_CONTRACT}\n # Init account self-submits the keystore registration (submit_keystore_registration) on boot.\n INIT_ACCOUNT_ID: ${INIT_ACCOUNT_ID}\n INIT_ACCOUNT_PRIVATE_KEY: ${INIT_ACCOUNT_PRIVATE_KEY}\n # MPC CKD (Chain Key Derivation) — the keystore pulls its master after the DAO vote passes.\n MPC_CONTRACT_ID: ${MPC_CONTRACT_ID}\n MPC_DOMAIN_ID: ${MPC_DOMAIN_ID}\n MPC_PUBLIC_KEY: ${MPC_PUBLIC_KEY}\n # dstack guest socket (TDX quotes). Standard dstack socket path inside the CVM.\n DSTACK_SIMULATOR_ENDPOINT: ${DSTACK_SIMULATOR_ENDPOINT}\n LOG_MASTER_KEY_HASH: ${LOG_MASTER_KEY_HASH:-false}\n RUST_LOG: ${RUST_LOG:-info,keystore_worker=debug}\n # Do NOT set KEYSTORE_MASTER_SECRET — it is incompatible with TEE mode (the master is\n # derived in-TEE from MPC CKD). Setting it would override the TEE-derived master.\n # Publish 8081 to the CVM's host network so callers reach the keystore: the dstack-gateway\n # connects to the keystore over the WireGuard mesh (gateway -> <wg-ip>:8081) and the deploy's\n # loopback smoke-test port maps to the guest's :8081 — both need the container port on the CVM\n # network, not buried inside the container's docker netns. Without this the gateway gets\n # \"connection refused\" (os error 111).\n ports:\n - \"${SERVER_PORT}:${SERVER_PORT}\"\n volumes:\n - /var/run/dstack.sock:/var/run/dstack.sock:ro\n",
"kms_enabled": true,
"gateway_enabled": true,
"local_key_provider_enabled": false,
"key_provider_id": "",
"public_logs": true,
"public_sysinfo": false,
"allowed_envs": [
"SERVER_HOST",
"SERVER_PORT",
"NEAR_NETWORK",
"NEAR_RPC_URL",
"OFFCHAINVM_CONTRACT_ID",
"NEAR_CONTRACT_ID",
"ALLOWED_WORKER_TOKEN_HASHES",
"ALLOWED_COORDINATOR_TOKEN_HASHES",
"KEYSTORE_DAO_CONTRACT",
"INIT_ACCOUNT_ID",
"INIT_ACCOUNT_PRIVATE_KEY",
"WORKER_KEY_TYPE",
"TEE_ALLOWED_KEY_TYPES",
"USE_TEE_REGISTRATION",
"LOG_MASTER_KEY_HASH",
"TEE_MODE",
"OPERATOR_ACCOUNT_ID",
"DSTACK_SIMULATOR_ENDPOINT",
"RUST_LOG",
"MPC_CONTRACT_ID",
"MPC_DOMAIN_ID",
"MPC_PUBLIC_KEY"
],
"no_instance_id": false,
"secure_time": false,
"public_tcbinfo": true,
"port_policy": {
"restrict_mode": true,
"ports": [
{
"port": 8081
}
]
}
}
Network — Zero Trust Gateway
TLS terminates inside the TEE — the gateway never sees plaintext.
App OS
The measured dstack guest OS image. The version is read live from each CVM's vm_config; the
os_image_hash is the precise, measured OS identity.
dstack releases ↗.
KMS — deploy-time key provisioning
Deploy-time only. Governed by an on-chain contract, the dstack KMS releases this CVM's keys at boot only if its measurements are approved — those keys decrypt the deployment env file (so secrets never enter the measured compose) and provision the CVM's RA-TLS identity + disk encryption. This secures how the worker is deployed; it does not hold OutLayer's application or user secrets — those run through the OutLayer keystore (master derived in-TEE via MPC), not the dstack KMS.