Hewlett Packard Enterprise (HPE) kicked off its annual Discover event today and added a Lighthouse and a still-under-development, zero-trust security project — among other things — into its GreenLake cloud-services portfolio.

HPE CEO Antonio Neri, at Discover in 2019, committed to offer the company’s entire product lineup as a service under its Greenlake portfolio by 2022. The vendor has yet to disclose how far along, percentage wise, it is on this cloud services journey.

But during a press conference ahead of Discover, Keith White, SVP and GM of HPE Greenlake Cloud Services, said that GreenLake continues gaining momentum. The cloud services business counts about 1,200 enterprise customers globally and $4.8 billion in total contract value, he said. HPE also continues adding GreenLake services including compute, data management and protection, networking, bare metal, containers, and high-performance computing, among others.

HPE GreenLake Lighthouse

Today, the company also added silicon-on-demand, developed in partnership with Intel, and a new cloud-native platform called GreenLake Lighthouse. Lighthouse is built on HPE Ezmeral software, and the vendor says it can autonomously optimize different cloud services and workloads by composing resources based on customers’ business priorities such as best performance or lowest cost.

Customers can use HPE GreenLake Lighthouse to run cloud services in their data center, a colocation provider, or at the edge.

Lighthouse sounds similar to a couple other platforms that HPE rolled out over the past couple years including GreenLake Central, which lets customers manage applications and data across public clouds and data center, and Data Services Cloud Console. The latter also aims to streamline data management across customers’ hybrid IT environments and provides HPE’s GreenLake cloud services across your edge, data center, and cloud.

When asked to differentiate between the platforms, Kumar Sreekanti, CTO and head of software at HPE, described Lighthouse as “a unified platform that has everything from the hardware, software, services, and the console, all built in."

White added that Lighthouse is “the best of what HPE has to offer in a workload-optimized, cloud-native setting that basically takes all of the configuration management capabilities away from the customer and allows them to run multiple cloud services across that as their business requirements continue to grow. So it gives the best performance, the lowest costs, and the balance of both.”

Project Aurora

Additionally, HPE introduced Project Aurora, a zero-trust security initiative that builds on its existing silicon root of trust.

Project Aurora, which HPE says will be available in GreenLake Lighthouse, GreenLake cloud services and its Ezmeral software platforms later this year, will continuously verify the integrity of the hardware, firmware, operating systems, platforms, and workloads, including security workloads.

While HPE’s root of trust security already verifies the hardware, firmware, and operating systems, upcoming integrations with Scytale, a cloud-native security company that HPE acquired last year, will extend these capabilities to platforms and workloads.

Scytale’s founders were some of the founding contributors to open source SPIFFEE and SPIRE, and its product is based on these two open source projects.

SPIFFE (pronounced Spiffy) stands for Secure Production Identity Framework For Everyone. It’s an open-source workload identity framework that supports distributed systems deployed in on-premises, private cloud, and public cloud environments. Its founders modeled it after similar systems at Google, Netflix, and Twitter.

Meanwhile, SPIRE (aka the SPIFFE Runtime Environment) is an open source SPIFFE implementation that allows organizations to provision, deploy, and manage SPIFFE identities throughout their production infrastructure.

These two technologies, when combined with Project Aurora, will make it easier for DevSecOps teams to authenticate workload identities rooted in continuously verified hardware, and will help customers deploy a zero-trust architecture across their IT environment from edge to cloud, Sreekanti said. “What we are providing is a chain of trust from silicon to the workload,” he added.