Skip to content

Public CAS

We maintain public CAS instances at domain scone-cas.cf. These instances run in debug mode and should be used only for testing and debug purposes. As we support semantic versioning, there is a need to operate multiple CAS versions:

Public CAS Address CAS version Public CAS MrEnclave Namespaces support Azure integration support
scone-cas.cf 5.5.0 783c797f68cc700afdc3067c02a4fcf77ec01f4f880debb5c0ce36bd866e794b ✔️ ✔️
5-5-0.scone-cas.cf 5.5.0 783c797f68cc700afdc3067c02a4fcf77ec01f4f880debb5c0ce36bd866e794b ✔️ ✔️
5-4-0.scone-cas.cf 5.4.0 9f82c11af7ed3c3212483a5ad33b59923ca1462d1814943ff2586932c21fa51b ✔️ ✔️
5-3-0.scone-cas.cf 5.3.0 ffa14158277f97ac4d681f844fb641acc1396873ddca3418c93b5fabc6124752 ✔️ ✖️
5-2-0.scone-cas.cf 5.2.0 a7b31d8833d03c0deb4a1e72dc87cdad22b3fbb4173ba07cbcad33dedf553ead ✔️ ✖️
4-2-1.scone-cas.cf 4.2.1 4cd0fe54d3d8d787553b7dac7347012682c402220acd062e4d0da3bbe10a1c2c ✖️ ✖️

Ports:

  • 8081: client API (session management)

  • 18765: enclave API (remote attestation)

Supported SCONE Session Language versions:

Feature support

Some SCONE versions might not support some features documented in the SCONE Session Language documentation. Please check the release notes of your SCONE version.

Attest and use a public CAS

To use a public CAS, you need to first attest it with the help of the SCONE CLI:

scone cas attest $PUBLIC_CAS_ADDR $PUBLIC_CAS_MRENCLAVE -GCS --only_for_testing-debug --only_for_testing-ignore-signer

Examples:

$ scone cas attest 5-4-0.scone-cas.cf 9f82c11af7ed3c3212483a5ad33b59923ca1462d1814943ff2586932c21fa51b -GCS --only_for_testing-debug --only_for_testing-ignore-signer
CAS 5-4-0.scone-cas.cf at https://5-4-0.scone-cas.cf:8081/ is trustworthy
$ scone cas list
* 5-4-0.scone-cas.cf: https://5-4-0.scone-cas.cf:8081/
$ scone session create /path/to/session.yml
cd81e46effaceb61da9180ce7db4766b5238aff8cd81e46effaceb61da9180ce
$ scone cas show-certificate
-----BEGIN CERTIFICATE-----
MIIBTTCB9KADAgECAgkAtqAUu48h0yYwCgYIKoZIzj0EAwIwDjEMMAoGA1UEAwwD
Y2FzMB4XDTIxMDUyNDE5Mzc0OFoXDTIyMDUyNDE5Mzc0OFowFzEVMBMGA1UEAwwM
Y2FzLWluc3RhbmNlMFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEL8PnreRnL8U0
0/g0sPLSNZ8+LlKbq5IgxhNo+GW1p4P1oD7oMJt8aIMTYpYmhpA8gfT5rmfXmfr+
zW+ag9buVqMyMDAwHQYDVR0OBBYEFHhrOeK0osThHZD4nKjInaRCo+gvMA8GA1Ud
EwEB/wQFMAMBAf8wCgYIKoZIzj0EAwIDSAAwRQIhALv3hXLzRpYMbW1ZQq8dlgo3
f2cqo8XvjTksWW8stxElAiAvxdKvRRAecSBdtGat1+4Ce+gIN67+xZcAqi3WVyUN
cg==
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
MIIBRDCB66ADAgECAgkAuDXAT3C5TCcwCgYIKoZIzj0EAwIwDjEMMAoGA1UEAwwD
Y2FzMB4XDTIxMDUyNDE5Mzc0OFoXDTIyMDUyNDE5Mzc0OFowDjEMMAoGA1UEAwwD
Y2FzMFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAECB9dZdiWexyA3HRyStILicuE
iatZwzEwR6tuAbYttwK6BtOjiaXOG+D8mEBXnprsHQRslyL+/PG/KgOWkz6ZKKMy
MDAwHQYDVR0OBBYEFG558MOCS1NQWKBdUbOJQfKr5bObMA8GA1UdEwEB/wQFMAMB
Af8wCgYIKoZIzj0EAwIDSAAwRQIgaVuqn/OZThm1CunIdkV+NW42kcgmnIjqkheH
lOii3WsCIQDyraonPd9KhC2cKmxLUdLJkZKtmR1CmWpIL+ftb+1gRw==
-----END CERTIFICATE-----