Uploaded image for project: 'Red Hat OpenStack Services on OpenShift'
  1. Red Hat OpenStack Services on OpenShift
  2. OSPRH-20143

Provide Barbican HSM Adoption Documentation

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Undefined Undefined
    • rhos-18.0.14 FR 4
    • None
    • None
    • None
    • DFG Security: Sprint 11
    • 1

      Goal: 

      Create documentation for Barbican adoption from RHOSP 17.1 to RHOSO 18 with Proteccio HSM, extending the existing simple_crypto documentation to include PKCS11/HSM backend procedures.

      Acceptance Criteria:

      • Create new AsciiDoc module with complete 5-phase adoption process.
      • Document OpenStackControlPlane CR configuration for HSM backend.
      • Include prerequisites (HSM certificates, custom containers, ansible-role-rhoso-proteccio-hsm).
      • Add environment detection guide to choose between simple_crypto vs HSM approaches.
      • Create troubleshooting reference for HSM-specific issues.
      • Update main assembly to include conditional HSM documentation references.
      • Provide end-to-end verification steps for HSM secret storage/retrieval.
      • Validate all procedures against existing barbican_proteccio_adoption role.

              rh-ee-mharley Mauricio Harley
              rh-ee-mharley Mauricio Harley
              rhos-dfg-security
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: