-
Epic
-
Resolution: Done
-
Major
-
None
-
None
-
Enabling bring-your-own-key for encryption at rest
-
False
-
None
-
False
-
No
-
To Do
-
MGDSRVS-145 - RHOSAK Enterprise Plan: RHOSAK on customer-owned OSD/ROSA/ARO
-
0% To Do, 0% In Progress, 100% Done
-
---
-
---
WHAT
The encryption of data at rest is a common security requirement that will be a requirement for Enterprise Customers. We need to understand how customers who wish to use bring-your-own-key for encryption at rest will be supported. There is an expectation that Enterprise will just be leveraging the cloud provider's encryption features as exposed by OpenShift (ROSA, ARO and later GCP). We just need to verify that assumption and ensure that the RHOSAK operators will cooperate with the feature.
WHY
Support encryption at rest with user-specified keys.
HOW
We'll use spike tasks beneath this JIRA to discovered the answers we need.
- split to
-
MGDSTRM-10430 Enabling BYOK for encryption at rest on old ROSA clusters (post MVP)
- To Do