Uploaded image for project: 'Managed Service - Streams'
  1. Managed Service - Streams
  2. MGDSTRM-9653

Enabling bring-your-own-key for encryption at rest

XMLWordPrintable

    • Enabling bring-your-own-key for encryption at rest
    • False
    • None
    • False
    • No
    • To Do
    • MGDSRVS-145 - RHOSAK Enterprise Plan: RHOSAK on customer-owned OSD/ROSA/ARO
    • 0% To Do, 0% In Progress, 100% Done
    • ---
    • ---

      WHAT

      The encryption of data at rest is a common security requirement that will be a requirement for Enterprise Customers. We need to understand how customers who wish to use bring-your-own-key for encryption at rest will be supported. There is an expectation that Enterprise will just be leveraging the cloud provider's encryption features as exposed by OpenShift (ROSA, ARO and later GCP). We just need to verify that assumption and ensure that the RHOSAK operators will cooperate with the feature.

      WHY

      Support encryption at rest with user-specified keys.

      HOW

      We'll use spike tasks beneath this JIRA to discovered the answers we need.

            gryan@redhat.com Gerard Ryan
            rhn-gps-ddoyle Duncan Doyle (Inactive)
            Kafka Integrations
            Votes:
            0 Vote for this issue
            Watchers:
            6 Start watching this issue

              Created:
              Updated:
              Resolved: