Skip to content

Machine Identity: Encryption key rotation feature #847

@prbinu-nvidia

Description

@prbinu-nvidia

The machine identity encryption key used to:

  1. encrypt tenant signing keys
  2. encrypt tenant delegation credentials

These encrypted data is stored in the Carbide database. This feature provides a flag/api for the Carbide operator to rotate the keys by re-encrypting the data with new the keys.

Metadata

Metadata

Assignees

Labels

securityThings affecting host security (attestation, santization, etc)

Type

No fields configured for Task.

Projects

Status

Backlog

Relationships

None yet

Development

No branches or pull requests

Issue actions