Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Encrypted Disks #152

Open
vlerenc opened this issue Sep 28, 2020 · 2 comments
Open

Encrypted Disks #152

vlerenc opened this issue Sep 28, 2020 · 2 comments
Labels
area/compliance Compliance related area/security Security related kind/enhancement Enhancement, improvement, extension lifecycle/rotten Nobody worked on this for 12 months (final aging stage)

Comments

@vlerenc
Copy link
Member

vlerenc commented Sep 28, 2020

In order to comply with certifications required for Gardener, Gardener shall use encrypted disks (supported since Kilo).

/cc @ThormaehlenFred

@vlerenc vlerenc added area/security Security related area/certification kind/enhancement Enhancement, improvement, extension labels Sep 28, 2020
@gardener-robot gardener-robot added the lifecycle/stale Nobody worked on this for 6 months (will further age) label Nov 28, 2020
@dkistner
Copy link
Member

Just a small update from an internal discussion.
The question here is actually how the key management is done?
The native solution on Openstack would to your Barbican, but it seems that the cinder csi driver has no integration for that.

@vlerenc
Copy link
Member Author

vlerenc commented Oct 22, 2021

@dkistner Is some default encryption without customer-managed keys supported in Cinder?

@ThormaehlenFred Are we obliged to use encrypted disks also in CCloud? If that's technically not really possible, probably not?

@vlerenc vlerenc removed the lifecycle/stale Nobody worked on this for 6 months (will further age) label Oct 22, 2021
@gardener-robot gardener-robot added the lifecycle/stale Nobody worked on this for 6 months (will further age) label Apr 21, 2022
@gardener-robot gardener-robot added area/compliance Compliance related and removed area/certification labels May 14, 2022
@gardener-robot gardener-robot added lifecycle/rotten Nobody worked on this for 12 months (final aging stage) and removed lifecycle/stale Nobody worked on this for 6 months (will further age) labels Nov 10, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/compliance Compliance related area/security Security related kind/enhancement Enhancement, improvement, extension lifecycle/rotten Nobody worked on this for 12 months (final aging stage)
Projects
None yet
Development

No branches or pull requests

3 participants