6475efd5da
- Support encrypting data persisted to etcd by kube-apiserver Change-Id: I47ca634961e66e48dadc8f13d1c84748ab4e2fb9
23 lines
439 B
YAML
23 lines
439 B
YAML
---
|
|
schema: promenade/EncryptionPolicy/v1
|
|
metadata:
|
|
schema: metadata/Document/v1
|
|
name: encryption-policy
|
|
layeringDefinition:
|
|
abstract: false
|
|
layer: site
|
|
storagePolicy: cleartext
|
|
data:
|
|
etcd:
|
|
- resources:
|
|
- 'secrets'
|
|
providers:
|
|
- secretbox:
|
|
keys:
|
|
- name: key1
|
|
secret: Xw2UcbjILTJM6QiFZ0WPSbUvjtoT8OJC/Nl8qqYWjGk=
|
|
scripts:
|
|
genesis:
|
|
gpg: {}
|
|
...
|