[
https://issues.apache.org/jira/browse/HADOOP-15952?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16701861#comment-16701861
]
Ben Jonas Herbertz commented on HADOOP-15952:
---------------------------------------------
Maybe its best to move the Issue to RANGER Jira.
There was an Implementation for HSM in Ranger KMS (RANGER-868). TPM2
Implementation will be done like this.
> Secure Key Handling Option with TPM2
> ------------------------------------
>
> Key: HADOOP-15952
> URL: https://issues.apache.org/jira/browse/HADOOP-15952
> Project: Hadoop Common
> Issue Type: Improvement
> Reporter: Ben Jonas Herbertz
> Priority: Minor
> Labels: KeyStore, security, tpm
> Original Estimate: 2,016h
> Remaining Estimate: 2,016h
>
> Implement the option to use a TPM 2 as a KeyStoreProvider as alternative to
> JavaKeyStoreProvider. Key Creating and Deleting will be implemented with the
> TPM.
> There is a Java Implementation of interfacing TPMs but only for Version 1
> [link|http://trustedjava.sourceforge.net]. The JavaKeystoreProvider Key
> provisioning is (as I know it) comparable to using a TPM (Making use of Key
> Encryption Keys).
> As mentioned Key Provisioning will be made via the KMS. Only the underlying
> Keys would be managed by the TPM.
> (Part of a Bachelor Thesis at Hochschule Darmstadt)
>
>
--
This message was sent by Atlassian JIRA
(v7.6.3#76005)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]