Hi Mark, No, the application-layer secrets encryption in Kubernetes is not used in Google Kubernetes Engine. Note that all customer content in GKE, including secrets, are already encrypted at rest by default: https://cloud.google.com/security/encryption-at-rest/default-encryption/
If that's not sufficient for your use case, would love to discuss/ hear more, feel free to reach out: kaczorow...@google.com. On Tuesday, February 13, 2018 at 10:17:42 AM UTC-8, Mark NS wrote: > > Hi, > Does anyone know if Secrets are encrypted at rest > <https://kubernetes.io/docs/tasks/administer-cluster/encrypt-data/> in > GKE? If not, is that planned? > Many thanks, > Mark > -- You received this message because you are subscribed to the Google Groups "Kubernetes user discussion and Q&A" group. To unsubscribe from this group and stop receiving emails from it, send an email to kubernetes-users+unsubscr...@googlegroups.com. To post to this group, send email to kubernetes-users@googlegroups.com. Visit this group at https://groups.google.com/group/kubernetes-users. For more options, visit https://groups.google.com/d/optout.