[kubernetes-users] Re: Are Secrets encrypted at rest in Google Kubernetes Engine?

2018-02-15 Thread Mark NS
Hi Maya,
Thanks for the reply. My googling had always centred around GKE and 
Kubernetes, rather than the underlying GCP infrastructure, but this is 
indeed sufficient.
Regards,
Mark



On Wednesday, 14 February 2018 18:16:16 UTC+1, Maya Kaczorowski wrote:
>
> Hi Mark,
> No, the application-layer secrets encryption in Kubernetes is not used in 
> Google Kubernetes Engine.
> Note that all customer content in GKE, including secrets, are already 
> encrypted at rest by default: 
> https://cloud.google.com/security/encryption-at-rest/default-encryption/
>
> If that's not sufficient for your use case, would love to discuss/ hear 
> more, feel free to reach out: kaczo...@google.com .
>
> On Tuesday, February 13, 2018 at 10:17:42 AM UTC-8, Mark NS wrote:
>>
>> Hi, 
>> Does anyone know if Secrets are encrypted at rest 
>>  in 
>> GKE? If not, is that planned?
>> Many thanks,
>> Mark
>>
>

-- 
You received this message because you are subscribed to the Google Groups 
"Kubernetes user discussion and Q" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to kubernetes-users+unsubscr...@googlegroups.com.
To post to this group, send email to kubernetes-users@googlegroups.com.
Visit this group at https://groups.google.com/group/kubernetes-users.
For more options, visit https://groups.google.com/d/optout.


[kubernetes-users] Re: Are Secrets encrypted at rest in Google Kubernetes Engine?

2018-02-14 Thread 'Maya Kaczorowski' via Kubernetes user discussion and Q
Hi Mark,
No, the application-layer secrets encryption in Kubernetes is not used in 
Google Kubernetes Engine.
Note that all customer content in GKE, including secrets, are already 
encrypted at rest by 
default: 
https://cloud.google.com/security/encryption-at-rest/default-encryption/

If that's not sufficient for your use case, would love to discuss/ hear 
more, feel free to reach out: kaczorow...@google.com.

On Tuesday, February 13, 2018 at 10:17:42 AM UTC-8, Mark NS wrote:
>
> Hi, 
> Does anyone know if Secrets are encrypted at rest 
>  in 
> GKE? If not, is that planned?
> Many thanks,
> Mark
>

-- 
You received this message because you are subscribed to the Google Groups 
"Kubernetes user discussion and Q" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to kubernetes-users+unsubscr...@googlegroups.com.
To post to this group, send email to kubernetes-users@googlegroups.com.
Visit this group at https://groups.google.com/group/kubernetes-users.
For more options, visit https://groups.google.com/d/optout.