SUSE Rancher and Kubernetes Secrets: How to Encrypt Your Data in the Cloud?

Logo
Presented by

Nicolas Vermande, Principal Developer Advocate, Ondat

About this talk

Secrets are not so secret in Kubernetes! You may be aware that SUSE Rancher can be configured to enable Kubernetes Secrets Encryption. But the encryption mechanism is left for the user to choose. It is critical to pick the right method, as your application's sensitive data will depend on it. As usual, there is no “one size fits all” solution for encrypting Secrets at rest. Join Nic, Principal Developer Advocate at Ondat, in this talk where he will go through various options and use cases. He will start by taking a look at the foundations required to encrypt Secrets and data volumes with SUSE Rancher. Then he will discuss static keys, KMS providers and gRPC encryption proxies. He will finally show how to encrypt databases along with application configuration elements.
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (20)
Subscribers (544)
Ondat is the Kubernetes-native platform for running stateful applications, anywhere, at scale. Ondat delivers persistent storage directly onto any Kubernetes cluster for running business-critical, stateful applications safely across any public, private and hybrid clouds. For development, DevOps professionals and technology executives, it provides an agnostic platform to run any data service anywhere while ensuring industry-leading levels of application performance, high availability, and security.