OpenShift icon indicating copy to clipboard operation
OpenShift copied to clipboard

API server encryption

Open picklednewtons opened this issue 4 years ago • 0 comments

Following the process at Encrypting etcd data I can encrypt etcd and the K8s and OAuth API servers. I have tested on a new 4.8.18 cluster and there appear to be no ill effects. Looking at the ARO 4 support policies I think I should still be within support if I do this but was hoping someone may be able to confirm for me please?

More broadly I'm looking at what hardening is possible against the OCP4 CIS standard.

picklednewtons avatar Jan 04 '22 15:01 picklednewtons