charts icon indicating copy to clipboard operation
charts copied to clipboard

[bitnami/external-dns] Add configurations options for TXT registry encryption

Open lusu007 opened this issue 1 year ago • 1 comments

Name and Version

bitnami/external-dns 6.33.0

What is the problem this feature will solve?

external-dns creates TXT records as the default registry. Registry TXT records may contain information, such as the internal ingress name or namespace, considered sensitive, , which attackers could exploit to gather information about your infrastructure. By encrypting TXT records, you can protect this information from unauthorized access.

What is the feature you are proposing to solve the problem?

To solve the described problem external-dns provides to startup parameter to encrypt those TXT records. --txt-encrypt-enabled and --txt-encrypt-aes-key should be configurable.

What alternatives have you considered?

None

lusu007 avatar Feb 16 '24 12:02 lusu007

Thank you for opening this issue and submitting the associated Pull Request. Our team will review and provide feedback. Once the PR is merged, the issue will automatically close.

Your contribution is greatly appreciated!

carrodher avatar Feb 18 '24 19:02 carrodher

This Issue has been automatically marked as "stale" because it has not had recent activity (for 15 days). It will be closed if no further activity occurs. Thanks for the feedback.

github-actions[bot] avatar Mar 05 '24 01:03 github-actions[bot]

This issue isn't stale. Is it possible to configure the bot to not mark issues as stale when a PR is linked?

lusu007 avatar Mar 05 '24 08:03 lusu007