talos
talos copied to clipboard
Lock encrypted partition key to STATE encryption
Generate another unique token and store in STATE, it is different from the existing unique token in a way that it doesn't get exposed via Kubernetes (as machine-id).
Optionally lock the encryption key to this value.
See https://github.com/siderolabs/talos/issues/8972