Re: Cloud Controller - s3 encryption for droplets


Dieu Cao <dcao@...>
 

Hi William,

Thanks for the links.
We don't have support for client side encryption currently.
Cloud Controller and Diego's blobstore clients would need to be modified to
encrypt and decrypt for client side encryption and I'm not clear what
strategies exist for rotation of keys in these scenarios.

If you're very interested in this feature and are open to working through
requirements with me and submitting a PR, please open up an issue on github
and we can discuss this further.

-Dieu

On Tue, Nov 10, 2015 at 4:16 PM, William C Penrod <wcpenrod(a)gmail.com>
wrote:

I first ran across it here:
http://cloudfoundryjp.github.io/docs/running/bosh/components/blobstore.html

and checked here for additional info:

https://github.com/cloudfoundry/bosh/blob/master/blobstore_client/lib/blobstore_client/s3_blobstore_client.rb

Join {cf-dev@lists.cloudfoundry.org to automatically receive all group messages.