Hi Mark,
No, the application-layer secrets encryption in Kubernetes is not used in 
Google Kubernetes Engine.
Note that all customer content in GKE, including secrets, are already 
encrypted at rest by 
default: 
https://cloud.google.com/security/encryption-at-rest/default-encryption/

If that's not sufficient for your use case, would love to discuss/ hear 
more, feel free to reach out: kaczorow...@google.com.

On Tuesday, February 13, 2018 at 10:17:42 AM UTC-8, Mark NS wrote:
>
> Hi, 
> Does anyone know if Secrets are encrypted at rest 
> <https://kubernetes.io/docs/tasks/administer-cluster/encrypt-data/> in 
> GKE? If not, is that planned?
> Many thanks,
> Mark
>

-- 
You received this message because you are subscribed to the Google Groups 
"Kubernetes user discussion and Q&A" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to kubernetes-users+unsubscr...@googlegroups.com.
To post to this group, send email to kubernetes-users@googlegroups.com.
Visit this group at https://groups.google.com/group/kubernetes-users.
For more options, visit https://groups.google.com/d/optout.
  • [kubernetes-... Mark NS
    • [kubern... 'Maya Kaczorowski' via Kubernetes user discussion and Q&A

Reply via email to