[kubernetes-users] Re: Are Secrets encrypted at rest in Google Kubernetes Engine?

2018-02-15 Thread Mark NS
Hi Maya, Thanks for the reply. My googling had always centred around GKE and Kubernetes, rather than the underlying GCP infrastructure, but this is indeed sufficient. Regards, Mark On Wednesday, 14 February 2018 18:16:16 UTC+1, Maya Kaczorowski wrote: > > Hi Mark, > No, the application-layer

[kubernetes-users] Re: Are Secrets encrypted at rest in Google Kubernetes Engine?

2018-02-14 Thread 'Maya Kaczorowski' via Kubernetes user discussion and Q
Hi Mark, No, the application-layer secrets encryption in Kubernetes is not used in Google Kubernetes Engine. Note that all customer content in GKE, including secrets, are already encrypted at rest by default: https://cloud.google.com/security/encryption-at-rest/default-encryption/ If that's