ceph/doc
Sergio de Carvalho 1e5b58ad50 rgw: add SSE-KMS with Vault using token auth
Extend server-side encryption functionality in Rados Gateway to support
HashiCorp Vault as a Key Management System in addition to existing
support for OpenStack Barbican.

This is the first part of this change, supporting Vault's token-based
authentication only. Agent-based authentication as well as other
features such as Vault namespaces will be added in subsequent commits.

Note that Barbican remains the default backend for SSE-KMS
(rgw crypt s3 kms backend) to avoid breaking existing deployments.

Feature: https://tracker.ceph.com/issues/41062
Notes: https://pad.ceph.com/p/rgw_sse-kms

Implemented so far:
* Move existing SSE-KMS functions from rgw_crypt.cc to rgw_kms.cc
* Vault authentication with a token read from file
* Add new ceph.conf settings for Vault
* Document new ceph.conf settings
* Update main encryption documentation page
* Add documentation page for SSE-KMS using Vault

Signed-off-by: Andrea Baglioni <andrea.baglioni@workday.com>
Signed-off-by: Sergio de Carvalho <sergio.carvalho@workday.com>
2019-10-01 19:55:23 +01:00
..
_ext doc/releases/schedule.rst: drop dumpling from Timeline 2019-09-17 17:42:50 +02:00
_static/js
_templates
_themes/ceph
api doc: filesystem to file system 2019-09-10 08:43:28 -07:00
ceph-volume doc: filesystem to file system 2019-09-10 08:43:28 -07:00
cephfs Merge pull request #30407 from joscollin/wip-B41841-yes-really-mean-it 2019-10-01 13:05:33 +05:30
changelog
dev Merge PR #30463 into master 2019-09-29 21:02:56 -07:00
images
install doc: filesystem to file system 2019-09-10 08:43:28 -07:00
man doc/ceph-fuse: mention -k option in ceph-fuse man page 2019-09-25 12:21:20 +05:30
mgr Merge pull request #29792 from sebastian-philipp/orchestrator-api-replace 2019-09-12 17:46:27 +02:00
mon
rados Merge pull request #30632 from xiexingguo/wip-kick-recovery-pri 2019-09-30 16:59:55 +08:00
radosgw rgw: add SSE-KMS with Vault using token auth 2019-10-01 19:55:23 +01:00
rbd Merge PR #30475 into master 2019-09-23 09:12:42 -05:00
releases Merge pull request #30430 from smithfarm/wip-release-schedule-14.2.4 2019-09-27 11:58:32 +02:00
scripts
start doc: move MDS deployment from main quick start to CephFS quick start 2019-09-25 13:03:09 +05:30
.gitignore
architecture.rst doc: filesystem to file system 2019-09-10 08:43:28 -07:00
CMakeLists.txt
conf.py
favicon.ico
glossary.rst doc: filesystem to file system 2019-09-10 08:43:28 -07:00
governance.rst
index.rst doc: filesystem to file system 2019-09-10 08:43:28 -07:00
logo.png
man_index.rst
README.md