It is possible for a KMSv2 plugin to return a static value as Ciphertext and store the actual encrypted DEK in the annotations. In this case, using the encDEK will not work. Instead, we are now using a combination of the encDEK, keyID and annotations to generate the cache key. Signed-off-by: Anish Ramasekar <anish.ramasekar@gmail.com> Kubernetes-commit: 8eacf09649ac9042c7e998b5c24ac59d68ae7e6c |
||
|---|---|---|
| .. | ||
| admission | ||
| apis | ||
| audit | ||
| authentication | ||
| authorization | ||
| cel | ||
| endpoints | ||
| features | ||
| quota/v1 | ||
| registry | ||
| server | ||
| storage | ||
| storageversion | ||
| util | ||
| warning | ||