Skip to content

Support customers bring their own AES 256 key to encrypt passwords #785

@leochr

Description

@leochr

Support customers bringing their own AES 256 key (using wlp.aes.encryption.key) to encrypt/decrypt and protect sensitive/password information in server config. This would be an alternative, but more secure, way to encrypting passwords with passphrase (using wlp.password.encryption.key).

When the AES 256 key is enabled, it must be used to encrypt LTPA and any other passwords/keys that the Liberty Operator manages.

Liberty runtime Epic: OpenLiberty/open-liberty#31289

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions