microsoft / AzureTRE

An accelerator to help organizations build Trusted Research Environments on Azure.
https://microsoft.github.io/AzureTRE
MIT License
185 stars 145 forks source link

Add CMK support for core resources #4149

Open yuvalyaron opened 3 days ago

yuvalyaron commented 3 days ago

Resolves https://github.com/microsoft/AzureTRE/issues/4142, https://github.com/microsoft/AzureTRE/issues/4143

What is being addressed

Added CMK support for Storage accounts and VM storage disks for core TRE resources. Added the option to use an external Key Vault to store the CMKs

Important: Note that there is still work to be done for completing #4002

How is this addressed

users set enable_cmk_encryption: true in the config.yaml, and either encryption_kv_name or external_key_store_id for the key vault.

github-actions[bot] commented 3 days ago

Unit Test Results

0 tests   0 ✅  0s ⏱️ 0 suites  0 💤 0 files    0 ❌

Results for commit c05f752b.

:recycle: This comment has been updated with latest results.

yuvalyaron commented 3 days ago

/test-extended

github-actions[bot] commented 3 days ago

:robot: pr-bot :robot:

:runner: Running extended tests: https://github.com/microsoft/AzureTRE/actions/runs/11916800932 (with refid afeb06a0)

(in response to this comment from @yuvalyaron)

yuvalyaron commented 3 days ago

/test-extended

github-actions[bot] commented 3 days ago

:robot: pr-bot :robot:

:runner: Running extended tests: https://github.com/microsoft/AzureTRE/actions/runs/11923480499 (with refid afeb06a0)

(in response to this comment from @yuvalyaron)

yuvalyaron commented 3 days ago

/test-extended

github-actions[bot] commented 3 days ago

:robot: pr-bot :robot:

:runner: Running extended tests: https://github.com/microsoft/AzureTRE/actions/runs/11923684873 (with refid afeb06a0)

(in response to this comment from @yuvalyaron)

github-actions[bot] commented 3 days ago

:robot: pr-bot :robot:

:runner: Running extended tests: https://github.com/microsoft/AzureTRE/actions/runs/11923684873 (with refid afeb06a0)

(in response to this comment from @yuvalyaron)

yuvalyaron commented 3 days ago

/test-extended

github-actions[bot] commented 3 days ago

:robot: pr-bot :robot:

:runner: Running extended tests: https://github.com/microsoft/AzureTRE/actions/runs/11930799088 (with refid afeb06a0)

(in response to this comment from @yuvalyaron)