treeverse / lakeFS

lakeFS - Data version control for your data lake | Git for data
https://docs.lakefs.io
Apache License 2.0
4.46k stars 359 forks source link

[Discovery] lakeFS secrets and keys rotation #2308

Open itaiad200 opened 3 years ago

itaiad200 commented 3 years ago

lakeFS installation has several secrets that are stored encrypted in the db. One example of these secrets is the admin credentials, the other is the encryption key.

Currently there isn't a guided way to rotate those secrets that are stored in lakeFS. Moreover some users prefer to keep their secrets in a managed secret store (like Amazon KMS) which do provide key rotation. For such users, lakeFS doesn't provide a recommended flow or an integration of any kind.

github-actions[bot] commented 1 year ago

This issue is now marked as stale after 90 days of inactivity, and will be closed soon. To keep it, mark it with the "no stale" label.