AES 128 GCM State Encryption
Description
State encryption that uses AES/GCM with 128-bit keys to encrypt all values stored in the state repository.
May be used by
Properties
Secret Key (
secretKey) Description
Key used for encryption and decryption, 128 bit encoded in Base64.
A random Base64 string with 128 bits (16 bytes) can be generated e.g. using openssl as follows: openssl rand -base64 16
CAUTION: Once the key is set and has been used to encrypt the key must not be changed!. Data encrypted with a different key cannot be recovered.
Attributes
String
Mandatory
Sensitive
Length >= 8
YAML Template (with default values)
type: Aes128GcmStateEncryption
id: Aes128GcmStateEncryption-xxxxxx
displayName:
comment:
properties:
secretKey: