← Back to plugin index

Migrating State Encryption

Description

State encryption intended for migration from one encryption to a different one. Values are always written with the new encryption. If reading with the new encryption fails, decryption with the previous encryption is attempted as a fallback. After the migration period, this plugin should be replaced by the new encryption.

Specifically, this plugin can be used to migrate from unencrypted state to encrypted state. This plugin can not be used to migrate from encrypted state to unencrypted state.

Type name
MigratingStateEncryption
Class
com.airlock.iam.common.application.configuration.state.MigratingStateEncryptionConfig
May be used by
Properties
Previous Encryption (previousEncryption)
Description
The encryption to use as a fallback when reading values from Redis.
Attributes
Plugin-Link
Mandatory
Assignable plugins
New Encryption (newEncryption)
Description
The encryption to use before reading and writing data from/to Redis.

Migrating to unencrypted state is not supported.

Attributes
Plugin-Link
Mandatory
Assignable plugins
YAML Template (with default values)

type: MigratingStateEncryption
id: MigratingStateEncryption-xxxxxx
displayName: 
comment: 
properties:
  newEncryption:
  previousEncryption: