talos/website/content/docs/v0.9/Reference
Artem Chernyshev 58ff2c9808 feat: implement ephemeral partition encryption
This PR introduces the first part of disk encryption support.
New config section `systemDiskEncryption` was added into MachineConfig.
For now it contains only Ephemeral partition encryption.

Encryption itself supports two kinds of keys for now:
- node id deterministic key.
- static key which is hardcoded in the config and mainly used for test
purposes.

Talosctl cluster create can now be told to encrypt ephemeral partition
by using `--encrypt-ephemeral` flag.

Additionally:
- updated pkgs library version.
- changed Dockefile to copy cryptsetup deps from pkgs.

Signed-off-by: Artem Chernyshev <artem.0xD2@gmail.com>
2021-02-17 13:39:04 -08:00
..
api.md feat: add resource watch API + CLI 2021-02-17 13:24:47 -08:00
cli.md feat: implement ephemeral partition encryption 2021-02-17 13:39:04 -08:00
configuration.md feat: implement ephemeral partition encryption 2021-02-17 13:39:04 -08:00
platform.md docs: add v0.9 docs 2021-01-13 15:42:25 +03:00