检测到您已登录华为云国际站账号,为了您更好的体验,建议您访问国际站服务网站 https://www.huaweicloud.com/intl/zh-cn
不再显示此消息
The key value can be used to reference the encrypted content in the pod.
To obtain a key name, log in to the DEW console, locate the key to be encrypted, and copy the key name. everest.io/crypt-domain-id No ID of the tenant to which the encrypted volume belongs. This parameter is mandatory for creating an encrypted volume.
Encrypted EVS disks are not supported. If your account has enterprise projects enabled, you can only select the EVS disks in the enterprise project that the cluster belongs to, or in the default enterprise project. EVS disks that have been partitioned are not supported.
AK/SK authentication: Requests are encrypted using an AK/SK. AK/SK-based authentication is recommended because it is more secure than token-based authentication. Token-based Authentication The validity period of a token is 24 hours.
Server Certificate: When an HTTPS listener is added to the load balancer, bind a certificate to the load balancer for encrypted transmission for HTTPS data. TLS secret: For details about how to create a secret certificate, see Creating a Secret.
The snapshots of encrypted disks are stored encrypted, and those of non-encrypted disks are stored non-encrypted.