Skip to content

OSDOCS-21775 KMS V2 updates - #119844

Open
cbippley wants to merge 1 commit into
openshift:mainfrom
cbippley:OSDOCS-21775
Open

cbippley wants to merge 1 commit into
openshift:mainfrom
cbippley:OSDOCS-21775

Conversation

@cbippley

@cbippley cbippley commented Sep 15, 2026

Copy link
Copy Markdown
Contributor

Version(s): 5.0

Issue: OSDOCS-21775

Link to docs preview:

QE review:

  • QE has approved this change.

Additional information:

@openshift-ci openshift-ci Bot added the size/XL Denotes a PR that changes 500-999 lines, ignoring generated files. label Sep 15, 2026
include::modules/proc_kms-migrating-from-local-encryption.adoc[leveloffset=+1]

// Migrating between KMS providers
include::modules/proc_kms-migrating-between-providers.adoc[leveloffset=+1]

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤖 [error] AsciiDocDITA.MapFilename: Use only lowercase alphanumeric characters and hyphens (a-z, 0-9, and -) in file names.

* link:https://developer.hashicorp.com/vault/docs/secrets/transit[HashiCorp Vault Transit Secrets Engine]
* link:https://developer.hashicorp.com/vault/docs/deploy/kubernetes/kms[Use Vault as a Kubernetes KMS provider]
* link:https://hub.docker.com/r/hashicorp/vault-kube-kms[HashiCorp Vault KMS plugin container image]
* link:https://kubernetes.io/docs/tasks/administer-cluster/kms-provider/[Using a KMS provider for data encryption] // cite:2

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤖 [error] AsciiDocDITA.RelatedLinks: Content other than links cannot be mapped to DITA related-links.

* link:https://developer.hashicorp.com/vault/docs/deploy/kubernetes/kms[Use Vault as a Kubernetes KMS provider]
* link:https://hub.docker.com/r/hashicorp/vault-kube-kms[HashiCorp Vault KMS plugin container image]
* link:https://kubernetes.io/docs/tasks/administer-cluster/kms-provider/[Using a KMS provider for data encryption] // cite:2
* link:https://developer.hashicorp.com/vault/docs/secrets/transit[HashiCorp Vault Transit Secrets Engine] // cite:3

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤖 [error] AsciiDocDITA.RelatedLinks: Content other than links cannot be mapped to DITA related-links.

* link:https://hub.docker.com/r/hashicorp/vault-kube-kms[HashiCorp Vault KMS plugin container image]
* link:https://kubernetes.io/docs/tasks/administer-cluster/kms-provider/[Using a KMS provider for data encryption] // cite:2
* link:https://developer.hashicorp.com/vault/docs/secrets/transit[HashiCorp Vault Transit Secrets Engine] // cite:3
* link:https://developer.hashicorp.com/vault/docs/deploy/kubernetes/kms[Use Vault as a Kubernetes KMS provider] // cite:4

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤖 [error] AsciiDocDITA.RelatedLinks: Content other than links cannot be mapped to DITA related-links.

* You have enabled the `TechPreviewNoUpgrade` feature set to enable the `KMSEncryption` feature gate.
* You have a `HashiCorp Vault Enterprise` instance accessible from your control plane nodes. Vault Community Edition is not available.
* Your control plane nodes have network access to the Vault server.
* You have enabled the `TechPreviewNoUpgrade` feature set to enable the `KMSEncryption` feature gate. For more information, see xref:../../nodes/clusters/nodes-cluster-enabling-features.adoc#nodes-cluster-enabling-features[Enabling features using feature gates]. // cite:1

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤖 [error] OpenShiftAsciiDoc.NoXrefInModules: Do not include xrefs in modules, only assemblies (exception: release notes modules).

@openshift-ci

openshift-ci Bot commented Sep 15, 2026

Copy link
Copy Markdown

@cbippley: all tests passed!

Full PR test history. Your PR dashboard.

Details

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. I understand the commands that are listed here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size/XL Denotes a PR that changes 500-999 lines, ignoring generated files.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants