k8s.io/apiserver@v0.31.1/pkg/server/options/encryptionconfig/testdata/valid-configs/aes-cbc-first.yaml (about)

     1  kind: EncryptionConfiguration
     2  apiVersion: apiserver.config.k8s.io/v1
     3  resources:
     4    - resources:
     5        - secrets
     6      providers:
     7        - aescbc:
     8            keys:
     9              - name: key1
    10                secret: c2VjcmV0IGlzIHNlY3VyZQ==
    11              - name: key2
    12                secret: dGhpcyBpcyBwYXNzd29yZA==
    13        - kms:
    14            name: testprovider
    15            endpoint: unix:///tmp/testprovider.sock
    16            cachesize: 10
    17            timeout: 5s
    18        - kms:
    19            apiVersion: v2
    20            name: testproviderv2
    21            endpoint: unix:///tmp/testprovider.sock
    22        - identity: {}
    23        - secretbox:
    24            keys:
    25              - name: key1
    26                secret: YWJjZGVmZ2hpamtsbW5vcHFyc3R1dnd4eXoxMjM0NTY=
    27        - aesgcm:
    28            keys:
    29              - name: key1
    30                secret: c2VjcmV0IGlzIHNlY3VyZQ==
    31              - name: key2
    32                secret: dGhpcyBpcyBwYXNzd29yZA==