Uploaded image for project: 'Hadoop Common'
  1. Hadoop Common
  2. HADOOP-15952

Secure Key Handling Option with TPM2

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Open
    • Minor
    • Resolution: Unresolved
    • None
    • None
    • None
    • key, tpm, security
    • Patch

    Description

      Implement the option to use a TPM 2 as a KeyStoreProvider as alternative to JavaKeyStoreProvider. Key Creating and Deleting will be implemented with the TPM.

      There is a Java Implementation of interfacing TPMs but only for Version 1 link. The JavaKeystoreProvider Key provisioning is (as I know it) comparable to using a TPM (Making use of Key Encryption Keys).

      As mentioned Key Provisioning will be made via the KMS. Only the underlying Keys would be managed by the TPM.

      (Part of a Bachelor Thesis at Hochschule Darmstadt)

       

       

      Attachments

        Activity

          People

            Unassigned Unassigned
            bjh Brian Havard
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:

              Time Tracking

                Estimated:
                Original Estimate - 2,016h
                2,016h
                Remaining:
                Remaining Estimate - 2,016h
                2,016h
                Logged:
                Time Spent - Not Specified
                Not Specified