I've added this to the Train PTG planning etherpad.
One idea would be to use oslo config Castellan support [2] to hold an encryption key in a vault and then we could use that to AES encrypt/decrypt the service user password when it is stored in the DB.
I've added this to the Train PTG planning etherpad.
One idea would be to use oslo config Castellan support [2] to hold an encryption key in a vault and then we could use that to AES encrypt/decrypt the service user password when it is stored in the DB.
[1] https:/ /etherpad. openstack. org/p/manila- denver- train-ptg- planning
[2] http:// lists.openstack .org/pipermail/ openstack- discuss/ 2019-March/ 003409. html