Austin
April 25-29, 2016

Event Details

Please note: All times listed below are in Central Time Zone


Swift Object Encryption

A new feature in development for OpenStack Swift improves security by encrypting object data at rest.

OpenStack Swift provides reliable and scalable object storage that has been deployed in many successful production environments. The Swift developer community has recently been working on enhancing Swift’s security by adding the capability to encrypt object content stored on disk. Our goal is to protect data at rest from an attacker that gains physical access to disks. We aim to achieve this with complete transparency to clients i.e. with no API changes, other than optional extensions to support client provided keys when desired.

This talk will describe and demonstrate this exciting new feature, discuss options for integration with key management services such as Barbican, and look ahead at future work to additionally encrypt account and container metadata.


What can I expect to learn?

Attendees will learn about the goals (and non-goals) of Swift encryption, hear about the progress being made towards encryption being enabled in upstream Swift, see a demonstration of object encryption and gain an understanding of the trade-offs with other encryption solutions.

Wednesday, April 27, 9:00am-9:40am (2:00pm - 2:40pm UTC)
Difficulty Level: Intermediate
IBM
Janie Richling is an active Openstack Swift contributor, and has been a part of the Cloud Infrastructure Services team at IBM for over a year. In particular, she is focused on the effort to add encryption at rest in Swift.  Previous to her work for IBM, she was a developer of largely distributed, highly available, highly performant systems which were built upon an OpenStack infrastructure. FULL PROFILE
Swift core
Alistair Coles is a core reviewer for the OpenStack Swift project. FULL PROFILE
Comments
0 Reviews
0