[LU-15217] disable PCC for encrypted files Created: 12/Nov/21 Updated: 30/Nov/21 Resolved: 30/Nov/21 |
|
| Status: | Resolved |
| Project: | Lustre |
| Component/s: | None |
| Affects Version/s: | Lustre 2.15.0 |
| Fix Version/s: | Lustre 2.15.0 |
| Type: | Bug | Priority: | Minor |
| Reporter: | Sebastien Buisson | Assignee: | Qian Yingjin |
| Resolution: | Fixed | Votes: | 0 |
| Labels: | None | ||
| Issue Links: |
|
||||
| Severity: | 3 | ||||
| Rank (Obsolete): | 9223372036854775807 | ||||
| Description |
|
When files are encrypted in Lustre using fscrypt, they should normally not be accessible to users without the proper encryption key. However, if a user has the encryption key loaded when they read a file, it may be decrypted in memory and saved to the PCC device in unencrypted form. |
| Comments |
| Comment by Gerrit Updater [ 12/Nov/21 ] |
|
"Sebastien Buisson <sbuisson@ddn.com>" uploaded a new patch: https://review.whamcloud.com/45545 |
| Comment by Gerrit Updater [ 30/Nov/21 ] |
|
"Oleg Drokin <green@whamcloud.com>" merged in patch https://review.whamcloud.com/45545/ |
| Comment by Peter Jones [ 30/Nov/21 ] |
|
Landed for 2.15 |