Bug 1749489

Summary: [RFE] Support use of SSE-S3 headers in RGW with AES256 server side default encryption
Product: [Red Hat Storage] Red Hat Ceph Storage Reporter: Mike Hackett <mhackett>
Component: RGWAssignee: Matt Benjamin (redhat) <mbenjamin>
Status: CLOSED ERRATA QA Contact: Tejas <tchandra>
Severity: medium Docs Contact: Aron Gunn <agunn>
Priority: medium    
Version: 3.3CC: cbodley, ceph-eng-bugs, ceph-qe-bugs, kbader, mbenjamin, pasik, sweil, tserlin, vumrao
Target Milestone: z2Keywords: FutureFeature
Target Release: 3.3   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: RHEL: ceph-12.2.12-80.el7cp Ubuntu: ceph_12.2.12-73redhat1 Doc Type: Enhancement
Doc Text:
.The Ceph Object Gateway now supports the use of SSE-S3 headers Clients and applications can successfully negotiate SSE-S3 encryption using the global, default encryption key, if one has been configured. Previously, the default key only used SSE-KMS encryption.
Story Points: ---
Clone Of: Environment:
Last Closed: 2019-12-19 17:58:49 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 1726135    

Description Mike Hackett 2019-09-05 18:16:52 UTC
Description of problem:
Need to support SSE-S3 client requests to RGW. Currently RGW rejects "AES256" as a value for x-amz-server-side-encryption, but is expecting an AMZ-KMS header instead.

Version-Release number of selected component (if applicable):
RHCS 3.3

Upstream tracker:
https://tracker.ceph.com/issues/41670

Comment 12 errata-xmlrpc 2019-12-19 17:58:49 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2019:4353

Comment 13 Red Hat Bugzilla 2023-09-14 05:42:54 UTC
The needinfo request[s] on this closed bug have been removed as they have been unresolved for 1000 days