If you have one backed by a HSM (Hardware Security Module) then you could be in a good spot. Similar set up to what AWS KMS does.
HN user
Inflatablewoman
[ my public key: https://keybase.io/inflatablewoman; my proof: https://keybase.io/inflatablewoman/sigs/f1jlwtHgOboZJ1UfnyUhKMK3RA9_LcCgLZlHzjNzHjE ]
Could this mean that Flock will be making a return?
My only regret is that when we started our current project, I did not commit 100% to gRPC, so now we have a mix of services. If I had of gone all in, it would be easier to integrate upcoming things like conduit [1], and I would not have to generate Swagger files but could just ship the proto files.
It does work, very well. We have been using it for over a year without issue. It is not ideal, but it is good to have an option for when clients dont support gRPC.
That does not do empty folders, sadly.
In my old firm we managed to get ceph running on coreos using ceph in docker. The storage was exposed using a s3 gateway.
iTunes?
The point is that any salt, even a hard coded salt, would mean that an attacker would need to regenerate the rainbow tables using the known salt.
Very interesting. Thanks for posting this. I have been using TigerTonic, but will give Gin a go after reading this.