Skip to content

[EPIC] Add provider-neutral KMS interfaces #12131

Description

@nevzheng

Describe the proposal

Add server-private, provider-neutral KMS interfaces and named-source routing to Apache Gravitino.

This epic includes:

  • typed references that identify a configured KMS source and provider-native key;
  • stable JSON persistence for key references and canonical provider API values;
  • normalized key properties and capabilities;
  • provider-facing client and factory contracts;
  • named-source configuration, discovery, routing, and lifecycle management; and
  • reusable fake implementations and contract tests.

KMS credentials and key material remain server-private. Concrete provider implementations, provider integration tests, provider documentation, and distribution packaging are outside this epic.

Task list

Metadata

Metadata

Assignees

Labels

epicKey feature

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions