This is a cache of https://docs.openshift.com/container-platform/4.16/security/nbde_tang_server_operator/nbde-tang-server-operator-understanding.html. It is a snapshot of the page at 2024-11-25T09:22:21.005+0000.
Understanding the NBDE Tang Server Operator - NBDE Tang Server Operator | Security and compliance | OpenShift Container Platform 4.16
×

You can use the NBDE Tang Server Operator to automate the deployment of a Tang server in an OpenShift Container Platform cluster that requires Network Bound Disk Encryption (NBDE) internally, leveraging the tools that OpenShift Container Platform provides to achieve this automation.

The NBDE Tang Server Operator simplifies the installation process and uses native features provided by the OpenShift Container Platform environment, such as multi-replica deployment, scaling, traffic load balancing, and so on. The Operator also provides automation of certain operations that are error-prone when you perform them manually, for example:

  • server deployment and configuration

  • key rotation

  • hidden keys deletion

The NBDE Tang Server Operator is implemented using the Operator SDK and allows the deployment of one or more Tang servers in OpenShift through custom resource definitions (CRDs).

Additional resources