问题
I have 2 specific questions about Amazon EBS Encryption.
- What is the benefit of using encrypted EBS?
- If create encrypted EBS and attached to the instance, will i able to read the data if i login using ssh?
Appreciate if you could explain in brief.
Thanks and Regards,
Vady
回答1:
AWS employees with direct access to the underlying hardware cannot view your data. That's really the only advantage. You might have to do this for meeting security compliance requirements such as PCI or HIPAA. If not, there isn't much reason to enable EBS encryption.
The data appears to the server as if it is unencrypted. Otherwise it would be unusable and there would be no point of offering this feature.
来源:https://stackoverflow.com/questions/44544324/data-encryption-at-rest-on-aws-ebs