Kaspersky Container Security

Limitations related to storage

There is a number of non-critical limitations when Kaspersky Container Security works with HashiCorp Vault:

  • Integration with HashiCorp Vault works only with KV1/KV2 storages and Secrets Engine components for rotating PKI certificates.
  • The solution does not support working with external components of the Secrets Engine, except for PKI Secrets.
  • Kaspersky Container Security does not support dynamic processing of secrets. To get an updated secret, you have to restart the solution.
  • If you are using Vault integration, you can specify credentials only for an external PostgreSQL database in the vault section. To use an internal PostgreSQL database, these credentials must be commented out.