KMS Technology Preview limitations

Review the current limitations of Kubernetes KMS v2 to plan deployments and avoid unsupported configurations in Red Hat OpenShift Container Platform 4.21 or later.

Current limitations
  • Plugins require manual installation on each control plane node

  • Plugins must listen at unix:///var/run/kmsplugin/kms.sock

  • Only one KMS plugin can run at a time

  • KMS-to-KMS migration requires intermediate migration to identity or aescbc