Lightbits v3.12.1: Enhanced Security with Software Encryption at Rest and ADFS Integration

We are excited to announce the release of Lightbits v3.12.1, which includes major generally available (GA) features for enhanced security along with additional stability and usability improvements, all ready for production use.

Key Highlights of Lightbits v3.12.1

New Generally Available (GA) Features

  • Active Directory Federation Services (ADFS) Integration: Lightbits now supports ADFS for clusters, enabling seamless authentication and API interactions through organizational ADFS/oAuth services. This enhancement streamlines integration for environments utilizing single sign-on (SSO), making it effortless to incorporate Lightbits into existing enterprise ecosystems.
  • Software Encryption at Rest: We have introduced software-based cluster-level encryption for data at rest using AES-XTS-256, delivering robust security. This ensures that any data removed from the cluster remains encrypted on the drive, eliminating the need for self-encrypting drives and protecting the data from unauthorized access. Additionally, this feature leverages Trusted Platform Module (TPM) technology to securely store and protect the encryption keys, further enhancing data security.

System Improvements

Along with the key highlights of this release, we are continually responding to customer requests and enhancing usability to make Lightbits even more efficient for everyday operations.

  • CSI plugin Enhancements: Added support for Kubernetes v1.30 and implemented tolerations functionality to enable the CSI plugin to run on nodes where it would otherwise be unavailable. Additionally, the CSI plugin now supports the latest Lightbits discovery client.
  • Lightbits CLI: Implemented a confirmation prompt before upgrading a cluster to ensure the user intends to upgrade the entire cluster.
  • Lightbits API: Introduced a new API call to export the cluster encryption key (KEK), along with additional encryption fields in existing APIs for retrieving cluster information.
  • System Configuration: Introduced a new configuration parameter that defines the interval for sending health checks to the Identity Provider (IdP) server, used by the Federated Authentication (ADFS) integration feature.

Enhanced Stability and Debugability

We are committed to improving cluster stability and reliability. This version’s enhancements ensure smoother operations, reduce downtime, and strengthen resilience. Specifically, we have improved overall system stability and debuggability in failure scenarios.

Looking Ahead

In addition to the highlights mentioned above, we are continually working to improve Lightbits, and your feedback plays a key role in this process. With v3.12.1, our focus has been on enhancing the platform’s security and robustness. We invite you to explore the new features and share your experiences with us.

Stay tuned for more updates, and do not hesitate to reach out to us if you have any questions or need assistance with your storage infrastructure. Also, join Lightbits Hub, our community hub on Slack, where users and developers exchange insights and expertise about Lightbits. We look forward to your feedback and ongoing collaboration.

For more information, check out the release notes for 3.12.1 here.

Additional resources:

About the Writer: