tree 8cb613a43199be0dd5a93d98955c95f8d3e7779d
parent f1628ac0972b8ee7da19322514dc229872b5982b
author Serge Bazanski <serge@monogon.tech> 1685018748 +0200
committer Serge Bazanski <serge@monogon.tech> 1685535921 +0000

m/node: introduce node storage setting and cluster policy

This adds NodeStorageSecurity and a corresponding
ClusterConfiguration.StorageSecurityPolicy, and pipes it into the
Metropolis node bootstrap and registration flow.

All the various settings have so far only been tested manually. For now
the default behaviour (which is exercised by tests) is the same as
previously: require encryption and authentication.

In the future, we will have to expand our end-to-end testing to properly
exercise all the various settings and verify their enforcement and
effect. But that has to come in a follow-up CR as this one is already
large enough as is.

Change-Id: I76f3e37639ef02f4fc708af47ae5014408dc7c21
Reviewed-on: https://review.monogon.dev/c/monogon/+/1747
Reviewed-by: Lorenz Brun <lorenz@monogon.tech>
Tested-by: Jenkins CI
