Skip to content

Add support for NanoTDF plaintext policy #255

@jrschumacher

Description

@jrschumacher

The current implementation of nanoTDF in the SDK only supports encrypted policy. The nanoTDF spec explicitly supports encrypted and plaintext policy.

The current need of plaintext policy is to both be compatible with Base TDF (ZTDF), but also to enable reading the policy for visibility trimming without the need to over-privledge service accounts.

See spec: opentdf/spec@main/schema/nanotdf/README.md

This was implemented in Go and KAS opentdf/platform#2182

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions