Concept Flow - HDFS encryption at rest
Start: Data write request
Client requests encryption key
Key Management Server (KMS) provides key
Data encrypted by client using key
Encrypted data written to HDFS storage
Data stored securely on disk
Read request
Client requests decryption key from KMS
Data decrypted on client side
Data delivered to user/application
Data is encrypted before storing on disk using keys from a Key Management Server, ensuring data is secure at rest and decrypted only when accessed.