Use encrypted EBS volumes for etcd storage and (optionally) encrypt k8s node root volumes

We’re rolling out a major update for our Kubernetes etcd clusters to now use encrypted EBS volumes for storing all of the Kubernetes state.

As an optional feature, it’s also possible to have the Kubernetes nodes root volumes encrypted. If this is something you’d like to enable (eg. for compliance), please get in contact with your lead engineer.

By now all staging clusters have been migrated. Production clusters will be migrated during the coming days.