Skip to content

provide an option to enable creating immutable secrets while generating key pair with k8s scheme #1090

@developer-guy

Description

@developer-guy

Description

I think immutability is a critical part while working on multi-tenant systems like Kubernetes. At the time I wrote this, cosign supports generating key pairs, and storing them in Kubernetes secrets. Kubernetes introduces us Immutable Secrets1 with the v1.21.1 release, so, maybe users might want to use this option to enable storing key pairs in the immutable secrets.

cc: @Dentrax

Footnotes

  1. https://kubernetes.io/docs/concepts/configuration/secret/#secret-immutable

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions