Skip to content
This repository has been archived by the owner on Sep 19, 2024. It is now read-only.

Move workload cert signing into the kernel #184

Open
waynz0r opened this issue Mar 7, 2024 · 0 comments
Open

Move workload cert signing into the kernel #184

waynz0r opened this issue Mar 7, 2024 · 0 comments

Comments

@waynz0r
Copy link
Contributor

waynz0r commented Mar 7, 2024

Problem Statement

Currently the agent assigns the workload certificates by signing the workload CSRs coming from the kernel.

Proposed Solution

A better solution would be to move that functionality into the kernel and the agent will only be responsible the sign the intermediate CA CSRs.

Alternatives Considered

Please briefly describe which alternatives, if any, have been considered, including merits of alternate approaches and
tradeoffs being made.

Additional Context

Please provide any other information that may be relevant.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant