Skip to content
This repository has been archived by the owner on Jul 7, 2022. It is now read-only.

Sign all container images #65

Open
Demi-Marie opened this issue May 31, 2020 · 1 comment
Open

Sign all container images #65

Demi-Marie opened this issue May 31, 2020 · 1 comment

Comments

@Demi-Marie
Copy link

All container images should be signed, and the commands that download them need to check the signatures.

@fgimenez
Copy link
Contributor

We are using several external dependencies in the form of helm charts, each of them with its own image(s). We could try to do it for our images, namely the default docker parity/polkadot, not sure if it is being signed now. If so, we would need to make the signing public key available to the k8s worker nodes and define a docker policy in each of them. I'll check if this is possible in the managed kubernetes we are using at the moment and post back here.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants