stackabletech / documentation

Stackable's central documentation repository built on Antora
https://docs.stackable.tech
Apache License 2.0
12 stars 11 forks source link

Document how to verify image signatures in an air-gapped environment #526

Closed dervoeti closed 8 months ago

dervoeti commented 8 months ago

Fixes https://github.com/stackabletech/issues/issues/437

I switched out Kyverno for the Sigstore Policy Controller, since the support for air-gapped environments is more mature than Kyverno's (at the moment at least) and added some guidelines and explanations on how signature verification in an air-gapped environment can be done.

Notes for the reviewer: The whole topic is not trivial and maybe not easy to reproduce, this documentation might be helpful as well: https://github.com/stackabletech/documentation-airgapped-setup It's a step-by-step guide on how to setup an air-gapped cluster on IONOS and how to configure the Policy Controller with a TUF mirror.

netlify[bot] commented 8 months ago

Deploy Preview for stackable-docs ready!

Name Link
Latest commit c18c9a09b7474586296fdd755cc93a598f1afd89
Latest deploy log https://app.netlify.com/sites/stackable-docs/deploys/65a939618de33a000883b906
Deploy Preview https://deploy-preview-526--stackable-docs.netlify.app
Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site configuration.