Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Generate Puppet certs for each volume? #3

Open
negz opened this issue Oct 5, 2016 · 0 comments
Open

Generate Puppet certs for each volume? #3

negz opened this issue Oct 5, 2016 · 0 comments

Comments

@negz
Copy link
Owner

negz commented Oct 5, 2016

Talos performs a regex match against the client cert CN provided by callers (i.e. secret volume) in order to determine which secrets they get, optionally falling back to just giving the caller the secrets they ask for using URL params (i.e. secret volume's 'Tags').

Since secret volume is intended to manage secret volumes for attachment to Helios managed Docker containers it might be neat to request a Puppet certificate for each 'volume' (i.e. Docker container). Alternatively this could remain the responsibility of the caller.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant