-
Feature Request
-
Resolution: Unresolved
-
Normal
-
None
-
None
-
None
-
False
-
-
False
-
None
VM images stored as OCI artifacts can be signed using cosign.
CNV must ensure that when a VM is created from a signed image the VM is only created after successful image signature verification.
This is a similar feature to what OpenStack supports and what OpenShift supports for containers.
- is triggered by
-
OCPSTRAT-2471 Enable sigstore 'openshift' clusterimagepolicy by default to enable payload index image verification
-
- In Progress
-
- relates to
-
CNV-48301 Adopt Read Only Volumes Based On OCI Artifacts
-
- New
-