Uploaded image for project: 'OpenShift Hosted Control Plane'
  1. OpenShift Hosted Control Plane
  2. HOSTEDCP-457

Implement CA Certificate Rotation

XMLWordPrintable

    • Icon: Epic Epic
    • Resolution: Unresolved
    • Icon: Critical Critical
    • None
    • None
    • None
    • Implement CA Certificate Rotation
    • BU Product Work
    • False
    • None
    • False
    • Yellow
    • To Do
    • OCPSTRAT-693 - Implement Rotation Procedure for Hypershift Cluster CAs/Certs/Keys
    • OCPSTRAT-693Implement Rotation Procedure for Hypershift Cluster CAs/Certs/Keys
    • 100% To Do, 0% In Progress, 0% Done
    • 0
    • 0
    • 0

      Self-hosted OCP rotates not only serving certificates but also the CA signers. 

      See: https://github.com/openshift/cluster-kube-apiserver-operator/blob/72074e8e5494c42c9517c7376193d5216246f567/pkg/operator/certrotationcontroller/certrotationcontroller.go

      We need to implement a similar mechanism in HyperShift

            cewong@redhat.com Cesar Wong
            azaalouk Adel Zaalouk
            Jie Zhao Jie Zhao
            Votes:
            0 Vote for this issue
            Watchers:
            8 Start watching this issue

              Created:
              Updated: