-
Task
-
Resolution: Done
-
Undefined
-
None
-
None
-
None
To enable the MCO to replace the node-ca, the registry operator needs to provide its own CAs in isolation.
Currently, the registry provides its own CAs via the "image-registry-certificates" configmap. This configmap is a merge of the service ca, storage ca, and additionalTrustedCA (from images.config.openshift.io/cluster).
Because the MCO already has access to additionalTrustedCA, the new secret does not need to contain it.
ACCEPTANCE CRITERIA
TBD
- blocks
-
MCO-552 Add path for image registry certs
- Closed
- links to
1.
|
IR-390- Pre-merge testing | Closed | XiuJuan Wang | ||
2.
|
IR-390- E2E Automation | Closed | XiuJuan Wang | ||
3.
|
IR-390- CI Integration | Closed | XiuJuan Wang |