Uploaded image for project: 'OpenShift Bugs'
  1. OpenShift Bugs
  2. OCPBUGS-55077

For security reason the signature verification should be enabled by default

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Won't Do
    • Icon: Normal Normal
    • None
    • 4.19.0
    • oc-mirror
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      Currently the default for signature verification is disabled.

      Because of security reasons, this default should be changed to always verify the signature.

      IMPORTANT: Before changing the default to always verifying the signature, it is needed to double check if the signature verification for cosign tag-based signatures are working fine.

              Unassigned Unassigned
              rh-ee-aguidi Alex Guidi
              None
              None
              Nidan Gavali Nidan Gavali
              None
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: