Uploaded image for project: 'OpenShift Container Platform (OCP) Strategy'
  1. OpenShift Container Platform (OCP) Strategy
  2. OCPSTRAT-2156

Token Minting API for Control Plane log forwarding

XMLWordPrintable

    • Product / Portfolio Work
    • None
    • False
    • Hide

      None

      Show
      None
    • False
    • None
    • 7
    • None
    • None
    • None
    • None
    • None
    • None

      1. Proposed title of this feature request

      Token Minting API for Control Plane log forwarding. 

      2. What is the nature and description of the request?

      ROSA Customers want Control Plane logs forwarded to CloudWatch in their AWS Accounts.

      The component implementing log forwarding (Cluster Logging Operator) requires a Secret with the token from a given Service Account from the Hosted Cluster.

      Cluster Logging Operator doesn't support the injection of a sidecar container for token minting.

      This request is for making the token minting proccess a first class API in the Hosted Cluster that can be configured, untimatelly generating a Secret with the token to be consumed by Cluster Logging Operator.

      3. Why does the customer need this? (List the business requirements here)

      To fulfill their audit and security requirements.

      4. List any affected packages or components.

      control-plane-operator

       

      References:

              racedoro@redhat.com Ramon Acedo
              asegundo+sd-mt-sre Amador Pahim
              None
              Aaren de Jong
              None
              None
              None
              Senthamilarasu S Senthamilarasu S
              Votes:
              0 Vote for this issue
              Watchers:
              6 Start watching this issue

                Created:
                Updated:
                Resolved: