Uploaded image for project: 'Red Hat OpenStack Services on OpenShift'
  1. Red Hat OpenStack Services on OpenShift
  2. OSPRH-9288

Fernet key rotation - run command

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Normal Normal
    • rhos-18.0 FR 1 (Nov 2024)
    • None
    • None
    • None
    • DFG Security: UC Sprint 100, DFG Security: UC Sprint 101
    • 2

      The run command should:

      1. Copy the mounted secret files into a temporary location
      2. Run keystone-manage to rotate the secret
      3. Save the new values into the fernet token secret
      4. Each step should be logged

      Alternatively, the keystone-manage command could be replaced, so that we don't depend on keystone, which would enable us to just use a standard kubectl image.

              ggrasza@redhat.com Grzegorz Grasza
              ggrasza@redhat.com Grzegorz Grasza
              rhos-dfg-security
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: