Uploaded image for project: 'OpenShift Service Mesh'
  1. OpenShift Service Mesh
  2. OSSM-12090 SPIFFE with OSSM Ambient mode
  3. OSSM-12189

SPIFFE Delegated Identity API: Expose Spire-Agent Admin Socket

XMLWordPrintable

    • Icon: Sub-task Sub-task
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • Ztunnel
    • None
    • False
    • Hide

      None

      Show
      None
    • False

      Ambient have no sidecar, thus to fetch SPIFFE identity we need to implement the SPIFFE Delegated Identity API. The Delegated Identity API works over Spire-Agent Admin socket. 

      We need to expose spire-agent admin socket and make it available to ztunnel pods.  

              dkartsev1@redhat.com Dmitry Kartsev
              dkartsev1@redhat.com Dmitry Kartsev
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: