Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-145870

[RFE] keylime verifier shoud provide info about the pull/push setup

Linking RHIVOS CVEs to...Migration: Automation ...Sync from "Extern...XMLWordPrintable

    • No
    • None
    • rhel-security-special-projects
    • None
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • Unspecified
    • Unspecified
    • Unspecified
    • All
    • None

      What were you trying to do that didn't work?

      When agent and verifier are not configured in a compatible way (pull vs push mode discrepancy) the tenant should be able to report such a discrepancy at least in some cases.

      When run with --push-model, it should check if the verifier is configured for the push mode and report an error if not. Similarly for the pull model.

      This may require verifier to expose its configuration through a new API endpoint.

      What is the impact of this issue to you?

      The change should simplify identification of an incorrect keylime setup and possibly prevent customer tickets being opened.

       

              scorreia@redhat.com Sergio Correia
              ksrot@redhat.com Karel Srot
              Sergio Correia Sergio Correia
              Karel Srot Karel Srot
              Votes:
              0 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated: