sigstore/policy-controller
Sigstore Policy Controller - an admission controller that can be used to enforce policy on a Kubernetes cluster based on verifiable supply-chain metadata from cosign
GoNOASSERTION
Issues
- 7
Verify only pods
#1388 opened by dszakallas - 1
- 14
How can I disable mutation for managed sidecars
#1220 opened by BitRacer - 0
- 0
CordeDNS daemonset cannot be mutated
#1660 opened by hajnalmt - 1
- 3
Support for Sigstore Bundle Specification
#1406 opened by codysoyland - 2
signaturePullSecrets ignored
#1625 opened by ewuro - 2
Context deadline on my webhook
#1136 opened by Minivolk02 - 0
Add support for custom trusted root target
#1607 opened by codysoyland - 0
- 1
- 1
- 5
- 1
Update codegen is broken when updating the licenses
#1523 opened by hectorj2f - 0
Getting x509: certificate signed by unknown authority Error after applying ClusterImagePolicy
#1227 opened by senanz - 0
Events on validation fail
#1487 opened by webchi - 2
AKS Policy Controller Digest & Authentication Error
#1391 opened by ejohn20 - 1
Reduce verbosity option in policy-tester
#1219 opened by brajbou - 0
- 1
Add testdata generator for trustroot reconciler tests
#1324 opened by codysoyland - 1
Request to support non-identity based cert as verifier
#1318 opened by karaguo - 0
re-create expired tuf root
#1154 opened by hectorj2f - 5
Image Tag Mutating Webhook Causes Existing Deployments to go in Creation Loop
#1105 opened by SUSTAPLE117 - 1
Signature key validation failed
#990 opened by mmanirmd - 2
- 3
Disable update of "top level" objects
#745 opened by mlbiam - 2
- 1
- 0
Support Verification with Root CA
#935 opened by yangkenneth - 2
- 1
policy controller taking longer then 30s to complete
#797 opened by mlbiam - 3
I configured a "static" authorities but nothing help, is there anything wrong?
#888 opened by yxxchange - 0
Signature IDs aren't unique for the same image
#825 opened by wlynch - 0
Combine the two controller pods into a single pod
#631 opened by hectorj2f - 8
- 0
Feature Request: namespaced ImagePolicy
#810 opened by michaelst - 3
- 8
Simple policy to require a signature
#742 opened by mlbiam - 5
policy controller restarts if helm release name is not "policy-controller"
#662 opened by prudnitskiy - 10
- 0
Support Common Expression Language (CEL)
#693 opened by znewman01 - 4
Policy-controller failed to validate pods
#669 opened by prudnitskiy - 6
https_proxy support to download tuf-root from https://sigstore-tuf-root.storage.googleapis.com/
#673 opened by alekdu - 2
How to integrate own kms into Cosign and policy-controller admission controller?
#649 opened by qiaozhi92 - 2
Implement a simple in-mem cache (with opt-in).
#647 opened by vaikas - 3
Request: Policy-controller project logo
#648 opened by cpanato - 0
- 2
- 0
Prepare API type to v1
#632 opened by hectorj2f