helm-charts icon indicating copy to clipboard operation
helm-charts copied to clipboard

require an explict setting for signer (rekor & fulcio) rather than an implicit default of memory

Open bobcallaway opened this issue 6 months ago • 1 comments

Description

We've had several users be surprised by the behavior of both rekor & fulcio (as deployed by the helm charts) where the default signer is the memory option - this is nice for testing purposes, but not great for actual deployments where you would want a longer-lived key to be used (via KMS, HSM, etc).

We should remove the implicit default and require users to explicitly select one.

bobcallaway avatar Aug 21 '24 19:08 bobcallaway