chains
chains copied to clipboard
Supply Chain Security in Tekton Pipelines
# Changes While the backwards compatible tag-based attestation method works, it can result in a lot of additional tags being pushed to OCI registries. In order to maintain fewer tags,...
# Expected Behavior When defining Vault as the KMS we should be able to use JWT Auth as an OIDC login in Vault when signing images and taskruns, by only...
### Feature request Prow will stay around for tide and other helpful services for now, but it will not be available anymore soon to run CI jobs. Please migrate them...
Tekton Chains used to be configured in the dogfooding cluster on GCP to use Google KMS service. All GCP services have been de-provisioned. For posterity, this is the public key...
# Expected Behavior The documentation should be consistent in the way chains authenticate to OCI registry # Actual Behavior Page https://tekton.dev/docs/chains/authentication/ says create secret using secret value as `.dockerconfigjson` ```bash...