Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add Key Management Provider for Trusted Signing #1818

Open
1 task
yizha1 opened this issue Sep 19, 2024 · 1 comment
Open
1 task

Add Key Management Provider for Trusted Signing #1818

yizha1 opened this issue Sep 19, 2024 · 1 comment
Labels
enhancement New feature or request triage Needs investigation

Comments

@yizha1
Copy link
Collaborator

yizha1 commented Sep 19, 2024

What would you like to be added?

Currently, Ratify supports fetching certificates/keys stored in Azure Key Vault (AKV) for signature verification. Trusted Signing is a fully managed, end-to-end solution. Here are some benefits:

  • Simplified Signing Process
  • Zero-Touch Certificate Management
  • Integration with Developer Tools
  • Support for Various Trust Scenarios

Trusted Signing offers a streamlined signing and verification experience. Therefore, this enhancement request is to add a new Key Management Provider for Trusted Signing.

Anything else you would like to add?

I will create a proposal to describe the scenarios and proposed user experience.

Are you willing to submit PRs to contribute to this feature?

  • Yes, I am willing to implement it.
@yizha1 yizha1 added enhancement New feature or request triage Needs investigation labels Sep 19, 2024
@yizha1
Copy link
Collaborator Author

yizha1 commented Sep 26, 2024

I recommend considering the enhancement for the upcoming v1.4.0 milestone tentatively, as we first need to prepare the proposal and design document, in addition to planning collaboration with other communities. We can revisit the timeline for this issue in Oct.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request triage Needs investigation
Projects
None yet
Development

No branches or pull requests

1 participant