Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support for Cloud vaults #145

Closed
bshaaban opened this issue Dec 21, 2021 · 2 comments
Closed

Support for Cloud vaults #145

bshaaban opened this issue Dec 21, 2021 · 2 comments

Comments

@bshaaban
Copy link

Hello Notary project members, this is my first issue here and hopefully I'll be starting to contribute soon as well.

I've seen there's been an issue created about vault credentials exchange alternatives where Azure cloud is mentioned in the comments.

But I have not seen an official cloud vault integration support mentioned in the spec nor in this implementation. I'm wondering if this is something that can be added somewhere or mentioned in the specs?

In addition to Azure Cloud, I think the community would be interested in AWS KMS, HashiCorp's Vault and probably Google's GCP.

Thanks for your input and looking forward to working with the community.

@SteveLasker
Copy link
Contributor

Hi @bshaaban, thanks for the issue.
We have implemented notation-azure-kv and are looking for help implementing a hashicorp plug-in, as well as any other plug-ins.
Please see the draft extensibility spec for details, and the notation-azure-kv for a reference implementation.

The design of notary's extensibility is the flexibility for someone to implement, support and innovate their cloud provider without any dependency on the notary maintainers. Otherwise, a critical servicing event could block a cloud or project.

Closing as I think we've captured this issue, and look forward to new issues, or possibly a hashicorp or other cloud provider/project implementation.

@bshaaban
Copy link
Author

Thanks @SteveLasker for the reply and the links. I'll try to help when I can soon.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants