Skip to content

The operator needs to refresh broker tokens periodically #1673

@skitt

Description

@skitt

This is part of submariner-io/enhancements#56

When CAs are rotated, the corresponding secrets are automatically regenerated. This happens before CAs expire, and new secrets can be verified with old and new CAs. To survive actual rotation, all users of a given secret need to have the updated secret. As part of this, the operator should retrieve the secret used to access the broker periodically, and ensure that pods deployed with access to that key are made aware of the change.

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

Status

Backlog

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions