Skip to content
Snippets Groups Projects
Open Deal with expired or near-expiration trusted keys
  • View options
  • Deal with expired or near-expiration trusted keys

  • View options
  • Open Issue created by drebs

    We currently only allow provisioning to production if pushes are signed with "trusted keys". If a trusted key expires, the admin will not be able to push and will need to do manual intervention in the server to recover.

    We need to:

    • Provide instructions to update keys directly in the server when one is locked out.
    • Try to update keys when near expiration.
    • Notify when a key is near expiration.
    0 of 3 checklist items completed · Edited by drebs
    • Merge request
    • Branch

    Activity

    • All activity
    • Comments only
    • History only
    • Newest first
    • Oldest first