Skip to content

[v16] Workload Identity Revocations Signing (#52353)#52502

Merged
strideynet merged 6 commits intobranch/v16from
strideynet/v16/backport-52353
Feb 27, 2025
Merged

[v16] Workload Identity Revocations Signing (#52353)#52502
strideynet merged 6 commits intobranch/v16from
strideynet/v16/backport-52353

Conversation

@strideynet
Copy link
Copy Markdown
Contributor

Backports #52353

changelog: Added support for X509 revocations to Workload Identity.

* Add initial implementation of CRL signing

* Clarify

* Add basic support for streaming signed CRL to `tctl`

* Add log messages

* Start adding CRL support to tbot

* Wire in CRL support to workload-identity-x509

* Wire up crlCache to dependent services

* Fix missing cluster name injectiont

* Run the background goroutine

* FIx notification mechanism

* Add CRL assertions to TestBotWorkloadIdentityX509

* Add appropriate backoff to RevocationService

* Start work on TestRevocationService_CRL

* Change comparison in test

* Finish TestRevocationService_CRL

* Add CRL assertion to TestBotWorkloadIdentityAPI

* Fix linter complaint

* Update lib/tbot/service_workload_identity_api_test.go

Co-authored-by: Dan Upton <daniel.upton@goteleport.com>

* Update lib/tbot/service_workload_identity_api_test.go

Co-authored-by: Dan Upton <daniel.upton@goteleport.com>

* Rename KeyStorer

* Trigger CRL signing every ten minutes

* ADd SVIDCRLPemPath to Describe

---------

Co-authored-by: Dan Upton <daniel.upton@goteleport.com>
@public-teleport-github-review-bot public-teleport-github-review-bot Bot removed the request for review from timothyb89 February 27, 2025 10:06
@strideynet strideynet added this pull request to the merge queue Feb 27, 2025
@github-merge-queue github-merge-queue Bot removed this pull request from the merge queue due to failed status checks Feb 27, 2025
@strideynet strideynet added this pull request to the merge queue Feb 27, 2025
@github-merge-queue github-merge-queue Bot removed this pull request from the merge queue due to failed status checks Feb 27, 2025
@strideynet strideynet added this pull request to the merge queue Feb 27, 2025
Merged via the queue into branch/v16 with commit 9e64647 Feb 27, 2025
@strideynet strideynet deleted the strideynet/v16/backport-52353 branch February 27, 2025 11:42
@camscale camscale mentioned this pull request Mar 6, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants