- Notifications
You must be signed in to change notification settings - Fork 1.6k
Closed
kubernetes/kubernetes
#101992Labels
kind/featureCategorizes issue or PR as related to a new feature.Categorizes issue or PR as related to a new feature.sig/authCategorizes an issue or PR as relevant to SIG Auth.Categorizes an issue or PR as relevant to SIG Auth.sig/storageCategorizes an issue or PR as relevant to SIG Storage.Categorizes an issue or PR as relevant to SIG Storage.stage/stableDenotes an issue tracking an enhancement targeted for Stable/GA statusDenotes an issue tracking an enhancement targeted for Stable/GA status
Milestone
Description
Improved service account tokens
- One-line enhancement description (can be used as a release note): Improve security of service account tokens
- Kubernetes Enhancement Proposal: https://github.com/kubernetes/enhancements/tree/master/keps/sig-auth/1205-bound-service-account-tokens
- Primary contact (assignee): @zshihang
- Responsible SIGs: auth
- Enhancement target (which target equals to which milestone):
- feature gates: TokenRequest / TokenRequestProjection
- One-line description: Pods can request service account tokens with improved security.
- Documentation: https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/#service-account-token-volume-projection
- Alpha: v1.10
- Beta: v1.12
- GA: v1.20
- feature gate: RootCAConfigMap
- One-line description: Cluster CA information is available in a configmap in each namespace
- Alpha: v1.13 (part of BoundServiceAccountTokenVolume)
- Beta: v1.20
- GA: v1.21
- feature gate: BoundServiceAccountTokenVolume
- One-line description: Auto-configured service account tokens in pods use projected tokens
- Alpha: v1.13
- Beta: v1.21
- Stable: v1.22
- PR: TODO
- Docs: TODO
- feature gates: TokenRequest / TokenRequestProjection
armujahidarash-bizcover and blaargh
Metadata
Metadata
Assignees
Labels
kind/featureCategorizes issue or PR as related to a new feature.Categorizes issue or PR as related to a new feature.sig/authCategorizes an issue or PR as relevant to SIG Auth.Categorizes an issue or PR as relevant to SIG Auth.sig/storageCategorizes an issue or PR as relevant to SIG Storage.Categorizes an issue or PR as relevant to SIG Storage.stage/stableDenotes an issue tracking an enhancement targeted for Stable/GA statusDenotes an issue tracking an enhancement targeted for Stable/GA status
Type
Projects
Status
Closed / Done