Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Improve note on "Manage TLS Certificates": Replace "custom CA certificate" with "root CA certificate" for clarity #46223

Open
frasmarco opened this issue May 6, 2024 · 6 comments
Labels
language/en Issues or PRs related to English language needs-triage Indicates an issue or PR lacks a `triage/foo` label and requires one. sig/auth Categorizes an issue or PR as relevant to SIG Auth. sig/cluster-lifecycle Categorizes an issue or PR as relevant to SIG Cluster Lifecycle. triage/needs-information Indicates an issue needs more information in order to work on it.

Comments

@frasmarco
Copy link

in the note:

Note:

Even though the custom CA certificate may be included in the filesystem (in the ConfigMap kube-root-ca.crt),

I think "custom CA certificate" should be better rewritten as "root CA certificate" for clarity.

@k8s-ci-robot
Copy link
Contributor

This issue is currently awaiting triage.

SIG Docs takes a lead on issue triage for this website, but any Kubernetes member can accept issues by applying the triage/accepted label.

The triage/accepted label can be added by org members by writing /triage accepted in a comment.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository.

@k8s-ci-robot k8s-ci-robot added the needs-triage Indicates an issue or PR lacks a `triage/foo` label and requires one. label May 6, 2024
@dipesh-rawat
Copy link
Member

Page reported in issue (based on the title): https://kubernetes.io/docs/tasks/tls/managing-tls-in-a-cluster/
/language en

@k8s-ci-robot k8s-ci-robot added the language/en Issues or PRs related to English language label May 6, 2024
@dipesh-rawat
Copy link
Member

/retitle Improve note on "Manage TLS Certificates": Replace "custom CA certificate" with "root CA certificate" for clarity
/sig auth cluster-lifecycle

@k8s-ci-robot k8s-ci-robot changed the title Manage TLS Certificates in a Cluster Improve note on "Manage TLS Certificates": Replace "custom CA certificate" with "root CA certificate" for clarity May 6, 2024
@k8s-ci-robot k8s-ci-robot added sig/auth Categorizes an issue or PR as relevant to SIG Auth. sig/cluster-lifecycle Categorizes an issue or PR as relevant to SIG Cluster Lifecycle. labels May 6, 2024
@frasmarco
Copy link
Author

@dipesh-rawat This is not related to auth or cluster lifecycle SIGs, those aren't cluster certificates but application. "These CA and certificates can be used by your workloads to establish trust." I think the only SIG involved is documetation

@sftim
Copy link
Contributor

sftim commented May 6, 2024

Even though the custom CA certificate may be included in the filesystem (in the ConfigMap kube-root-ca.crt),

“custom” is not a synonym for “root”. We might want to write “custom trust anchor (the root certificate)”, or something like that. Although the ConfigMap is named kube-root-ca.crt, its key role is to provide a trust anchor (and, despite the name, I think that it can actually be an intermediate CA).

Which web page needs amending? Can you provide the URL @frasmarco?

@sftim
Copy link
Contributor

sftim commented May 6, 2024

/triage needs-information

@k8s-ci-robot k8s-ci-robot added the triage/needs-information Indicates an issue needs more information in order to work on it. label May 6, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
language/en Issues or PRs related to English language needs-triage Indicates an issue or PR lacks a `triage/foo` label and requires one. sig/auth Categorizes an issue or PR as relevant to SIG Auth. sig/cluster-lifecycle Categorizes an issue or PR as relevant to SIG Cluster Lifecycle. triage/needs-information Indicates an issue needs more information in order to work on it.
Projects
Status: Pre-triage follow-up
Development

No branches or pull requests

4 participants