Bug 868961 - be able to sign bundles to ensure they haven't been tampered with during deployment
be able to sign bundles to ensure they haven't been tampered with during depl...
Status: NEW
Product: RHQ Project
Classification: Other
Component: Provisioning (Show other bugs)
4.5
Unspecified Unspecified
unspecified Severity unspecified (vote)
: ---
: ---
Assigned To: RHQ Project Maintainer
Mike Foley
:
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2012-10-22 11:01 EDT by John Mazzitelli
Modified: 2012-10-22 11:01 EDT (History)
1 user (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed:
Type: Bug
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:


Attachments (Terms of Use)

  None (edit)
Description John Mazzitelli 2012-10-22 11:01:01 EDT
It would be nice to somehow allow the RHQ system to "sign" a bundle (perhaps, stamp it with a sha256 hashcode) that could then be checked by the agent when it downloads the bundle to ensure the bundle wasn't tampered with prior to being unpacked and deployed by the agent.

Note You need to log in before you can comment on or make changes to this bug.