Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Remove certificate secrets after compliance scan is done #291

Open
bukovjanmic opened this issue Apr 14, 2023 · 0 comments
Open

Remove certificate secrets after compliance scan is done #291

bukovjanmic opened this issue Apr 14, 2023 · 0 comments

Comments

@bukovjanmic
Copy link

Currently, there is a number of certificates generated for a compliance scan, which have 1 day validity.

After the scan is done, the certificate secrets are left and only deleted/replaced before next scan.

On the cluster, we have cert-utils-operators, which guards against expired certificates. Thus, a number of alerts is generated for each such certificate, as all certificates expire before new ones are generated.

Since the certificates does not seem to be used after the compliance scan is done anymore, would it be possible to remove them once they are not needed anymore?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant