New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Proposal: Trust system #9036
Proposal: Trust system #9036
Conversation
So if I run: $ docker login am I registering my client's key, my daemon/engine's key, or both? |
|
Docker uses a trust system based on public key cryptography and a global federated namespace to link users to keys and resources. | ||
|
||
## Login | ||
The `docker login` command can be used to register public keys with the trust system. By default every client and daemon instance of Docker will generate a public key and using `docker login` will register that public key with the credentials provided on login. By default `docker login` registers against Docker Hub using Docker Hub credentials. An authentication server URL may also be provided to register with. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
docs need to be line wrapped at 80 chars - it makes the GH diffs viewable
d2b1e94
to
b61517f
Compare
@SvenDowideit reformatted |
nice :) - i just remembered - for your document to be included in |
Signed-off-by: Derek McGowan <derek@mcgstyle.net> (github: dmcgowan)
Redefined the trust server to included endpoints for managing the graph. The role of statements has also be reduced to keep the trust server from needing to generate content for the users. Signed-off-by: Derek McGowan <derek@mcgstyle.net> (github: dmcgowan)
cd1263b
to
99816b0
Compare
Signed-off-by: Derek McGowan <derek@mcgstyle.net>
Signed-off-by: Derek McGowan <derek@mcgstyle.net>
Signed-off-by: Derek McGowan <derek@mcgstyle.net>
Makes sense. Let's close it for now and have it out of your way - will re-open later when "trust" is updated. |
Documentation for the trust system which will be used for provenance and the V2 registry. The trust system is intended to be generic and able to be used for a wider range of authorizing users through their public key.