/
2025-04-22 SIG Security Minutes

2025-04-22 SIG Security Minutes

 

Community Attendees:

@Francois Duthilleul

@Tom Kivlin

@Prashant Mishra

@Gaurav Kumar

@Byung-Woo Jun

Community Attendees:

LF Staff:

Agenda

Antitrust Policy

  • Action Items Review

  •  

Minutes

  • Francois provided a comparison of ESO and SSCSID: https://nephio.slack.com/files/U03QWSM4V29/F08NVNJMSQ3/overview_-_sscsi_vs_external_secrets_operator.pdf

  • For the first pilot we will propose encryption of etcd / node to protect secrets stored in k8s

  • Regarding which solution to use, we can use e.g. ESO but need to align with SIG-Automation to understand how opinionated Nephio is about these “platform” choices - Prashant will send a message to SIG-Automation to trigger discussion

  • Secrets management solution needs to support SPIFFE integration - Prashant will include in the document

  • Checkov scan has completed - Gaurav will upload document to Slack

Action items

Related content