zuul/doc/source/discussion
James E. Blair 3647139920 Move key_store_password to keystore section in zuul.conf
This is likely to be needed by executors as well since passing
decrypted secrets to the executors via zookeeper has the same
encrypted-at-rest concerns as they keystore itself.  To avoid
confusion around executors needing a zuul.conf with a scheduler
section, start a new keystore section which we can later indicate
is used by schedulers and executors.  It also makes it convenient
to add new options (like those dealing with rotation, or even
using an external keystore).

Also change some log levels from debug to info where it's useful
for the operator to know that the backup keystore was used (or
a key was generated).

Change-Id: If2491bbe4eb80b76435a274cf5354a4918315e65
2021-04-14 06:42:44 -07:00
..
components.rst Move key_store_password to keystore section in zuul.conf 2021-04-14 06:42:44 -07:00
concepts.rst Fix nits from initial reorg 2020-01-14 16:41:53 -05:00
encryption.rst tools: Deprecate encrypt_secret.py, document zuul-client encrypt 2020-12-09 11:30:59 +00:00
gating.rst Doc updates for Github interaction 2020-08-20 09:15:23 +10:00
github-checks-api.rst github status api docs : update 2020-08-04 16:15:35 +10:00
index.rst Provide some documentation for the checks API implementation 2020-05-12 18:43:50 +02:00
tenant-scoped-rest-api.rst Support promote via tenant scoped rest api 2020-07-24 14:36:17 +02:00