This site does not allow itself to be embedded. You can still read it on the original site — the toolbar below keeps your place in the directory.
This article is a short followup to my last article about cosign. I received many questions for my last article. The most common one was: “But wait! If the certificates are only valid for 30 minutes, how are my users supposed to validate my artifacts?” This is very common misconception and to be honest: I ran into the same trap at first. The terms “ephemeral” or…
Comments
Nothing yet. Say the first thing.
Sign in to join the conversation.