kcrypt-challenger/examples/sealedvolume.yaml

23 lines
508 B
YAML
Raw Normal View History

2022-10-09 22:32:56 +00:00
# echo '{ "data": "{ \\"label\\": \\"COS_PERSISTENT\\" }"}' | sudo -E WSS_SERVER="http://localhost:8082/challenge" ./challenger "discovery.password"
apiVersion: v1
kind: Secret
metadata:
name: mysecret
namespace: default
type: Opaque
stringData:
pass: "awesome-passphrase"
---
apiVersion: keyserver.kairos.io/v1alpha1
kind: SealedVolume
metadata:
name: test
namespace: default
spec:
TPMHash: "something"
label: "label"
passphraseRef:
name: mysecret
path: pass
quarantined: false