flux v2.9.5

OCIRepository.spec.verify.trustedRootSecretRef

TrustedRootSecretRef specifies the Kubernetes Secret containing a Sigstore trusted_root.json file. This enables verification against self-hosted Sigstore infrastructure (custom Fulcio CA, self-hosted Rekor instance). The Secret must contain a key named "trusted_root.json".

1 fields
OCIRepository.spec.verify.trustedRootSecretRef fields and descriptions
Field / TypeDescription
name
string required

Name of the referent.