Skip to content

[blog] how to do push/sign with GitLab CI then verify/pull with Flux #1687

@nagyv

Description

@nagyv

As discussed in Slack, I'd like to write a blog post on how to use Flux with GitLab and cosign with OCI artifacts.

Proposal

A blog post of

  • package and push a minimal k8s app with GitLab pipelines to the GitLab container registry as an OCI artifact
  • sign the artifact
  • trigger immediate reconciliation
  • create a pipeline with automatic deployment to staging and manual deployment for production (the OCI for production is built after a manual action)
  • "appendix" on building a custom image with cosign+flux+jq bundled together to be used in the pipeline

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions