<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Joshua T. Casey on Pinniped</title><link>https://deploy-preview-3014--pinniped-dev.netlify.app/tags/joshua-t.-casey/</link><description>Recent content in Joshua T. Casey on Pinniped</description><generator>Hugo -- gohugo.io</generator><language>en-us</language><lastBuildDate>Wed, 07 Aug 2024 00:00:00 +0000</lastBuildDate><atom:link href="https://deploy-preview-3014--pinniped-dev.netlify.app/tags/joshua-t.-casey/index.xml" rel="self" type="application/rss+xml"/><item><title>Pinniped v0.33.0: Externally-managed CA bundles for Pinniped's custom resources</title><link>https://deploy-preview-3014--pinniped-dev.netlify.app/posts/externally-managed-ca-bundles/</link><pubDate>Wed, 07 Aug 2024 00:00:00 +0000</pubDate><guid>https://deploy-preview-3014--pinniped-dev.netlify.app/posts/externally-managed-ca-bundles/</guid><description>Photo from Unsplash
Pinniped&amp;rsquo;s v0.33.0 release enables Pinniped administrators to use externally-provided CA bundles for all custom resources for which Pinniped acts as a client. This includes OIDC identity providers, LDAP and Active Directory servers, GitHub Enterprise Servers, and any JWT or webhook authenticators running on or off the cluster.
This should reduce manual steps to install or configure Pinniped, since administrators no longer need to provide the CA bundle inline within a Pinniped custom resource, and can instead use a ConfigMap or Secret object in the same namespace as Pinniped Supervisor or Concierge.</description></item><item><title>Pinniped v0.25.0: With External Certificate Management for the Impersonation Proxy and more!</title><link>https://deploy-preview-3014--pinniped-dev.netlify.app/posts/v0-25-0-external-cert-mgmt-impersonation-proxy/</link><pubDate>Wed, 09 Aug 2023 00:00:00 +0000</pubDate><guid>https://deploy-preview-3014--pinniped-dev.netlify.app/posts/v0-25-0-external-cert-mgmt-impersonation-proxy/</guid><description>Photo by karlheinz_eckhardt Eckhardt on Unsplash
With Pinniped v0.25.0 you get the ability to configure an externally-generated certificate for Pinniped Concierge&amp;rsquo;s impersonation proxy to serve TLS. The impersonation proxy is a component within Pinniped that allows the project to support many types of clusters, such as Amazon Elastic Kubernetes Service (EKS), Google Kubernetes Engine (GKE), and Azure Kubernetes Service (AKS).
To read more on this feature, and the design decisions behind it, see the proposal.</description></item></channel></rss>