Skip to content

[question] registryScopes in trust policy #278

Description

@fseldow

Hi team,
i am reading the structure of trust policy properties, might have one question about registryScopes
https://github.com/notaryproject/specifications/blob/main/specs/trust-store-trust-policy.md#trust-policy-properties

The article said The scope field supports filtering based on fully qualified repository URI ${registry-name}/${namespace}/${repository-name}. I have one scenario that all my images from certain registry or namespace are signed by same cert. So i would like to input ${registry-name}/* or ${registry-name}/${namespace}/*. However, it does not support according to the doc. So if possible, may i know the reason that we have to input the full url for registry scopes?

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    duplicateThis issue or pull request already exists

    Type

    No type

    Projects

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions