Skip to content

[Feat]: Configuration Attestor #414

@jkjell

Description

@jkjell

Describe the solution you'd like:

A pre-material attestor could capture the configuration of the witness run operation to ensure the command was observed with the proper set of configuration values.

User value:

This will allow an additional layer of protections to subsequent policy verification to ensure the intent of process observation matches reality.

Expected behavior:

A configuration attestor captures relevant CLI parameters and stores them in the attestation-collection

Testing changes required:

Unit tests of the new attestor and policy test to ensure functionality

Documentation changes required:

Document json schema and context of the new attestor.

Metadata

Metadata

Assignees

No one assigned

    Labels

    featureNew feature (larger than enhancement)good first issueGood for newcomers

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions