...
- All VM IMages will have the sha specified for verification
- Current behavior - no changes here.
- For Containers:
- In an Image, User can OPTIONALLY specify SHA of manifest.
- If specified, this is verified after the manifest is downloaded.
- If Manifest SHA is NOT Specified
- Download the manifest, Calculate the SHA and use it for internal purposes ( Image Tracking ).
- Report the SHA back to the controller in info msg for app instance.
- In an Image, User can OPTIONALLY specify SHA of manifest.
- If Manifest SHA is NOT Specified
- Need to add an abstraction from ImageObjectID to SHA of the Image.
- Currently, there is an assumption that IMAGE-OBJECT-ID is unchangeable. This needs to change.
- This may be true for VMs also, as we allow the VM image to be stored in a docker registry.
- In EVE, ImageObjectID needs to be resolved to a SHA
- Multiple images can resolve to the same SHA.
- ImageObjectID -> SHA is resolved during App Instance Create
- This can be updated using the “RefreshImage” trigger
- .
- Currently, there is an assumption that IMAGE-ID is unchangeable. This needs to change
4 APPENDIX - Comment from AVI - Alternate Proposal
...