Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add FIPS build of ADP and bundled ADP/Agent image. #508

Open
tobz opened this issue Feb 18, 2025 · 1 comment
Open

Add FIPS build of ADP and bundled ADP/Agent image. #508

tobz opened this issue Feb 18, 2025 · 1 comment
Labels
area/ci CI/CD, automated testing, etc. effort/simple Involves trivial changes that should be fine so long as the code compiles and tests pass. type/chore Updates to dependencies or general "administrative" tasks necessary to maintain the codebase/repo.

Comments

@tobz
Copy link
Member

tobz commented Feb 18, 2025

As part of eventually meshing with the Datadog Agent, we need to produce a FIPS-compliant build of ADP as well as a FIPS-compliant ADP-bundled Agent image.

This would involve a new build step that enables the fips feature flag when building ADP, and then another build step for building the converged image using new FIPS-compliant ADP binary. One complication with building the converged image is that there is not yet a public image tag for the Agent to get the FIPS-compliant Agent stuff.

@tobz tobz added area/ci CI/CD, automated testing, etc. effort/simple Involves trivial changes that should be fine so long as the code compiles and tests pass. type/chore Updates to dependencies or general "administrative" tasks necessary to maintain the codebase/repo. labels Feb 18, 2025
@tobz
Copy link
Member Author

tobz commented Feb 20, 2025

As of #509, we're at least generating FIPS-compliant ADP builds (build-adp-image-fips CI job) but we're still waiting on the generation of public FIPS-compliant Agent container images before we can generate FIPS-compliant ADP-bundled images.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/ci CI/CD, automated testing, etc. effort/simple Involves trivial changes that should be fine so long as the code compiles and tests pass. type/chore Updates to dependencies or general "administrative" tasks necessary to maintain the codebase/repo.
Projects
None yet
Development

No branches or pull requests

1 participant