UNCLASSIFIED - NO CUI

IronBank / Stargate tag up

EDIT [add]: Acceptance Criteria:

  • Establish communication forum to discuss the below questions and confirm IB and SG personnel can contribute.
  • Initialize with information from previous related tickets.

Ironbank -> Stargate -> IL6 technical discussion

Purpose: Capture questions and constraints relevant to the design of a system to migrate ironbank containers to IL6 Please edit this description directly to add questions. To discuss a question, open a new comment or reply to an existing one if it is already open.

Questions

IB -> SG

1.1 When will an image be injected into the SG pipeline? Will it involve a separate pipeline from main IB pipeline? Does it involve a manual step (initially or permanently)?

1.2 What formats and/or approaches can export images from Registry1 and maintain image/layer integrity (images ingested at IL6 are identical to those pulled from IL2 Registry1)?

1.3. What metadata (and formats) will be delivered along with the image (e.g. VAT data)?

1.4. What does the [customer] -> stargate interface look like? What is it today? What do we plan for MVP? What ideas do we have for post-MVP?

1.5. How would we support copying new layers instead of entire images (so that we minimize data transferred across the diode)?

1.6. [insert here]

SG -> IL6

2.1. Where do the images go when the leave the SG pipeline (so that they can be used by customers)? What's the MVP and what options do we want in the future?

2.2. Where would the image metadata be stored?

2.3. Are there other dependencies that images need to be usable besides storage? (e.g. other services)?

2.4. What would the SG-> [Customer] interface look like?

2.5. [insert here]

Other

3.1. What is the desired behavior / feedback if an image is unable to be transported unchanged across the diode?

3.2. [insert here]

Currently known constraints

Confirmed requirements that constrain this design

4.1. [insert here]

Ambiguous constrains

Things we have heard from stakeholders that may constrain this design

5.1. Avoid special handling in stargate for each customer ("no snowflakes" request from CSO)

5.2. [insert here]

Edited by stephen.swanson