Citadel
E699845
Citadel is Istio’s security component responsible for issuing and managing cryptographic identities and certificates for services in a mesh.
Statements (30)
| Predicate | Object |
|---|---|
| instanceOf |
Istio component
ⓘ
security component ⓘ |
| appliesTo | services in a service mesh ⓘ |
| associatedWith | Istio security architecture ⓘ |
| category | service mesh security component ⓘ |
| enables | secure communication between services ⓘ |
| ensures |
authenticity of service-to-service traffic
ⓘ
confidentiality of service-to-service traffic ⓘ integrity of service-to-service traffic ⓘ |
| hasRole |
issuing certificates
ⓘ
issuing cryptographic identities ⓘ managing certificates ⓘ managing cryptographic identities ⓘ |
| implements | Istio authentication policies ⓘ |
| interactsWith | Envoy sidecars NERFINISHED ⓘ |
| issues | X.509 certificates NERFINISHED ⓘ |
| manages |
service certificates
ⓘ
service identities ⓘ |
| operatesIn | control plane of Istio ⓘ |
| partOf | Istio NERFINISHED ⓘ |
| provides |
certificate management for services
ⓘ
identity management for services ⓘ |
| relatedTo | Istio sidecar proxies ⓘ |
| responsibleFor |
certificate revocation handling
ⓘ
key and certificate rotation ⓘ secure key provisioning ⓘ |
| supports |
mutual TLS authentication
ⓘ
workload identity provisioning ⓘ |
| usedIn | service mesh security ⓘ |
| uses | public key infrastructure ⓘ |
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.