Skip to main content

mTLS SPIFFE Trust Model

Status

This concept is planned in the documentation information architecture but is not fully documented yet.

What This Page Will Explain

This page is expected to describe how Keymate uses SPIFFE (Secure Production Identity Framework for Everyone) and mTLS to verify the identity of workloads communicating within the platform. It will cover how SPIFFE IDs are assigned, how mTLS certificates are validated, and how this identity layer supports trust decisions across platform components.

Current State

The underlying capability may be:

  • not fully exposed as a user-facing feature yet
  • still under design or architectural review.

Why This Page Is a Placeholder

This placeholder preserves the planned documentation structure without documenting behavior that does not yet exist in a stable form.