# 20221118_art-secret-population --- NOTE these are all the same values mostly as the devel pipeline - coreos-aarch64-builder-ssh-key - DONE - dusty added it - coreos-ppc64le-builder-sshkey - DONE - dusty added it - coreos-s390x-builder-ssh-key - DONE - dusty added it - Red Hat CoreOS pipeline additional-root-ca-cert secret - DONE - dusty added it --- These have different values than the devel pipeline - Red Hat CoreOS pipeline powervs-image-upload-config secret - DONE - dusty had access to secret - Red Hat CoreOS pipeline slack-api-token secret - DONE - already set up a while back when I created the other slack token - Red Hat CoreOS Prod pipeline aws-govcloud-image-upload-config secret - DONE - Dusty added stencil - Luke added secret content - Red Hat CoreOS pipeline aliyun-image-upload-config secret - DONE - Dusty added stencil - Luke added secret content - Red Hat CoreOS pipeline aws-build-upload-config secret - DONE - Luke added secret content - Red Hat CoreOS pipeline gcp-image-upload-config secret - DONE - Dusty added stencil - Luke added secret content - Red Hat CoreOS Pipeline azure-image-upload-config secrets - Dusty added stencil - ready for secret content to be included - Needs to be transformed slightly: - https://coreos.slack.com/archives/C03MX36D7C4/p1668804110514419?thread_ts=1668784603.766589&cid=C03MX36D7C4 - Red Hat CoreOS pipeline Quay.io oscontainer-push-old-registry-secret - Dusty added stencil - ready for secret content to be included - [lmeyer] do we need this? what's it for? don't we need a registry.ci secret? - [jlebon] this one is for copying machine-os-content to registry.ci for 4.11 and older - [jlebon] actually, currently it'll copy it for 4.12+ also even though it's not necessary, but doesn't hurt either. we'll extend the pipeline to stop doing this - [dustymabe] should this secret have `Quay.io` in the name? - [jlebon] the pipeline itself is generic over which registry is actually configured to push to in `registry_repos` - Red Hat CoreOS pipeline Quay.io oscontainer-push-registry-secret - Dusty added stencil - ready for secret content to be included - [lmeyer] what is the format of this? i added a dockercfg file (registry.ci and quay.io) - [jlebon] this one is for pushing machine-os-content to quay.io for all releases - [jlebon] if the secret contains the push secret for both registry.ci and quay.io, then that's all we need (i.e. the `oscontainer-push-old-registry-secret` is only required if they can't be unified)