service-account-issuer-24h-grace

Status: IN

Changing `spec.serviceAccountIssuer` on the Authentication resource does not immediately invalidate existing tokens — a 24-hour grace period allows internal components to transition.

Source: entries/2026/03/05/en-documentation-openshift_container_platform-417-html-config_apis-authenticatio.md

JSON