Server Configuration
Configure behavior that runs on the Trust Domain Server itself, rather than on the agent. This covers how a self-hosted server authenticates to the Defakto Control Plane, and how server-side extensions let you plug your own logic into SVID issuance without changes to Defakto.
Keyless Server Authentication
Authenticate servers with Kubernetes, no key needed.
Migrate off Deployment Keys
Move an existing server to keyless authentication.
Workload Attestation Extension
Enrich or deny SVID issuance with a webhook.