- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 22 for secrets (0.17 sec)
-
istioctl/pkg/multicluster/remote_secret.go
return saName + "-istio-remote-secret-token" } func secretReferencesServiceAccount(serviceAccount *v1.ServiceAccount, secret *v1.Secret) error { if secret.Type != v1.SecretTypeServiceAccountToken || secret.Annotations[v1.ServiceAccountNameKey] != serviceAccount.Name { return fmt.Errorf("secret %s/%s does not reference ServiceAccount %s", secret.Namespace, secret.Name, serviceAccount.Name) } return nil }
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed Oct 11 01:43:17 GMT 2023 - 24K bytes - Viewed (0) -
istioctl/pkg/multicluster/remote_secret_test.go
testServiceAccountName = "test-service-account" ) func makeServiceAccount(secrets ...string) *v1.ServiceAccount { sa := &v1.ServiceAccount{ ObjectMeta: metav1.ObjectMeta{ Name: testServiceAccountName, Namespace: testNamespace, }, } for _, secret := range secrets { sa.Secrets = append(sa.Secrets, v1.ObjectReference{ Name: secret, Namespace: testNamespace, }) } return sa }
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Oct 31 14:48:28 GMT 2023 - 20.6K bytes - Viewed (0) -
istioctl/pkg/workload/workload_test.go
Data: map[string]string{ "mesh": string(util.ReadFile(t, path.Join(testdir, "meshconfig.yaml"))), }, }, metav1.CreateOptions{}) client.Kube().CoreV1().Secrets("bar").Create(context.Background(), &v1.Secret{ ObjectMeta: metav1.ObjectMeta{Namespace: "bar", Name: "test"}, Data: map[string][]byte{ "token": {}, }, }, metav1.CreateOptions{}) }
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed Mar 27 16:59:05 GMT 2024 - 14.6K bytes - Viewed (0) -
cmd/common-main.go
return nil, err } return ekvs, nil } func readFromSecret(sp string) (string, error) { // Supports reading path from docker secrets, filename is // relative to /run/secrets/ position. if isFile(pathJoin("/run/secrets/", sp)) { sp = pathJoin("/run/secrets/", sp) } credBuf, err := os.ReadFile(sp) if err != nil { if os.IsNotExist(err) { // ignore if file doesn't exist. return "", nil }
Go - Registered: Sun May 05 19:28:20 GMT 2024 - Last Modified: Sat May 04 00:17:57 GMT 2024 - 35.8K bytes - Viewed (2) -
cmd/admin-handlers-config-kv.go
// 2. `subsys:` -> request for config of a single subsystem and the default target. // 3. `subsys` -> request for config of all targets for the given subsystem. // // This is a reporting API and config secrets are redacted in the response. func (a adminAPIHandlers) GetConfigKVHandler(w http.ResponseWriter, r *http.Request) { ctx := r.Context() objectAPI, cred := validateAdminReq(ctx, w, r, policy.ConfigUpdateAdminAction)
Go - Registered: Sun May 05 19:28:20 GMT 2024 - Last Modified: Thu Apr 04 12:04:40 GMT 2024 - 15.7K bytes - Viewed (0) -
istioctl/pkg/analyze/analyze.go
{ client: client, remote: false, }, } secrets, err := client.Kube().CoreV1().Secrets(ctx.IstioNamespace()).List(context.Background(), metav1.ListOptions{ LabelSelector: fmt.Sprintf("%s=%s", multicluster.MultiClusterSecretLabel, "true"), }) if err != nil { return nil, err } for _, s := range secrets.Items { for _, cfg := range s.Data {
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 02 08:32:06 GMT 2024 - 17K bytes - Viewed (0) -
internal/config/config.go
// values. resultKVS := make([]KV, 0, len(store[target])) hkvs := HelpSubSysMap[subSys] for _, kv := range store[target] { hkv, _ := hkvs.Lookup(kv.Key) if hkv.Secret && redactSecrets && kv.Value != "" { // Skip returning secrets. continue // clonedKV := kv // clonedKV.Value = redactedSecret // resultKVS = append(resultKVS, clonedKV) } resultKVS = append(resultKVS, kv) }
Go - Registered: Sun May 05 19:28:20 GMT 2024 - Last Modified: Sat Mar 02 05:11:03 GMT 2024 - 37.3K bytes - Viewed (0) -
istioctl/pkg/proxyconfig/proxyconfig.go
secretConfigCmd := &cobra.Command{ Use: "secret [<type>/]<name>[.<namespace>]", Short: "Retrieves secret configuration for the Envoy in the specified pod", Long: `Retrieve information about secret configuration for the Envoy instance in the specified pod.`, Example: ` # Retrieve full secret configuration for a given pod from Envoy. istioctl proxy-config secret <pod-name[.namespace]>
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 16 03:28:36 GMT 2024 - 48K bytes - Viewed (0) -
cmd/sts-datatypes.go
// The identifiers for the temporary security credentials that the operation // returns. AssumedRoleUser AssumedRoleUser `xml:",omitempty"` // The temporary security credentials, which include an access key ID, a secret // access key, and a security (or session) token. // // Note: The size of the security token that STS APIs return is not fixed. We // strongly recommend that you make no assumptions about the maximum size. As
Go - Registered: Sun May 05 19:28:20 GMT 2024 - Last Modified: Fri May 27 00:58:09 GMT 2022 - 9.9K bytes - Viewed (0) -
cmd/config-current.go
} sKey, err := manager.HMAC(GlobalContext, stat.DefaultKey, []byte("root secret key")) if err != nil { // Here, we must have permission. Otherwise, we would have failed earlier. logger.Fatal(err, "Unable to generate root secret key using KMS") } accessKey, err := auth.GenerateAccessKey(20, bytes.NewReader(aKey)) if err != nil {
Go - Registered: Sun May 05 19:28:20 GMT 2024 - Last Modified: Fri May 03 20:08:20 GMT 2024 - 30.8K bytes - Viewed (0)