- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 21 for CRL (0.05 sec)
-
pilot/pkg/credentials/kube/secrets_test.go
}, corev1.SecretTypeTLS) tlsMtlsCertSplitCaWithCrl = makeSecret("tls-mtls-split-crl-cacert", map[string]string{ TLSSecretCaCert: "tls-mtls-split-ca", TLSSecretCrl: "tls-mtls-split-crl", }, corev1.SecretTypeTLS) tlsMtlsCertSplitWithCrl = makeSecret("tls-mtls-split-crl", map[string]string{ TLSSecretCert: "tls-mtls-split-crl-cert", TLSSecretKey: "tls-mtls-split-crl-key", }, corev1.SecretTypeTLS)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Feb 23 19:18:21 UTC 2024 - 18.4K bytes - Viewed (0) -
tests/integration/security/egress_sidecar_tls_origination_test.go
CaCert: file.AsStringOrFail(t, path.Join(env.IstioSrc, "tests/testdata/certs/dns/root-cert.pem")), Crl: file.AsStringOrFail(t, path.Join(env.IstioSrc, "tests/testdata/certs/ca.crl")), }, false, apps.Ns2.Namespace.Name()) // Create a valid kubernetes secret to provision key/cert for sidecar, configured with dummy CRL ingressutil.CreateIngressKubeSecretInNamespace(t, credWithDummyCRL, ingressutil.Mtls, ingressutil.IngressCredential{
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 10.4K bytes - Viewed (0) -
pilot/pkg/credentials/kube/secrets.go
GenericScrtKey = "key" // The ID/name for the CA certificate in kubernetes generic secret. GenericScrtCaCert = "cacert" // The ID/name for the CRL in kubernetes generic secret. GenericScrtCRL = "crl" // The ID/name for the certificate chain in kubernetes tls secret. TLSSecretCert = "tls.crt" // The ID/name for the k8sKey in kubernetes tls secret. TLSSecretKey = "tls.key"
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Feb 23 19:18:21 UTC 2024 - 10K bytes - Viewed (0) -
tests/integration/security/sds_ingress/ingress_test.go
{ name: "mtls ingress gateway without CRL-client B", secretName: "testmtlsgateway-secret-without-crl-b", ingressGatewayCredential: ingressutil.IngressCredential{ PrivateKey: ingressutil.TLSServerKeyB, Certificate: ingressutil.TLSServerCertB, CaCert: ingressutil.CaCertB, }, hostName: "testmtlsgateway-crl.example.com",
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 32.7K bytes - Viewed (0) -
tests/integration/security/egress_gateway_origination_test.go
CaCert: file.AsStringOrFail(t, path.Join(env.IstioSrc, "tests/testdata/certs/dns/root-cert.pem")), Crl: file.AsStringOrFail(t, path.Join(env.IstioSrc, "tests/testdata/certs/ca.crl")), }, false) // Configured with dummy CRL ingressutil.CreateIngressKubeSecret(t, credWithDummyCRL, ingressutil.Mtls, ingressutil.IngressCredential{
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 15.4K bytes - Viewed (0) -
pilot/pkg/xds/sds_test.go
"kubernetes://generic", "kubernetes://generic-mtls", "kubernetes://generic-mtls-cacert", "kubernetes://generic-mtls-split", "kubernetes://generic-mtls-split-cacert", "kubernetes://generic-mtls-crl", "kubernetes://generic-mtls-crl-cacert", } cases := []struct { name string proxy *model.Proxy resources []string request *model.PushRequest
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon May 13 20:55:20 UTC 2024 - 17.7K bytes - Viewed (0) -
pilot/pkg/security/model/authentication_test.go
ResourceApiVersion: core.ApiVersion_V3, }, }, }, }, }, { name: "MTLSStrict using SDS with CRL", node: &model.Proxy{ Metadata: &model.NodeMetadata{}, }, validateClient: true, crl: "/custom/path/to/crl.pem", expected: &auth.CommonTlsContext{ TlsCertificateSdsSecretConfigs: []*auth.SdsSecretConfig{ { Name: "default",
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 20 22:39:21 UTC 2024 - 18.9K bytes - Viewed (0) -
src/crypto/x509/parser.go
return nil, errors.New("x509: malformed tbs crl") } rl.RawTBSRevocationList = tbs if !tbs.ReadASN1(&tbs, cryptobyte_asn1.SEQUENCE) { return nil, errors.New("x509: malformed tbs crl") } var version int if !tbs.PeekASN1Tag(cryptobyte_asn1.INTEGER) { return nil, errors.New("x509: unsupported crl version") } if !tbs.ReadASN1Integer(&version) {
Registered: Wed Jun 12 16:32:35 UTC 2024 - Last Modified: Wed May 22 21:00:16 UTC 2024 - 38.5K bytes - Viewed (0) -
pilot/pkg/security/model/authentication.go
if validateClient { defaultValidationContext := &tls.CertificateValidationContext{ MatchSubjectAltNames: matchSAN, } if crl != "" { defaultValidationContext.Crl = &core.DataSource{ Specifier: &core.DataSource_Filename{ Filename: crl, }, } } tlsContext.ValidationContextType = &tls.CommonTlsContext_CombinedValidationContext{
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Mar 28 22:11:02 UTC 2024 - 9.9K bytes - Viewed (0) -
tests/integration/security/sds_ingress/util/util.go
// The ID/name for the CRL in kubernetes tls secret tlsScrtCaCrl = "ca.crl" // The ID/name for the certificate chain in kubernetes generic secret. genericScrtCert = "cert" // The ID/name for the private key in kubernetes generic secret. genericScrtKey = "key" // The ID/name for the CA certificate in kubernetes generic secret. genericScrtCaCert = "cacert" // The ID/name for the CRL in kubernetes generic secret.
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Jul 25 05:12:36 UTC 2023 - 20.2K bytes - Viewed (0)