- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 72 for authorizationpolicy (0.39 sec)
-
pkg/test/datasets/validation/dataset/security-v1beta1-AuthorizationPolicy.yaml
apiVersion: security.istio.io/v1beta1 kind: AuthorizationPolicy metadata: name: authorization-policy spec: selector: matchLabels: app: httpbin version: v1 rules: - from: - source: principals: ["cluster.local/ns/default/sa/sleep"] - source: namespaces: ["test"] to: - operation: methods: ["GET"] paths: ["/info*"] - operation: methods: ["POST"]
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Oct 17 07:02:38 UTC 2023 - 524 bytes - Viewed (0) -
pkg/test/datasets/validation/dataset/security-v1-AuthorizationPolicy.yaml
apiVersion: security.istio.io/v1 kind: AuthorizationPolicy metadata: name: authorization-policy spec: selector: matchLabels: app: httpbin version: v1 rules: - from: - source: principals: ["cluster.local/ns/default/sa/sleep"] - source: namespaces: ["test"] to: - operation: methods: ["GET"] paths: ["/info*"] - operation: methods: ["POST"]
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Oct 17 07:02:38 UTC 2023 - 519 bytes - Viewed (0) -
pilot/pkg/model/authorization.go
Spec: config.Spec.(*authpb.AuthorizationPolicy), } policy.NamespaceToPolicies[config.Namespace] = append(policy.NamespaceToPolicies[config.Namespace], authzConfig) } return policy } type AuthorizationPoliciesResult struct { Custom []AuthorizationPolicy Deny []AuthorizationPolicy Allow []AuthorizationPolicy Audit []AuthorizationPolicy }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Apr 17 22:20:44 UTC 2024 - 4.2K bytes - Viewed (0) -
pilot/pkg/model/authorization_test.go
auditPolicy.Action = authpb.AuthorizationPolicy_AUDIT customPolicy := proto.Clone(policy).(*authpb.AuthorizationPolicy) customPolicy.Action = authpb.AuthorizationPolicy_CUSTOM cases := []struct { name string selectionOpts WorkloadPolicyMatcher configs []config.Config wantDeny []AuthorizationPolicy wantAllow []AuthorizationPolicy wantAudit []AuthorizationPolicy
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Apr 17 22:20:44 UTC 2024 - 12.7K bytes - Viewed (0) -
pkg/config/analysis/analyzers/authz/authorizationpolicies.go
Inputs: []config.GroupVersionKind{ gvk.MeshConfig, gvk.AuthorizationPolicy, gvk.Namespace, gvk.Pod, }, } } func (a *AuthorizationPoliciesAnalyzer) Analyze(c analysis.Context) { podLabelsMap := initPodLabelsMap(c) c.ForEach(gvk.AuthorizationPolicy, func(r *resource.Instance) bool { a.analyzeNoMatchingWorkloads(r, c, podLabelsMap)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Sep 11 20:57:29 UTC 2023 - 6K bytes - Viewed (0) -
pkg/config/schema/collections/collections.agent.gen.go
) var ( AuthorizationPolicy = resource.Builder{ Identifier: "AuthorizationPolicy", Group: "security.istio.io", Kind: "AuthorizationPolicy", Plural: "authorizationpolicies", Version: "v1beta1", VersionAliases: []string{ "v1", }, Proto: "istio.security.v1beta1.AuthorizationPolicy", StatusProto: "istio.meta.v1alpha1.IstioStatus",
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Apr 25 14:44:17 UTC 2024 - 12.9K bytes - Viewed (0) -
istioctl/pkg/authz/authz.go
cmd := &cobra.Command{ Use: "check [<type>/]<name>[.<namespace>]", Short: "Check AuthorizationPolicy applied in the pod.", Long: `Check prints the AuthorizationPolicy applied to a pod by directly checking the Envoy configuration of the pod. The command is especially useful for inspecting the policy propagation from Istiod to Envoy and the final AuthorizationPolicy list merged from multiple sources (mesh-level, namespace-level and workload-level).
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Sat Apr 13 05:23:38 UTC 2024 - 5K bytes - Viewed (0) -
pkg/config/schema/kind/resources.gen.go
ValidatingWebhookConfiguration VirtualService WasmPlugin WorkloadEntry WorkloadGroup ) func (k Kind) String() string { switch k { case Address: return "Address" case AuthorizationPolicy: return "AuthorizationPolicy" case CertificateSigningRequest: return "CertificateSigningRequest" case ConfigMap: return "ConfigMap" case CustomResourceDefinition: return "CustomResourceDefinition" case DNSName:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 27 07:19:38 UTC 2024 - 4.9K bytes - Viewed (0) -
pkg/config/schema/kubetypes/resources.gen.go
) func getGvk(obj any) (config.GroupVersionKind, bool) { switch obj.(type) { case *istioioapisecurityv1beta1.AuthorizationPolicy: return gvk.AuthorizationPolicy, true case *apiistioioapisecurityv1beta1.AuthorizationPolicy: return gvk.AuthorizationPolicy, true case *k8sioapicertificatesv1.CertificateSigningRequest: return gvk.CertificateSigningRequest, true case *k8sioapicorev1.ConfigMap:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Apr 17 16:38:40 UTC 2024 - 6.2K bytes - Viewed (0) -
pkg/config/schema/gvk/resources.gen.go
"istio.io/istio/pkg/config" "istio.io/istio/pkg/config/schema/gvr" ) var ( AuthorizationPolicy = config.GroupVersionKind{Group: "security.istio.io", Version: "v1beta1", Kind: "AuthorizationPolicy"} AuthorizationPolicy_v1 = config.GroupVersionKind{Group: "security.istio.io", Version: "v1", Kind: "AuthorizationPolicy"}
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Apr 12 17:37:32 UTC 2024 - 15.6K bytes - Viewed (0)