Search Options

Display Count
Sort
Preferred Language
Advanced Search

Results 1 - 10 of 10 for serviceAccounts (0.11 seconds)

The search processing time has exceeded the limit. The displayed results may be partial.

  1. cmd/admin-handlers-users.go

    				continue
    			}
    		}
    
    		if listServiceAccounts {
    			serviceAccounts, err := globalIAMSys.ListServiceAccounts(ctx, user)
    			if err != nil {
    				writeErrorResponseJSON(ctx, w, toAdminAPIErr(ctx, err), r.URL)
    				return
    			}
    			for _, svc := range serviceAccounts {
    				accessKeys.ServiceAccounts = append(accessKeys.ServiceAccounts, madmin.ServiceAccountInfo{
    					AccessKey:  svc.AccessKey,
    Created: Sun Apr 05 19:28:12 GMT 2026
    - Last Modified: Fri Aug 29 02:39:48 GMT 2025
    - 90.6K bytes
    - Click Count (0)
  2. cmd/iam-store.go

    	cache := store.rlock()
    	defer store.runlock()
    
    	var serviceAccounts []auth.Credentials
    	for _, u := range cache.iamUsersMap {
    		v := u.Credentials
    		if accessKey != "" && v.ParentUser == accessKey {
    			if v.IsServiceAccount() {
    				// Hide secret key & session key here
    				v.SecretKey = ""
    				v.SessionToken = ""
    				serviceAccounts = append(serviceAccounts, v)
    			}
    		}
    	}
    
    Created: Sun Apr 05 19:28:12 GMT 2026
    - Last Modified: Sun Sep 28 20:59:21 GMT 2025
    - 87.1K bytes
    - Click Count (0)
  3. cmd/admin-handlers-idp-openid.go

    		}
    		svcAccInfo := madmin.ServiceAccountInfo{
    			AccessKey:  accessKey.AccessKey,
    			Expiration: &accessKey.Expiration,
    		}
    		if accessKey.IsServiceAccount() {
    			openIDUserAccessKeys.ServiceAccounts = append(openIDUserAccessKeys.ServiceAccounts, svcAccInfo)
    		} else {
    			openIDUserAccessKeys.STSKeys = append(openIDUserAccessKeys.STSKeys, svcAccInfo)
    		}
    		cfgToUsersMap[matchingCfgName][accessKey.ParentUser] = openIDUserAccessKeys
    	}
    Created: Sun Apr 05 19:28:12 GMT 2026
    - Last Modified: Sat Sep 06 17:38:46 GMT 2025
    - 7.6K bytes
    - Click Count (0)
  4. cmd/site-replication.go

    	// Service accounts are the static accounts that should be synced with
    	// valid claims.
    	{
    		serviceAccounts := make(map[string]UserIdentity)
    		err := globalIAMSys.store.loadUsers(ctx, svcUser, serviceAccounts)
    		if err != nil {
    			return errSRBackendIssue(err)
    		}
    
    		for user, acc := range serviceAccounts {
    			if user == siteReplicatorSvcAcc {
    				// skip the site replicate svc account as it is
    Created: Sun Apr 05 19:28:12 GMT 2026
    - Last Modified: Sun Sep 28 20:59:21 GMT 2025
    - 184.8K bytes
    - Click Count (1)
  5. cmd/sts-handlers_test.go

    	if err != nil {
    		c.Fatalf("Unable to list access keys: %v", err)
    	}
    
    	epochTime := time.Unix(0, 0).UTC()
    	expectedAccKeys := madmin.ListAccessKeysLDAPResp{
    		ServiceAccounts: []madmin.ServiceAccountInfo{
    			{
    				AccessKey:  "u4ccRswj62HV3Ifwima7",
    				Expiration: &epochTime,
    			},
    		},
    	}
    
    	if !reflect.DeepEqual(expectedAccKeys, res) {
    Created: Sun Apr 05 19:28:12 GMT 2026
    - Last Modified: Wed Oct 15 17:00:45 GMT 2025
    - 103.4K bytes
    - Click Count (1)
  6. CHANGELOG/CHANGELOG-1.30.md

    - Updated an audit annotation key used by the `…/serviceaccounts/<name>/token` resource handler.
    Created: Fri Apr 03 09:05:14 GMT 2026
    - Last Modified: Wed Jun 18 18:59:10 GMT 2025
    - 398.1K bytes
    - Click Count (0)
  7. CHANGELOG/CHANGELOG-1.26.md

    secrets field. Kubernetes clusters are only affected if the ServiceAccount admission plugin and the `kubernetes.io/enforce-mountable-secrets` annotation are used together with ephemeral containers.
    
    **Note**: This only impacts the cluster if the ServiceAccount admission plugin is used (most cluster should have this on by default as recommended in https://kubernetes.io/docs/reference/access-authn-authz/admission-controllers/#serviceaccount), the `kubernetes.io/enforce-mountable-secrets` annotation...
    Created: Fri Apr 03 09:05:14 GMT 2026
    - Last Modified: Tue Sep 02 13:51:56 GMT 2025
    - 425.7K bytes
    - Click Count (0)
  8. CHANGELOG/CHANGELOG-1.28.md

      - [Important Security Information](#important-security-information-1)
        - [CVE-2024-3177: Bypassing mountable secrets policy imposed by the ServiceAccount admission plugin](#cve-2024-3177-bypassing-mountable-secrets-policy-imposed-by-the-serviceaccount-admission-plugin)
      - [Changes by Kind](#changes-by-kind-6)
        - [Feature](#feature-4)
        - [Bug or Regression](#bug-or-regression-6)
      - [Dependencies](#dependencies-6)
    Created: Fri Apr 03 09:05:14 GMT 2026
    - Last Modified: Fri Sep 05 03:47:18 GMT 2025
    - 456.9K bytes
    - Click Count (1)
  9. CHANGELOG/CHANGELOG-1.34.md

    - Updated the `v1` credential provider configuration to include the `tokenAttributes.cacheType` field. This field is required and must be set to either `ServiceAccount` or `Token` when configuring a provider that uses a service account to fetch registry credentials. ([#132617](https://github.com/kubernetes/kubernetes/pull/132617), [@aramase](https://github.com/aramase)) [SIG Auth, Node and Testing]
    Created: Fri Apr 03 09:05:14 GMT 2026
    - Last Modified: Thu Mar 19 03:19:43 GMT 2026
    - 368.7K bytes
    - Click Count (2)
  10. CHANGELOG/CHANGELOG-1.32.md

    - ServiceAccount metadata.annotations[kubernetes.io/enforce-mountable-secrets]: deprecated since v1.32; no removal deadline. Prefer separate namespaces to isolate access to mounted secrets. ([#128396](https://github.com/kubernetes/kubernetes/pull/128396), [@r...
    Created: Fri Apr 03 09:05:14 GMT 2026
    - Last Modified: Thu Feb 26 23:58:21 GMT 2026
    - 470.5K bytes
    - Click Count (0)
Back to Top