- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 44 for subjectAltNames (0.28 sec)
-
pilot/pkg/networking/core/cluster_tls.go
// Use subject alt names specified in service entry if TLS settings does not have subject alt names. if opts.serviceRegistry == provider.External && len(tls.SubjectAltNames) == 0 { tls = tls.DeepCopy() tls.SubjectAltNames = opts.serviceAccounts } if tls.CredentialName != "" { // If credential name is specified at Destination Rule config and originating node is egress gateway, create
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Apr 18 19:09:43 UTC 2024 - 19.2K bytes - Viewed (0) -
istioctl/pkg/writer/ztunnel/configdump/testdata/dump.json
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Apr 16 03:28:36 UTC 2024 - 33.1K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/ambient/services_test.go
Addresses: []string{"1.2.3.4"}, Hosts: []string{"a.example.com", "b.example.com"}, Ports: []*networking.ServicePort{{ Number: 80, Name: "http", }}, SubjectAltNames: []string{"san1"}, Resolution: networking.ServiceEntry_DNS, }, }, result: []*workloadapi.Service{ { Name: "name", Namespace: "ns", Hostname: "a.example.com",
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Jun 05 12:29:55 UTC 2024 - 2.9K bytes - Viewed (0) -
pilot/pkg/security/model/authentication.go
tlsOpts.CredentialName+SdsCaSuffix, credentialSocketExist), }, } } else if len(tlsOpts.SubjectAltNames) > 0 { tlsContext.ValidationContextType = &tls.CommonTlsContext_ValidationContext{ ValidationContext: &tls.CertificateValidationContext{ MatchSubjectAltNames: util.StringToExactMatch(tlsOpts.SubjectAltNames), }, } } } func EnforceGoCompliance(ctx *gotls.Config) {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Mar 28 22:11:02 UTC 2024 - 9.9K bytes - Viewed (0) -
pilot/pkg/networking/core/cluster_tls_test.go
Mode: networking.ClientTLSSettings_ISTIO_MUTUAL, SubjectAltNames: []string{"custom.foo.com"}, Sni: "custom.foo.com", } mutualTLSSettingsWithCerts := &networking.ClientTLSSettings{ Mode: networking.ClientTLSSettings_MUTUAL, CaCertificates: "root-cert.pem", ClientCertificate: "cert-chain.pem", PrivateKey: "key.pem", SubjectAltNames: []string{"custom.foo.com"},
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon May 06 03:53:05 UTC 2024 - 60.9K bytes - Viewed (0) -
tests/integration/security/ca_custom_root/secure_naming_test.go
trafficPolicy: tls: mode: ISTIO_MUTUAL subjectAltNames: - "spiffe://cluster.local/ns/NS/sa/default" ` correctIdentityDR = `apiVersion: networking.istio.io/v1alpha3 kind: DestinationRule metadata: name: "service-b-dr" spec: host: "b.NS.svc.cluster.local" trafficPolicy: tls: mode: ISTIO_MUTUAL subjectAltNames: - "spiffe://cluster.local/ns/NS/sa/b" `
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 7.5K bytes - Viewed (0) -
pkg/model/proxy_test.go
Address: "address", TlsSettings: &v1alpha3.ClientTLSSettings{ SubjectAltNames: []string{"san"}, }, }, }), }, }, // nolint: lll `{"PROXY_CONFIG":{"configPath":"foo","drainDuration":"5s","controlPlaneAuthPolicy":"MUTUAL_TLS","envoyAccessLogService":{"address":"address","tlsSettings":{"subjectAltNames":["san"]}}}}`, model.BootstrapNodeMetadata{ NodeMetadata: model.NodeMetadata{
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Mar 28 20:38:02 UTC 2024 - 8.2K bytes - Viewed (0) -
pilot/pkg/networking/core/cluster_traffic_policy_test.go
Mode: networking.ClientTLSSettings_ISTIO_MUTUAL, SubjectAltNames: []string{"custom.foo.com"}, Sni: "custom.foo.com", } mutualTLSSettingsWithCerts := &networking.ClientTLSSettings{ Mode: networking.ClientTLSSettings_MUTUAL, CaCertificates: "root-cert.pem", ClientCertificate: "cert-chain.pem", PrivateKey: "key.pem", SubjectAltNames: []string{"custom.foo.com"},
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon May 06 03:53:05 UTC 2024 - 9K bytes - Viewed (0) -
tests/integration/security/file_mounted_certs/p2p_mtls_test.go
trafficPolicy: tls: mode: MUTUAL caCertificates: /client-certs/root-cert.pem clientCertificate: /client-certs/cert-chain.pem privateKey: /client-certs/key.pem subjectAltNames: - server.mounted-certs.svc ` PeerAuthenticationConfig = ` apiVersion: security.istio.io/v1beta1 kind: PeerAuthentication metadata: name: default namespace: "istio-system" spec:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 2.8K bytes - Viewed (0) -
pkg/bootstrap/option/convert.go
CombinedValidationContext: &auth.CommonTlsContext_CombinedCertificateValidationContext{ DefaultValidationContext: &auth.CertificateValidationContext{MatchSubjectAltNames: model.StringToExactMatch(tls.SubjectAltNames)}, ValidationContextSdsSecretConfig: model.ConstructSdsSecretConfig(res.GetRootResourceName()), }, } tlsContext.CommonTlsContext.AlpnProtocols = model.ALPNH2Only tlsContext.Sni = tls.Sni
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Apr 02 00:35:05 UTC 2024 - 10.2K bytes - Viewed (0)