- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 17 for Dunning (0.24 sec)
-
cni/README.md
1. By installing a separate, very basic "CNI plugin" binary onto the node to forward low-level pod lifecycle events (CmdAdd/CmdDel/etc) from whatever node-level CNI subsystem is in use to this node agent for processing via socket. 1. By running as a node-level daemonset that: - listens for these UDS events from the CNI plugin (which fire when new pods are spawned in an ambient-enabled namespace), and adds those pods to the ambient mesh.
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Fri May 03 19:29:42 GMT 2024 - 12.3K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/values.yaml
taint: # Controls whether or not the untaint controller is active enabled: false # What namespace the untaint controller should watch for istio-cni pods. This is only required when istio-cni is running in a different namespace than istiod namespace: "" affinity: {} tolerations: [] cpu: targetAverageUtilization: 80 memory: {} # targetAverageUtilization: 80
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Mon Apr 22 22:00:40 GMT 2024 - 20.3K bytes - Viewed (0) -
istioctl/pkg/waypoint/waypoint.go
return fmt.Errorf("failed to check if namespace is labeled ambient: %v", err) } if !namespaceIsLabeledAmbient { fmt.Fprintf(cmd.OutOrStdout(), "Warning: namespace is not enrolled in ambient. Consider running\t"+ "`"+"kubectl label namespace %s istio.io/dataplane-mode=ambient"+"`\n", ns) } } gw, err := makeGateway(true) if err != nil { return fmt.Errorf("failed to create gateway: %v", err)
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed May 08 19:45:58 GMT 2024 - 15.5K bytes - Viewed (0) -
manifests/charts/istiod-remote/templates/crd-all.gen.yaml
items: type: string type: array credentialName: description: For gateways running on Kubernetes, the name of the secret that holds the TLS certs including the CA certificates. type: string
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Mon Apr 22 20:20:47 GMT 2024 - 606.1K bytes - Viewed (0) -
operator/cmd/mesh/install.go
if err != nil { return fmt.Errorf("failed to get profile, namespace or enabled components: %v", err) } // Ignore the err because we don't want to show // "no running Istio pods in istio-system" for the first time _ = detectIstioVersionDiff(p, tag, ns, kubeClient, iop) exists := revtag.PreviousInstallExists(context.Background(), kubeClient.Kube())
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu May 02 14:30:43 GMT 2024 - 15.5K bytes - Viewed (1) -
architecture/ambient/ztunnel.md
When fetching certificates, ztunnel will authenticate to the CA with its own identity, but request the identity of another workload. Critically, the CA must enforce that the ztunnel has permission to request that identity. Requests for identities not running on the node are rejected.
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Apr 25 22:35:16 GMT 2024 - 16.6K bytes - Viewed (0) -
cni/pkg/nodeagent/net.go
openNetns := s.currentPodSnapshot.Take(string(pod.UID)) if openNetns == nil { log.Warn("failed to find pod netns") return fmt.Errorf("failed to find pod netns") } // pod is removed from the mesh, but is still running. remove iptables rules log.Debugf("calling DeleteInpodRules.") if err := s.netnsRunner(openNetns, func() error { return s.iptablesConfigurator.DeleteInpodRules() }); err != nil {
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 30 22:24:38 GMT 2024 - 12.2K bytes - Viewed (1) -
Makefile.core.mk
-include .istiorc.mk # Environment for tests, the directory containing istio and deps binaries. # Typically same as GOPATH/bin, so tests work seamlessly with IDEs. export ISTIO_BIN=$(GOBIN) # If we are running in the Linux build container on non Linux hosts, we add the # linux binaries to the build dependencies, BUILD_DEPS, which can be added to other targets # that would need the Linux binaries (ex. tests). BUILD_DEPS:=
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed May 08 20:25:15 GMT 2024 - 22.5K bytes - Viewed (0) -
manifests/charts/base/crds/crd-all.gen.yaml
items: type: string type: array credentialName: description: For gateways running on Kubernetes, the name of the secret that holds the TLS certs including the CA certificates. type: string
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Mon Apr 22 20:20:47 GMT 2024 - 606.1K bytes - Viewed (0) -
manifests/charts/base/values.yaml
enableCRDTemplates: false # Validation webhook configuration url # For example: https://$remotePilotAddress:15017/validate validationURL: "" # Validation webhook caBundle value. Useful when running pilot with a well known cert validationCABundle: "" # For istioctl usage to disable istio config crds in base enableIstioConfigCRDs: true defaultRevision: "default" experimental:
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Mon Apr 22 22:00:40 GMT 2024 - 1.3K bytes - Viewed (0)