Search Options

Results per page
Sort
Preferred Languages
Advance

Results 1 - 10 of 15 for pol (0.29 sec)

  1. istioctl/pkg/writer/ztunnel/configdump/policies.go

    			return r
    		}
    		return cmp.Compare(a.Name, b.Name)
    	})
    	fmt.Fprintln(w, "NAMESPACE\tPOLICY NAME\tACTION\tSCOPE")
    
    	for _, pol := range pols {
    		fmt.Fprintf(w, "%v\t%v\t%v\t%v\n",
    			pol.Namespace, pol.Name, pol.Action, pol.Scope)
    	}
    	return w.Flush()
    }
    
    // PrintPolicyDump prints the relevant services in the config dump to the ConfigWriter stdout
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Fri May 31 21:45:11 UTC 2024
    - 2.4K bytes
    - Viewed (0)
  2. pilot/pkg/serviceregistry/kube/controller/ambient/policies.go

    		meshCfg := krt.FetchOne(ctx, MeshConfig.AsCollection())
    		pol := convertAuthorizationPolicy(meshCfg.GetRootNamespace(), i)
    		if pol == nil {
    			return nil
    		}
    		return &model.WorkloadAuthorization{
    			Authorization: pol,
    			LabelSelector: model.NewSelector(i.Spec.GetSelector().GetMatchLabels()),
    		}
    	}, krt.WithName("AuthzDerivedPolicies"))
    
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Thu Jun 13 16:51:29 UTC 2024
    - 5.2K bytes
    - Viewed (0)
  3. pilot/pkg/serviceregistry/kube/controller/ambient/ambientindex_test.go

    						Name:      pol[0].Name,
    						Namespace: pol[0].Namespace,
    					},
    					Spec: *((pol[0].Spec).(*auth.AuthorizationPolicy)), //nolint: govet
    				})
    			case gvk.PeerAuthentication:
    				o = convertPeerAuthentication(systemNS, &clientsecurityv1beta1.PeerAuthentication{
    					TypeMeta: metav1.TypeMeta{},
    					ObjectMeta: metav1.ObjectMeta{
    						Name:      pol[0].Name,
    						Namespace: pol[0].Namespace,
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Wed May 08 01:04:50 UTC 2024
    - 70.2K bytes
    - Viewed (0)
  4. docs/iam/policies/pbac-tests.sh

    ./mc admin policy create myminio/ deny-non-sse-kms-pol ./docs/iam/policies/deny-non-sse-kms-objects.json
    ./mc admin policy create myminio/ deny-invalid-sse-kms-pol ./docs/iam/policies/deny-objects-with-invalid-sse-kms-key-id.json
    
    ./mc admin policy attach myminio deny-non-sse-kms-pol --user minio123
    ./mc admin policy attach myminio deny-invalid-sse-kms-pol --user minio123
    ./mc admin policy attach myminio consoleAdmin --user minio123
    
    Registered: Sun Jun 16 00:44:34 UTC 2024
    - Last Modified: Sat May 18 18:19:01 UTC 2024
    - 2.5K bytes
    - Viewed (0)
  5. pkg/kubelet/cm/cpumanager/fake_cpu_manager.go

    	klog.InfoS("Start()")
    	return nil
    }
    
    func (m *fakeManager) Policy() Policy {
    	klog.InfoS("Policy()")
    	pol, _ := NewNonePolicy(nil)
    	return pol
    }
    
    func (m *fakeManager) Allocate(pod *v1.Pod, container *v1.Container) error {
    	klog.InfoS("Allocate", "pod", klog.KObj(pod), "containerName", container.Name)
    	return nil
    }
    
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 03 16:26:09 UTC 2023
    - 2.9K bytes
    - Viewed (0)
  6. pilot/pkg/serviceregistry/kube/controller/ambient/authorization.go

    func convertAuthorizationPolicy(rootns string, obj *securityclient.AuthorizationPolicy) *security.Authorization {
    	pol := &obj.Spec
    
    	polTargetRef := model.GetTargetRefs(pol)
    	if len(polTargetRef) > 0 {
    		// TargetRef is not intended for ztunnel
    		return nil
    	}
    
    	scope := security.Scope_WORKLOAD_SELECTOR
    	if pol.GetSelector() == nil {
    		scope = security.Scope_NAMESPACE
    		// TODO: TDA
    		if rootns == obj.Namespace {
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon Apr 15 16:23:36 UTC 2024
    - 18.4K bytes
    - Viewed (0)
  7. pilot/pkg/serviceregistry/kube/controller/ambient/workloads.go

    ) []*securityclient.PeerAuthentication {
    	return krt.Fetch(ctx, PeerAuths, krt.FilterGeneric(func(a any) bool {
    		pol := a.(*securityclient.PeerAuthentication)
    		if pol.Namespace == meshCfg.GetRootNamespace() && pol.Spec.Selector == nil {
    			return true
    		}
    		if pol.Namespace != ns {
    			return false
    		}
    		sel := pol.Spec.Selector
    		if sel == nil {
    			return true // No selector matches everything
    		}
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Thu Jun 13 16:51:29 UTC 2024
    - 20.9K bytes
    - Viewed (0)
  8. staging/src/k8s.io/apiserver/pkg/server/options/audit_test.go

    func makeTmpPolicy(t *testing.T) string {
    	pol := auditv1.Policy{
    		TypeMeta: metav1.TypeMeta{
    			APIVersion: "audit.k8s.io/v1",
    		},
    		Rules: []auditv1.PolicyRule{
    			{
    				Level: auditv1.LevelRequestResponse,
    			},
    		},
    	}
    	f, err := ioutil.TempFile("", "k8s_audit_policy_test_")
    	require.NoError(t, err, "creating temp file")
    	require.NoError(t, stdjson.NewEncoder(f).Encode(pol), "writing policy file")
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Mon Jun 27 14:57:26 UTC 2022
    - 7.8K bytes
    - Viewed (0)
  9. docs/pl/docs/features.md

    ### Walidacja
    
    * Walidacja większości (lub wszystkich?) **typów danych** Pythona, w tym:
        * Obiektów JSON (`dict`).
        * Tablic JSON (`list`) ze zdefiniowanym typem elementów.
        * Pól tekstowych (`str`) z określeniem minimalnej i maksymalnej długości.
        * Liczb (`int`, `float`) z wartościami minimalnymi, maksymalnymi, itp.
    
    * Walidacja bardziej egzotycznych typów danych, takich jak:
        * URL.
    Registered: Mon Jun 17 08:32:26 UTC 2024
    - Last Modified: Thu Apr 18 19:53:19 UTC 2024
    - 10.9K bytes
    - Viewed (0)
  10. pkg/kubelet/kuberuntime/kuberuntime_manager.go

    		cpuLimit:      currentCPULimit,
    		cpuRequest:    currentCPURequest,
    	}
    
    	resizePolicy := make(map[v1.ResourceName]v1.ResourceResizeRestartPolicy)
    	for _, pol := range container.ResizePolicy {
    		resizePolicy[pol.ResourceName] = pol.RestartPolicy
    	}
    	determineContainerResize := func(rName v1.ResourceName, specValue, statusValue int64) (resize, restart bool) {
    		if specValue == statusValue {
    			return false, false
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 22 02:01:31 UTC 2024
    - 64.7K bytes
    - Viewed (0)
Back to top