- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 551 for s3cret (0.17 sec)
-
istioctl/pkg/util/configdump/secret.go
} // GetRootCAFromSecretConfigDump retrieves root CA from a secret config dump wrapper func (w *Wrapper) GetRootCAFromSecretConfigDump(anySec *anypb.Any) (string, error) { var secret extapi.Secret if err := anySec.UnmarshalTo(&secret); err != nil { return "", fmt.Errorf("failed to unmarshall ROOTCA secret: %v", err) } var returnStr string var returnErr error rCASecret := secret.GetValidationContext() if rCASecret != nil {
Go - Registered: Wed Apr 24 22:53:08 GMT 2024 - Last Modified: Sat Feb 25 04:09:53 GMT 2023 - 2.2K bytes - Viewed (0) -
istioctl/pkg/multicluster/remote_secret.go
return saName + "-istio-remote-secret-token" } func secretReferencesServiceAccount(serviceAccount *v1.ServiceAccount, secret *v1.Secret) error { if secret.Type != v1.SecretTypeServiceAccountToken || secret.Annotations[v1.ServiceAccountNameKey] != serviceAccount.Name { return fmt.Errorf("secret %s/%s does not reference ServiceAccount %s", secret.Namespace, secret.Name, serviceAccount.Name) } return nil }
Go - Registered: Wed Apr 24 22:53:08 GMT 2024 - Last Modified: Wed Oct 11 01:43:17 GMT 2023 - 24K bytes - Viewed (0) -
istioctl/pkg/multicluster/remote_secret_test.go
testServiceAccountName = "test-service-account" ) func makeServiceAccount(secrets ...string) *v1.ServiceAccount { sa := &v1.ServiceAccount{ ObjectMeta: metav1.ObjectMeta{ Name: testServiceAccountName, Namespace: testNamespace, }, } for _, secret := range secrets { sa.Secrets = append(sa.Secrets, v1.ObjectReference{ Name: secret, Namespace: testNamespace, }) } return sa }
Go - Registered: Wed Apr 24 22:53:08 GMT 2024 - Last Modified: Tue Oct 31 14:48:28 GMT 2023 - 20.6K bytes - Viewed (0) -
helm/minio/templates/secrets.yaml
{{- if not .Values.existingSecret }} apiVersion: v1 kind: Secret metadata: name: {{ template "minio.secretName" . }} labels: app: {{ template "minio.name" . }} chart: {{ template "minio.chart" . }} release: {{ .Release.Name }} heritage: {{ .Release.Service }} type: Opaque data: rootUser: {{ include "minio.root.username" . | b64enc | quote }} rootPassword: {{ include "minio.root.password" . | b64enc | quote }}
Others - Registered: Sun Apr 28 19:28:10 GMT 2024 - Last Modified: Wed Apr 12 04:09:29 GMT 2023 - 706 bytes - Viewed (0) -
istioctl/pkg/writer/envoy/configdump/secret_test.go
configDumpFile, err := os.Open("testdata/secret/config_dump.json") if err != nil { t.Errorf("error opening test data file: %v", err) } defer configDumpFile.Close() configDump, err := io.ReadAll(configDumpFile) if err != nil { t.Errorf("error reading test data file: %v", err) } outFile, err := os.Open("testdata/secret/output") if err != nil {
Go - Registered: Wed Apr 24 22:53:08 GMT 2024 - Last Modified: Tue Jun 06 15:14:48 GMT 2023 - 1.5K bytes - Viewed (0) -
manifests/charts/gateways/istio-ingress/templates/deployment.yaml
fieldPath: spec.nodeName volumeMounts: - name: workload-socket mountPath: /var/run/secrets/workload-spiffe-uds - name: credential-socket mountPath: /var/run/secrets/credential-uds - name: workload-certs mountPath: /var/run/secrets/workload-spiffe-credentials - name: istio-envoy mountPath: /etc/istio/proxy
Others - Registered: Wed Apr 24 22:53:08 GMT 2024 - Last Modified: Thu Apr 18 18:16:49 GMT 2024 - 12.1K bytes - Viewed (1) -
architecture/security/istio-agent.md
## CA Flow istio-agent checks the presence of a socket file on the defined **socket path** `/var/run/secrets/workload-spiffe-uds/socket`. * If a socket is found, istio-agent will not start its own SDS Server and Envoy will be configured to use that socket as its source of cryptographic material.
Plain Text - Registered: Wed Apr 24 22:53:08 GMT 2024 - Last Modified: Tue Aug 22 16:45:50 GMT 2023 - 7.2K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/files/gateway-injection-template.yaml
volumeMounts: - name: workload-socket mountPath: /var/run/secrets/workload-spiffe-uds - name: credential-socket mountPath: /var/run/secrets/credential-uds {{- if eq .Values.global.caName "GkeWorkloadCertificate" }} - name: gke-workload-certificate mountPath: /var/run/secrets/workload-spiffe-credentials readOnly: true {{- else }}
Others - Registered: Wed Mar 20 22:53:08 GMT 2024 - Last Modified: Tue Feb 27 16:55:16 GMT 2024 - 8.6K bytes - Viewed (0) -
manifests/charts/istiod-remote/files/gateway-injection-template.yaml
volumeMounts: - name: workload-socket mountPath: /var/run/secrets/workload-spiffe-uds - name: credential-socket mountPath: /var/run/secrets/credential-uds {{- if eq .Values.global.caName "GkeWorkloadCertificate" }} - name: gke-workload-certificate mountPath: /var/run/secrets/workload-spiffe-credentials readOnly: true {{- else }}
Others - Registered: Wed Mar 20 22:53:08 GMT 2024 - Last Modified: Tue Feb 27 16:55:16 GMT 2024 - 8.6K bytes - Viewed (0) -
manifests/charts/gateways/istio-egress/templates/deployment.yaml
fieldPath: spec.nodeName volumeMounts: - name: workload-socket mountPath: /var/run/secrets/workload-spiffe-uds - name: credential-socket mountPath: /var/run/secrets/credential-uds - name: workload-certs mountPath: /var/run/secrets/workload-spiffe-credentials - name: istio-envoy mountPath: /etc/istio/proxy
Others - Registered: Wed Apr 24 22:53:08 GMT 2024 - Last Modified: Thu Apr 18 18:16:49 GMT 2024 - 12.1K bytes - Viewed (0)