Search Options

Results per page
Sort
Preferred Languages
Advance

Results 1 - 10 of 60 for selfsubjectaccessreviews (0.59 sec)

  1. pkg/registry/authorization/rest/storage_authorization.go

    		storage[resource] = subjectaccessreview.NewREST(p.Authorizer)
    	}
    
    	// selfsubjectaccessreviews
    	if resource := "selfsubjectaccessreviews"; apiResourceConfigSource.ResourceEnabled(authorizationv1.SchemeGroupVersion.WithResource(resource)) {
    		storage[resource] = selfsubjectaccessreview.NewREST(p.Authorizer)
    	}
    
    	// localsubjectaccessreviews
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed Feb 23 18:36:33 UTC 2022
    - 3.4K bytes
    - Viewed (0)
  2. api/discovery/apis__authorization.k8s.io__v1.json

          "singularName": "localsubjectaccessreview",
          "verbs": [
            "create"
          ]
        },
        {
          "kind": "SelfSubjectAccessReview",
          "name": "selfsubjectaccessreviews",
          "namespaced": false,
          "singularName": "selfsubjectaccessreview",
          "verbs": [
            "create"
          ]
        },
        {
          "kind": "SelfSubjectRulesReview",
          "name": "selfsubjectrulesreviews",
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Mon May 15 18:18:19 UTC 2023
    - 963 bytes
    - Viewed (0)
  3. pkg/quota/v1/install/registry.go

    	{Group: authentication.GroupName, Resource: "selfsubjectreviews"}:       {},
    	{Group: authorization.GroupName, Resource: "subjectaccessreviews"}:      {},
    	{Group: authorization.GroupName, Resource: "selfsubjectaccessreviews"}:  {},
    	{Group: authorization.GroupName, Resource: "localsubjectaccessreviews"}: {},
    	{Group: authorization.GroupName, Resource: "selfsubjectrulesreviews"}:   {},
    
    	// events haven't been quota-ed before
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed Sep 14 16:00:26 UTC 2022
    - 2.6K bytes
    - Viewed (0)
  4. pkg/kubeapiserver/admission/exclusion/resources.go

    	{Group: "authentication.k8s.io", Resource: "tokenreviews"},
    	{Group: "authorization.k8s.io", Resource: "localsubjectaccessreviews"},
    	{Group: "authorization.k8s.io", Resource: "selfsubjectaccessreviews"},
    	{Group: "authorization.k8s.io", Resource: "selfsubjectrulesreviews"},
    	{Group: "authorization.k8s.io", Resource: "subjectaccessreviews"},
    	// END interception of these non-persisted resources may break the cluster
    }
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed Feb 28 23:31:18 UTC 2024
    - 2.5K bytes
    - Viewed (0)
  5. pkg/controlplane/storageversionhashdata/data.go

    	"v1/bindings",
    	"v1/componentstatuses",
    	"authentication.k8s.io/v1/selfsubjectreviews",
    	"authentication.k8s.io/v1/tokenreviews",
    	"authorization.k8s.io/v1/localsubjectaccessreviews",
    	"authorization.k8s.io/v1/selfsubjectaccessreviews",
    	"authorization.k8s.io/v1/selfsubjectrulesreviews",
    	"authorization.k8s.io/v1/subjectaccessreviews",
    )
    
    // GVRToStorageVersionHash shouldn't change unless we intentionally change the
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Wed May 29 20:14:51 UTC 2024
    - 4.9K bytes
    - Viewed (0)
  6. api/discovery/aggregated_v2.json

                  ]
                },
                {
                  "resource": "selfsubjectaccessreviews",
                  "responseKind": {
                    "group": "",
                    "kind": "SelfSubjectAccessReview",
                    "version": ""
                  },
                  "scope": "Cluster",
                  "singularResource": "selfsubjectaccessreview",
                  "verbs": [
                    "create"
                  ]
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Tue Mar 12 17:29:14 UTC 2024
    - 55.4K bytes
    - Viewed (0)
  7. api/discovery/aggregated_v2beta1.json

                  ]
                },
                {
                  "resource": "selfsubjectaccessreviews",
                  "responseKind": {
                    "group": "",
                    "kind": "SelfSubjectAccessReview",
                    "version": ""
                  },
                  "scope": "Cluster",
                  "singularResource": "selfsubjectaccessreview",
                  "verbs": [
                    "create"
                  ]
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Fri Mar 08 04:18:56 UTC 2024
    - 55.4K bytes
    - Viewed (0)
  8. istioctl/pkg/precheck/precheck.go

    				Resource:  resource,
    			},
    		},
    	}
    
    	response, err := c.Kube().AuthorizationV1().SelfSubjectAccessReviews().Create(context.Background(), s, metav1.CreateOptions{})
    	if err != nil {
    		return err
    	}
    
    	if !response.Status.Allowed {
    		if len(response.Status.Reason) > 0 {
    			return errors.New(response.Status.Reason)
    		}
    		return errors.New("permission denied")
    	}
    	return nil
    }
    
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Fri Apr 12 02:57:30 UTC 2024
    - 19.3K bytes
    - Viewed (0)
  9. plugin/pkg/auth/authorizer/rbac/bootstrappolicy/testdata/cluster-roles.yaml

        creationTimestamp: null
        labels:
          kubernetes.io/bootstrapping: rbac-defaults
        name: system:basic-user
      rules:
      - apiGroups:
        - authorization.k8s.io
        resources:
        - selfsubjectaccessreviews
        - selfsubjectrulesreviews
        verbs:
        - create
      - apiGroups:
        - authentication.k8s.io
        resources:
        - selfsubjectreviews
        verbs:
        - create
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Tue Jul 18 08:11:08 UTC 2023
    - 24.1K bytes
    - Viewed (0)
  10. plugin/pkg/auth/authorizer/rbac/bootstrappolicy/policy.go

    					"/livez/*", "/readyz/*", "/healthz/*",
    				).RuleOrDie(),
    			},
    		},
    	}
    
    	basicUserRules := []rbacv1.PolicyRule{
    		rbacv1helpers.NewRule("create").Groups(authorizationGroup).Resources("selfsubjectaccessreviews", "selfsubjectrulesreviews").RuleOrDie(),
    		rbacv1helpers.NewRule("create").Groups(authenticationGroup).Resources("selfsubjectreviews").RuleOrDie(),
    	}
    
    	roles = append(roles, []rbacv1.ClusterRole{
    		{
    Registered: Sat Jun 15 01:39:40 UTC 2024
    - Last Modified: Fri Mar 08 19:25:10 UTC 2024
    - 34.4K bytes
    - Viewed (0)
Back to top