- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 43 for task (0.12 sec)
-
architecture/ambient/ztunnel.md
## Redirection As ztunnel aims to transparently encrypt and route users traffic, we need a mechanism to capture all traffic entering and leaving "mesh" pods. This is a security critical task: if the ztunnel can be bypassed, authorization policies can be bypassed. Redirection must meet these requirements: * All traffic *egressing* a pod in the mesh should be redirected to the node-local ztunnel on port 15001.
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Apr 25 22:35:16 GMT 2024 - 16.6K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/templates/NOTES.txt
{{- else }} * Deploy a Gateway: https://istio.io/latest/docs/setup/additional-setup/gateway/ * Try out our tasks to get started on common configurations: * https://istio.io/latest/docs/tasks/traffic-management * https://istio.io/latest/docs/tasks/security/ * https://istio.io/latest/docs/tasks/policy-enforcement/ {{- end }} * Review the list of actively supported releases, CVE publications and our hardening guide:
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed Apr 17 16:38:47 GMT 2024 - 4.2K bytes - Viewed (0) -
manifests/charts/gateway/files/profile-demo.yaml
# * Lower resource utilization. # * Some additional features are enabled by default; especially ones used in some tasks in istio.io. # * More ports enabled on the ingress, which is used in some tasks. meshConfig: accessLogFile: /dev/stdout extensionProviders: - name: otel envoyOtelAls: service: opentelemetry-collector.observability.svc.cluster.local
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 02 22:30:06 GMT 2024 - 2.1K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/values.yaml
# Redirect only selected ports: --includeInboundPorts="80,8080" excludeInboundPorts: "" includeInboundPorts: "*" # istio egress capture allowlist # https://istio.io/docs/tasks/traffic-management/egress.html#calling-external-services-directly # example: includeIPRanges: "172.30.0.0/16,172.20.0.0/16" # would only capture egress traffic on those two IP Ranges, all other outbound traffic would
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Mon Apr 22 22:00:40 GMT 2024 - 20.3K bytes - Viewed (0) -
cni/pkg/iptables/iptables_linux.go
inpodMarkRule := netlink.NewRule() inpodMarkRule.Family = family inpodMarkRule.Table = RouteTableInbound inpodMarkRule.Mark = InpodTProxyMark inpodMarkRule.Mask = InpodTProxyMask inpodMarkRule.Priority = 32764 rules = append(rules, inpodMarkRule) } for _, rule := range rules { log.Debugf("Iterating netlink rule : %+v", rule) if err := f(rule); err != nil {
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 30 22:24:38 GMT 2024 - 3.3K bytes - Viewed (0) -
manifests/charts/gateway/templates/NOTES.txt
$ helm get all {{ .Release.Name }} -n {{ .Release.Namespace }} Next steps: * Deploy an HTTP Gateway: https://istio.io/latest/docs/tasks/traffic-management/ingress/ingress-control/
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed Apr 17 02:27:41 GMT 2024 - 452 bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/files/profile-demo.yaml
# * Lower resource utilization. # * Some additional features are enabled by default; especially ones used in some tasks in istio.io. # * More ports enabled on the ingress, which is used in some tasks. meshConfig: accessLogFile: /dev/stdout extensionProviders: - name: otel envoyOtelAls: service: opentelemetry-collector.observability.svc.cluster.local
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 02 22:30:06 GMT 2024 - 2.1K bytes - Viewed (0) -
manifests/helm-profiles/demo.yaml
# * Lower resource utilization. # * Some additional features are enabled by default; especially ones used in some tasks in istio.io. # * More ports enabled on the ingress, which is used in some tasks. meshConfig: accessLogFile: /dev/stdout extensionProviders: - name: otel envoyOtelAls: service: opentelemetry-collector.observability.svc.cluster.local
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Feb 06 01:25:34 GMT 2024 - 1.9K bytes - Viewed (0) -
manifests/charts/gateways/istio-egress/files/profile-demo.yaml
# * Lower resource utilization. # * Some additional features are enabled by default; especially ones used in some tasks in istio.io. # * More ports enabled on the ingress, which is used in some tasks. meshConfig: accessLogFile: /dev/stdout extensionProviders: - name: otel envoyOtelAls: service: opentelemetry-collector.observability.svc.cluster.local
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 02 22:30:06 GMT 2024 - 2.1K bytes - Viewed (0) -
manifests/charts/istiod-remote/files/profile-demo.yaml
# * Lower resource utilization. # * Some additional features are enabled by default; especially ones used in some tasks in istio.io. # * More ports enabled on the ingress, which is used in some tasks. meshConfig: accessLogFile: /dev/stdout extensionProviders: - name: otel envoyOtelAls: service: opentelemetry-collector.observability.svc.cluster.local
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Apr 02 22:30:06 GMT 2024 - 2.1K bytes - Viewed (0)