- Sort Score
- Result 10 results
- Languages All
Results 21 - 30 of 208 for serviceAccount (0.28 sec)
-
manifests/charts/ztunnel/templates/rbac.yaml
apiVersion: v1 kind: ServiceAccount {{- with .Values.imagePullSecrets }} imagePullSecrets: {{- range . }} - name: {{ . }} {{- end }} {{- end }} metadata: name: ztunnel namespace: {{ .Release.Namespace }} labels: {{- .Values.labels | toYaml | nindent 4}} annotations: {{- .Values.annotations | toYaml | nindent 4 }} --- {{- if (eq .Values.platform "openshift") }} apiVersion: rbac.authorization.k8s.io/v1
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Sat May 04 01:17:57 UTC 2024 - 1.3K bytes - Viewed (0) -
manifests/charts/base/values.yaml
defaults: global: # ImagePullSecrets for control plane ServiceAccount, list of secrets in the same namespace # to use for pulling any images in pods that reference this ServiceAccount. # Must be set for any cluster configured with private docker registry. imagePullSecrets: [] # Used to locate istiod. istioNamespace: istio-system externalIstiod: false remotePilotAddress: ""
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 22 22:00:40 UTC 2024 - 1.3K bytes - Viewed (0) -
samples/bookinfo/platform/kube/bookinfo.yaml
# # kubectl apply -f samples/bookinfo/platform/kube/bookinfo.yaml -l service=reviews # reviews Service # kubectl apply -f samples/bookinfo/platform/kube/bookinfo.yaml -l account=reviews # reviews ServiceAccount # kubectl apply -f samples/bookinfo/platform/kube/bookinfo.yaml -l app=reviews,version=v3 # reviews-v3 Deployment ##################################################################################################
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Jun 03 19:54:05 UTC 2024 - 7.6K bytes - Viewed (0) -
samples/bookinfo/platform/kube/bookinfo-dualstack.yaml
# # kubectl apply -f samples/bookinfo/platform/kube/bookinfo.yaml -l service=reviews # reviews Service # kubectl apply -f samples/bookinfo/platform/kube/bookinfo.yaml -l account=reviews # reviews ServiceAccount # kubectl apply -f samples/bookinfo/platform/kube/bookinfo.yaml -l app=reviews,version=v3 # reviews-v3 Deployment ##################################################################################################
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Jun 03 19:54:05 UTC 2024 - 7.9K bytes - Viewed (0) -
pkg/test/framework/components/istio/ca.go
} func CreateCertificate(t framework.TestContext, i Instance, serviceAccount, namespace string) (Cert, error) { c := t.Clusters().Default() rootCert, err := FetchRootCert(c.Kube()) if err != nil { return Cert{}, fmt.Errorf("failed to fetch root cert: %v", err) } token, err := GetServiceAccountToken(c.Kube(), "istio-ca", namespace, serviceAccount) if err != nil { return Cert{}, err }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Mar 27 16:59:05 UTC 2024 - 4.5K bytes - Viewed (0) -
security/pkg/server/ca/node_auth.go
return fmt.Errorf("pod found, but ServiceAccount does not match: %v vs %v", callerPod.Spec.ServiceAccountName, caller.PodServiceAccount) } // We want to find out if there is any pod running with the requested identity on the callers node. // The indexer (previously setup) creates a lookup table for a {Node, SA} pair, which we can lookup k := SaNode{
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Feb 28 16:41:38 UTC 2024 - 6.4K bytes - Viewed (0) -
istioctl/pkg/internaldebug/internal-debug.go
var namespace, serviceAccount string xdsRequest := discovery.DiscoveryRequest{ ResourceNames: []string{"list"}, Node: &core.Node{ Id: "debug~0.0.0.0~istioctl~cluster.local", }, TypeUrl: v3.DebugType, } xdsResponses, respErr := multixds.AllRequestAndProcessXds(&xdsRequest, centralOpts, istioNamespace, namespace, serviceAccount, kubeClient, multixds.DefaultOptions) if respErr != nil {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Mar 15 04:16:55 UTC 2024 - 6.9K bytes - Viewed (0) -
samples/bookinfo/platform/kube/bookinfo-psa.yaml
kind: Service metadata: name: details labels: app: details service: details spec: ports: - port: 9080 name: http selector: app: details --- apiVersion: v1 kind: ServiceAccount metadata: name: bookinfo-details labels: account: details --- apiVersion: apps/v1 kind: Deployment metadata: name: details-v1 labels: app: details version: v1 spec:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Jun 03 19:54:05 UTC 2024 - 8.1K bytes - Viewed (0) -
tests/integration/ambient/cacert_rotation_test.go
func waitForWorkloadCertUpdate(t framework.TestContext, ztunnelPod v1.Pod, serviceAccount string, istioCtl istioctl.Instance, originalCert *configdump.CertsDump, ) *configdump.CertsDump { var newSecret *configdump.CertsDump retry.UntilOrFail(t, func() bool { updatedCert, _, err := getWorkloadSecret(t, []v1.Pod{ztunnelPod}, serviceAccount, istioCtl) if err != nil { t.Logf("failed to get current workload secret: %v", err)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Apr 16 03:28:36 UTC 2024 - 6.1K bytes - Viewed (0) -
pilot/pkg/serviceregistry/util/workloadinstances/index_test.go
wi1 := &model.WorkloadInstance{ Name: selector.Name, Namespace: selector.Namespace, Endpoint: &model.IstioEndpoint{ Address: "2.2.2.2", Labels: map[string]string{"app": "wle"}, ServiceAccount: spiffe.MustGenSpiffeURIForTrustDomain("cluster.local", selector.Name, "default"), TLSMode: model.IstioMutualTLSModeLabel, }, } wi2 := &model.WorkloadInstance{ Name: "some-other-name",
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 5K bytes - Viewed (0)