- Sort Score
- Result 10 results
- Languages All
Results 21 - 30 of 33 for systemNamespaces (0.27 sec)
-
tests/integration/security/testdata/authz/ingress-gateway.yaml.tmpl
# remote ip is 10.242.5.7 or in the network 10.124.99.0/24. apiVersion: security.istio.io/v1beta1 kind: AuthorizationPolicy metadata: name: policy-{{ .To.ServiceName }} namespace: {{ .SystemNamespace.Name }} spec: action: DENY selector: matchLabels: app: {{.GatewayIstioLabel | default "istio-ingressgateway"}} rules: - to: - operation: hosts: [
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon May 08 07:03:01 UTC 2023 - 2.5K bytes - Viewed (0) -
tests/integration/pilot/workloadentry_test.go
` // expose the ServiceEntry and create the "manual discovery" gateways in all clusters cfg := t.ConfigIstio().YAML(i.Settings().SystemNamespace, exposeServices) for _, network := range t.Clusters().Networks() { cfg. YAML(i.Settings().SystemNamespace, fmt.Sprintf(gwTmpl, network, network, gatewayAddresses[network].ip)) } cfg.ApplyOrFail(t) // create a unique SE per cluster
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 7.1K bytes - Viewed (0) -
tests/integration/ambient/cacert_rotation_test.go
namespace.ClaimOrFail(t, t, istioCfg.SystemNamespace) newX509 := getX509FromFile(t, "ca-cert-alt-2.pem") sa := apps.Captured[0].ServiceAccountName() // we do not know which ztunnel instance is located on the node as the workload, so we need to check all of them initially ztunnelPods, err := kubetest.NewPodFetch(t.AllClusters()[0], istioCfg.SystemNamespace, "app=ztunnel")() assert.NoError(t, err)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Apr 16 03:28:36 UTC 2024 - 6.1K bytes - Viewed (0) -
pilot/pkg/bootstrap/servicecontroller.go
args.RegistryOptions.KubeOptions.MeshNetworksWatcher = s.environment.NetworksWatcher args.RegistryOptions.KubeOptions.MeshWatcher = s.environment.Watcher args.RegistryOptions.KubeOptions.SystemNamespace = args.Namespace args.RegistryOptions.KubeOptions.MeshServiceController = s.ServiceController() // pass namespace to k8s service registry kubecontroller.NewMulticluster(args.PodName, s.kubeClient.Kube(),
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 3.2K bytes - Viewed (0) -
tests/integration/pilot/multiplecontrolplanes/main_test.go
s.SkipWorkloadClasses = append(s.SkipWorkloadClasses, echo.VM) s.DisableDefaultExternalServiceConnectivity = true cfg.Values["global.istioNamespace"] = userGroup1NS.Name() cfg.SystemNamespace = userGroup1NS.Name() cfg.ControlPlaneValues = fmt.Sprintf(` namespace: %s revision: usergroup-1 meshConfig: # REGISTRY_ONLY on one control plane is used to verify custom resources scoping
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 09 16:52:52 UTC 2024 - 9.1K bytes - Viewed (0) -
tests/integration/telemetry/api/setup_test.go
Setup(istio.Setup(&ist, setupConfig)). Setup(func(ctx resource.Context) error { i, err := istio.Get(ctx) if err != nil { return err } return ctx.ConfigIstio().YAML(i.Settings().SystemNamespace, ` apiVersion: telemetry.istio.io/v1alpha1 kind: Telemetry metadata: name: mesh-default spec: metrics: - providers: - name: prometheus `).Apply() }). Setup(testRegistrySetup).
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 02 21:29:40 UTC 2024 - 4.7K bytes - Viewed (0) -
pkg/test/framework/components/istio/util.go
weight: 25 ` func waitForValidationWebhook(ctx resource.Context, cluster cluster.Cluster, cfg Config) error { dummyValidationVirtualService := fmt.Sprintf(dummyValidationVirtualServiceTemplate, cfg.SystemNamespace) defer func() { e := ctx.ConfigKube(cluster).YAML("", dummyValidationVirtualService).Delete() if e != nil { scopes.Framework.Warnf("error deleting dummy virtual service for waiting the validation webhook: %v", e)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Feb 29 17:13:34 UTC 2024 - 4.7K bytes - Viewed (0) -
tests/integration/pilot/multi_version_revision_test.go
fmt.Sprintf("%s-install.yaml.tar", version))) if err != nil { t.Fatalf("could not read installation config: %v", err) } configs[version] = config if err := t.ConfigIstio().YAML(i.Settings().SystemNamespace, config).Apply(apply.NoCleanup); err != nil { t.Fatal(err) } } // skipIfK8sVersionUnsupported skips the test if we're running on a k8s version that is not expected to work
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 6.1K bytes - Viewed (0) -
tests/integration/security/cacert_rotation/main_test.go
framework.NewTest(t). Run(func(t framework.TestContext) { istioCfg := istio.DefaultConfigOrFail(t, t) istioCtl := istioctl.NewOrFail(t, t, istioctl.Config{}) namespace.ClaimOrFail(t, t, istioCfg.SystemNamespace) from := apps.EchoNamespace.A to := apps.EchoNamespace.B fromAndTo := from.Append(to) lastUpdateTime, err := getWorkloadCertLastUpdateTime(t, from[0], istioCtl) if err != nil {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 6.6K bytes - Viewed (0) -
cni/pkg/nodeagent/server.go
isReady: ready, dataplane: &meshDataplane{ kubeClient: client.Kube(), netServer: netServer, }, } s.NotReady() s.handlers = setupHandlers(s.ctx, s.kubeClient, s.dataplane, args.SystemNamespace) cniServer := startCniPluginServer(ctx, pluginSocket, s.handlers, s.dataplane) err = cniServer.Start() if err != nil { return nil, fmt.Errorf("error starting cni server: %w", err) }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri May 31 21:45:18 UTC 2024 - 7.2K bytes - Viewed (0)