- Sort Score
- Result 10 results
- Languages All
Results 31 - 40 of 273 for service_account (0.24 sec)
-
pkg/kubeapiserver/options/authentication.go
} ret.APIAudiences = o.APIAudiences if o.ServiceAccounts != nil { if len(o.ServiceAccounts.Issuers) != 0 && len(o.APIAudiences) == 0 { ret.APIAudiences = authenticator.Audiences(o.ServiceAccounts.Issuers) } ret.ServiceAccountKeyFiles = o.ServiceAccounts.KeyFiles ret.ServiceAccountIssuers = o.ServiceAccounts.Issuers ret.ServiceAccountLookup = o.ServiceAccounts.Lookup } if o.TokenFile != nil {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sat Mar 09 22:40:22 UTC 2024 - 32.4K bytes - Viewed (0) -
istioctl/pkg/multicluster/remote_secret.go
} func secretReferencesServiceAccount(serviceAccount *v1.ServiceAccount, secret *v1.Secret) error { if secret.Type != v1.SecretTypeServiceAccountToken || secret.Annotations[v1.ServiceAccountNameKey] != serviceAccount.Name { return fmt.Errorf("secret %s/%s does not reference ServiceAccount %s", secret.Namespace, secret.Name, serviceAccount.Name) } return nil }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Oct 11 01:43:17 UTC 2023 - 24K bytes - Viewed (0) -
pkg/spiffe/spiffe_test.go
namespace: "foo", serviceAccount: "bar", trustDomain: "******@****.***.gserviceaccount.com", expectedURI: "spiffe://kube-federating-id.testproj.iam.gserviceaccount.com/ns/foo/sa/bar", }, } for id, tc := range testCases { got, err := genSpiffeURI(tc.trustDomain, tc.namespace, tc.serviceAccount) if tc.expectedError == "" && err != nil { t.Errorf("teste case [%v] failed, error %v", id, tc) }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 18.1K bytes - Viewed (0) -
pkg/serviceaccount/jwt_test.go
} func generateECDSAToken(t *testing.T, iss string, serviceAccount *v1.ServiceAccount, ecdsaSecret *v1.Secret) string { t.Helper() ecdsaGenerator, err := serviceaccount.JWTTokenGenerator(iss, getPrivateKey(ecdsaPrivateKey)) if err != nil { t.Fatalf("error making generator: %v", err) } ecdsaToken, err := ecdsaGenerator.GenerateToken(serviceaccount.LegacyClaims(*serviceAccount, *ecdsaSecret)) if err != nil {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue Feb 27 22:16:08 UTC 2024 - 17K bytes - Viewed (0) -
pkg/controller/serviceaccount/legacy_serviceaccount_token_cleaner.go
} // make sure the time to be 00:00 on the day just after the date starts to track return trackedSinceTime.AddDate(0, 0, 1), nil } func hasSecretReference(serviceAccount *v1.ServiceAccount, secretName string) bool { for _, secret := range serviceAccount.Secrets { if secret.Name == secretName { return true } } return false
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Fri Oct 27 03:52:06 UTC 2023 - 10K bytes - Viewed (0) -
istioctl/pkg/workload/workload_test.go
} }) t.Run(dir.Name(), func(t *testing.T) { createClientFunc := func(client kube.CLIClient) { client.Kube().CoreV1().ServiceAccounts("bar").Create(context.Background(), &v1.ServiceAccount{ ObjectMeta: metav1.ObjectMeta{Namespace: "bar", Name: "vm-serviceaccount"}, Secrets: []v1.ObjectReference{{Name: "test"}}, }, metav1.CreateOptions{})
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Mar 27 16:59:05 UTC 2024 - 14.6K bytes - Viewed (0) -
pkg/controlplane/apiserver/config.go
for _, f := range opts.Authentication.ServiceAccounts.KeyFiles { keys, err := keyutil.PublicKeysFromFile(f) if err != nil { return nil, nil, fmt.Errorf("failed to parse key file %q: %w", f, err) } pubKeys = append(pubKeys, keys...) } config.ServiceAccountIssuerURL = opts.Authentication.ServiceAccounts.Issuers[0] config.ServiceAccountJWKSURI = opts.Authentication.ServiceAccounts.JWKSURI
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Fri Jun 07 17:57:37 UTC 2024 - 14.9K bytes - Viewed (0) -
cmd/kubeadm/app/util/apiclient/idempotency.go
ctx := context.Background() if _, err := client.CoreV1().ServiceAccounts(sa.ObjectMeta.Namespace).Create(ctx, sa, metav1.CreateOptions{}); err != nil { if !apierrors.IsAlreadyExists(err) { lastError = errors.Wrap(err, "unable to create ServicAccount") return false, nil } if _, err := client.CoreV1().ServiceAccounts(sa.ObjectMeta.Namespace).Update(ctx, sa, metav1.UpdateOptions{}); err != nil {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sun Feb 18 11:14:32 UTC 2024 - 18.4K bytes - Viewed (0) -
pilot/pkg/model/endpointshards.go
oldServiceAccount := shards.ServiceAccounts serviceAccounts := sets.String{} for _, epShards := range shards.Shards { for _, ep := range epShards { if ep.ServiceAccount != "" { serviceAccounts.Insert(ep.ServiceAccount) } } } if !oldServiceAccount.Equals(serviceAccounts) { shards.ServiceAccounts = serviceAccounts
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Jun 14 04:34:37 UTC 2024 - 15.6K bytes - Viewed (0) -
pilot/pkg/serviceregistry/serviceentry/conversion_test.go
svcPort *networking.ServicePort, svcLabels map[string]string, serviceAccount string, ) *model.ServiceInstance { i := makeInstance(cfg, address, port, svcPort, svcLabels, MTLSUnlabelled) i.Endpoint.ServiceAccount = spiffe.MustGenSpiffeURIForTrustDomain("cluster.local", i.Service.Attributes.Namespace, serviceAccount) return i } // nolint: unparam
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 39K bytes - Viewed (0)