- Sort Score
- Result 10 results
- Languages All
Results 51 - 60 of 135 for audiences (0.17 sec)
-
staging/src/k8s.io/apiserver/pkg/server/config.go
DisableHTTP2 bool } type AuthenticationInfo struct { // APIAudiences is a list of identifier that the API identifies as. This is // used by some authenticators to validate audience bound credentials. APIAudiences authenticator.Audiences // Authenticator determines which subject is making the request Authenticator authenticator.Request RequestHeaderConfig *authenticatorfactory.RequestHeaderConfig }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue May 28 08:48:22 UTC 2024 - 47.7K bytes - Viewed (0) -
pilot/pkg/bootstrap/server.go
// JWTRule is from the JWT_RULE environment variable. // An example of json string for JWTRule is: // `{"issuer": "foo", "jwks_uri": "baz", "audiences": ["aud1", "aud2"]}`. jwtRule := &v1beta1.JWTRule{} err := json.Unmarshal([]byte(args.JwtRule), jwtRule) if err != nil { return nil, fmt.Errorf("failed to unmarshal JWT rule: %v", err) }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 13 17:48:28 UTC 2024 - 46.3K bytes - Viewed (0) -
pkg/serviceaccount/claims_test.go
}{ { // pod and secret sa: sa, pod: pod, sec: sec, // really fast exp: 0, // nil audience aud: nil, err: "internal error, token can only be bound to one object type", }, { // pod sa: sa, pod: pod, // empty audience aud: []string{}, exp: 100, sc: &jwt.Claims{ Subject: "system:serviceaccount:myns:mysvcacct",
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Apr 24 18:25:29 UTC 2024 - 17.9K bytes - Viewed (0) -
pkg/registry/storage/csidriver/strategy_test.go
wantGeneration: 1, }, { name: "service account token feature enabled, before: none, update: audience=gcp", old: driverWithNothing, update: driverWithServiceAccountTokenGCP, wantTokenRequests: []storage.TokenRequest{{Audience: gcp}}, wantRequiresRepublish: &enabled, wantGeneration: 1, }, {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Apr 24 18:25:29 UTC 2024 - 16.7K bytes - Viewed (0) -
cmd/sts-datatypes.go
// returns. AssumedRoleUser AssumedRoleUser `xml:",omitempty"` // The intended audience (also known as client ID) of the web identity token. // This is traditionally the client identifier issued to the application that // requested the client grants. Audience string `xml:",omitempty"` // The temporary security credentials, which include an access key ID, a secret
Registered: Sun Jun 16 00:44:34 UTC 2024 - Last Modified: Fri May 27 00:58:09 UTC 2022 - 9.9K bytes - Viewed (0) -
pkg/serviceaccount/claims.go
} func Claims(sa core.ServiceAccount, pod *core.Pod, secret *core.Secret, node *core.Node, expirationSeconds, warnafter int64, audience []string) (*jwt.Claims, interface{}, error) { now := now() sc := &jwt.Claims{ Subject: apiserverserviceaccount.MakeUsername(sa.Namespace, sa.Name), Audience: jwt.Audience(audience), IssuedAt: jwt.NewNumericDate(now), NotBefore: jwt.NewNumericDate(now),
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Oct 30 21:15:10 UTC 2023 - 11.3K bytes - Viewed (0) -
pkg/kube/inject/testdata/inject/list.yaml.injected
path: annotations name: istio-podinfo - name: istio-token projected: sources: - serviceAccountToken: audience: istio-ca expirationSeconds: 43200 path: istio-token - configMap: name: istio-ca-root-cert name: istiod-ca-cert status: {} - apiVersion: apps/v1
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 27 16:55:16 UTC 2024 - 14.2K bytes - Viewed (0) -
internal/jwt/parser.go
} // SetIssuer sets issuer for these claims func (c *StandardClaims) SetIssuer(issuer string) { c.Issuer = issuer } // SetAudience sets audience for these claims func (c *StandardClaims) SetAudience(aud string) { c.Audience = aud } // SetExpiry sets expiry in unix epoch secs func (c *StandardClaims) SetExpiry(t time.Time) { c.ExpiresAt = t.Unix() }
Registered: Sun Jun 16 00:44:34 UTC 2024 - Last Modified: Tue May 09 07:53:08 UTC 2023 - 13.9K bytes - Viewed (0) -
pkg/kube/inject/testdata/inject/hello-multi.yaml.injected
path: annotations name: istio-podinfo - name: istio-token projected: sources: - serviceAccountToken: audience: istio-ca expirationSeconds: 43200 path: istio-token - configMap: name: istio-ca-root-cert name: istiod-ca-cert status: {} --- apiVersion: apps/v1
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 27 16:55:16 UTC 2024 - 13.2K bytes - Viewed (0) -
operator/cmd/mesh/testdata/manifest-generate/output/ingressgateway_k8s_settings.golden.yaml
- emptyDir: {} name: istio-envoy - emptyDir: {} name: istio-data - name: istio-token projected: sources: - serviceAccountToken: audience: istio-ca expirationSeconds: 43200 path: istio-token - configMap: name: istio optional: true name: config-volume - name: ingressgateway-certs
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Dec 01 22:07:45 UTC 2023 - 14.3K bytes - Viewed (0)