- Sort Score
- Result 10 results
- Languages All
Results 1 - 3 of 3 for roots (0.04 sec)
-
pilot/pkg/bootstrap/certcontroller.go
log.Infof("Use roots from %v and watch", fileBundle.RootCertFile) caBundle = s.CA.GetCAKeyCertBundle().GetRootCertPem() // Similar code to istio-ca-secret: refresh the root cert, but in casecrets s.addStartFunc("istiod server certificate rotation", func(stop <-chan struct{}) error { go func() { // regenerate istiod key cert when root cert changes. s.watchRootCertAndGenKeyCert(stop)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 13 17:48:28 UTC 2024 - 11.3K bytes - Viewed (0) -
pilot/pkg/bootstrap/server.go
workloadTrustBundle *tb.TrustBundle certMu sync.RWMutex istiodCert *tls.Certificate // istiodCertBundleWatche provides callbacks when the Istiod certs or roots are changed. // The roots are used by the namespace controller to update Istiod roots and patch webhooks. // The certs are used to refresh Istiod credentials. istiodCertBundleWatcher *keycertbundle.Watcher server server.Instance
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 13 17:48:28 UTC 2024 - 46.3K bytes - Viewed (0) -
pilot/pkg/bootstrap/istio_ca.go
// // Support for signing other root CA has been removed - too dangerous, no clear use case. // // Default config, for backward compat with Citadel: // - if "cacerts" secret exists in istio-system, will be mounted. It may contain an optional "root-cert.pem", // with additional roots and optional {ca-key, ca-cert, cert-chain}.pem user-provided root CA.
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 13 17:48:28 UTC 2024 - 20.6K bytes - Viewed (0)