- Sort Score
- Result 10 results
- Languages All
Results 21 - 30 of 75 for AuthorizationPolicy (0.24 sec)
-
pkg/config/analysis/analyzers/k8sgateway/workloadselector.go
"istio.io/istio/pkg/config/schema/gvk" "istio.io/istio/pkg/maps" ) var _ analysis.Analyzer = &SelectorAnalyzer{} type SelectorAnalyzer struct{} var policyGVKs = []config.GroupVersionKind{ gvk.AuthorizationPolicy, gvk.RequestAuthentication, gvk.Telemetry, gvk.WasmPlugin, } type policy interface { GetSelector() *typev1beta1.WorkloadSelector GetTargetRef() *typev1beta1.PolicyTargetReference }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Dec 15 01:19:33 UTC 2023 - 2.8K bytes - Viewed (0) -
pilot/pkg/config/kube/crdclient/types.gen.go
} switch orig.GroupVersionKind { case gvk.AuthorizationPolicy: oldRes := &apiistioioapisecurityv1beta1.AuthorizationPolicy{ ObjectMeta: origMeta, Spec: *(orig.Spec.(*istioioapisecurityv1beta1.AuthorizationPolicy)), } modRes := &apiistioioapisecurityv1beta1.AuthorizationPolicy{ ObjectMeta: modMeta, Spec: *(mod.Spec.(*istioioapisecurityv1beta1.AuthorizationPolicy)), }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Apr 12 17:37:32 UTC 2024 - 62.2K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/ambient/testdata/deny-groups-in.yaml
apiVersion: security.istio.io/v1beta1 kind: AuthorizationPolicy metadata: name: groups-deny spec: action: DENY rules: # Has mix of L4 and L7 in from - from: - source: principals: ["from-mix-principal"] requestPrincipals: ["from-mix-requestPrincipals"] namespaces: ["from-mix-ns"] to: - operation: ports: ["80"] # Has mix of L4 and L7 in to - from: - source:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Feb 29 18:40:34 UTC 2024 - 1.4K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/ambient/policies.go
"istio.io/istio/pkg/kube/krt" "istio.io/istio/pkg/slices" "istio.io/istio/pkg/spiffe" "istio.io/istio/pkg/workloadapi/security" ) func PolicyCollections( AuthzPolicies krt.Collection[*securityclient.AuthorizationPolicy], PeerAuths krt.Collection[*securityclient.PeerAuthentication], MeshConfig krt.Singleton[MeshConfig], Waypoints krt.Collection[Waypoint], Pods krt.Collection[*v1.Pod],
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 13 16:51:29 UTC 2024 - 5.2K bytes - Viewed (0) -
pilot/pkg/networking/grpcgen/grpcgen_test.go
ServicePortName: "grpc-main", }, }) store.Create(config.Config{ Meta: config.Meta{ GroupVersionKind: gvk.AuthorizationPolicy, Name: svcname, Namespace: ns, }, Spec: &security.AuthorizationPolicy{ Rules: []*security.Rule{ { When: []*security.Condition{ { Key: "request.headers[echo]", Values: []string{
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Mar 28 09:04:02 UTC 2024 - 16.9K bytes - Viewed (0) -
tests/integration/security/policy_attachment_only/testdata/requestauthn/gateway-jwt.yaml.tmpl
jwtRules: - issuer: "******@****.***" jwksUri: "https://raw.githubusercontent.com/istio/istio/master/tests/common/jwt/jwks.json" --- apiVersion: security.istio.io/v1beta1 kind: AuthorizationPolicy metadata: name: authz-gateway-{{ .To.ServiceName }} spec: targetRef: name: {{ .To.ServiceName }}-gateway kind: Gateway group: gateway.networking.k8s.io rules: - to:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Dec 05 21:52:53 UTC 2023 - 1.7K bytes - Viewed (0) -
releasenotes/notes/50110.yaml
# release notes. releaseNotes: - |
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Mar 27 04:22:04 UTC 2024 - 1.2K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/ambient/ambientindex_test.go
s.addPolicy(t, "global", systemNS, nil, gvk.AuthorizationPolicy, nil) s.addPolicy(t, "namespace", testNS, nil, gvk.AuthorizationPolicy, nil) s.assertEvent(t, xdsGlobal, xdsNamespace) assert.Equal(t, s.lookup(s.addrXdsName("127.0.0.1"))[0].Address.GetWorkload().AuthorizationPolicies, nil) s.addPolicy(t, selectorPolicyName, testNS, map[string]string{"app": "a"}, gvk.AuthorizationPolicy, nil)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed May 08 01:04:50 UTC 2024 - 70.2K bytes - Viewed (0) -
tests/integration/security/testdata/requestauthn/gateway-jwt.yaml.tmpl
jwtRules: - issuer: "******@****.***" jwksUri: "https://raw.githubusercontent.com/istio/istio/master/tests/common/jwt/jwks.json" --- apiVersion: security.istio.io/v1beta1 kind: AuthorizationPolicy metadata: name: authz-gateway-{{ .To.ServiceName }} spec: targetRef: name: {{ .To.ServiceName }}-gateway kind: Gateway group: gateway.networking.k8s.io rules: - to:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Dec 05 21:52:53 UTC 2023 - 1.7K bytes - Viewed (0) -
pilot/pkg/xds/ecds_test.go
}, { name: "no_relevant_config_update", proxyNamespace: "default", request: &model.PushRequest{ Full: true, ConfigsUpdated: sets.New(model.ConfigKey{Kind: kind.AuthorizationPolicy}), }, watchedResources: []string{"extenstions.istio.io/wasmplugin/default.default-plugin-with-sec", "extenstions.istio.io/wasmplugin/istio-system.root-plugin"}, wantExtensions: sets.String{},
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Mar 27 16:59:05 UTC 2024 - 12K bytes - Viewed (0)