- Sort Score
- Result 10 results
- Languages All
Results 21 - 30 of 48 for requestAuthentications (0.68 sec)
-
pkg/config/analysis/analyzers/k8sgateway/workloadselector.go
"istio.io/istio/pkg/maps" ) var _ analysis.Analyzer = &SelectorAnalyzer{} type SelectorAnalyzer struct{} var policyGVKs = []config.GroupVersionKind{ gvk.AuthorizationPolicy, gvk.RequestAuthentication, gvk.Telemetry, gvk.WasmPlugin, } type policy interface { GetSelector() *typev1beta1.WorkloadSelector GetTargetRef() *typev1beta1.PolicyTargetReference }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Dec 15 01:19:33 UTC 2023 - 2.8K bytes - Viewed (0) -
tests/integration/security/remote_jwks/testdata/requestauthn-with-se-timeout.yaml.tmpl
--- apiVersion: security.istio.io/v1beta1 kind: RequestAuthentication metadata: name: request-authn spec: selector: matchLabels: app: {{ .dst }} jwtRules: - issuer: "******@****.***" jwksUri: "http://example.com:8000/jwks?delay={{ .delay }}" outputPayloadToHeader: "x-test-payload" forwardOriginalToken: true timeout: {{ .timeout }} --- apiVersion: networking.istio.io/v1beta1 kind: ServiceEntry
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Feb 23 09:47:21 UTC 2024 - 675 bytes - Viewed (0) -
pilot/pkg/xds/proxy_dependencies_test.go
}, }, }, }, }, }, }, { Meta: config.Meta{ GroupVersionKind: gvk.RequestAuthentication, Name: jwksSvc, Namespace: nsName, }, Spec: &security.RequestAuthentication{ Selector: &v1beta1.WorkloadSelector{MatchLabels: gateway.Labels}, JwtRules: []*security.JWTRule{{JwksUri: "https://" + jwksSvc}}, },
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Apr 17 22:20:44 UTC 2024 - 13.5K bytes - Viewed (0) -
tests/integration/security/policy_attachment_only/testdata/authz/gateway-authz.yaml.tmpl
apiVersion: security.istio.io/v1beta1 kind: RequestAuthentication metadata: name: default-{{ .To.ServiceName }} spec: targetRef: kind: Gateway group: gateway.networking.k8s.io name: {{ .To.ServiceName }}-gateway jwtRules: - issuer: "******@****.***" jwksUri: "https://raw.githubusercontent.com/istio/istio/master/tests/common/jwt/jwks.json" --- apiVersion: security.istio.io/v1beta1 kind: AuthorizationPolicy
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Oct 24 19:50:43 UTC 2023 - 847 bytes - Viewed (0) -
operator/cmd/mesh/testdata/manifest-generate/output/all_on.golden-show-in-gh-pull-request.yaml
istio: security release: istio name: requestauthentications.security.istio.io spec: group: security.istio.io names: categories: - istio-io - security-istio-io kind: RequestAuthentication listKind: RequestAuthenticationList plural: requestauthentications shortNames: - ra singular: requestauthentication scope: Namespaced versions:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Jan 10 05:10:03 UTC 2024 - 506.8K bytes - Viewed (0) -
pilot/pkg/xds/cds.go
// Map of all configs that do not impact CDS var skippedCdsConfigs = sets.New( kind.Gateway, kind.WorkloadEntry, kind.WorkloadGroup, kind.AuthorizationPolicy, kind.RequestAuthentication, kind.Secret, kind.Telemetry, kind.WasmPlugin, kind.ProxyConfig, kind.DNSName, kind.KubernetesGateway, )
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 09 21:27:52 UTC 2024 - 4.2K bytes - Viewed (0) -
manifests/charts/istiod-remote/templates/crd-all.gen.yaml
release: istio name: requestauthentications.security.istio.io spec: group: security.istio.io names: categories: - istio-io - security-istio-io kind: RequestAuthentication listKind: RequestAuthenticationList plural: requestauthentications shortNames: - ra singular: requestauthentication scope: Namespaced versions:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 06 21:31:42 UTC 2024 - 671.7K bytes - Viewed (0) -
pkg/config/analysis/analyzers/testdata/k8sgateway-selector.yaml
namespace: default spec: containers: - image: proxyv2:1.3.1 name: istio-proxy --- # only selector is set, should be ineffective apiVersion: security.istio.io/v1 kind: RequestAuthentication metadata: namespace: default name: ra-ineffective spec: selector: matchLabels: gateway.networking.k8s.io/gateway-name: bookinfo-gateway --- # only selector is set, should be ineffective
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Dec 15 01:19:33 UTC 2023 - 1.6K bytes - Viewed (0) -
pilot/pkg/security/authn/policy_applier.go
} func (a policyApplier) setAuthnFilterForRequestAuthn(config *authn_filter.FilterConfig) *authn_filter.FilterConfig { if len(a.processedJwtRules) == 0 { // (beta) RequestAuthentication is not set for workload, do nothing. authnLog.Debug("AuthnFilter: RequestAuthentication (beta policy) not found, keep settings with alpha API") return config } if config == nil { config = defaultAuthnFilter() }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Feb 23 09:47:21 UTC 2024 - 19.2K bytes - Viewed (0) -
pilot/pkg/xds/rds.go
// Map of all configs that do not impact RDS var skippedRdsConfigs = sets.New[kind.Kind]( kind.WorkloadEntry, kind.WorkloadGroup, kind.AuthorizationPolicy, kind.RequestAuthentication, kind.PeerAuthentication, kind.Secret, kind.WasmPlugin, kind.Telemetry, kind.ProxyConfig, kind.DNSName, ) func rdsNeedsPush(req *model.PushRequest) bool { if req == nil { return true
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 27 07:19:38 UTC 2024 - 1.9K bytes - Viewed (0)