Search Options

Results per page
Sort
Preferred Languages
Advance

Results 11 - 20 of 106 for AuthorizationPolicy (0.44 sec)

  1. pkg/config/schema/collections/collections.agent.gen.go

    )
    
    var (
    	AuthorizationPolicy = resource.Builder{
    		Identifier: "AuthorizationPolicy",
    		Group:      "security.istio.io",
    		Kind:       "AuthorizationPolicy",
    		Plural:     "authorizationpolicies",
    		Version:    "v1beta1",
    		VersionAliases: []string{
    			"v1",
    		},
    		Proto: "istio.security.v1beta1.AuthorizationPolicy", StatusProto: "istio.meta.v1alpha1.IstioStatus",
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Thu Apr 25 14:44:17 UTC 2024
    - 12.9K bytes
    - Viewed (0)
  2. istioctl/pkg/authz/authz.go

    	cmd := &cobra.Command{
    		Use:   "check [<type>/]<name>[.<namespace>]",
    		Short: "Check AuthorizationPolicy applied in the pod.",
    		Long: `Check prints the AuthorizationPolicy applied to a pod by directly checking
    the Envoy configuration of the pod. The command is especially useful for inspecting
    the policy propagation from Istiod to Envoy and the final AuthorizationPolicy list merged
    from multiple sources (mesh-level, namespace-level and workload-level).
    
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Sat Apr 13 05:23:38 UTC 2024
    - 5K bytes
    - Viewed (0)
  3. tests/integration/pilot/testdata/authz-b.yaml

    apiVersion: security.istio.io/v1beta1
    kind: AuthorizationPolicy
    metadata:
      name: allow-policy
    spec:
      action: ALLOW
      selector:
        matchLabels:
          "istio": {{.GatewayIstioLabel | default "ingressgateway"}}
      rules:
      - to:
        - operation:
            notPorts: ["100"]
    ---
    apiVersion: security.istio.io/v1beta1
    kind: AuthorizationPolicy
    metadata:
      name: deny-policy
    spec:
      action: DENY
      selector:
        matchLabels:
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon May 08 07:03:01 UTC 2023
    - 941 bytes
    - Viewed (0)
  4. pkg/config/schema/kubetypes/resources.gen.go

    )
    
    func getGvk(obj any) (config.GroupVersionKind, bool) {
    	switch obj.(type) {
    	case *istioioapisecurityv1beta1.AuthorizationPolicy:
    		return gvk.AuthorizationPolicy, true
    	case *apiistioioapisecurityv1beta1.AuthorizationPolicy:
    		return gvk.AuthorizationPolicy, true
    	case *k8sioapicertificatesv1.CertificateSigningRequest:
    		return gvk.CertificateSigningRequest, true
    	case *k8sioapicorev1.ConfigMap:
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Wed Apr 17 16:38:40 UTC 2024
    - 6.2K bytes
    - Viewed (0)
  5. pkg/config/schema/kind/resources.gen.go

    	ValidatingWebhookConfiguration
    	VirtualService
    	WasmPlugin
    	WorkloadEntry
    	WorkloadGroup
    )
    
    func (k Kind) String() string {
    	switch k {
    	case Address:
    		return "Address"
    	case AuthorizationPolicy:
    		return "AuthorizationPolicy"
    	case CertificateSigningRequest:
    		return "CertificateSigningRequest"
    	case ConfigMap:
    		return "ConfigMap"
    	case CustomResourceDefinition:
    		return "CustomResourceDefinition"
    	case DNSName:
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Tue Feb 27 07:19:38 UTC 2024
    - 4.9K bytes
    - Viewed (0)
  6. pkg/config/schema/gvk/resources.gen.go

    	"istio.io/istio/pkg/config"
    	"istio.io/istio/pkg/config/schema/gvr"
    )
    
    var (
    	AuthorizationPolicy            = config.GroupVersionKind{Group: "security.istio.io", Version: "v1beta1", Kind: "AuthorizationPolicy"}
    	AuthorizationPolicy_v1         = config.GroupVersionKind{Group: "security.istio.io", Version: "v1", Kind: "AuthorizationPolicy"}
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Fri Apr 12 17:37:32 UTC 2024
    - 15.6K bytes
    - Viewed (0)
  7. pilot/pkg/security/authz/builder/builder.go

    	option            Option
    
    	// populated when building for CUSTOM action.
    	customPolicies []model.AuthorizationPolicy
    	extensions     map[string]*builtExtAuthz
    
    	// populated when building for ALLOW/DENY/AUDIT action.
    	denyPolicies  []model.AuthorizationPolicy
    	allowPolicies []model.AuthorizationPolicy
    	auditPolicies []model.AuthorizationPolicy
    
    	// logger emits logs about policies
    	logger *AuthzLogger
    }
    
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon Nov 20 22:15:12 UTC 2023
    - 12.6K bytes
    - Viewed (0)
  8. tests/integration/security/testdata/authz/path-normalization.yaml.tmpl

    apiVersion: security.istio.io/v1beta1
    kind: AuthorizationPolicy
    metadata:
      name: {{ .To.ServiceName }}
    spec:
      selector:
        matchLabels:
          "app": "{{ .To.ServiceName }}"
      rules:
      - to:
        - operation:
            paths: ["/public*"]
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon May 08 07:03:01 UTC 2023
    - 263 bytes
    - Viewed (0)
  9. tests/integration/security/testdata/authz/not-namespace.yaml.tmpl

    apiVersion: security.istio.io/v1beta1
    kind: AuthorizationPolicy
    metadata:
      name: {{ .To.ServiceName }}-deny
    spec:
      selector:
        matchLabels:
          "app": "{{ .To.ServiceName }}"
      action: DENY
      rules:
        - from:
          - source:
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon May 08 07:03:01 UTC 2023
    - 293 bytes
    - Viewed (0)
  10. tests/integration/security/testdata/authz/workload.yaml.tmpl

    # The following policy selects the workload
    
    apiVersion: security.istio.io/v1beta1
    kind: AuthorizationPolicy
    metadata:
      name: policy-{{ .To.ServiceName }}
    spec:
      selector:
        matchLabels:
          "app": "{{ .To.ServiceName }}"
      rules:
      - to:
        - operation:
    Registered: Fri Jun 14 15:00:06 UTC 2024
    - Last Modified: Mon May 08 07:03:01 UTC 2023
    - 347 bytes
    - Viewed (0)
Back to top