- Sort Score
- Result 10 results
- Languages All
Results 51 - 60 of 106 for approval (0.16 sec)
-
security/pkg/k8s/chiron/utils.go
defer func() { _ = cleanupCSR(client, csr) }() // 2. Approve the CSR if approveCsr { approvalMessage := fmt.Sprintf("CSR (%s) for the certificate (%s) is approved", csr.Name, dnsName) err = approveCSR(client, csr, approvalMessage) if err != nil { return nil, nil, fmt.Errorf("failed to approve CSR request: %v", err) } log.Debugf("CSR (%v) is approved", csr.Name) } // 3. Read the signed certificate
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Apr 05 18:11:22 UTC 2024 - 9.2K bytes - Viewed (0) -
cmd/kubeadm/app/phases/bootstraptoken/node/tlsbootstrap.go
}, }) } // AutoApproveNodeBootstrapTokens creates RBAC rules in a way that makes Node Bootstrap Tokens' CSR auto-approved by the csrapprover controller func AutoApproveNodeBootstrapTokens(client clientset.Interface) error { fmt.Println("[bootstrap-token] Configured RBAC rules to allow the csrapprover controller automatically approve CSRs from a Node Bootstrap Token") // Always create this kubeadm-specific binding though
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sun Oct 15 10:49:52 UTC 2023 - 4.2K bytes - Viewed (0) -
plugin/pkg/auth/authorizer/rbac/bootstrappolicy/testdata/cluster-roles.yaml
labels: kubernetes.io/bootstrapping: rbac-defaults name: system:certificates.k8s.io:kube-apiserver-client-approver rules: - apiGroups: - certificates.k8s.io resourceNames: - kubernetes.io/kube-apiserver-client resources: - signers verbs: - approve - apiVersion: rbac.authorization.k8s.io/v1 kind: ClusterRole metadata: annotations:
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue Jul 18 08:11:08 UTC 2023 - 24.1K bytes - Viewed (0) -
.github/actions/notify-translations/app/main.py
# Messages to create or check new_translation_message = f"Good news everyone! 😉 There's a new translation PR to be reviewed: #{pr.number} by @{pr.user.login}. 🎉 This requires 2 approvals from native speakers to be merged. 🤓" done_translation_message = f"~There's a new translation PR to be reviewed: #{pr.number} by @{pr.user.login}~ Good job! This is done. 🍰☕" # Normally only one language, but still
Registered: Mon Jun 17 08:32:26 UTC 2024 - Last Modified: Wed Sep 27 23:01:46 UTC 2023 - 12.4K bytes - Viewed (0) -
plugin/pkg/auth/authorizer/rbac/bootstrappolicy/policy.go
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Fri Mar 08 19:25:10 UTC 2024 - 34.4K bytes - Viewed (0) -
hack/verify-licenses.sh
echo '[INFO] Installing go-licenses...' go install github.com/google/go-licenses@latest # Fetching CNCF Approved List Of Licenses # Refer: https://github.com/cncf/foundation/blob/main/allowed-third-party-license-policy.md curl -s 'https://spdx.org/licenses/licenses.json' -o "${ARTIFACTS}"/licenses.json echo '[INFO] Fetching current list of CNCF approved licenses...'
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Fri Mar 01 06:06:44 UTC 2024 - 5.4K bytes - Viewed (0) -
pkg/controller/certificates/signer/signer_test.go
name string // parameters to be set on the generated CSR commonName string dnsNames []string org []string usages []capi.KeyUsage // whether the generated CSR should be marked as approved approved bool // whether the generated CSR should be marked as failed failed bool // the signerName to be set on the generated CSR signerName string // if true, expect an error to be returned err bool
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue Aug 02 21:12:04 UTC 2022 - 15K bytes - Viewed (0) -
src/crypto/internal/boring/fipstls/tls.go
// Package fipstls allows control over whether crypto/tls requires FIPS-approved settings. // This package only exists with GOEXPERIMENT=boringcrypto, but the effects are independent // of the use of BoringCrypto. package fipstls import ( "internal/stringslite" "sync/atomic" ) var required atomic.Bool // Force forces crypto/tls to restrict TLS configurations to FIPS-approved settings.
Registered: Wed Jun 12 16:32:35 UTC 2024 - Last Modified: Mon May 06 14:00:54 UTC 2024 - 1.7K bytes - Viewed (0) -
pkg/test/csrctrl/controllers/csr_controller.go
// "Approved" condition and no "Denied" conditions; false otherwise. func isCertificateRequestApproved(csr *certv1.CertificateSigningRequest) bool { approved, denied := getCertApprovalCondition(&csr.Status) return approved && !denied } func getCertApprovalCondition(status *certv1.CertificateSigningRequestStatus) (approved bool, denied bool) { for _, c := range status.Conditions {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed May 24 17:36:41 UTC 2023 - 3.9K bytes - Viewed (0) -
CHANGELOG/CHANGELOG-1.8.md
* kubectl logs with label selector supports specifying a container name ([#44282](https://github.com/kubernetes/kubernetes/pull/44282), [@derekwaynecarr](https://github.com/derekwaynecarr)) * Adds an approval work flow to the certificate approver that will approve certificate signing requests from kubelets that meet all the criteria of kubelet server certificates. ([#46884](https://github.com/kubernetes/kubernetes/pull/46884), [@jcbsmpsn](https://github.com/jcbsmpsn))
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue Feb 20 15:45:02 UTC 2024 - 312.2K bytes - Viewed (0)