- Sort Score
- Result 10 results
- Languages All
Results 131 - 140 of 390 for mtls (0.06 sec)
-
pilot/pkg/serviceregistry/kube/controller/ambient/ambientindex_test.go
pol := c.(*clientsecurityv1beta1.PeerAuthentication) pol.Spec.Mtls = &auth.PeerAuthentication_MutualTLS{ Mode: auth.PeerAuthentication_MutualTLS_PERMISSIVE, } }) s.assertEvent(t, xdsConvertedStaticStrict) s.addPolicy(t, "namespace", testNS, nil, gvk.PeerAuthentication, func(c controllers.Object) { pol := c.(*clientsecurityv1beta1.PeerAuthentication) pol.Spec.Mtls = &auth.PeerAuthentication_MutualTLS{
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed May 08 01:04:50 UTC 2024 - 70.2K bytes - Viewed (0) -
releasenotes/notes/protocol-detection-timeout.yaml
releaseNotes: - | **Removed** the protocol detection timeout by default, reducing traffic failures during slow connections. upgradeNotes: - title: Protocol Detection Timeout Changes content: | In order to support permissive mTLS traffic as well as [automatic protocol detection](istio.io/latest/docs/ops/configuration/traffic-management/protocol-selection/#automatic-protocol-selection),
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Oct 21 00:53:45 UTC 2020 - 1.6K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/files/grpc-agent.yaml
metadata: labels: {{/* security.istio.io/tlsMode: istio must be set by user, if gRPC is using mTLS initialization code. We can't set it automatically. */}}
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Apr 26 16:51:17 UTC 2024 - 12.1K bytes - Viewed (0) -
tests/integration/security/external_ca/reachability_test.go
WithDefaultFilters(1, 1). FromMatch(match.ServiceName(from.NamespacedName())). ToMatch(match.ServiceName(to.NamespacedName())). Run(func(t framework.TestContext, from echo.Instance, to echo.Target) { // Verify mTLS works between a and b opts := echo.CallOptions{ To: to, Port: echo.Port{ Name: "http", }, } opts.Check = check.And(check.OK(), check.ReachedTargetClusters(t))
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 2K bytes - Viewed (0) -
tests/integration/security/filebased_tls_origination/destination_rule_tls_test.go
apiVersion: networking.istio.io/v1alpha3 kind: DestinationRule metadata: name: db-mtls spec: exportTo: ["."] host: server trafficPolicy: tls: mode: MUTUAL clientCertificate: /etc/certs/custom/cert-chain.pem privateKey: /etc/certs/custom/key.pem caCertificates: /etc/certs/custom/root-cert.pem sni: server `).ApplyOrFail(t)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 2.1K bytes - Viewed (0) -
tests/integration/telemetry/api/dashboard_test.go
"$service", ".*", "$srcns", ".*", "$srcwl", ".*", "$namespace", ".*", "$workload", ".*", "$dstsvc", ".*", "$adapter", ".*", "$qrep", "destination", // Just allow all mTLS settings rather than trying to send mtls and plaintext `connection_security_policy="unknown"`, `connection_security_policy=~".*"`, `connection_security_policy="mutual_tls"`, `connection_security_policy=~".*"`,
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Jun 12 20:46:28 UTC 2024 - 11.4K bytes - Viewed (0) -
manifests/charts/istiod-remote/files/gateway-injection-template.yaml
name: istio-envoy - mountPath: /var/run/secrets/tokens name: istio-token {{- if .Values.global.mountMtlsCerts }} # Use the key and cert mounted to /etc/certs/ for the in-cluster mTLS communications. - mountPath: /etc/certs/ name: istio-certs readOnly: true {{- end }} - name: istio-podinfo mountPath: /etc/istio/pod volumes: - emptyDir: {}
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Jun 03 01:55:05 UTC 2024 - 8.7K bytes - Viewed (0) -
pkg/hbone/README.md
}, TLS: nil, // TLS is strongly recommended in real world }) client, _ := d.Dial("tcp", testAddr) client.Write([]byte("hello world")) ``` ### Server #### Server CLI A CLI client is available using the `server` binary. Usage examples: ```shell go install ./pkg/test/echo/cmd/server # Serve on port 15008 (default) with TLS
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Jul 11 16:27:16 UTC 2022 - 1.6K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/files/gateway-injection-template.yaml
name: istio-envoy - mountPath: /var/run/secrets/tokens name: istio-token {{- if .Values.global.mountMtlsCerts }} # Use the key and cert mounted to /etc/certs/ for the in-cluster mTLS communications. - mountPath: /etc/certs/ name: istio-certs readOnly: true {{- end }} - name: istio-podinfo mountPath: /etc/istio/pod volumes: - emptyDir: {}
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Jun 03 01:55:05 UTC 2024 - 8.7K bytes - Viewed (0) -
staging/src/k8s.io/apiserver/pkg/authentication/authenticatorfactory/requestheader.go
// the user.Info.Extra. All values of all matching headers will be added. ExtraHeaderPrefixes headerrequest.StringSliceProvider // CAContentProvider the options for verifying incoming connections using mTLS. Generally this points to CA bundle file which is used verify the identity of the front proxy. // It may produce different options at will. CAContentProvider dynamiccertificates.CAContentProvider
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Apr 12 18:29:15 UTC 2021 - 1.7K bytes - Viewed (0)