- Sort Score
- Result 10 results
- Languages All
Results 71 - 80 of 623 for authorizes (0.17 sec)
-
pkg/auth/authorizer/abac/abac_test.go
{User: uScheduler, Verb: "create", Resource: "pods", NS: "", ExpectDecision: authorizer.DecisionNoOpinion}, // Scheduler can write bindings {User: uScheduler, Verb: "get", Resource: "bindings", NS: "ns1", ExpectDecision: authorizer.DecisionAllow}, {User: uScheduler, Verb: "get", Resource: "bindings", NS: "", ExpectDecision: authorizer.DecisionAllow},
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue Sep 24 15:14:54 UTC 2019 - 40K bytes - Viewed (0) -
pkg/kubeapiserver/options/authorization_test.go
"github.com/spf13/pflag" utilerrors "k8s.io/apimachinery/pkg/util/errors" "k8s.io/apimachinery/pkg/util/wait" "k8s.io/kubernetes/pkg/kubeapiserver/authorizer/modes" ) func TestAuthzValidate(t *testing.T) { examplePolicyFile := "../../auth/authorizer/abac/example_policy_file.jsonl" testCases := []struct { name string modes []string policyFile string
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Oct 18 06:28:47 UTC 2023 - 6.4K bytes - Viewed (0) -
staging/src/k8s.io/apiserver/plugin/pkg/authorizer/webhook/metrics_test.go
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Mar 04 19:01:15 UTC 2024 - 6.6K bytes - Viewed (0) -
docs/metrics/prometheus/README.md
## List of metrics exposed by MinIO - MinIO exports Prometheus compatible data by default as an authorized endpoint at `/minio/v2/metrics/cluster`. - MinIO exports Prometheus compatible data by default which is bucket centric as an authorized endpoint at `/minio/v2/metrics/bucket`. - MinIO exports Prometheus compatible data by default which is node centric as an authorized endpoint at `/minio/v2/metrics/node`.
Registered: Sun Jun 16 00:44:34 UTC 2024 - Last Modified: Fri Apr 12 15:49:30 UTC 2024 - 7.1K bytes - Viewed (0) -
staging/src/k8s.io/apiserver/pkg/apis/apiserver/validation/validation_test.go
defer os.Remove(tempKubeConfigFilePath) tests := []test{ { name: "atleast one authorizer should be defined", configuration: api.AuthorizationConfiguration{ Authorizers: []api.AuthorizerConfiguration{}, }, expectedErrList: field.ErrorList{field.Required(field.NewPath("authorizers"), "at least one authorization mode must be defined")}, knownTypes: sets.NewString(),
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Fri May 10 22:07:40 UTC 2024 - 87.2K bytes - Viewed (0) -
pkg/controlplane/apiserver/config.go
} return } // BuildAuthorizer constructs the authorizer. If authorization is not set in s, it returns nil, nil, false, nil func BuildAuthorizer(ctx context.Context, s options.CompletedOptions, egressSelector *egressselector.EgressSelector, apiserverID string, versionedInformers clientgoinformers.SharedInformerFactory) (authorizer.Authorizer, authorizer.RuleResolver, bool, error) {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Fri Jun 07 17:57:37 UTC 2024 - 14.9K bytes - Viewed (0) -
staging/src/k8s.io/apiserver/pkg/admission/plugin/cel/filter_test.go
type authorizerMatch struct { authorizerResult match authorizer.AttributesRecord } func (f fakeAuthorizer) Authorize(ctx context.Context, a authorizer.Attributes) (authorizer.Decision, string, error) { if f.match != nil { other, ok := a.(*authorizer.AttributesRecord) if !ok { panic(fmt.Sprintf("unsupported type: %T", a)) } if reflect.DeepEqual(f.match.match, *other) {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Fri May 10 22:07:40 UTC 2024 - 40.4K bytes - Viewed (0) -
plugin/pkg/admission/gc/gc_admission_test.go
if a.GetVerb() == "delete" { return authorizer.DecisionNoOpinion, "", nil } if a.GetVerb() == "update" && a.GetSubresource() == "finalizers" { return authorizer.DecisionNoOpinion, "", nil } if a.GetAPIGroup() == "*" && a.GetResource() == "*" { // this user does not have full rights return authorizer.DecisionNoOpinion, "", nil } return authorizer.DecisionAllow, "", nil }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Apr 29 21:28:42 UTC 2024 - 24.5K bytes - Viewed (0) -
tests/integration/security/egress_sidecar_tls_origination_test.go
from echo.Instances authorizeSidecar bool drSelector string expectedResponse ingressutil.ExpectedResponse }{ // Mutual TLS origination from an authorized sidecar to https endpoint { name: "authorized sidecar", credentialToUse: credNameGeneric, from: apps.Ns1.A, drSelector: "a", authorizeSidecar: true,
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon Apr 08 22:02:59 UTC 2024 - 10.4K bytes - Viewed (0) -
security/pkg/server/ca/server.go
// supported), if the real caller is authorized. if s.nodeAuthorizer == nil { s.monitoring.AuthnError.Increment() // Return an opaque error (for security purposes) but log the full reason serverCaLog.Warnf("impersonation not allowed, as node authorizer (CA_TRUSTED_NODE_ACCOUNTS) is not configured")
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue May 28 17:35:26 UTC 2024 - 8K bytes - Viewed (0)