- Sort Score
- Result 10 results
- Languages All
Results 11 - 20 of 110 for Account (0.3 sec)
-
istioctl/pkg/workload/testdata/vmconfig/ipv6/cluster.env.golden
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Jun 15 15:02:17 GMT 2023 - 657 bytes - Viewed (0) -
cni/pkg/install/testdata/kubeconfig-newhost
contexts: - context: cluster: local user: istio-cni name: istio-cni-context current-context: istio-cni-context kind: Config preferences: {} users: - name: istio-cni user:
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Fri Aug 11 01:19:03 GMT 2023 - 1.7K bytes - Viewed (0) -
operator/README.md
``` Ensure the created binary is in your PATH to run the examples below. ### Controller (in cluster) Building a custom controller requires a Dockerhub (or similar) account. To build using the container based build: ```bash HUB=docker.io/<your-account> TAG=latest make docker.operator ``` This builds the controller binary and docker file, and pushes the image to the specified hub with the `latest` tag.
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Sun Sep 17 08:27:52 GMT 2023 - 17.5K bytes - Viewed (0) -
architecture/ambient/peer-authentication.md
uthorization.proto). As such, ztunnel does not receive `PeerAuthentication`s directly; when istiod detects a `PeerAuthentication` resource that targets an Ambient captured workload, it computes the effective policy for that workload (taking into account the mesh-wide -> namespace -> workload precedence rules) and sends that policy to ztunnel. The exact details of this conversion is out of scope for this document at the time of writing, but as an example, this `PeerAuthentication`: ```yaml...
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed Aug 09 22:09:18 GMT 2023 - 3.9K bytes - Viewed (0) -
architecture/ambient/ztunnel.md
However, the identities of the certificates will be of the actual user workloads, not Ztunnel's own identity. This means Ztunnel will have multiple distinct certificates at a time, one for each unique identity (service account) running on its node. When fetching certificates, ztunnel will authenticate to the CA with its own identity, but request the identity of another workload.
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Apr 25 22:35:16 GMT 2024 - 16.6K bytes - Viewed (0) -
istioctl/pkg/internaldebug/internal-debug.go
Use: "internal-debug [<type>/]<name>[.<namespace>]", Short: "Retrieves the debug information of istio", Long: ` Retrieves the debug information from Istiod or Pods in the mesh using the service account from the pod if --cert-dir is empty. By default it will use the default serviceAccount from (istio-system) namespace if the pod is not specified. `, Example: ` # Retrieve sync status for all Envoys in a mesh
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Fri Mar 15 04:16:55 GMT 2024 - 6.9K bytes - Viewed (0) -
manifests/charts/gateways/istio-ingress/templates/injected-deployment.yaml
runAsUser: 1337 runAsGroup: 1337 {{- end }} runAsNonRoot: true {{- end }} serviceAccountName: {{ $gateway.name | default "istio-ingressgateway" }}-service-account {{- if .Values.global.priorityClassName }} priorityClassName: "{{ .Values.global.priorityClassName }}" {{- end }} containers: - name: istio-proxy image: auto
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Apr 18 18:16:49 GMT 2024 - 5K bytes - Viewed (0) -
manifests/charts/gateways/istio-egress/templates/injected-deployment.yaml
runAsUser: 1337 runAsGroup: 1337 {{- end }} runAsNonRoot: true {{- end }} serviceAccountName: {{ $gateway.name | default "istio-egressgateway" }}-service-account {{- if .Values.global.priorityClassName }} priorityClassName: "{{ .Values.global.priorityClassName }}" {{- end }} containers: - name: istio-proxy image: auto
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Apr 18 18:16:49 GMT 2024 - 5K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/files/gateway-injection-template.yaml
- name: POD_NAMESPACE valueFrom: fieldRef: fieldPath: metadata.namespace - name: INSTANCE_IP valueFrom: fieldRef: fieldPath: status.podIP - name: SERVICE_ACCOUNT valueFrom: fieldRef: fieldPath: spec.serviceAccountName - name: HOST_IP valueFrom: fieldRef: fieldPath: status.hostIP - name: ISTIO_CPU_LIMIT
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Tue Feb 27 16:55:16 GMT 2024 - 8.6K bytes - Viewed (0) -
cni/pkg/install/kubeconfig_test.go
"istio.io/istio/cni/pkg/constants" testutils "istio.io/istio/pilot/test/util" ) const ( k8sServiceHost = "10.96.0.1" k8sServicePort = "443" kubeCAFilepath = "testdata/kube-ca.crt" saToken = "service_account_token_string" ) func TestCreateValidKubeconfigFile(t *testing.T) { tmp := t.TempDir() os.WriteFile(filepath.Join(tmp, "token"), []byte(saToken), 0o644) constants.ServiceAccountPath = tmp cases := []struct {
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Feb 08 03:52:24 GMT 2024 - 5.1K bytes - Viewed (0)