- Sort Score
- Result 10 results
- Languages All
Results 21 - 30 of 490 for vips (0.06 sec)
-
pilot/pkg/model/service.go
// hostnames. The IPs assigned to services are not // synchronized across istiod replicas as the DNS resolution // for these service entries happens completely inside a pod // whose proxy is managed by one istiod. That said, the algorithm // to allocate IPs is pretty deterministic that at stable state, two // istiods will allocate the exact same set of IPs for a given set of // service entries.
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed May 29 02:03:58 UTC 2024 - 46.3K bytes - Viewed (0) -
pilot/pkg/networking/core/listener_waypoint.go
func (lb *ListenerBuilder) buildWaypointInbound() []*listener.Listener { listeners := []*listener.Listener{} // We create 3 listeners: // 1. Decapsulation CONNECT listener. // 2. IP dispatch listener, handling both VIPs and direct pod IPs. // 3. Encapsulation CONNECT listener, originating the tunnel wls, wps := findWaypointResources(lb.node, lb.push) listeners = append(listeners, lb.buildWaypointInboundConnectTerminate(),
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Jun 14 04:34:37 UTC 2024 - 27.6K bytes - Viewed (0) -
cmd/kubeadm/app/cmd/init.go
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Jan 17 03:37:05 UTC 2024 - 24.1K bytes - Viewed (0) -
pkg/proxy/ipvs/proxier.go
// The kube dummy interface has all service VIPs assigned which // results in the service VIP being picked as the source IP to reach // a VIP. This leads to a connection from VIP:<random port> to // VIP:<service port>. // Always masquerading OUTPUT (node-originating) traffic with a VIP // source ip and service port destination fixes the outgoing connections.
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sun Apr 28 15:51:23 UTC 2024 - 77.7K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/ambient/ambientindex_test.go
LoadBalancer: corev1.LoadBalancerStatus{ Ingress: []corev1.LoadBalancerIngress{ { IP: "", }, }, }, }, } vips := getVIPs(&testSVC) assert.Equal(t, 0, len(vips), "optional IP fields should be ignored if empty") } // assertWaypointAddressForPod takes a pod name for key and the expected waypoint IP Address
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed May 08 01:04:50 UTC 2024 - 70.2K bytes - Viewed (0) -
pilot/pkg/networking/core/listener.go
// for each port as defined in the service registry. // // If captureMode is not NONE, i.e., bindToPort is false, then // we will bind to user specified IP (if any) or to the VIPs of services in // this egress listener. if egressListener.IstioListener != nil && egressListener.IstioListener.Bind != "" { bind.binds = []string{egressListener.IstioListener.Bind} } else if bind.bindToPort {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Mon May 06 04:44:06 UTC 2024 - 55.1K bytes - Viewed (0) -
tests/integration/ambient/baseline_test.go
ports: http: {{.IngressHttpPort}}`). WithParams(param.Params{}.SetWellKnown(param.Namespace, apps.Namespace)) ips, ports := istio.DefaultIngressOrFail(t, t).HTTPAddresses() for _, tc := range testCases { tc := tc for i, ip := range ips { t.NewSubTestf("%s %s %s", tc.location, tc.resolution, ip).Run(func(t framework.TestContext) { echotest. New(t, apps.All).
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Jun 12 00:07:28 UTC 2024 - 78.4K bytes - Viewed (0) -
pkg/model/fips.go
} ctx.TlsParams.TlsMinimumProtocolVersion = tls.TlsParameters_TLSv1_2 ctx.TlsParams.TlsMaximumProtocolVersion = tls.TlsParameters_TLSv1_2 // Default (unset) cipher suites field in the FIPS build of Envoy uses only the FIPS ciphers. // Therefore, we only filter this field when it is set. if len(ctx.TlsParams.CipherSuites) > 0 { ciphers := []string{} for _, cipher := range ctx.TlsParams.CipherSuites {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Mar 28 22:11:02 UTC 2024 - 2.9K bytes - Viewed (0) -
releasenotes/notes/fips.yaml
apiVersion: release-notes/v2 kind: bug-fix area: security issue: - 49081 releaseNotes: - | **Added** an environment variable `COMPLIANCE_POLICY` to Istio components for enforcing TLS restriction for compliance with FIPS. When set to `fips-140-2` on the Istiod container, the Istio Proxy container, and all other Istio components, TLS version is restricted to v1.2, the cipher suites to a subset
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Feb 23 00:16:21 UTC 2024 - 1.2K bytes - Viewed (0) -
.github/workflows/go-fips.yml
# This should fail if grep returns non-zero exit - name: Test binary run: | docker run --rm minio/fips-test:latest ./minio --version
Registered: Sun Jun 16 00:44:34 UTC 2024 - Last Modified: Wed May 22 23:07:14 UTC 2024 - 1.5K bytes - Viewed (0)