- Sort Score
- Result 10 results
- Languages All
Results 21 - 30 of 511 for serviceAccount (0.28 sec)
-
pkg/spiffe/spiffe.go
func genSpiffeURI(td string, ns, serviceAccount string) (string, error) { var err error if ns == "" || serviceAccount == "" { err = fmt.Errorf( "namespace or service account empty for SPIFFE uri ns=%v serviceAccount=%v", ns, serviceAccount) } return URIPrefix + sanitizeTrustDomain(td) + "/ns/" + ns + "/sa/" + serviceAccount, err }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 11.1K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/endpoint_builder.go
locality := util.LocalityToString(proxy.Locality) out := &EndpointBuilder{ controller: c, metaNetwork: proxy.Metadata.Network, serviceAccount: proxy.Metadata.ServiceAccount, locality: model.Locality{ Label: locality, ClusterID: c.Cluster(), }, tlsMode: model.GetTLSModeFromEndpointLabels(proxy.Labels), nodeName: proxy.GetNodeName(), }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 4.8K bytes - Viewed (0) -
istioctl/pkg/workload/workload.go
createCmd.PersistentFlags().StringVarP(&serviceAccount, "serviceAccount", "s", "default", "The service identity to associate with the workload instances") _ = createCmd.RegisterFlagCompletionFunc("serviceAccount", func( cmd *cobra.Command, args []string, toComplete string, ) ([]string, cobra.ShellCompDirective) {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Apr 17 20:06:41 UTC 2024 - 25.5K bytes - Viewed (0) -
pkg/spiffe/spiffe_test.go
namespace: "foo", serviceAccount: "bar", trustDomain: "******@****.***.gserviceaccount.com", expectedURI: "spiffe://kube-federating-id.testproj.iam.gserviceaccount.com/ns/foo/sa/bar", }, } for id, tc := range testCases { got, err := genSpiffeURI(tc.trustDomain, tc.namespace, tc.serviceAccount) if tc.expectedError == "" && err != nil { t.Errorf("teste case [%v] failed, error %v", id, tc) }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 18.1K bytes - Viewed (0) -
pilot/pkg/xds/auth.go
continue } if proxy.Metadata.ServiceAccount != "" && spiffeID.ServiceAccount != proxy.Metadata.ServiceAccount { continue } return &spiffeID, nil } return nil, fmt.Errorf("no identities (%v) matched %v/%v", identities, proxy.ConfigNamespace, proxy.Metadata.ServiceAccount)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Apr 30 00:26:45 UTC 2024 - 2.4K bytes - Viewed (0) -
pkg/controlplane/apiserver/options/options.go
if completed.Authentication.ServiceAccounts.MaxExpiration < lowBound || completed.Authentication.ServiceAccounts.MaxExpiration > upBound { return CompletedOptions{}, fmt.Errorf("the service-account-max-token-expiration must be between 1 hour and 2^32 seconds") } if completed.Authentication.ServiceAccounts.ExtendExpiration {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sat Apr 27 12:19:56 UTC 2024 - 15.4K bytes - Viewed (0) -
pkg/config/schema/kind/resources.gen.go
case ReferenceGrant: return "ReferenceGrant" case RequestAuthentication: return "RequestAuthentication" case Secret: return "Secret" case Service: return "Service" case ServiceAccount: return "ServiceAccount" case ServiceEntry: return "ServiceEntry" case Sidecar: return "Sidecar" case StatefulSet: return "StatefulSet" case TCPRoute: return "TCPRoute" case TLSRoute:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 27 07:19:38 UTC 2024 - 4.9K bytes - Viewed (0) -
pkg/test/framework/components/echo/kube/templates/service.yaml
{{- if .ServiceAccount }} apiVersion: v1 kind: ServiceAccount metadata: name: {{ .Service }} --- {{- end }} apiVersion: v1 kind: Service metadata: name: {{ .Service }} {{- if .ServiceLabels }} labels: app: {{ .Service }} {{- range $name, $value := .ServiceLabels }} {{$name}}: "{{$value}}" {{- end }} {{- else}} labels: app: {{ .Service }} {{- end }} {{- if .ServiceAnnotations }} annotations:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 02 21:29:40 UTC 2024 - 917 bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/ambient/ambientindex_serviceentry_test.go
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Mar 27 03:01:04 UTC 2024 - 12.9K bytes - Viewed (0) -
cluster/addons/kube-network-policies/kube-network-policies-rbac.yaml
roleRef: apiGroup: rbac.authorization.k8s.io kind: ClusterRole name: system:network-policies subjects: - kind: ServiceAccount name: kube-network-policies namespace: kube-system --- apiVersion: v1 kind: ServiceAccount metadata: name: kube-network-policies namespace: kube-system labels: k8s-app: kube-network-policies kubernetes.io/cluster-service: "true"
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sun Apr 21 10:01:31 UTC 2024 - 1.1K bytes - Viewed (0)