- Sort Score
- Result 10 results
- Languages All
Results 11 - 19 of 19 for readonly (0.27 sec)
-
manifests/charts/istio-control/istio-discovery/files/kube-gateway.yaml
{{- if eq .Values.global.caName "GkeWorkloadCertificate" }} - name: gke-workload-certificate mountPath: /var/run/secrets/workload-spiffe-credentials readOnly: true {{- else }} - name: workload-certs mountPath: /var/run/secrets/workload-spiffe-credentials {{- end }} {{- if eq .Values.global.pilotCertProvider "istiod" }}
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Fri Apr 19 15:10:43 GMT 2024 - 12.1K bytes - Viewed (0) -
common/scripts/metallb-native.yaml
- ALL readOnlyRootFilesystem: true volumeMounts: - mountPath: /etc/ml_secret_key name: memberlist readOnly: true - mountPath: /etc/metallb name: metallb-excludel2 readOnly: true hostNetwork: true nodeSelector: kubernetes.io/os: linux serviceAccountName: speaker terminationGracePeriodSeconds: 2
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Fri Feb 23 23:56:31 GMT 2024 - 63.9K bytes - Viewed (0) -
manifests/charts/istio-control/istio-discovery/templates/deployment.yaml
mountPath: /var/run/secrets/tokens readOnly: true - name: local-certs mountPath: /var/run/secrets/istio-dns - name: cacerts mountPath: /etc/cacerts readOnly: true - name: istio-kubeconfig mountPath: /var/run/secrets/remote readOnly: true {{- if .Values.pilot.jwksResolverExtraRootCA }}
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Fri May 03 19:29:42 GMT 2024 - 8.5K bytes - Viewed (0) -
operator/cmd/mesh/testdata/manifest-generate/data-snapshot.tar.gz
}} - name: istio-token mountPath: /var/run/secrets/tokens readOnly: true {{- end }} - name: local-certs mountPath: /var/run/secrets/istio-dns - name: cacerts mountPath: /etc/cacerts readOnly: true - name: istio-kubeconfig mountPath: /var/run/secrets/remote readOnly: true {{- if .Values.pilot.jwksResolverExtraRoo }} - name: extracacerts mountPath: /cacerts {{- end }} - name: istio-csr-dns-cert mountPath: /var/run/secrets/istiod/tls readOnly: true - name: istio-csr-ca-configmap mountPath: /var/run/secrets/istiod/ca...
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed Jan 10 05:10:03 GMT 2024 - 198.1K bytes - Viewed (1) -
manifests/charts/gateways/istio-egress/templates/deployment.yaml
{{- end }} - name: istio-token mountPath: /var/run/secrets/tokens readOnly: true {{- if .Values.global.mountMtlsCerts }} # Use the key and cert mounted to /etc/certs/ for the in-cluster mTLS communications. - name: istio-certs mountPath: /etc/certs readOnly: true {{- end }} - mountPath: /var/lib/istio/data name: istio-data
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu Apr 18 18:16:49 GMT 2024 - 12.1K bytes - Viewed (0) -
common/scripts/setup_env.sh
CONDITIONAL_HOST_MOUNTS+="--mount type=bind,source=${HOME}/.docker,destination=/config/.docker,readonly " fi # gcloud conditional host mount (needed for docker push with the gcloud auth configure-docker) if [[ -d "${HOME}/.config/gcloud" ]]; then CONDITIONAL_HOST_MOUNTS+="--mount type=bind,source=${HOME}/.config/gcloud,destination=/config/.config/gcloud,readonly " fi # gitconfig conditional host mount (needed for git commands inside container)
Shell Script - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Thu May 02 16:31:40 GMT 2024 - 7.6K bytes - Viewed (0) -
cni/pkg/repair/netns.go
// We do this by detecting the longest running process. We could look at `cmdline`, but is likely more reliable to weird platforms. for _, p := range procs { ns := getPidNamespace(p.PID) fd, err := unix.Open(ns, unix.O_RDONLY, 0) if err != nil { // Not uncommon, many processes are transient and we have a TOCTOU here. // No problem, must not be the one we are after. log.Debugf("failed to open pid %v: %v", p.PID, err) continue
Go - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Wed Dec 20 22:14:13 GMT 2023 - 4.8K bytes - Viewed (0) -
manifests/charts/istio-cni/templates/daemonset.yaml
name: cni-bin-dir {{- if or .Values.cni.repair.repairPods .Values.cni.ambient.enabled }} - mountPath: /host/proc name: cni-host-procfs readOnly: true {{- end }} - mountPath: /host/etc/cni/net.d name: cni-net-dir - mountPath: /var/run/istio-cni name: cni-socket-dir
Others - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Fri May 03 19:29:42 GMT 2024 - 9.4K bytes - Viewed (0) -
common-protos/k8s.io/api/policy/v1beta1/generated.proto
// `/foo` would not allow `/food` or `/etc/foo` optional string pathPrefix = 1; // when set to true, will allow host volumes matching the pathPrefix only if all volume mounts are readOnly. // +optional optional bool readOnly = 2; } // Eviction evicts a pod from its node subject to certain policies and safety constraints. // This is a subresource of Pod. A request to cause such an eviction is
Plain Text - Registered: Wed May 08 22:53:08 GMT 2024 - Last Modified: Mon Mar 11 18:43:24 GMT 2024 - 19.6K bytes - Viewed (0)