- Sort Score
- Result 10 results
- Languages All
Results 91 - 100 of 529 for Mesh (0.04 sec)
-
pilot/pkg/security/authn/utils/utils.go
"", /*crl*/ trustDomainAliases, ctx.RequireClientCertificate.Value) // Compliance for downstream mesh mTLS. authn_model.EnforceCompliance(ctx.CommonTlsContext) return ctx } // GetMinTLSVersion returns the minimum TLS version for workloads based on the mesh config. func GetMinTLSVersion(ver meshconfig.MeshConfig_TLSConfig_TLSProtocol) tls.TlsParameters_TlsProtocol { switch ver {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Feb 23 00:16:21 UTC 2024 - 3.8K bytes - Viewed (0) -
pilot/pkg/networking/core/loadbalancer/loadbalancer.go
const ( FailoverPriorityLabelDefaultSeparator = '=' ) func GetLocalityLbSetting( mesh *v1alpha3.LocalityLoadBalancerSetting, destrule *v1alpha3.LocalityLoadBalancerSetting, ) *v1alpha3.LocalityLoadBalancerSetting { var enabled bool // Locality lb is enabled if its not explicitly disabled in mesh global config if mesh != nil && (mesh.Enabled == nil || mesh.Enabled.Value) { enabled = true }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Apr 23 05:38:57 UTC 2024 - 11.8K bytes - Viewed (0) -
manifests/charts/gateways/istio-egress/values.yaml
# # If an administrator expects that any of these conditions may become true in # the future, they should ensure their meshes have different Mesh IDs # assigned. # # Within a multicluster mesh, each cluster must be (manually or auto) # configured to have the same Mesh ID value. If an existing cluster 'joins' a
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 27 16:55:16 UTC 2024 - 12.4K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/conversion.go
func kubeToIstioServiceAccount(saname string, ns string, mesh *meshconfig.MeshConfig) string { return spiffe.MustGenSpiffeURI(mesh, ns, saname) } // SecureNamingSAN creates the secure naming used for SAN verification from pod metadata func SecureNamingSAN(pod *corev1.Pod, mesh *meshconfig.MeshConfig) string { return spiffe.MustGenSpiffeURI(mesh, pod.Namespace, pod.Spec.ServiceAccountName) }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 9.4K bytes - Viewed (0) -
pkg/test/loadbalancersim/loadbalancer/weight.go
// See the License for the specific language governing permissions and // limitations under the License. package loadbalancer import ( mesh2 "istio.io/istio/pkg/test/loadbalancersim/mesh" network2 "istio.io/istio/pkg/test/loadbalancersim/network" "istio.io/istio/pkg/test/loadbalancersim/timeseries" ) type WeightedConnection struct { network2.Connection Weight uint32 }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Feb 03 18:19:25 UTC 2022 - 2.8K bytes - Viewed (0) -
security/pkg/pki/ra/k8s_ra_test.go
expectedFailOnUpdatedRootCert bool }{ { name: "Root cert from mesh config and cert chain does not match", rootCertForMeshConfig: path.Join(env.IstioSrc, "samples/certs", "root-cert.pem"), certChain: mismatchCertChainFile, expectedFail: true, }, { name: "Root cert is specified in mesh config and Root cert from cert chain is empty(only one leaf cert)",
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Sep 27 00:44:54 UTC 2023 - 9.7K bytes - Viewed (0) -
pilot/pkg/security/authn/policy_applier_test.go
defer push.JwtKeyResolver.Close() push.ServiceIndex.HostnameAndNamespace[host.Name("jwt-token-issuer.mesh")] = map[string]*model.Service{} push.ServiceIndex.HostnameAndNamespace[host.Name("jwt-token-issuer.mesh")]["mesh"] = &model.Service{ Hostname: "jwt-token-issuer.mesh.svc.cluster.local", } for _, c := range cases { t.Run(c.name, func(t *testing.T) {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri Dec 01 07:32:22 UTC 2023 - 60.2K bytes - Viewed (0) -
tests/integration/telemetry/testdata/istio-mtls-vs.yaml
apiVersion: networking.istio.io/v1alpha3 kind: VirtualService metadata: name: direct-cnn-through-egress-gateway spec: hosts: - fake.external.com gateways: - istio-egressgateway - mesh tls: - match: - gateways: - mesh port: 443 sniHosts: - fake.external.com route: - destination: host: istio-egressgateway.istio-system.svc.cluster.local port:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Oct 13 16:30:22 UTC 2022 - 644 bytes - Viewed (0) -
cni/pkg/nodeagent/informers.go
if matchAmbient { log.Infof("Namespace %s is enabled in ambient mesh", namespace) } else { log.Infof("Namespace %s is disabled from ambient mesh", namespace) } for _, pod := range s.pods.List(namespace, klabels.Everything()) { // ztunnel pods are never "added to/removed from the mesh", so do not fire // spurious events for them to avoid triggering extra
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 06 21:31:35 UTC 2024 - 11.8K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/fake.go
"time" corev1 "k8s.io/api/core/v1" "k8s.io/apimachinery/pkg/runtime/schema" meshconfig "istio.io/api/mesh/v1alpha1" "istio.io/istio/pilot/pkg/model" "istio.io/istio/pilot/pkg/serviceregistry/aggregate" "istio.io/istio/pilot/pkg/serviceregistry/util/xdsfake" "istio.io/istio/pkg/cluster" "istio.io/istio/pkg/config/mesh" kubelib "istio.io/istio/pkg/kube" "istio.io/istio/pkg/kube/kclient"
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 4K bytes - Viewed (0)