- Sort Score
- Result 10 results
- Languages All
Results 61 - 70 of 898 for serviceAccount (0.18 sec)
-
staging/src/k8s.io/apiserver/pkg/endpoints/filters/impersonation.go
case v1.SchemeGroupVersion.WithKind("ServiceAccount").GroupKind(): actingAsAttributes.Resource = "serviceaccounts" username = serviceaccount.MakeUsername(impersonationRequest.Namespace, impersonationRequest.Name) if !groupsSpecified { // if groups aren't specified for a service account, we know the groups because its a fixed mapping. Add them groups = serviceaccount.MakeGroupNames(impersonationRequest.Namespace) }
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Aug 07 10:10:35 UTC 2023 - 9.5K bytes - Viewed (0) -
pkg/spiffe/spiffe.go
func genSpiffeURI(td string, ns, serviceAccount string) (string, error) { var err error if ns == "" || serviceAccount == "" { err = fmt.Errorf( "namespace or service account empty for SPIFFE uri ns=%v serviceAccount=%v", ns, serviceAccount) } return URIPrefix + sanitizeTrustDomain(td) + "/ns/" + ns + "/sa/" + serviceAccount, err }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 11.1K bytes - Viewed (0) -
pilot/pkg/serviceregistry/kube/controller/endpoint_builder.go
locality := util.LocalityToString(proxy.Locality) out := &EndpointBuilder{ controller: c, metaNetwork: proxy.Metadata.Network, serviceAccount: proxy.Metadata.ServiceAccount, locality: model.Locality{ Label: locality, ClusterID: c.Cluster(), }, tlsMode: model.GetTLSModeFromEndpointLabels(proxy.Labels), nodeName: proxy.GetNodeName(), }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 4.8K bytes - Viewed (0) -
istioctl/pkg/workload/workload.go
createCmd.PersistentFlags().StringVarP(&serviceAccount, "serviceAccount", "s", "default", "The service identity to associate with the workload instances") _ = createCmd.RegisterFlagCompletionFunc("serviceAccount", func( cmd *cobra.Command, args []string, toComplete string, ) ([]string, cobra.ShellCompDirective) {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Wed Apr 17 20:06:41 UTC 2024 - 25.5K bytes - Viewed (0) -
pkg/spiffe/spiffe_test.go
namespace: "foo", serviceAccount: "bar", trustDomain: "******@****.***.gserviceaccount.com", expectedURI: "spiffe://kube-federating-id.testproj.iam.gserviceaccount.com/ns/foo/sa/bar", }, } for id, tc := range testCases { got, err := genSpiffeURI(tc.trustDomain, tc.namespace, tc.serviceAccount) if tc.expectedError == "" && err != nil { t.Errorf("teste case [%v] failed, error %v", id, tc) }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 21:07:03 UTC 2024 - 18.1K bytes - Viewed (0) -
pilot/pkg/xds/auth.go
continue } if proxy.Metadata.ServiceAccount != "" && spiffeID.ServiceAccount != proxy.Metadata.ServiceAccount { continue } return &spiffeID, nil } return nil, fmt.Errorf("no identities (%v) matched %v/%v", identities, proxy.ConfigNamespace, proxy.Metadata.ServiceAccount)
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Apr 30 00:26:45 UTC 2024 - 2.4K bytes - Viewed (0) -
pkg/controlplane/apiserver/options/options.go
if completed.Authentication.ServiceAccounts.MaxExpiration < lowBound || completed.Authentication.ServiceAccounts.MaxExpiration > upBound { return CompletedOptions{}, fmt.Errorf("the service-account-max-token-expiration must be between 1 hour and 2^32 seconds") } if completed.Authentication.ServiceAccounts.ExtendExpiration {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sat Apr 27 12:19:56 UTC 2024 - 15.4K bytes - Viewed (0) -
pkg/config/schema/kind/resources.gen.go
case ReferenceGrant: return "ReferenceGrant" case RequestAuthentication: return "RequestAuthentication" case Secret: return "Secret" case Service: return "Service" case ServiceAccount: return "ServiceAccount" case ServiceEntry: return "ServiceEntry" case Sidecar: return "Sidecar" case StatefulSet: return "StatefulSet" case TCPRoute: return "TCPRoute" case TLSRoute:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue Feb 27 07:19:38 UTC 2024 - 4.9K bytes - Viewed (0) -
pkg/test/framework/components/echo/kube/templates/service.yaml
{{- if .ServiceAccount }} apiVersion: v1 kind: ServiceAccount metadata: name: {{ .Service }} --- {{- end }} apiVersion: v1 kind: Service metadata: name: {{ .Service }} {{- if .ServiceLabels }} labels: app: {{ .Service }} {{- range $name, $value := .ServiceLabels }} {{$name}}: "{{$value}}" {{- end }} {{- else}} labels: app: {{ .Service }} {{- end }} {{- if .ServiceAnnotations }} annotations:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 02 21:29:40 UTC 2024 - 917 bytes - Viewed (0) -
istioctl/pkg/workload/testdata/vmconfig/ipv4/workloadgroup.yaml
proxyMetadata: # this should override the value from the global meshconfig PROXY_CONFIG_ANNOT_VALUE: bar labels: {} template: ports: {} serviceAccount: vm-serviceaccount probe: httpGet:
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 15 15:02:17 UTC 2023 - 377 bytes - Viewed (0)