Shuting Zhao
|
7348eda222
|
Fix convert resource with DELETION request
|
2020-05-18 17:11:08 -07:00 |
|
shravan
|
717e42dd0b
|
744 ignoring resources with deletionTimestamp
|
2020-05-07 23:04:15 +05:30 |
|
shravan
|
ba0de32454
|
744 fixing previous commit implementation
|
2020-05-07 14:38:15 +05:30 |
|
shravan
|
6f01bb4d59
|
744 only user requests will be denied
|
2020-05-07 14:18:42 +05:30 |
|
shravan
|
6b1498b770
|
744 fixing policy validation and removing allRequests field
|
2020-05-06 19:46:32 +05:30 |
|
shravan
|
717e8e7245
|
744 fixed error messages
|
2020-05-05 23:52:52 +05:30 |
|
shravan
|
d3311500af
|
744 tested version
|
2020-05-05 20:58:02 +05:30 |
|
shravan
|
b0c7cdbc81
|
744 save commit
|
2020-05-05 19:19:47 +05:30 |
|
shravan
|
7dc7420ad9
|
744 policy validation skip
|
2020-04-23 01:05:00 +05:30 |
|
shravan
|
7a3f0012a9
|
744 untested prototype
|
2020-04-22 20:15:16 +05:30 |
|
shravan
|
93fa54bf79
|
744 deny all requests
|
2020-04-18 18:26:09 +05:30 |
|
shravan
|
11580e8ba5
|
744 save commit
|
2020-04-14 20:47:12 +05:30 |
|
shivkumar dudhani
|
4320111c5c
|
fix logs api
|
2020-03-20 11:43:21 -07:00 |
|
Shivkumar Dudhani
|
2638e1002a
|
Merge branch 'master' into access_check
|
2020-03-20 10:07:47 -07:00 |
|
shivkumar dudhani
|
d327309d72
|
refactor logging
|
2020-03-17 16:25:34 -07:00 |
|
shivkumar dudhani
|
1b1ab78f77
|
logs & access
|
2020-03-17 11:05:20 -07:00 |
|
shravan
|
8dda9cc413
|
725 error response now returns rule message if it exists
|
2020-03-16 14:08:13 +05:30 |
|
shravan
|
ffd3487ace
|
725 changed returned error
|
2020-03-06 17:11:33 +05:30 |
|
shivkumar dudhani
|
03ee46e1d9
|
support nested variable resolution
|
2020-02-26 16:41:48 -08:00 |
|
shravan
|
bc84413f35
|
644 resolving merge conflicts
|
2020-02-19 10:44:14 +05:30 |
|
shivkumar dudhani
|
4f830acb65
|
refactor
|
2020-02-14 12:05:13 -08:00 |
|
shivkumar dudhani
|
5cee543755
|
refactor variable substitution
|
2020-02-14 11:59:28 -08:00 |
|
shravan
|
819ba3fb1b
|
644 returning detailed error from function in question, changes currently untested
|
2020-02-07 14:45:43 +05:30 |
|
shivkumar dudhani
|
f608d4db18
|
variable substitution on copy and retry generate resource creation
|
2020-02-04 12:13:41 -08:00 |
|
shravan
|
0d4b256d13
|
644 updating changes with revised understanding of issue, also removed alot of deadcode to make changes
|
2020-02-03 18:51:18 +05:30 |
|
shravan
|
3b37a61f5d
|
Revert "644 untested prototype changes"
This reverts commit 4021453760 .
|
2020-02-01 20:48:06 +05:30 |
|
shravan
|
4021453760
|
644 untested prototype changes
|
2020-01-30 16:12:26 +05:30 |
|
Shivkumar Dudhani
|
8c1d79ab28
|
linter suggestions (#655)
* cleanup phase 1
* linter fixes phase 2
|
2020-01-24 12:05:53 -08:00 |
|
Shuting Zhao
|
ba8030bec0
|
change to use validationFailureAction for the mutation failure action
|
2020-01-16 11:57:28 -08:00 |
|
Shuting Zhao
|
434ed20857
|
report violation in generate when path not present
|
2020-01-10 11:59:05 -08:00 |
|
Shuting Zhao
|
5a44ab3e16
|
generate violation in validate when substitute path not present
|
2020-01-09 17:44:11 -08:00 |
|
Shuting Zhao
|
472fa29fce
|
move mutation to subpackage pkg/engine/mutate
|
2020-01-07 17:06:17 -08:00 |
|
Shivkumar Dudhani
|
3cf9141f4d
|
593 feature (#594)
* initial commit
* background policy validation
* correct message
* skip non-background policy process for add/update
* add Generate Request CR
* generate Request Generator Initial
* test generate request CR generation
* initial commit gr generator
* generate controller initial framework
* add crd for generate request
* gr cleanup controller initial commit
* cleanup controller initial
* generate mid-commit
* generate rule processing
* create PV on generate error
* embed resource type
* testing phase 1- generate resources with variable substitution
* fix tests
* comment broken test #586
* add printer column for state
* return if existing resource for clone
* set resync time to 2 mins & remove resource version check in update handler for gr
* generate events for reporting
* fix logs
* initial commit
* fix trailing quote in patch
* remove comments
* initial condition (equal & notequal)
* initial support for conditions
* initial support fo conditions in generate
* support precondition checks
* cleanup
* re-evaluate GR on namespace update using dynamic informers
* add status for generated resources
* display loaded variable SA
* support delete cleanup of generate request main resources
* fix log
* remove namespace from SA username
* support multiple variables per statement for scalar values
* fix fail variables
* add check for userInfo
* validation checks for conditions
* update policy
* refactor logs
* code review
* add openapispec for clusterpolicy preconditions
* Update documentation
* CR fixes
* documentation
* CR fixes
* update variable
* fix logs
* update policy
* pre-defined variables (serviceAccountName & serviceAccountNamespace)
* update test
|
2020-01-07 15:13:57 -08:00 |
|
Shivkumar Dudhani
|
ffd2179b03
|
538 (#587)
* initial commit
* background policy validation
* correct message
* skip non-background policy process for add/update
* add Generate Request CR
* generate Request Generator Initial
* test generate request CR generation
* initial commit gr generator
* generate controller initial framework
* add crd for generate request
* gr cleanup controller initial commit
* cleanup controller initial
* generate mid-commit
* generate rule processing
* create PV on generate error
* embed resource type
* testing phase 1- generate resources with variable substitution
* fix tests
* comment broken test #586
* add printer column for state
* return if existing resource for clone
* set resync time to 2 mins & remove resource version check in update handler for gr
* generate events for reporting
* fix logs
* cleanup
* CR fixes
* fix logs
|
2020-01-07 10:33:28 -08:00 |
|
Shivkumar Dudhani
|
5b8ab3842b
|
Support variable substitution (#549)
* initial commit
* variable substitution
* update tests
* update test
* refactor engine packages for validate & generate
* update vendor
* update toml
* support variable substitution in overlay mutation
* missing update
* fix indentation in logs
* store context values as single JSON document using merge patches.
* remove duplicate functions
* fix message string
* Handle processing of policies in background (#569)
* remove condition check while generating mutation patch as conditions are verified in the first iteration
* initial commit
* background policy validation
* correct message
* skip non-background policy process for add/update
* fix order to correct policy registration
* update comment
Co-authored-by: shuting <shutting06@gmail.com>
* refactor
Co-authored-by: shuting <shutting06@gmail.com>
|
2019-12-30 17:08:50 -08:00 |
|
Shivkumar Dudhani
|
ffe3bdb677
|
remove newline from engine response strings (#537)
* remove newline from engine response strings
* add scenario file updates
* cr: remove . in trailing msg string
|
2019-12-04 18:04:42 -08:00 |
|
shuting
|
ded0183aa2
|
Merge pull request #478 from nirmata/472_update_apiversion
472 update apiversion
|
2019-11-13 15:19:27 -08:00 |
|
Shivkumar Dudhani
|
23ba517fef
|
add patched resource + correct register handlers (#482)
|
2019-11-13 15:16:46 -08:00 |
|
Shuting Zhao
|
b67577994a
|
update apiversion to v1 in code
|
2019-11-13 13:41:08 -08:00 |
|
Shivkumar Dudhani
|
7a12e12cb5
|
skip validation if the resource updates dont violate policy rules (#477)
|
2019-11-13 13:13:07 -08:00 |
|
Shuting Zhao
|
fc35a52ad8
|
Merge branch 'master' into 455_namespace_pv
# Conflicts:
# definitions/install_debug.yaml
# main.go
# pkg/webhooks/mutation.go
# pkg/webhooks/server.go
# pkg/webhooks/validation.go
|
2019-11-13 11:46:46 -08:00 |
|
shivkumar dudhani
|
d8bf7fa284
|
clean up fixes
|
2019-11-12 16:49:05 -08:00 |
|
Shuting Zhao
|
2a14c1f5dc
|
- add profiling; - fix CLI
|
2019-11-11 21:23:26 -08:00 |
|
Shuting Zhao
|
546a25d025
|
add missing file
|
2019-11-11 21:06:09 -08:00 |
|
Shuting Zhao
|
5a3ed62b13
|
Merge branch 'master' into 345_support_usergroup_info
# Conflicts:
# pkg/engine/validation_test.go
# pkg/webhooks/annotations.go
# pkg/webhooks/annotations_test.go
# pkg/webhooks/mutation.go
# pkg/webhooks/server.go
# pkg/webhooks/validation.go
|
2019-11-11 19:19:08 -08:00 |
|
Shuting Zhao
|
6048d59949
|
change engine interface to take policyContext struct
|
2019-11-08 18:57:27 -08:00 |
|
Shuting Zhao
|
ec331b8d17
|
remove resource info in the validation error
|
2019-11-07 12:30:58 -08:00 |
|
Shuting Zhao
|
a30b8a604d
|
update format
|
2019-11-07 12:13:35 -08:00 |
|
Shuting Zhao
|
15895d3852
|
- aggregate resource info per rule; - remove resource info in each success message;
|
2019-11-07 12:13:35 -08:00 |
|
Shuting Zhao
|
de9ebd899b
|
improve validation error message; update scenario files
|
2019-11-07 12:13:34 -08:00 |
|