Charles-Edouard Brétéché
|
3ebb6284cc
|
refactor: add update status helper (#4985)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: shuting <shuting@nirmata.com>
|
2022-10-17 05:52:54 +00:00 |
|
Vyankatesh Kudtarkar
|
f3e40efcd7
|
fix principal and role variables are not substituted (#5000)
|
2022-10-17 05:16:14 +00:00 |
|
Charles-Edouard Brétéché
|
ea1b64ab08
|
fix: skip admission in dry run requests (#4994)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Vyankatesh Kudtarkar <vyankateshkd@gmail.com>
|
2022-10-17 04:01:06 +00:00 |
|
Charles-Edouard Brétéché
|
aedaa412a0
|
fix: webhooks not registering when using name override (#4992)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-17 01:21:43 +00:00 |
|
Charles-Edouard Brétéché
|
5f6b04ca69
|
fix: config reloading not working correctly (#4951)
* fix: config reloading not working correctly
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* nits
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-14 17:36:46 +00:00 |
|
Charles-Edouard Brétéché
|
1f3c429cd7
|
fix: missing autogen rules in status (#4971)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-14 17:02:10 +00:00 |
|
Charles-Edouard Brétéché
|
afe9036347
|
fix: add user info in admission request logs (#4969)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-14 16:29:48 +00:00 |
|
Charles-Edouard Brétéché
|
f0703a5c6b
|
fix: don't produce empty admission reports (#4966)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-14 15:55:51 +00:00 |
|
Charles-Edouard Brétéché
|
47780bf37f
|
fix: improve banned types management in reports (#4953)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
|
2022-10-14 23:20:30 +08:00 |
|
Charles-Edouard Brétéché
|
e749907302
|
fix: missing watchers in resource report controller (#4967)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-14 13:55:50 +00:00 |
|
Pratik Shah
|
caab013a86
|
Fixed issue-4530: Added separate attestor type for secrets and KMS (#4733)
Signed-off-by: Pratik Shah <pratik@infracloud.io>
Signed-off-by: Vyankatesh <vyankateshkd@gmail.com>
|
2022-10-14 09:40:46 +00:00 |
|
Pratik Shah
|
8a0083105d
|
Added support to specify key signature algorithm in verifyImages (#4855)
Signed-off-by: Pratik Shah <pratik@infracloud.io>
Signed-off-by: Pratik Shah <pratik@infracloud.io>
|
2022-10-14 05:39:57 +00:00 |
|
Charles-Edouard Brétéché
|
16aca2816f
|
fix: don't report ready until certs are valid (#4934)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-14 04:23:42 +00:00 |
|
Charles-Edouard Brétéché
|
56d90888e0
|
fix: consider generateName when matching resources (#4945)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-13 16:02:01 +00:00 |
|
Charles-Edouard Brétéché
|
a62a0c1f9f
|
fix: probes should work in debug mode (#4926)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Prateek Pandey <prateek.pandey@nirmata.com>
|
2022-10-13 14:40:35 +00:00 |
|
Charles-Edouard Brétéché
|
9e933e8d21
|
fix: set operation in context when necessary (#4940)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-13 19:33:49 +05:30 |
|
Charles-Edouard Brétéché
|
ed88e9f8d2
|
fix: panic when bad variable substitution (#4928)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Prateek Pandey <prateek.pandey@nirmata.com>
|
2022-10-13 10:16:47 +00:00 |
|
Charles-Edouard Brétéché
|
090b68e55d
|
feat: make cert renewer private and add server name support (#4904)
* fix: remove unnecessary dependencies from tls package
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* feat: make cert renewer private and add server name support
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* nits
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-13 09:46:05 +00:00 |
|
XDRAGON2002
|
03c41e7746
|
[Cleanup] Disable PolicySkipped events (#4913)
* remove skip events
Signed-off-by: Anant Vijay <anantvijay3@gmail.com>
* update conditions
Signed-off-by: Anant Vijay <anantvijay3@gmail.com>
* improve conditions
Signed-off-by: Anant Vijay <anantvijay3@gmail.com>
* remove redundant function
Signed-off-by: Anant Vijay <anantvijay3@gmail.com>
Signed-off-by: Anant Vijay <anantvijay3@gmail.com>
Co-authored-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
|
2022-10-13 08:32:20 +00:00 |
|
Sandesh More
|
17ba925490
|
add filter for validation policies when ValidationFailureActionOverrides is used (#4809)
Signed-off-by: Sandesh More <sandesh.more@infracloud.io>
Signed-off-by: Sandesh More <sandesh.more@infracloud.io>
|
2022-10-13 07:59:10 +00:00 |
|
Charles-Edouard Brétéché
|
25963aba60
|
fix: openapi controller discovery (#4912)
* refactor: openapi controller part 2
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* rename
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* rename 2
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* move controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* move controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix: openapi controller discovery
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-12 12:23:47 -07:00 |
|
Charles-Edouard Brétéché
|
b3021f5a57
|
refactor: openapi controller part 2 (#4910)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-12 22:24:16 +05:30 |
|
Charles-Edouard Brétéché
|
7cef1c00d9
|
fix: clean background scan reports (#4908)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-12 21:13:33 +05:30 |
|
Charles-Edouard Brétéché
|
de67a507cd
|
refactor: openapi controller part 1 (#4901)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Vyankatesh Kudtarkar <vyankateshkd@gmail.com>
|
2022-10-12 11:38:48 +00:00 |
|
Charles-Edouard Brétéché
|
d25dccbd9c
|
fix: remove unnecessary dependencies from tls package (#4903)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-12 09:36:26 +00:00 |
|
Charles-Edouard Brétéché
|
8e15982448
|
fix: reduce webhook controller logs (#4897)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-12 10:39:27 +02:00 |
|
Charles-Edouard Brétéché
|
4aed9359cb
|
refactor: manage webhooks with webhook controller (#4846)
* refactor: add config support to webhook controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* refactor: add client config to webhook controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* migrate verify webhook
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* v1
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* refactor: move policy webhooks management in webhook controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* policy validating webhook config
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* watch policies
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* refactor: migrate resource webhook management in webhook controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* mutating webhook
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* auto update
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* cleanup
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* auto update and wildcard policies
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* policy readiness
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix: can't use v1 admission
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* reduce reconcile
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* watchdog
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* cleanup
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* health check
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* runtime utils
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* runtime utils
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* cleanup
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* watchdog check
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* remove delete from mutating webhook
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* cleanup
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: shuting <shuting@nirmata.com>
|
2022-10-12 06:52:42 +00:00 |
|
Charles-Edouard Brétéché
|
7d897016e9
|
fix: auto gen enabled when using names (#4863)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: shuting <shuting@nirmata.com>
|
2022-10-12 06:09:02 +00:00 |
|
Charles-Edouard Brétéché
|
465f9d204b
|
fix: non watchable resources in report controller (#4888)
* fix: non watchable resources in report controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix events
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-12 13:36:24 +08:00 |
|
Charles-Edouard Brétéché
|
f7db09fcc2
|
fix: background scan labels (#4865)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Prateek Pandey <prateek.pandey@nirmata.com>
|
2022-10-11 19:54:22 +00:00 |
|
Prateek Pandey
|
23ab7390a3
|
fix: hardening policy validation for generate cloneList (#4881)
Signed-off-by: prateekpandey14 <prateek.pandey@nirmata.com>
|
2022-10-11 23:35:07 +05:30 |
|
Batuhan Apaydın
|
2860775dc3
|
feature: use cert extension oid as key (#4854)
Signed-off-by: Batuhan Apaydın <batuhan.apaydin@trendyol.com>
Co-authored-by: Furkan Türkal <furkan.turkal@trendyol.com>
Signed-off-by: Batuhan Apaydın <batuhan.apaydin@trendyol.com>
Co-authored-by: Furkan Türkal <furkan.turkal@trendyol.com>
Co-authored-by: Vyankatesh Kudtarkar <vyankateshkd@gmail.com>
|
2022-10-10 12:39:09 -07:00 |
|
Charles-Edouard Brétéché
|
c74209f6c5
|
fix: replace AbsPath with RequestURI to support query params (#4849)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-08 15:22:51 +02:00 |
|
Charles-Edouard Brétéché
|
83b7f919aa
|
refactor: make cert manager a real controller (#4792)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Prateek Pandey <prateek.pandey@nirmata.com>
|
2022-10-07 19:51:37 +05:30 |
|
Charles-Edouard Brétéché
|
7bfcf7d7e2
|
refactor: add config support to webhook controller (#4838)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Prateek Pandey <prateek.pandey@nirmata.com>
|
2022-10-07 11:32:38 +00:00 |
|
Charles-Edouard Brétéché
|
ebe86473fc
|
feat: use a dedicated policy metrics controller (#4818)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-07 10:53:54 +00:00 |
|
Charles-Edouard Brétéché
|
7849fbbc8a
|
refactor: leader controllers management (#4832)
* refactor: leader controllers management
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* rename
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix start
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix deps
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* remove dead code
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-07 07:38:38 +00:00 |
|
Jim Bugwadia
|
106880c8d0
|
fix extension checks (#4836)
* fix extension checks
Signed-off-by: Jim Bugwadia <jim@nirmata.com>
* fix test
Signed-off-by: Jim Bugwadia <jim@nirmata.com>
Signed-off-by: Jim Bugwadia <jim@nirmata.com>
Co-authored-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
|
2022-10-06 13:08:34 -07:00 |
|
yinka
|
e38f9a79a8
|
fix: call depth in logging package and global logger support for call depth (#4834)
* upgrade controller-runtime dependency
Signed-off-by: damilola olayinka <holayinkajr@gmail.com>
* reset global logger in logging package
Signed-off-by: damilola olayinka <holayinkajr@gmail.com>
* add description to globallogger
Signed-off-by: damilola olayinka <holayinkajr@gmail.com>
* push only relevant changes
Signed-off-by: damilola olayinka <holayinkajr@gmail.com>
Signed-off-by: damilola olayinka <holayinkajr@gmail.com>
Co-authored-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
|
2022-10-06 19:37:10 +00:00 |
|
Charles-Edouard Brétéché
|
1509fa6251
|
refactor: non leader controllers management (#4831)
|
2022-10-06 18:38:35 +08:00 |
|
Charles-Edouard Brétéché
|
74172f2079
|
refactor: make tls cert func not depending on cert controller (#4820)
* refactor: make tls cert func not depending on cert controller
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fmt
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* clean
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-06 08:43:43 +00:00 |
|
Charles-Edouard Brétéché
|
13ce3f55ed
|
fix: use new client in tls package (#4746)
* fix: use new client in tls package
Signed-off-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
* fix import
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-06 08:11:59 +00:00 |
|
Charles-Edouard Brétéché
|
1c337bdf44
|
fix: debug mode (#4785)
* fix: debug mode
Signed-off-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
Signed-off-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
Co-authored-by: Prateek Pandey <prateek.pandey@nirmata.com>
|
2022-10-06 15:41:05 +08:00 |
|
ansalamdaniel
|
27de93a3d2
|
fix: add policy validation for ValidationFailureActionOverride field (#4784)
Signed-off-by: ansalamdaniel <ansalam.daniel@infracloud.io>
|
2022-10-06 06:16:12 +00:00 |
|
ShutingZhao
|
d3a18d0c83
|
Bump k8s libraries to v0.25.2
Signed-off-by: ShutingZhao <shuting@nirmata.com>
|
2022-10-06 03:50:39 +08:00 |
|
Charles-Edouard Brétéché
|
f7dde0ab96
|
chore: use concurrent map v2 (generics) (#4803)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-06 00:35:09 +08:00 |
|
Charles-Edouard Brétéché
|
144afb6f0f
|
refactor: split main into sub func (#4810)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
|
2022-10-05 10:58:35 +00:00 |
|
Charles-Edouard Brétéché
|
3941754a92
|
feat: add context support to leader election (#4811)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-05 10:19:50 +00:00 |
|
Charles-Edouard Brétéché
|
433c5bfd77
|
feat: add context funcs to logging package (#4812)
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
|
2022-10-05 17:37:52 +08:00 |
|
shuting
|
e75b57e635
|
skip succeed rules when building the blocked return message (#4804)
Signed-off-by: ShutingZhao <shuting@nirmata.com>
Signed-off-by: ShutingZhao <shuting@nirmata.com>
|
2022-10-04 10:34:37 +00:00 |
|