Mariam Fahmy
eedc993ed9
fix: apply exceptions after executing the policy itself ( #8544 )
...
Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
2023-09-27 14:52:39 +00:00
Charles-Edouard Brétéché
4cabc3ce44
fix: make tuf feature in chart consistent with others ( #8542 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-27 13:03:17 +00:00
Erik Godding Boye
8d2b68dc46
fix(helm): skip deployment replicas validation in non-int value ( #8539 )
...
* fix(helm): skip deployment replicas validation in non-int value
Signed-off-by: Erik Godding Boye <egboye@gmail.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
---------
Signed-off-by: Erik Godding Boye <egboye@gmail.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-27 10:04:16 +00:00
Charles-Edouard Brétéché
20655f5af4
fix: cache error in gh workflows ( #8518 )
...
* fix: cache error in gh workflows
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* setup caches
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
---------
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-27 08:24:27 +00:00
Mariam Fahmy
538e8958aa
refactor: get the last execution time from the cleanup policy interface ( #8531 )
...
Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
2023-09-27 08:55:25 +02:00
Charles-Edouard Brétéché
3ae4c50440
fix: remove cronjobs from cleanup controller rbac ( #8529 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-26 14:13:11 +00:00
Charles-Edouard Brétéché
15630ffaaa
fix: creating ClusterAdmissionReports fails for resources with colon in name ( #8530 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-26 11:44:35 +00:00
Mariam Fahmy
7add300ffa
feat: remove the creation of cronjobs in cleanup controller ( #8526 )
...
* feat: remove the creation of cronjobs in cleanup controller
Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
* fix: use lastExecutionTime instead of nextExecutionTime
Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
---------
Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
2023-09-26 12:02:17 +02:00
dependabot[bot]
45a45b6c46
chore(deps): bump sigstore/scaffolding ( #8522 )
...
Bumps [sigstore/scaffolding](https://github.com/sigstore/scaffolding ) from d5eada0a29719b385d26831ead049f188bbfd824 to d21c412f3c2f95421413f43741c2e62c19241dfe.
- [Release notes](https://github.com/sigstore/scaffolding/releases )
- [Changelog](https://github.com/sigstore/scaffolding/blob/main/release.md )
- [Commits](d5eada0a29...d21c412f3c
)
---
updated-dependencies:
- dependency-name: sigstore/scaffolding
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-25 08:50:44 +00:00
Vishal Choudhary
e5c004a6b4
fix: only fetch pub keys when tlogs and scts are not ignored ( #8521 )
2023-09-25 08:16:10 +00:00
dependabot[bot]
313c5df2bb
chore(deps): bump actions/checkout from 4.0.0 to 4.1.0 ( #8523 )
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 4.0.0 to 4.1.0.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](3df4ab11eb...8ade135a41
)
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-25 07:39:53 +00:00
dependabot[bot]
7c9ba87ee2
chore(deps): bump google.golang.org/grpc from 1.58.1 to 1.58.2 ( #8507 )
...
Bumps [google.golang.org/grpc](https://github.com/grpc/grpc-go ) from 1.58.1 to 1.58.2.
- [Release notes](https://github.com/grpc/grpc-go/releases )
- [Commits](https://github.com/grpc/grpc-go/compare/v1.58.1...v1.58.2 )
---
updated-dependencies:
- dependency-name: google.golang.org/grpc
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-22 17:37:19 +00:00
dependabot[bot]
ebb7868d97
chore(deps): bump adRise/update-pr-branch from 0.6.0 to 0.7.0 ( #8506 )
...
Bumps [adRise/update-pr-branch](https://github.com/adrise/update-pr-branch ) from 0.6.0 to 0.7.0.
- [Release notes](https://github.com/adrise/update-pr-branch/releases )
- [Commits](437fab6e0a...cd305ecbd7
)
---
updated-dependencies:
- dependency-name: adRise/update-pr-branch
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: kyverno-bot <104836976+kyverno-bot@users.noreply.github.com>
2023-09-22 14:10:01 +00:00
Charles-Edouard Brétéché
61aa713d27
fix: image cache panic and cleanup ( #8512 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-22 10:40:16 +00:00
Charles-Edouard Brétéché
21e044eb1a
feat: add cli package to load policy exceptions ( #8508 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-22 09:53:19 +00:00
Vishal Choudhary
d4d5d751b1
fix: disables TUF by default ( #8509 )
2023-09-22 14:32:57 +05:30
dependabot[bot]
a043325237
chore(deps): bump sigstore/scaffolding ( #8505 )
...
Bumps [sigstore/scaffolding](https://github.com/sigstore/scaffolding ) from b52f64ebe86d2d081b753d7d8549e0b668dcabb7 to d5eada0a29719b385d26831ead049f188bbfd824.
- [Release notes](https://github.com/sigstore/scaffolding/releases )
- [Changelog](https://github.com/sigstore/scaffolding/blob/main/release.md )
- [Commits](b52f64ebe8...d5eada0a29
)
---
updated-dependencies:
- dependency-name: sigstore/scaffolding
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-22 07:30:38 +00:00
Charles-Edouard Brétéché
6cf57ee81f
fix: make sure we don't modify reports not owned by kyverno ( #8502 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-22 04:01:21 +00:00
Charles-Edouard Brétéché
bc6b6e17b9
fix: return gvk when loading resource ( #8501 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-22 11:10:15 +08:00
Charles-Edouard Brétéché
3c76cf5118
feat: add resource load funcs in cli ( #8499 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-21 21:32:30 +00:00
Vishal Choudhary
9c69774a67
feat: add 1.11.0 in GH issue templates ( #8496 )
2023-09-21 15:17:45 +00:00
Charles-Edouard Brétéché
d421c8860b
fix: webhookTimeout flag not clear ( #8493 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-21 14:40:38 +00:00
Vishal Choudhary
e6bebeae9b
feat: improve assertion and error messages ( #8489 )
2023-09-21 12:39:54 +00:00
Charles-Edouard Brétéché
86b752e2fb
feat: add cli resource loader package ( #8488 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-21 11:59:45 +00:00
Charles-Edouard Brétéché
4046315dac
feat: add a package to convert unstructured into typed ( #8484 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-21 09:34:38 +00:00
Charles-Edouard Brétéché
ae1fa9b260
fix: deep copy before validaitng ( #8483 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-21 09:01:14 +00:00
Charles-Edouard Brétéché
af50fabc6e
chore: fix release ( #8482 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-21 08:24:45 +00:00
Charles-Edouard Brétéché
f38011cd8e
fix: check subjects func ( #8470 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-21 03:22:01 +00:00
Charles-Edouard Brétéché
b692e3b817
fix: make free disk space action configurable ( #8478 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 23:13:14 +00:00
Charles-Edouard Brétéché
5eb3ca2d96
fix: release archive name template ( #8475 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 22:35:49 +00:00
Charles-Edouard Brétéché
1a73ca7e9f
fix: publish images workflow ( #8473 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 21:50:00 +00:00
Charles-Edouard Brétéché
da5496bd64
fix: release workflow ( #8471 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 19:46:40 +00:00
Charles-Edouard Brétéché
4925f7a4b3
chore: free disk space before running jobs ( #8468 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 15:49:23 +00:00
Vishal Choudhary
fd01e50280
fix: image verify cache test ( #8462 )
...
* fix: image verify cache test
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: print err message
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: clear mock
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: defer clear mock
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
---------
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 14:03:58 +02:00
Charles-Edouard Brétéché
69441c6d0f
chore: add a required job to simplify branch protection ( #8464 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 11:19:35 +00:00
Charles-Edouard Brétéché
4f0e378a34
fix: custom-sigstore conformance job ( #8459 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 09:12:02 +00:00
Charles-Edouard Brétéché
c1978d97a6
fix: use vap map in report aggregation ( #8458 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 08:32:38 +00:00
dependabot[bot]
8ed197cb51
chore(deps): bump fluxcd/flux2 from 2.1.0 to 2.1.1 ( #8457 )
...
Bumps [fluxcd/flux2](https://github.com/fluxcd/flux2 ) from 2.1.0 to 2.1.1.
- [Release notes](https://github.com/fluxcd/flux2/releases )
- [Changelog](https://github.com/fluxcd/flux2/blob/main/.goreleaser.yml )
- [Commits](22cf986a79...026ab61ba7
)
---
updated-dependencies:
- dependency-name: fluxcd/flux2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-20 07:33:32 +00:00
Charles-Edouard Brétéché
2444b7c670
refactor: add per resource reports aggregation ( #8426 )
...
* refactor: add per resource reports aggregation
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* added controller implementation
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* clean
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix kuttl tests
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* fix kuttl tests
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* vaps
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
---------
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-20 14:51:32 +08:00
Vishal Choudhary
b4861015f0
feat: add check for digest mismatch ( #8443 )
...
* feat: add check for digest mismatch
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: add unit test
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
---------
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
Co-authored-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
2023-09-20 05:29:20 +00:00
Charles-Edouard Brétéché
8a9d8f14d0
chore: bump a couple of deps ( #8453 )
...
* fix: use go 1.21 new packages
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
* chore: bump a couple of deps
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
---------
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-19 16:05:00 +00:00
Charles-Edouard Brétéché
fb90d0935d
fix: use go 1.21 new packages ( #8452 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-19 12:06:53 +00:00
Charles-Edouard Brétéché
33dbdc9c5b
fix: linter ( #8454 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-19 11:36:29 +00:00
Charles-Edouard Brétéché
6a43ec4bcf
chore: fix policies ( #8449 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-19 10:28:58 +00:00
Charles-Edouard Brétéché
f9c85f447d
chore: bump golang to 1.21 ( #8450 )
...
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-19 17:48:11 +08:00
Jim Bugwadia
fb12f7330b
skip other checks if operations do not match ( #8324 )
...
* skip other checks if operations do not match
Signed-off-by: Jim Bugwadia <jim@nirmata.com>
* copy resource/rule as match seems to mutate for wildcard checks
Signed-off-by: Jim Bugwadia <jim@nirmata.com>
* fix deepcopy
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
---------
Signed-off-by: Jim Bugwadia <jim@nirmata.com>
Signed-off-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-19 08:01:49 +00:00
dependabot[bot]
12d61720b5
chore(deps): bump sigstore/scaffolding ( #8448 )
...
Bumps [sigstore/scaffolding](https://github.com/sigstore/scaffolding ) from 9fb4937ae18ed8456d725e99cb2871d309673022 to b52f64ebe86d2d081b753d7d8549e0b668dcabb7.
- [Release notes](https://github.com/sigstore/scaffolding/releases )
- [Changelog](https://github.com/sigstore/scaffolding/blob/main/release.md )
- [Commits](9fb4937ae1...b52f64ebe8
)
---
updated-dependencies:
- dependency-name: sigstore/scaffolding
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-19 07:29:27 +00:00
shuting
ca62b37886
chore: improve log messages ( #8442 )
...
Signed-off-by: ShutingZhao <shuting@nirmata.com>
2023-09-19 08:54:40 +02:00
Vishal Choudhary
828807bddb
feat: add a new wrapper logger for debugging ( #8436 )
...
* feat: add a new debug logger
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* fix: duplicate first messages
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: add checks in info()
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* add debug logger to notary package
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: update info func
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: add error func
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: update wrapper to use right fmt functions
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* fix: use sprintln not sprint
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: remove V(4)
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* refactor: removed common code
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* Update pkg/notary/log.go
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* Update pkg/notary/log.go
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* Update pkg/notary/log.go
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* fix: update names
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* Update pkg/notary/log.go
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: add verbosity levels
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* Update pkg/notary/log.go
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* fix: lint
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
* feat: use errors new
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
---------
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com>
2023-09-18 19:47:59 +00:00
Vishal Choudhary
b6c959bfac
style: improve descriptions in notary verifier ( #8444 )
...
Signed-off-by: Vishal Choudhary <sendtovishalchoudhary@gmail.com>
2023-09-18 18:09:48 +00:00