mirror of
https://github.com/kyverno/kyverno.git
synced 2025-03-05 15:37:19 +00:00
* feat: add global context entry validation webhook Signed-off-by: Vishal Choudhary <vishal.choudhary@nirmata.com> * fix: use `k8s.io/apimachinery/pkg/util/json` instead of `encoding/json` Signed-off-by: Vishal Choudhary <vishal.choudhary@nirmata.com> * fix: lint Signed-off-by: Vishal Choudhary <vishal.choudhary@nirmata.com> --------- Signed-off-by: Vishal Choudhary <vishal.choudhary@nirmata.com>
36 lines
1.2 KiB
Go
36 lines
1.2 KiB
Go
package globalcontext
|
|
|
|
import (
|
|
"context"
|
|
"time"
|
|
|
|
"github.com/go-logr/logr"
|
|
admissionutils "github.com/kyverno/kyverno/pkg/utils/admission"
|
|
validation "github.com/kyverno/kyverno/pkg/validation/globalcontext"
|
|
"github.com/kyverno/kyverno/pkg/webhooks"
|
|
"github.com/kyverno/kyverno/pkg/webhooks/handlers"
|
|
)
|
|
|
|
type gctxHandlers struct {
|
|
validationOptions validation.ValidationOptions
|
|
}
|
|
|
|
func NewHandlers(validationOptions validation.ValidationOptions) webhooks.GlobalContextHandlers {
|
|
return &gctxHandlers{
|
|
validationOptions: validationOptions,
|
|
}
|
|
}
|
|
|
|
// Validate performs the validation check on global context entries
|
|
func (h *gctxHandlers) Validate(ctx context.Context, logger logr.Logger, request handlers.AdmissionRequest, startTime time.Time) handlers.AdmissionResponse {
|
|
gctx, _, err := admissionutils.GetGlobalContextEntry(request.AdmissionRequest)
|
|
if err != nil {
|
|
logger.Error(err, "failed to unmarshal global context entry from admission request")
|
|
return admissionutils.Response(request.UID, err)
|
|
}
|
|
warnings, err := validation.Validate(ctx, logger, gctx, h.validationOptions)
|
|
if err != nil {
|
|
logger.Error(err, "global context entry validation errors")
|
|
}
|
|
return admissionutils.Response(request.UID, err, warnings...)
|
|
}
|