1
0
Fork 0
mirror of https://github.com/kyverno/kyverno.git synced 2025-03-10 01:46:55 +00:00
kyverno/test/conformance/chainsaw/verifyImages/clusterpolicy/standard/keyless-attestations-multiple-subjects-3
Mariam Fahmy c796bb765c
fix: return policies with either audit or enforce rules from the cache (#10667)
* fix: return policies with either audit or enforce rules from the cache

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* feat: introduce validationFailureAction under verifyImage rules

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* feat: add chainsaw tests

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* fix

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

---------

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
Co-authored-by: shuting <shuting@nirmata.com>
2024-08-06 18:24:28 +00:00
..
chainsaw-step-01-apply-1.yaml fix: return policies with either audit or enforce rules from the cache (#10667) 2024-08-06 18:24:28 +00:00
chainsaw-step-01-assert-1.yaml chore: convert chainsaw tests to Test resource (#9099) 2023-12-06 18:29:51 +00:00
chainsaw-step-03-error-1.yaml chore: convert chainsaw tests to Test resource (#9099) 2023-12-06 18:29:51 +00:00
chainsaw-test.yaml chore: convert chainsaw tests to Test resource (#9099) 2023-12-06 18:29:51 +00:00
pod.yaml
README.md

Description

Verify image attestations with the given predicateType and attestors. The image has multiple signatures for different predicateTypes.

Expected Behavior

Given the defined predicateType, the image's subject and issuer for this predicateType does not match. The pod creation should be blocked.

Reference Issue(s)

https://github.com/kyverno/kyverno/issues/4847