mirror of
https://github.com/kyverno/kyverno.git
synced 2025-03-06 07:57:07 +00:00
* validate polex activation and namespace Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * push updates Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * push updates Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * push updates Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * pass polex options to handler Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * replace pointer Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * remove exceptionoption argument Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * remove nested if Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * revert change Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * fix line Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * pass polex options differently Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * push update Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * move struct Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * Update pkg/validation/exception/validate.go Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com> Signed-off-by: yinka <damilola.olayinka@nirmata.com> * Update pkg/webhooks/exception/validate.go Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com> Signed-off-by: yinka <damilola.olayinka@nirmata.com> * Update pkg/webhooks/exception/validate.go Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com> Signed-off-by: yinka <damilola.olayinka@nirmata.com> * Update pkg/webhooks/exception/validate.go Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com> Signed-off-by: yinka <damilola.olayinka@nirmata.com> * fix Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * add unit test Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * remove lines Signed-off-by: damilola olayinka <holayinkajr@gmail.com> * fix error Signed-off-by: damilola olayinka <holayinkajr@gmail.com> Signed-off-by: damilola olayinka <holayinkajr@gmail.com> Signed-off-by: yinka <damilola.olayinka@nirmata.com> Co-authored-by: Charles-Edouard Brétéché <charles.edouard@nirmata.com> Co-authored-by: Charles-Edouard Brétéché <charled.breteche@gmail.com>
36 lines
1.2 KiB
Go
36 lines
1.2 KiB
Go
package exception
|
|
|
|
import (
|
|
"context"
|
|
"time"
|
|
|
|
"github.com/go-logr/logr"
|
|
admissionutils "github.com/kyverno/kyverno/pkg/utils/admission"
|
|
validation "github.com/kyverno/kyverno/pkg/validation/exception"
|
|
"github.com/kyverno/kyverno/pkg/webhooks"
|
|
admissionv1 "k8s.io/api/admission/v1"
|
|
)
|
|
|
|
type handlers struct {
|
|
validationOptions validation.ValidationOptions
|
|
}
|
|
|
|
func NewHandlers(validationOptions validation.ValidationOptions) webhooks.ExceptionHandlers {
|
|
return &handlers{
|
|
validationOptions: validationOptions,
|
|
}
|
|
}
|
|
|
|
// Validate performs the validation check on policy exception resources
|
|
func (h *handlers) Validate(ctx context.Context, logger logr.Logger, request *admissionv1.AdmissionRequest, startTime time.Time) *admissionv1.AdmissionResponse {
|
|
polex, _, err := admissionutils.GetPolicyExceptions(request)
|
|
if err != nil {
|
|
logger.Error(err, "failed to unmarshal policy exceptions from admission request")
|
|
return admissionutils.Response(request.UID, err)
|
|
}
|
|
warnings, err := validation.Validate(ctx, logger, polex, h.validationOptions)
|
|
if err != nil {
|
|
logger.Error(err, "policy exception validation errors")
|
|
}
|
|
return admissionutils.Response(request.UID, err, warnings...)
|
|
}
|