1
0
Fork 0
mirror of https://github.com/kyverno/kyverno.git synced 2025-04-15 16:56:56 +00:00
kyverno/test/conformance/chainsaw/verifyImages/clusterpolicy/standard/noconfigmap-diffimage-success
Mariam Fahmy c796bb765c
fix: return policies with either audit or enforce rules from the cache (#10667)
* fix: return policies with either audit or enforce rules from the cache

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* feat: introduce validationFailureAction under verifyImage rules

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* feat: add chainsaw tests

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

* fix

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>

---------

Signed-off-by: Mariam Fahmy <mariam.fahmy@nirmata.com>
Co-authored-by: shuting <shuting@nirmata.com>
2024-08-06 18:24:28 +00:00
..
bad-pod.yaml chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
chainsaw-test.yaml chore: improve cluster startup in conformance tests (#9103) 2023-12-07 17:30:03 +05:30
good-pod.yaml chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
namespace.yaml chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
pod-with-configmap-ready.yaml chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
pod-with-configmap.yaml chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
policy-ready.yaml chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
policy.yaml fix: return policies with either audit or enforce rules from the cache (#10667) 2024-08-06 18:24:28 +00:00
README.md chore: all chainsaw tests (#9011) 2023-11-24 11:17:58 +01:00
update-policy.yaml fix: return policies with either audit or enforce rules from the cache (#10667) 2024-08-06 18:24:28 +00:00

Description

This test verifies that resource creation is not blocked if resource image is different than policy image.

Expected Behavior

This test should create a policy with missing configmap, a pod with different image than policy image. This shouldn't block pod creation. When pod is created with same image as policy image, pod creation should be blocked. When test tries to update any field in a policy, it should get updated properly.

Reference Issue(s)

3709