From 452d08d5e8e40c0710a2042dd1d67b8eaa5fe43d Mon Sep 17 00:00:00 2001 From: Ronald Ekambi Date: Tue, 20 Jun 2023 12:33:24 -0400 Subject: [PATCH] [NET-3095] add jwt-authn metrics docs --- .../connect/config-entries/jwt-provider.mdx | 18 +++++++++++++++++- 1 file changed, 17 insertions(+), 1 deletion(-) diff --git a/website/content/docs/connect/config-entries/jwt-provider.mdx b/website/content/docs/connect/config-entries/jwt-provider.mdx index b31427af4f..ba7d4a28bf 100644 --- a/website/content/docs/connect/config-entries/jwt-provider.mdx +++ b/website/content/docs/connect/config-entries/jwt-provider.mdx @@ -952,6 +952,22 @@ Defines behavior for caching the validation result of previously encountered JWT +## Metrics + +The following `envoy` metrics can be used to track jwt authentication details. + +~> **Note:** Envoy does not currently provide any documentation on these metrics. + +```yaml +http.ingress_http.jwt_authn.allowed +http.ingress_http.jwt_authn.cors_preflight_bypassed +http.ingress_http.jwt_authn.denied +http.ingress_http.jwt_authn.jwks_fetch_failed +http.ingress_http.jwt_authn.jwks_fetch_success +http.ingress_http.jwt_authn.jwt_cache_hit +http.ingress_http.jwt_authn.jwt_cache_miss +``` + ## Examples The following examples demonstrate common JWT provider configuration patterns for specific use cases. @@ -1023,4 +1039,4 @@ spec: ``` - \ No newline at end of file +