Commit Graph

197 Commits (CC-5545/upgrade-hds-packages)

Author SHA1 Message Date
John Murret a7fbd00865
NET-5073 - ProxyConfiguration: implement various connection options (#19187)
1 year ago
Iryna Shustava 105ebfdd00
catalog, mesh: implement missing ACL hooks (#19143)
1 year ago
Iryna Shustava 2ea33e9b86
mesh: add more validations to Destinations resource (#19202)
1 year ago
Iryna Shustava e94d6ceca6
mesh: add validation hook to proxy configuration (#19186)
1 year ago
Ashwin Venkatesh 3d1a606c3b
Clone proto into deepcopy correctly (#19204)
1 year ago
R.B. Boyer 99f7a1219e
catalog: add metadata filtering to refine workload selectors (#19198)
1 year ago
R.B. Boyer f0e4897736
mesh: ensure that xRoutes have ParentRefs that have matching Tenancy to the enclosing resource (#19176)
1 year ago
Dhia Ayachi 5fbf0c00d3
Add namespace read write tests (#19173)
1 year ago
Ashwin Venkatesh c2a0d4f9ca
Create DeepCopy() and Json Marshal/Unmarshal for proto-public (#19015)
1 year ago
Nitya Dhanushkodi 95d9b2c7e4
[NET-4931] xdsv2, sidecarproxycontroller, l4 trafficpermissions: support L7 (#19185)
1 year ago
Iryna Shustava e3cb4ec35e
mesh: properly handle missing workload protocols (#19172)
1 year ago
Iryna Shustava a39eec0ef4
mesh: fix race in the sidecar-proxy controller test (#19183)
1 year ago
John Murret dbca544d25
NET-5951 - Unique route names for implicit routes (#19174)
1 year ago
Iryna Shustava 54a12ab3c9
mesh: sidecar proxy controller improvements (#19083)
1 year ago
Iryna Shustava ad06c96456
mesh: add computed destinations with a controller that computes them (#19067)
1 year ago
R.B. Boyer 29ba5b5c79
catalog: block unsupported failover policy settings for now (#19168)
1 year ago
John Murret 6da4798e05
NET-5799 - ensure catalog controllers and dependency mappers function correctly for tenancy fields (#19142)
1 year ago
Iryna Shustava 60b75a55f7
mesh: implement exposed paths (#19044)
1 year ago
John Murret 6cbd417f29
NET-5822 - Add default outbound router in TProxy (#19087)
1 year ago
Iryna Shustava c35df12c95
mesh: Add ComputedProxyConfiguration and a controller that computes it. (#19043)
1 year ago
Semir Patel 830c4ea81c
v2tenancy: cluster scoped reads (#19082)
1 year ago
Chris S. Kim 92ce814693
Remove old build tags (#19128)
1 year ago
Matt Keeler 4713317457
protohcl: allow attribute syntax for all map fields (#19108)
1 year ago
Eric Haberkorn ad3aab1ef7
Add traffic permissions integration tests. (#19008)
1 year ago
R.B. Boyer 754ab9abf2
mesh: ensure we add the virtual port number for L7 implicit upstreams (#19085)
1 year ago
Chris S. Kim b43cde5d19
Add workload identity hooks (#19045)
1 year ago
Eric Haberkorn f2b7b4591a
Fix Traffic Permissions Default Deny (#19028)
1 year ago
John Murret d67e5c6e35
NET-5590 - authorization: check for identity:write in CA certs, xds server, and getting envoy bootstrap params (#19049)
1 year ago
skpratt 21ea527089
TrafficPermissions: add ACL hooks (#19023)
1 year ago
Eric Haberkorn 7ce6ebaeb3
Handle Traffic Permissions With Empty Sources Properly (#19024)
1 year ago
Iryna Shustava 3ea6afb4d4
mesh: rename Upstreams and UpstreamsConfiguration to Destinations* (#18995)
1 year ago
skpratt 202090e5d5
v2 explicit destination traffic permissions (#18823)
1 year ago
Iryna Shustava e6b724d062
catalog,mesh,auth: Move resource types to the proto-public module (#18935)
1 year ago
R.B. Boyer 9e48607893
mesh: compute more of the xRoute features into ComputedRoutes (#18980)
1 year ago
R.B. Boyer 11d6b0df45
mesh: store bound reference pointers on a ComputedRoutes resource and use during reconcile (#18965)
1 year ago
Eric Haberkorn 4d6ff29392
Traffic Permissions Validations (#18907)
1 year ago
R.B. Boyer 633c6c9458
mesh: add ACL checks for xRoute resources (#18926)
1 year ago
R.B. Boyer 43a8dbb188
mesh: add ACL checks for DestinationPolicy resources (#18920)
1 year ago
Iryna Shustava d88888ee8b
catalog,mesh,auth: Bump versions to v2beta1 (#18930)
1 year ago
R.B. Boyer de231bbbdd
catalog: fix for new method argument (#18978)
1 year ago
R.B. Boyer ec6189fd2f
catalog: add ACL checks for FailoverPolicy resources (#18919)
1 year ago
R.B. Boyer ef6f2494c7
resource: allow for the ACLs.Read hook to request the entire data payload to perform the authz check (#18925)
1 year ago
Derek Menteer eb7e20307c
[NET-5589] Add jitter to xds v2 leaf cert watches (#18940)
1 year ago
Semir Patel d2be7577b9
tenancy: split up tenancy `types.go` into CE version (#18966)
1 year ago
Matt Keeler 53fcc5d9a5
Add protoc generator to emit resource type variables (#18957)
1 year ago
Eric Haberkorn f87ae3636c
Fix V2 Wildcard RBAC Regular Expressions (#18941)
1 year ago
Derek Menteer d4ed3047f8
[NET-5589] Optimize leaf watch diff on xds controller. (#18921)
1 year ago
John Murret 700d1bb37c
NET-5131 - support multiple ported upstreams tests (#18923)
1 year ago
Dhia Ayachi 341dc28ff9
Add namespace proto and registration (#18848)
1 year ago
R.B. Boyer d574473fd1
mesh: make FailoverPolicy work in xdsv2 and ProxyStateTemplate (#18900)
1 year ago