4994 Commits (bdc3dd14c2644b56d2dbfd460290a0e47ad90c11)

Author SHA1 Message Date
Dhia Ayachi 2d902b26ac
add log-drop package (#15670) 2 years ago
Paul Glass 619032cfcd
Deprecate -join and -join-wan (#15598) 2 years ago
Dhia Ayachi 6468e3e09c
Server side rate limiter: handle the race condition for limiters tree write in multilimiter (#15767) 2 years ago
Semir Patel bafa5c7156
Pass remote addr of incoming HTTP requests through to RPC(..) calls (#15700) 2 years ago
John Murret e027c94b52
adding config for request_limits (#15531) 2 years ago
Dan Stough 233dbcb67f
feat: add access logging API to proxy defaults (#15780) 2 years ago
cskh 04bf24c8c1
feat(ingress-gateway): support outlier detection of upstream service for ingress gateway (#15614) 2 years ago
Derek Menteer e87d35e313
Fix DialedDirectly configuration for Consul dataplane. (#15760) 2 years ago
Dan Upton c692802dec
grpc: add rate-limiting middleware (#15550) 2 years ago
Dan Upton eef38c2199
server: add placeholder glue for rate limit handler (#15539) 2 years ago
John Murret cd53120cd7
agent: Fix assignment of error when auto-reloading cert and key file changes. (#15769) 2 years ago
R.B. Boyer 4a32070210
test: remove variable shadowing in TestDNS_ServiceLookup_ARecordLimits (#15740) 2 years ago
Eric Haberkorn 4268c1c25c
Remove the `connect.enable_serverless_plugin` agent configuration option (#15710) 2 years ago
Dhia Ayachi 81e40c1fac
add multilimiter and tests (#15467) 2 years ago
cskh 3df68751f5
Flakiness test: case-cfg-splitter-peering-ingress-gateways (#15707) 2 years ago
Derek Menteer 97ec5279aa
Fix local mesh gateway with peering discovery chains. (#15690) 2 years ago
R.B. Boyer 5af94fb2a0
connect: use -dev-no-store-token for test vaults to reduce source of flakes (#15691) 2 years ago
R.B. Boyer 900584ca82
connect: ensure all vault connect CA tests use limited privilege tokens (#15669) 2 years ago
R.B. Boyer 4940a728ab
Detect Vault 1.11+ import in secondary datacenters and update default issuer (#15661) 2 years ago
Chris S. Kim c046d1a4d8
Add warn log when all ACL policies are filtered out (#15632) 2 years ago
cskh 36f05bc8fb
integ-test: test consul upgrade from the snapshot of a running cluster (#15595) 2 years ago
R.B. Boyer 11a277f372
peering: better represent non-passing states during peer check flattening (#15615) 2 years ago
Freddy 941f6da202
Remove log line about server mgmt token init (#15610) 2 years ago
James Oulman 7e78fb7818
Add support for configuring Envoys route idle_timeout (#14340) 2 years ago
Derek Menteer 95dc0c7b30
Add peering `.service` and `.node` DNS lookups. (#15596) 2 years ago
cskh 97c9432843
fix(peering): increase the gRPC limit to 8MB (#15503) 2 years ago
Chris S. Kim c9ec9fa320
Fix Vault managed intermediate PKI bug (#15525) 2 years ago
Chris S. Kim 27c53f6c82
Use backport-compatible assertion (#15546) 2 years ago
Chris S. Kim 386da5439a
Use rpcHoldTimeout to calculate blocking timeout (#15541) 2 years ago
Jared Kirschner 3e7e8ae9c5
Support RFC 2782 for prepared query DNS lookups (#14465) 2 years ago
Alexander Scheel 2b90307f6d
Detect Vault 1.11+ import, update default issuer (#15253) 2 years ago
cskh 435e16ecda
fix: clarifying error message when acquiring a lock in remote dc (#15394) 2 years ago
Kyle Havlovitz f4c3e54b11
auto-config: relax node name validation for JWT authorization (#15370) 2 years ago
Dhia Ayachi 225ae55e83
Leadership transfer cmd (#14132) 2 years ago
Freddy 706866fa00
Ensure that NodeDump imported nodes are filtered (#15356) 2 years ago
Freddy c58f86a00f
Fixup authz for data imported from peers (#15347) 2 years ago
Kyle Havlovitz dde5c524ad
connect: strip port from DNS SANs for ingress gateway leaf cert (#15320) 2 years ago
Derek Menteer 931cec42b3
Prevent serving TLS via ports.grpc (#15339) 2 years ago
Dan Stough 626249fbf5
[OSS] fix: wait and try longer to peer through mesh gw (#15328) 2 years ago
Kyle Schochenmaier bf0f61a878
removes ioutil usage everywhere which was deprecated in go1.16 (#15297) 2 years ago
malizz b51f0e25e9
update ACLs for cluster peering (#15317) 2 years ago
malizz b9a9e1219c
update config defaults, add docs (#15302) 2 years ago
Eric Haberkorn c340922991
Log Warnings When Peering With Mesh Gateway Mode None (#15304) 2 years ago
Derek Menteer 418bd62c44
Fix mesh gateway configuration with proxy-defaults (#15186) 2 years ago
Dan Upton 7b2d08d461
chore: remove unused argument from MergeNodeServiceWithCentralConfig (#15024) 2 years ago
Derek Menteer b64972d486
Bring back parameter ServerExternalAddresses in GenerateToken endpoint (#15267) 2 years ago
cskh a3f57cc5e8
fix(mesh-gateway): remove deregistered service from mesh gateway (#15272) 2 years ago
Freddy 7f5f7e9cf9
Avoid blocking child type updates on parent ack (#15083) 2 years ago
Derek Menteer c064ddf606
Backport test fix from ent. (#15279) 2 years ago
Chris S. Kim 985a4ee1b1
Update hcp-scada-provider to fix diamond dependency problem with go-msgpack (#15185) 2 years ago