-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Update vendir https://github.com/giantswarm/kyverno to v1.12.3
- Loading branch information
1 parent
3fcadfc
commit 758fe97
Showing
24 changed files
with
109 additions
and
43 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,2 +1,3 @@ | ||
.helmignore | ||
ci/ | ||
README.md.gotmpl |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,8 +1,8 @@ | ||
apiVersion: v2 | ||
type: application | ||
name: kyverno-policies | ||
version: 3.0.4 | ||
appVersion: v1.10.3 | ||
version: 3.2.3 | ||
appVersion: v1.12.3 | ||
icon: https://github.com/kyverno/kyverno/raw/main/img/logo.png | ||
description: Kubernetes Pod Security Standards implemented as Kyverno policies | ||
keywords: | ||
|
@@ -15,19 +15,9 @@ home: https://kyverno.io/policies/ | |
sources: | ||
- https://github.com/kyverno/policies | ||
maintainers: | ||
- name: Nirmata | ||
url: https://kyverno.io/ | ||
kubeVersion: ">=1.16.0-0" | ||
- name: kyverno-maintainers | ||
email: cncf-kyverno[email protected] | ||
kubeVersion: ">=1.25.0-0" | ||
annotations: | ||
artifacthub.io/operator: "false" | ||
artifacthub.io/prerelease: "false" | ||
# valid kinds are: added, changed, deprecated, removed, fixed and security | ||
artifacthub.io/changes: | | ||
- kind: added | ||
description: Add ability to configure autogen behavior | ||
- kind: fixed | ||
description: Support for customLabels, they were ignored up to now | ||
- kind: removed | ||
description: "Walk back change in PSS policy to send to to_upper" | ||
- kind: fixed | ||
description: Skip DELETE requests on policies using deny statements |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -2,7 +2,7 @@ | |
|
||
Kubernetes Pod Security Standards implemented as Kyverno policies | ||
|
||
![Version: 3.0.4](https://img.shields.io/badge/Version-3.0.4-informational?style=flat-square) ![Type: application](https://img.shields.io/badge/Type-application-informational?style=flat-square) ![AppVersion: v1.10.3](https://img.shields.io/badge/AppVersion-v1.10.3-informational?style=flat-square) | ||
![Version: 3.2.3](https://img.shields.io/badge/Version-3.2.3-informational?style=flat-square) ![Type: application](https://img.shields.io/badge/Type-application-informational?style=flat-square) ![AppVersion: v1.12.3](https://img.shields.io/badge/AppVersion-v1.12.3-informational?style=flat-square) | ||
|
||
## About | ||
|
||
|
@@ -63,13 +63,14 @@ The command removes all the Kubernetes components associated with the chart and | |
|
||
| Key | Type | Default | Description | | ||
|-----|------|---------|-------------| | ||
| policyKind | string | `"ClusterPolicy"` | Policy kind (`ClusterPolicy`, `Policy`) Set to `Policy` if you need namespaced policies and not cluster policies | | ||
| podSecurityStandard | string | `"baseline"` | Pod Security Standard profile (`baseline`, `restricted`, `privileged`, `custom`). For more info https://kyverno.io/policies/pod-security. | | ||
| podSecuritySeverity | string | `"medium"` | Pod Security Standard (`low`, `medium`, `high`). | | ||
| podSecurityPolicies | list | `[]` | Policies to include when `podSecurityStandard` is `custom`. | | ||
| includeOtherPolicies | list | `[]` | Additional policies to include from `other`. | | ||
| includeRestrictedPolicies | list | `[]` | Additional policies to include from `restricted`. | | ||
| failurePolicy | string | `"Fail"` | API server behavior if the webhook fails to respond ('Ignore', 'Fail') For more info: https://kyverno.io/docs/writing-policies/policy-settings/ | | ||
| validationFailureAction | string | `"audit"` | Validation failure action (`audit`, `enforce`). For more info https://kyverno.io/docs/writing-policies/validate. | | ||
| validationFailureAction | string | `"Audit"` | Validation failure action (`Audit`, `Enforce`). For more info https://kyverno.io/docs/writing-policies/validate. | | ||
| validationFailureActionByPolicy | object | `{}` | Define validationFailureActionByPolicy for specific policies. Override the defined `validationFailureAction` with a individual validationFailureAction for individual Policies. | | ||
| validationFailureActionOverrides | object | `{"all":[]}` | Define validationFailureActionOverrides for specific policies. The overrides for `all` will apply to all policies. | | ||
| policyExclude | object | `{}` | Exclude resources from individual policies. Policies with multiple rules can have individual rules excluded by using the name of the rule as the key in the `policyExclude` map. | | ||
|
@@ -78,6 +79,7 @@ The command removes all the Kubernetes components associated with the chart and | |
| nameOverride | string | `nil` | Name override. | | ||
| customLabels | object | `{}` | Additional labels. | | ||
| background | bool | `true` | Policies background mode | | ||
| skipBackgroundRequests | bool | `nil` | SkipBackgroundRequests bypasses admission requests that are sent by the background controller | | ||
| kyvernoVersion | string | `"autodetect"` | Kyverno version The default of "autodetect" will try to determine the currently installed version from the deployment | | ||
|
||
## Source Code | ||
|
@@ -86,13 +88,13 @@ The command removes all the Kubernetes components associated with the chart and | |
|
||
## Requirements | ||
|
||
Kubernetes: `>=1.16.0-0` | ||
Kubernetes: `>=1.25.0-0` | ||
|
||
## Maintainers | ||
|
||
| Name | Email | Url | | ||
| ---- | ------ | --- | | ||
| Nirmata | | <https://kyverno.io/> | | ||
| kyverno-maintainers | <cncf-kyverno[email protected]> | | | ||
|
||
## Changes | ||
|
||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.