Skip to content
This repository has been archived by the owner on Mar 7, 2024. It is now read-only.

Commit

Permalink
add
Browse files Browse the repository at this point in the history
  • Loading branch information
ubombar committed Nov 1, 2023
1 parent 29872ee commit 0dc4e00
Show file tree
Hide file tree
Showing 2 changed files with 111 additions and 1 deletion.
2 changes: 1 addition & 1 deletion build/yamls/kubernetes/all-in-one.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -48,7 +48,7 @@ stringData:
# MaxMind GeoIP2 precision API keys
maxmind-account-id: ""
maxmind-license-key: ""
#---
---
# Provide the Private and Public SSH keys of the control plane node to enable node contribution feature.
apiVersion: v1
kind: Secret
Expand Down
110 changes: 110 additions & 0 deletions test.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,110 @@
kind: ValidatingWebhookConfiguration
apiVersion: admissionregistration.k8s.io/v1
metadata:
name: edgenet-admission-control
annotations:
cert-manager.io/inject-ca-from: edgenet/api-server-webhook
webhooks:
- name: pod-bandwidth-validate.edge-net.io
clientConfig:
service:
namespace: edgenet
name: admission-control
path: /validate/pod
namespaceSelector:
matchExpressions:
- key: kubernetes.io/metadata.name
operator: NotIn
values: ["edgenet", "kube-system", "cert-manager"]
rules:
- apiGroups: [""]
apiVersions: ["v1"]
resources: ["pods"]
operations: ["CREATE", "UPDATE"]
scope: Namespaced
sideEffects: None
admissionReviewVersions: ["v1"]
- name: tenant-request-validate.edge-net.io
clientConfig:
service:
namespace: edgenet
name: admission-control
path: /validate/tenant-request
rules:
- apiGroups: ["registration.edgenet.io"]
apiVersions: ["v1alpha1"]
resources: ["tenantrequests"]
operations: ["CREATE"]
scope: Cluster
sideEffects: None
admissionReviewVersions: ["v1"]
- name: cluster-role-request-validate.edge-net.io
clientConfig:
service:
namespace: edgenet
name: admission-control
path: /validate/cluster-role-request
rules:
- apiGroups: ["registration.edgenet.io"]
apiVersions: ["v1alpha1"]
resources: ["clusterrolerequests"]
operations: ["CREATE"]
scope: Cluster
sideEffects: None
admissionReviewVersions: ["v1"]
- name: role-request-validate.edge-net.io
clientConfig:
service:
namespace: edgenet
name: admission-control
path: /validate/role-request
rules:
- apiGroups: ["registration.edgenet.io"]
apiVersions: ["v1alpha1"]
resources: ["rolerequests"]
operations: ["CREATE"]
scope: Namespaced
sideEffects: None
admissionReviewVersions: ["v1"]
- name: subnamespace-validate.edge-net.io
clientConfig:
service:
namespace: edgenet
name: admission-control
path: /validate/subnamespace
rules:
- apiGroups: ["core.edgenet.io"]
apiVersions: ["v1alpha1"]
resources: ["subnamespaces"]
operations: ["CREATE", "UPDATE"]
scope: Namespaced
sideEffects: None
admissionReviewVersions: ["v1"]
- name: slice-validate.edge-net.io
clientConfig:
service:
namespace: edgenet
name: admission-control
path: /validate/slice
rules:
- apiGroups: ["core.edgenet.io"]
apiVersions: ["v1alpha1"]
resources: ["slices"]
operations: ["UPDATE"]
scope: Cluster
sideEffects: None
admissionReviewVersions: ["v1"]
- name: slice-claim-validate.edge-net.io
clientConfig:
service:
namespace: edgenet
name: admission-control
path: /validate/slice-claim
rules:
- apiGroups: ["core.edgenet.io"]
apiVersions: ["v1alpha1"]
resources: ["sliceclaims"]
operations: ["UPDATE"]
scope: Namespaced
sideEffects: None
admissionReviewVersions: ["v1"]

0 comments on commit 0dc4e00

Please sign in to comment.