Documentation
¶
Overview ¶
Package certificates provides Registry interface and its RESTStorage implementation for storing ClusterRole objects.
Index ¶
Constants ¶
This section is empty.
Variables ¶
var Strategy = strategy{api.Scheme, names.SimpleNameGenerator}
strategy is the default logic that applies when creating and updating ClusterRole objects.
Functions ¶
func GetAttrs ¶ added in v1.6.0
func GetAttrs(obj runtime.Object) (labels.Set, fields.Set, error)
GetAttrs returns labels and fields of a given object for filtering purposes.
func Matcher ¶
func Matcher(label labels.Selector, field fields.Selector) apistorage.SelectionPredicate
Matcher returns a generic matcher for a given label and field selector.
func SelectableFields ¶
func SelectableFields(obj *rbac.ClusterRole) fields.Set
SelectableFields returns a field set that can be used for filter selection
Types ¶
type AuthorizerAdapter ¶
type AuthorizerAdapter struct {
Registry Registry
}
AuthorizerAdapter adapts the registry to the authorizer interface
func (AuthorizerAdapter) GetClusterRole ¶
func (a AuthorizerAdapter) GetClusterRole(name string) (*rbac.ClusterRole, error)
type Registry ¶
type Registry interface {
ListClusterRoles(ctx genericapirequest.Context, options *metainternalversion.ListOptions) (*rbac.ClusterRoleList, error)
CreateClusterRole(ctx genericapirequest.Context, clusterRole *rbac.ClusterRole) error
UpdateClusterRole(ctx genericapirequest.Context, clusterRole *rbac.ClusterRole) error
GetClusterRole(ctx genericapirequest.Context, name string, options *metav1.GetOptions) (*rbac.ClusterRole, error)
DeleteClusterRole(ctx genericapirequest.Context, name string) error
WatchClusterRoles(ctx genericapirequest.Context, options *metainternalversion.ListOptions) (watch.Interface, error)
}
Registry is an interface for things that know how to store ClusterRoles.
func NewRegistry ¶
func NewRegistry(s rest.StandardStorage) Registry
NewRegistry returns a new Registry interface for the given Storage. Any mismatched types will panic.
Directories
¶
Path | Synopsis |
---|---|
Package policybased implements a standard storage for ClusterRole that prevents privilege escalation.
|
Package policybased implements a standard storage for ClusterRole that prevents privilege escalation. |