gardener: github.com/gardener/gardener/pkg/apis/settings/v1alpha1 Index | Files

package v1alpha1

import "github.com/gardener/gardener/pkg/apis/settings/v1alpha1"

Package v1alpha1 is a version of the API. +groupName=settings.gardener.cloud

Index

Package Files

defaults.go doc.go register.go types_cluster_openidconnect_preset.go types_openidconnect_preset.go types_shared.go zz_generated.conversion.go zz_generated.deepcopy.go zz_generated.defaults.go

Constants

const (
    // DefaultUsernameClaim is the default username claim.
    DefaultUsernameClaim = "sub"
    // DefaultSignAlg is the default signing algorithm.
    DefaultSignAlg = "RS256"
)
const GroupName = "settings.gardener.cloud"

GroupName is the name of the settings API group.

Variables

var (
    // SchemeBuilder is a new Scheme Builder which registers our API.
    SchemeBuilder = runtime.NewSchemeBuilder(addKnownTypes, addDefaultingFuncs)

    // AddToScheme is a reference to the Scheme Builder's AddToScheme function.
    AddToScheme = SchemeBuilder.AddToScheme
)
var SchemeGroupVersion = schema.GroupVersion{Group: GroupName, Version: "v1alpha1"}

SchemeGroupVersion is group version used to register these objects

func Convert_settings_ClusterOpenIDConnectPresetList_To_v1alpha1_ClusterOpenIDConnectPresetList Uses

func Convert_settings_ClusterOpenIDConnectPresetList_To_v1alpha1_ClusterOpenIDConnectPresetList(in *settings.ClusterOpenIDConnectPresetList, out *ClusterOpenIDConnectPresetList, s conversion.Scope) error

Convert_settings_ClusterOpenIDConnectPresetList_To_v1alpha1_ClusterOpenIDConnectPresetList is an autogenerated conversion function.

func Convert_settings_ClusterOpenIDConnectPresetSpec_To_v1alpha1_ClusterOpenIDConnectPresetSpec Uses

func Convert_settings_ClusterOpenIDConnectPresetSpec_To_v1alpha1_ClusterOpenIDConnectPresetSpec(in *settings.ClusterOpenIDConnectPresetSpec, out *ClusterOpenIDConnectPresetSpec, s conversion.Scope) error

Convert_settings_ClusterOpenIDConnectPresetSpec_To_v1alpha1_ClusterOpenIDConnectPresetSpec is an autogenerated conversion function.

func Convert_settings_ClusterOpenIDConnectPreset_To_v1alpha1_ClusterOpenIDConnectPreset Uses

func Convert_settings_ClusterOpenIDConnectPreset_To_v1alpha1_ClusterOpenIDConnectPreset(in *settings.ClusterOpenIDConnectPreset, out *ClusterOpenIDConnectPreset, s conversion.Scope) error

Convert_settings_ClusterOpenIDConnectPreset_To_v1alpha1_ClusterOpenIDConnectPreset is an autogenerated conversion function.

func Convert_settings_KubeAPIServerOpenIDConnect_To_v1alpha1_KubeAPIServerOpenIDConnect Uses

func Convert_settings_KubeAPIServerOpenIDConnect_To_v1alpha1_KubeAPIServerOpenIDConnect(in *settings.KubeAPIServerOpenIDConnect, out *KubeAPIServerOpenIDConnect, s conversion.Scope) error

Convert_settings_KubeAPIServerOpenIDConnect_To_v1alpha1_KubeAPIServerOpenIDConnect is an autogenerated conversion function.

func Convert_settings_OpenIDConnectClientAuthentication_To_v1alpha1_OpenIDConnectClientAuthentication Uses

func Convert_settings_OpenIDConnectClientAuthentication_To_v1alpha1_OpenIDConnectClientAuthentication(in *settings.OpenIDConnectClientAuthentication, out *OpenIDConnectClientAuthentication, s conversion.Scope) error

Convert_settings_OpenIDConnectClientAuthentication_To_v1alpha1_OpenIDConnectClientAuthentication is an autogenerated conversion function.

func Convert_settings_OpenIDConnectPresetList_To_v1alpha1_OpenIDConnectPresetList Uses

func Convert_settings_OpenIDConnectPresetList_To_v1alpha1_OpenIDConnectPresetList(in *settings.OpenIDConnectPresetList, out *OpenIDConnectPresetList, s conversion.Scope) error

Convert_settings_OpenIDConnectPresetList_To_v1alpha1_OpenIDConnectPresetList is an autogenerated conversion function.

func Convert_settings_OpenIDConnectPresetSpec_To_v1alpha1_OpenIDConnectPresetSpec Uses

func Convert_settings_OpenIDConnectPresetSpec_To_v1alpha1_OpenIDConnectPresetSpec(in *settings.OpenIDConnectPresetSpec, out *OpenIDConnectPresetSpec, s conversion.Scope) error

Convert_settings_OpenIDConnectPresetSpec_To_v1alpha1_OpenIDConnectPresetSpec is an autogenerated conversion function.

func Convert_settings_OpenIDConnectPreset_To_v1alpha1_OpenIDConnectPreset Uses

func Convert_settings_OpenIDConnectPreset_To_v1alpha1_OpenIDConnectPreset(in *settings.OpenIDConnectPreset, out *OpenIDConnectPreset, s conversion.Scope) error

Convert_settings_OpenIDConnectPreset_To_v1alpha1_OpenIDConnectPreset is an autogenerated conversion function.

func Convert_v1alpha1_ClusterOpenIDConnectPresetList_To_settings_ClusterOpenIDConnectPresetList Uses

func Convert_v1alpha1_ClusterOpenIDConnectPresetList_To_settings_ClusterOpenIDConnectPresetList(in *ClusterOpenIDConnectPresetList, out *settings.ClusterOpenIDConnectPresetList, s conversion.Scope) error

Convert_v1alpha1_ClusterOpenIDConnectPresetList_To_settings_ClusterOpenIDConnectPresetList is an autogenerated conversion function.

func Convert_v1alpha1_ClusterOpenIDConnectPresetSpec_To_settings_ClusterOpenIDConnectPresetSpec Uses

func Convert_v1alpha1_ClusterOpenIDConnectPresetSpec_To_settings_ClusterOpenIDConnectPresetSpec(in *ClusterOpenIDConnectPresetSpec, out *settings.ClusterOpenIDConnectPresetSpec, s conversion.Scope) error

Convert_v1alpha1_ClusterOpenIDConnectPresetSpec_To_settings_ClusterOpenIDConnectPresetSpec is an autogenerated conversion function.

func Convert_v1alpha1_ClusterOpenIDConnectPreset_To_settings_ClusterOpenIDConnectPreset Uses

func Convert_v1alpha1_ClusterOpenIDConnectPreset_To_settings_ClusterOpenIDConnectPreset(in *ClusterOpenIDConnectPreset, out *settings.ClusterOpenIDConnectPreset, s conversion.Scope) error

Convert_v1alpha1_ClusterOpenIDConnectPreset_To_settings_ClusterOpenIDConnectPreset is an autogenerated conversion function.

func Convert_v1alpha1_KubeAPIServerOpenIDConnect_To_settings_KubeAPIServerOpenIDConnect Uses

func Convert_v1alpha1_KubeAPIServerOpenIDConnect_To_settings_KubeAPIServerOpenIDConnect(in *KubeAPIServerOpenIDConnect, out *settings.KubeAPIServerOpenIDConnect, s conversion.Scope) error

Convert_v1alpha1_KubeAPIServerOpenIDConnect_To_settings_KubeAPIServerOpenIDConnect is an autogenerated conversion function.

func Convert_v1alpha1_OpenIDConnectClientAuthentication_To_settings_OpenIDConnectClientAuthentication Uses

func Convert_v1alpha1_OpenIDConnectClientAuthentication_To_settings_OpenIDConnectClientAuthentication(in *OpenIDConnectClientAuthentication, out *settings.OpenIDConnectClientAuthentication, s conversion.Scope) error

Convert_v1alpha1_OpenIDConnectClientAuthentication_To_settings_OpenIDConnectClientAuthentication is an autogenerated conversion function.

func Convert_v1alpha1_OpenIDConnectPresetList_To_settings_OpenIDConnectPresetList Uses

func Convert_v1alpha1_OpenIDConnectPresetList_To_settings_OpenIDConnectPresetList(in *OpenIDConnectPresetList, out *settings.OpenIDConnectPresetList, s conversion.Scope) error

Convert_v1alpha1_OpenIDConnectPresetList_To_settings_OpenIDConnectPresetList is an autogenerated conversion function.

func Convert_v1alpha1_OpenIDConnectPresetSpec_To_settings_OpenIDConnectPresetSpec Uses

func Convert_v1alpha1_OpenIDConnectPresetSpec_To_settings_OpenIDConnectPresetSpec(in *OpenIDConnectPresetSpec, out *settings.OpenIDConnectPresetSpec, s conversion.Scope) error

Convert_v1alpha1_OpenIDConnectPresetSpec_To_settings_OpenIDConnectPresetSpec is an autogenerated conversion function.

func Convert_v1alpha1_OpenIDConnectPreset_To_settings_OpenIDConnectPreset Uses

func Convert_v1alpha1_OpenIDConnectPreset_To_settings_OpenIDConnectPreset(in *OpenIDConnectPreset, out *settings.OpenIDConnectPreset, s conversion.Scope) error

Convert_v1alpha1_OpenIDConnectPreset_To_settings_OpenIDConnectPreset is an autogenerated conversion function.

func Kind Uses

func Kind(kind string) schema.GroupKind

Kind takes an unqualified kind and returns a Group qualified GroupKind.

func RegisterConversions Uses

func RegisterConversions(s *runtime.Scheme) error

RegisterConversions adds conversion functions to the given scheme. Public to allow building arbitrary schemes.

func RegisterDefaults Uses

func RegisterDefaults(scheme *runtime.Scheme) error

RegisterDefaults adds defaulters functions to the given scheme. Public to allow building arbitrary schemes. All generated defaulters are covering - they call all nested defaulters.

func Resource Uses

func Resource(resource string) schema.GroupResource

Resource takes an unqualified resource and returns a Group qualified GroupResource.

func SetDefaults_ClusterOpenIDConnectPreset Uses

func SetDefaults_ClusterOpenIDConnectPreset(obj *ClusterOpenIDConnectPreset)

SetDefaults_ClusterOpenIDConnectPreset sets default values for ClusterOpenIDConnectPreset objects.

func SetDefaults_OpenIDConnectPreset Uses

func SetDefaults_OpenIDConnectPreset(obj *OpenIDConnectPreset)

SetDefaults_OpenIDConnectPreset sets default values for OpenIDConnectPreset objects.

func SetObjectDefaults_ClusterOpenIDConnectPreset Uses

func SetObjectDefaults_ClusterOpenIDConnectPreset(in *ClusterOpenIDConnectPreset)

func SetObjectDefaults_ClusterOpenIDConnectPresetList Uses

func SetObjectDefaults_ClusterOpenIDConnectPresetList(in *ClusterOpenIDConnectPresetList)

func SetObjectDefaults_OpenIDConnectPreset Uses

func SetObjectDefaults_OpenIDConnectPreset(in *OpenIDConnectPreset)

func SetObjectDefaults_OpenIDConnectPresetList Uses

func SetObjectDefaults_OpenIDConnectPresetList(in *OpenIDConnectPresetList)

type ClusterOpenIDConnectPreset Uses

type ClusterOpenIDConnectPreset struct {
    metav1.TypeMeta `json:",inline"`
    // Standard object metadata.
    metav1.ObjectMeta `json:"metadata,omitempty"`
    // Spec is the specification of this OpenIDConnect preset.
    Spec ClusterOpenIDConnectPresetSpec `json:"spec"`
}

ClusterOpenIDConnectPreset is a OpenID Connect configuration that is applied to a Shoot objects cluster-wide.

func (*ClusterOpenIDConnectPreset) DeepCopy Uses

func (in *ClusterOpenIDConnectPreset) DeepCopy() *ClusterOpenIDConnectPreset

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new ClusterOpenIDConnectPreset.

func (*ClusterOpenIDConnectPreset) DeepCopyInto Uses

func (in *ClusterOpenIDConnectPreset) DeepCopyInto(out *ClusterOpenIDConnectPreset)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

func (*ClusterOpenIDConnectPreset) DeepCopyObject Uses

func (in *ClusterOpenIDConnectPreset) DeepCopyObject() runtime.Object

DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.

type ClusterOpenIDConnectPresetList Uses

type ClusterOpenIDConnectPresetList struct {
    metav1.TypeMeta `json:",inline"`
    // Standard list object metadata.
    // +optional
    metav1.ListMeta `json:"metadata,omitempty"`
    // Items is the list of ClusterOpenIDConnectPresets.
    Items []ClusterOpenIDConnectPreset `json:"items"`
}

ClusterOpenIDConnectPresetList is a collection of ClusterOpenIDConnectPresets.

func (*ClusterOpenIDConnectPresetList) DeepCopy Uses

func (in *ClusterOpenIDConnectPresetList) DeepCopy() *ClusterOpenIDConnectPresetList

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new ClusterOpenIDConnectPresetList.

func (*ClusterOpenIDConnectPresetList) DeepCopyInto Uses

func (in *ClusterOpenIDConnectPresetList) DeepCopyInto(out *ClusterOpenIDConnectPresetList)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

func (*ClusterOpenIDConnectPresetList) DeepCopyObject Uses

func (in *ClusterOpenIDConnectPresetList) DeepCopyObject() runtime.Object

DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.

type ClusterOpenIDConnectPresetSpec Uses

type ClusterOpenIDConnectPresetSpec struct {
    OpenIDConnectPresetSpec `json:",inline"`

    // Project decides whether to apply the configuration if the
    // Shoot is in a specific Project mathching the label selector.
    // Use the selector only if the OIDC Preset is opt-in, because end
    // users may skip the admission by setting the labels.
    // Default to the empty LabelSelector, which matches everything.
    // +optional
    ProjectSelector *metav1.LabelSelector `json:"projectSelector,omitempty"`
}

ClusterOpenIDConnectPresetSpec contains the OpenIDConnect specification and project selector matching Shoots in Projects.

func (*ClusterOpenIDConnectPresetSpec) DeepCopy Uses

func (in *ClusterOpenIDConnectPresetSpec) DeepCopy() *ClusterOpenIDConnectPresetSpec

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new ClusterOpenIDConnectPresetSpec.

func (*ClusterOpenIDConnectPresetSpec) DeepCopyInto Uses

func (in *ClusterOpenIDConnectPresetSpec) DeepCopyInto(out *ClusterOpenIDConnectPresetSpec)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

type KubeAPIServerOpenIDConnect Uses

type KubeAPIServerOpenIDConnect struct {
    // If set, the OpenID server's certificate will be verified by one of the authorities in the oidc-ca-file, otherwise the host's root CA set will be used.
    // +optional
    CABundle *string `json:"caBundle,omitempty"`
    // The client ID for the OpenID Connect client.
    // Required.
    ClientID string `json:"clientID"`
    // If provided, the name of a custom OpenID Connect claim for specifying user groups. The claim value is expected to be a string or array of strings. This field is experimental, please see the authentication documentation for further details.
    // +optional
    GroupsClaim *string `json:"groupsClaim,omitempty"`
    // If provided, all groups will be prefixed with this value to prevent conflicts with other authentication strategies.
    // +optional
    GroupsPrefix *string `json:"groupsPrefix,omitempty"`
    // The URL of the OpenID issuer, only HTTPS scheme will be accepted. If set, it will be used to verify the OIDC JSON Web Token (JWT).
    // Required.
    IssuerURL string `json:"issuerURL"`
    // key=value pairs that describes a required claim in the ID Token. If set, the claim is verified to be present in the ID Token with a matching value.
    // Only applied when the Kubernetes version of the Shoot is >= 1.11
    // +optional
    RequiredClaims map[string]string `json:"requiredClaims,omitempty"`
    // List of allowed JOSE asymmetric signing algorithms. JWTs with a 'alg' header value not in this list will be rejected. Values are defined by RFC 7518 https://tools.ietf.org/html/rfc7518#section-3.1
    // Defaults to [RS256]
    // +optional
    SigningAlgs []string `json:"signingAlgs,omitempty"`
    // The OpenID claim to use as the user name. Note that claims other than the default ('sub') is not guaranteed to be unique and immutable. This field is experimental, please see the authentication documentation for further details.
    // Defaults to "sub".
    // +optional
    UsernameClaim *string `json:"usernameClaim,omitempty"`
    // If provided, all usernames will be prefixed with this value. If not provided, username claims other than 'email' are prefixed by the issuer URL to avoid clashes. To skip any prefixing, provide the value '-'.
    // +optional
    UsernamePrefix *string `json:"usernamePrefix,omitempty"`
}

KubeAPIServerOpenIDConnect contains configuration settings for the OIDC provider. Note: Descriptions were taken from the Kubernetes documentation.

func (*KubeAPIServerOpenIDConnect) DeepCopy Uses

func (in *KubeAPIServerOpenIDConnect) DeepCopy() *KubeAPIServerOpenIDConnect

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new KubeAPIServerOpenIDConnect.

func (*KubeAPIServerOpenIDConnect) DeepCopyInto Uses

func (in *KubeAPIServerOpenIDConnect) DeepCopyInto(out *KubeAPIServerOpenIDConnect)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

type OpenIDConnectClientAuthentication Uses

type OpenIDConnectClientAuthentication struct {
    // The client Secret for the OpenID Connect client.
    // +optional
    Secret *string `json:"secret,omitempty"`

    // Extra configuration added to kubeconfig's auth-provider.
    // Must not be any of idp-issuer-url, client-id, client-secret, idp-certificate-authority, idp-certificate-authority-data, id-token or refresh-token
    // +optional
    ExtraConfig map[string]string `json:"extraConfig,omitempty"`
}

OpenIDConnectClientAuthentication contains configuration for OIDC clients.

func (*OpenIDConnectClientAuthentication) DeepCopy Uses

func (in *OpenIDConnectClientAuthentication) DeepCopy() *OpenIDConnectClientAuthentication

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new OpenIDConnectClientAuthentication.

func (*OpenIDConnectClientAuthentication) DeepCopyInto Uses

func (in *OpenIDConnectClientAuthentication) DeepCopyInto(out *OpenIDConnectClientAuthentication)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

type OpenIDConnectPreset Uses

type OpenIDConnectPreset struct {
    metav1.TypeMeta `json:",inline"`
    // Standard object metadata.
    metav1.ObjectMeta `json:"metadata,omitempty"`
    // Spec is the specification of this OpenIDConnect preset.
    Spec OpenIDConnectPresetSpec `json:"spec"`
}

OpenIDConnectPreset is a OpenID Connect configuration that is applied to a Shoot in a namespace.

func (*OpenIDConnectPreset) DeepCopy Uses

func (in *OpenIDConnectPreset) DeepCopy() *OpenIDConnectPreset

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new OpenIDConnectPreset.

func (*OpenIDConnectPreset) DeepCopyInto Uses

func (in *OpenIDConnectPreset) DeepCopyInto(out *OpenIDConnectPreset)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

func (*OpenIDConnectPreset) DeepCopyObject Uses

func (in *OpenIDConnectPreset) DeepCopyObject() runtime.Object

DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.

type OpenIDConnectPresetList Uses

type OpenIDConnectPresetList struct {
    metav1.TypeMeta `json:",inline"`
    // Standard list object metadata.
    // +optional
    metav1.ListMeta `json:"metadata,omitempty"`
    // Items is the list of OpenIDConnectPresets.
    Items []OpenIDConnectPreset `json:"items"`
}

OpenIDConnectPresetList is a collection of OpenIDConnectPresets.

func (*OpenIDConnectPresetList) DeepCopy Uses

func (in *OpenIDConnectPresetList) DeepCopy() *OpenIDConnectPresetList

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new OpenIDConnectPresetList.

func (*OpenIDConnectPresetList) DeepCopyInto Uses

func (in *OpenIDConnectPresetList) DeepCopyInto(out *OpenIDConnectPresetList)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

func (*OpenIDConnectPresetList) DeepCopyObject Uses

func (in *OpenIDConnectPresetList) DeepCopyObject() runtime.Object

DeepCopyObject is an autogenerated deepcopy function, copying the receiver, creating a new runtime.Object.

type OpenIDConnectPresetSpec Uses

type OpenIDConnectPresetSpec struct {

    // Server contains the kube-apiserver's OpenID Connect configuration.
    // This configuration is not overwritting any existing OpenID Connect
    // configuration already set on the Shoot object.
    Server KubeAPIServerOpenIDConnect `json:"server"`

    // Client contains the configuration used for client OIDC authentication
    // of Shoot clusters.
    // This configuration is not overwritting any existing OpenID Connect
    // client authentication already set on the Shoot object.
    // +optional
    Client *OpenIDConnectClientAuthentication `json:"client,omitempty"`

    // ShootSelector decides whether to apply the configuration if the
    // Shoot has matching labels.
    // Use the selector only if the OIDC Preset is opt-in, because end
    // users may skip the admission by setting the labels.
    // Default to the empty LabelSelector, which matches everything.
    // +optional
    ShootSelector *metav1.LabelSelector `json:"shootSelector,omitempty"`

    // Weight associated with matching the corresponding preset,
    // in the range 1-100.
    // Required.
    Weight int32 `json:"weight"`
}

OpenIDConnectPresetSpec contains the Shoot selector for which a specific OpenID Connect configuration is applied.

func (*OpenIDConnectPresetSpec) DeepCopy Uses

func (in *OpenIDConnectPresetSpec) DeepCopy() *OpenIDConnectPresetSpec

DeepCopy is an autogenerated deepcopy function, copying the receiver, creating a new OpenIDConnectPresetSpec.

func (*OpenIDConnectPresetSpec) DeepCopyInto Uses

func (in *OpenIDConnectPresetSpec) DeepCopyInto(out *OpenIDConnectPresetSpec)

DeepCopyInto is an autogenerated deepcopy function, copying the receiver, writing into out. in must be non-nil.

Package v1alpha1 imports 6 packages (graph) and is imported by 9 packages. Updated 2020-02-20. Refresh now. Tools for package owners.