1. Allow controlling via a new permission (commit: bef5a17) (details)
Commit bef5a177b78eab51373a1d9888cdce6a81577251 by Clayton Coleman
Allow controlling via a new permission
In order to simplify control over custom routes (routes with a
non-default, make using a custom host field require the
"create" verb on "routes/custom-host". By default, admin and edit within
a project will get this permission. Users are also prohibited from
setting or altering certificates without this permission.
Integrators who want to prohibit this can drop the permission from the
role and only allow cluster administrators to fill that field.
(commit: bef5a17)
The file was modifiedpkg/cmd/server/bootstrappolicy/policy.go (diff)
The file was modifiedpkg/route/registry/route/etcd/etcd_test.go (diff)
The file was modifiedpkg/ingress/admission/ingress_admission_test.go (diff)
The file was modifiedpkg/route/registry/route/strategy_test.go (diff)
The file was modifiedpkg/cmd/server/origin/master.go (diff)
The file was modifiedpkg/route/registry/route/strategy.go (diff)
The file was modifiedpkg/route/registry/route/etcd/etcd.go (diff)
The file was modifiedtest/testdata/bootstrappolicy/bootstrap_cluster_roles.yaml (diff)
The file was modifiedpkg/route/api/validation/validation_test.go (diff)
The file was modifiedpkg/ingress/admission/ingress_admission.go (diff)
The file was modifiedpkg/route/api/validation/validation.go (diff)