package secret
import "k8s.io/kubernetes/pkg/kubelet/secret"
Index ¶
Types ¶
type Manager ¶
type Manager interface {
// Get secret by secret namespace and name.
GetSecret(namespace, name string) (*v1.Secret, error)
// RegisterPod registers all secrets from a given pod.
RegisterPod(pod *v1.Pod)
// UnregisterPod unregisters secrets from a given pod that are not
// used by any other registered pod.
UnregisterPod(pod *v1.Pod)
}
func NewCachingSecretManager ¶
func NewCachingSecretManager(kubeClient clientset.Interface, getTTL manager.GetObjectTTLFunc) Manager
NewCachingSecretManager creates a manager that keeps a cache of all secrets necessary for registered pods. It implements the following logic:
- whenever a pod is created or updated, the cached versions of all secrets are invalidated
- every GetObject() call tries to fetch the value from local cache; if it is not there, invalidated or too old, we fetch it from apiserver and refresh the value in cache; otherwise it is just fetched from cache
func NewFakeManager ¶
func NewFakeManager() Manager
func NewSimpleSecretManager ¶
func NewWatchingSecretManager ¶
NewWatchingSecretManager creates a manager that keeps a cache of all secrets necessary for registered pods. It implements the following logic:
- whenever a pod is created or updated, we start individual watches for all referenced objects that aren't referenced from other registered pods
- every GetObject() returns a value from local cache propagated via watches
Source Files ¶
fake_manager.go secret_manager.go
- Version
- v1.15.10-beta.0
- Published
- Jan 18, 2020
- Platform
- js/wasm
- Imports
- 12 packages
- Last checked
- 7 minutes ago –
Tools for package owners.