kubernetesk8s.io/kubernetes/test/e2e/framework/auth Index | Files

package auth

import "k8s.io/kubernetes/test/e2e/framework/auth"

Index

Functions

func BindClusterRole

func BindClusterRole(c bindingsGetter, clusterRole, ns string, subjects ...rbacv1.Subject) error

BindClusterRole binds the cluster role at the cluster scope. If RBAC is not enabled, nil is returned with no action.

func BindClusterRoleInNamespace

func BindClusterRoleInNamespace(c bindingsGetter, clusterRole, ns string, subjects ...rbacv1.Subject) error

BindClusterRoleInNamespace binds the cluster role at the namespace scope. If RBAC is not enabled, nil is returned with no action.

func BindRoleInNamespace

func BindRoleInNamespace(c bindingsGetter, role, ns string, subjects ...rbacv1.Subject) error

BindRoleInNamespace binds the role at the namespace scope. If RBAC is not enabled, nil is returned with no action.

func IsRBACEnabled

func IsRBACEnabled(crGetter v1rbac.ClusterRolesGetter) bool

IsRBACEnabled returns true if RBAC is enabled. Otherwise false.

func WaitForAuthorizationUpdate

func WaitForAuthorizationUpdate(c v1authorization.SubjectAccessReviewsGetter, user, namespace, verb string, resource schema.GroupResource, allowed bool) error

WaitForAuthorizationUpdate checks if the given user can perform the named verb and action. If policyCachePollTimeout is reached without the expected condition matching, an error is returned

func WaitForNamedAuthorizationUpdate

func WaitForNamedAuthorizationUpdate(c v1authorization.SubjectAccessReviewsGetter, user, namespace, verb, resourceName string, resource schema.GroupResource, allowed bool) error

WaitForNamedAuthorizationUpdate checks if the given user can perform the named verb and action on the named resource. If policyCachePollTimeout is reached without the expected condition matching, an error is returned

Source Files

helpers.go

Version
v1.16.13
Published
Jul 15, 2020
Platform
js/wasm
Imports
12 packages
Last checked
7 minutes ago

Tools for package owners.