Affected by GO-2024-2653
and 8 other vulnerabilities
GO-2024-2653 : HTTP policy bypass in github.com/cilium/cilium
GO-2024-2656 : Unencrypted traffic between nodes with IPsec in github.com/cilium/cilium
GO-2024-2657 : Unencrypted traffic between nodes with WireGuard in github.com/cilium/cilium
GO-2024-2666 : Insecure IPsec transparent encryption in github.com/cilium/cilium
GO-2024-2922 : Cilium leaks sensitive information in cilium-bugtool in github.com/cilium/cilium
GO-2024-3071 : Gateway API route matching order contradicts specification in github.com/cilium/cilium
GO-2024-3072 : Policy bypass for Host Firewall policy due to race condition in Cilium agent in github.com/cilium/cilium
GO-2024-3074 : Cilium leaks information via incorrect ReferenceGrant update logic in Gateway API in github.com/cilium/cilium
GO-2024-3208 : Cilium's CIDR deny policies may not take effect when a more narrow CIDR allow is present in github.com/cilium/cilium
Discover Packages
github.com/cilium/cilium
operator
auth
package
Version:
v1.15.0
Opens a new window with list of versions in this module.
Published: Jan 31, 2024
License: Apache-2.0
Opens a new window with license information.
Imports: 9
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Documentation
Documentation
¶
Package auth provides routines to manage mutual authentication identities in Cilium.
If enabled, the operator will watch for CiliumIdentity resources and provision
corresponding external identities such as SPIFFE identities.
type Config struct {
Enabled bool `mapstructure:"mesh-auth-mutual-enabled"`
}
Config contains the configuration for the identity-gc.
Flags implements cell.Flagger interface.
type IdentityWatcher struct {
}
IdentityWatcher represents the Cilium identities watcher.
It watches for Cilium identities and upserts or deletes them in Spire.
Source Files
¶
Directories
¶
Click to show internal directories.
Click to hide internal directories.