New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix: Empty resource whitelist allowed all resources (#5540) #5551
fix: Empty resource whitelist allowed all resources (#5540) #5551
Conversation
8d8b1d7
to
9e0b346
Compare
9e0b346
to
b68f4fe
Compare
This requires setting the default in quite a few places around the code base as well as adapting a couple of tests Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com>
b68f4fe
to
3e98e04
Compare
The CodeQL fail seems to be unrelated to my change, so here goes nothing. |
Thanks for your PR, @jangraefen. Before reviewing & merging this one, we should make sure that it's the correct intended behavior as discussed in #5540.
FWIW, I submitted two PRs (#5563, #5564) to fix the CodeQL complaints. |
Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com>
2f7f994
to
7fe0217
Compare
Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com>
7fe0217
to
eadcfe5
Compare
Codecov Report
@@ Coverage Diff @@
## master #5551 +/- ##
==========================================
+ Coverage 40.90% 40.92% +0.02%
==========================================
Files 144 144
Lines 19214 19214
==========================================
+ Hits 7860 7864 +4
+ Misses 10258 10255 -3
+ Partials 1096 1095 -1
Continue to review full report at Codecov.
|
Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM, thank you for this fix, @jangraefen!
@alexmt Shall we cherry-pick this into 1.8 (and possibly 1.7) as well? |
agree, cherry-picking |
* fix: Empty resource whitelist allowed all resources This requires setting the default in quite a few places around the code base as well as adapting a couple of tests Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com> * Improve default behavior and not require explicitly set whitelist Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com>
* fix: Empty resource whitelist allowed all resources This requires setting the default in quite a few places around the code base as well as adapting a couple of tests Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com> * Improve default behavior and not require explicitly set whitelist Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com>
…rgoproj#5551) * fix: Empty resource whitelist allowed all resources This requires setting the default in quite a few places around the code base as well as adapting a couple of tests Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com> * Improve default behavior and not require explicitly set whitelist Signed-off-by: Jan Graefen <223234+jangraefen@users.noreply.github.com>
Fixes #5540
Note on DCO:
If the DCO action in the integration test fails, one or more of your commits are not signed off. Please click on the Details link next to the DCO action for instructions on how to resolve this.
Checklist: