Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update Istio to 1.6.4 #2556

Merged
merged 1 commit into from
Jul 7, 2020
Merged

Conversation

mvladev
Copy link

@mvladev mvladev commented Jul 3, 2020

How to categorize this PR?

/area control-plane
/kind enhancement
/priority normal

What this PR does / why we need it:

Update Istio to 1.6.4.
Fix CVE-2020-8663 by setting overload.global_downstream_max_connections.

Listener and cluster buffer limit to 32KiB.

Which issue(s) this PR fixes:
Fixes #

Special notes for your reviewer:

Release note:

Update Istio to `1.6.4`. Fix CVE-2020-8663 by setting `overload.global_downstream_max_connections` on the istio-ingress gateway.

@mvladev mvladev requested a review from a team as a code owner July 3, 2020 14:36
@gardener-robot gardener-robot added area/control-plane Control plane related kind/enhancement Enhancement, improvement, extension priority/normal labels Jul 3, 2020
Fix CVE-2020-8663 by setting correct
`overload.global_downstream_max_connections`.

Set listener and cluster buffer limit to 32KiB.
Copy link
Contributor

@timuthy timuthy left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Looks good. Let me run a few tests locally, so we can merge it.

Copy link
Contributor

@timuthy timuthy left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

/lgtm

@timuthy timuthy merged commit cbc4fc3 into gardener:master Jul 7, 2020
@mvladev mvladev deleted the update-istio-to-1.6.4 branch July 8, 2020 07:16
@gardener-robot gardener-robot added priority/3 Priority (lower number equals higher priority) and removed priority/3 Priority (lower number equals higher priority) labels Mar 8, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/control-plane Control plane related kind/enhancement Enhancement, improvement, extension
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

5 participants