Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

restrict sub domain of rbac users? #2418

Closed
chino opened this issue Apr 25, 2018 · 3 comments
Closed

restrict sub domain of rbac users? #2418

chino opened this issue Apr 25, 2018 · 3 comments

Comments

@chino
Copy link

chino commented Apr 25, 2018

I'm wondering if it could be possible to restrict what vhost entries users are allowed to publish to so that they don't collide with one another in a multi-tenant cluster.

For example imagine mapping services to a certain convention such as,<service>.<namespace>.ingress.example.com either automatically or by simply rejecting the user from breaking that convention based on what namespace the ingress is created in.

@kfox1111
Copy link

That would be useful to us here too.

@aledbf
Copy link
Member

aledbf commented Apr 25, 2018

Closing. This is not something we can implement in the controller itself. Please check another similar request kubernetes/kubernetes#30151

@aledbf aledbf closed this as completed Apr 25, 2018
@aledbf
Copy link
Member

aledbf commented Apr 25, 2018

@chino please check this comment for a technical reason why this is not possible kubernetes/community#1486 (comment)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants