Skip to content

Commit

Permalink
Merge pull request #1418 from tkashem/rout-4-10
Browse files Browse the repository at this point in the history
[release-4.10] OCPBUGS-5345: routes/status resources can leak sensitive data
  • Loading branch information
openshift-merge-robot committed Jan 4, 2023
2 parents d012101 + 698ca35 commit 2a49f94
Show file tree
Hide file tree
Showing 8 changed files with 11 additions and 11 deletions.
4 changes: 2 additions & 2 deletions pkg/operator/apiserver/audit/bindata/bindata.go

Some generated files are not rendered by default. Learn more about how customized files appear on GitHub.

Expand Up @@ -2,7 +2,7 @@
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
- level: Metadata
resources:
Expand Down
Expand Up @@ -2,7 +2,7 @@
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
- level: Metadata
resources:
Expand Down
Expand Up @@ -32,7 +32,7 @@ rules:
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
- level: Metadata
resources:
Expand Down
Expand Up @@ -72,7 +72,7 @@ data:
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
- level: Metadata
resources:
Expand Down Expand Up @@ -121,7 +121,7 @@ data:
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
- level: Metadata
resources:
Expand Down
4 changes: 2 additions & 2 deletions pkg/operator/apiserver/audit/testdata/multipleCr.yaml
Expand Up @@ -32,7 +32,7 @@ rules:
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
userGroups:
- system:authenticated:oauth
Expand Down Expand Up @@ -64,7 +64,7 @@ rules:
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
userGroups:
- system:authenticated
Expand Down
2 changes: 1 addition & 1 deletion pkg/operator/apiserver/audit/testdata/oauth.yaml
Expand Up @@ -32,7 +32,7 @@ rules:
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
userGroups:
- system:authenticated:oauth
Expand Down
Expand Up @@ -32,7 +32,7 @@ rules:
- level: Metadata
resources:
- group: "route.openshift.io"
resources: ["routes"]
resources: ["routes", "routes/status"]
- resources: ["secrets"]
- level: Metadata
resources:
Expand Down

0 comments on commit 2a49f94

Please sign in to comment.