Refactor earlier mutator implementations to use wildcard methodology - Istio
Package Merge Request
Package Changes
Omits the serviceAccounts
list in Istio automountServiceAccountToken hardening, allowing the mutator to target all SAs via wildcard. This is more robust and better accommodates upstream changes over time.
At the moment, however, this is a simple refactor and there is no change to the original hardening.
Package MR
(Link to Package MR here)
For Issue
Closes https://repo1.dso.mil/big-bang/bigbang/-/issues/1899
Upgrade Notices
N/A
Merge request reports
Activity
added istio kindenhancement priority7 statusdoing labels
assigned to @charden
removed statusdoing label
added statusreview label
requested review from @chris.oconnell, @ryan.thompson.44, @ryan.j.garcia, and @michaelmartin
@andrewshoell : You have been tagged in this merge request for the purpose of conducting secondary review.
mentioned in commit 4f12886d