Dan Upton
989b22425c
Move ACLResolveResult into acl/resolver package ( #13467 )
...
Having this type live in the agent/consul package makes it difficult to
put anything that relies on token resolution (e.g. the new gRPC services)
in separate packages without introducing import cycles.
For example, if package foo imports agent/consul for the ACLResolveResult
type it means that agent/consul cannot import foo to register its service.
We've previously worked around this by wrapping the ACLResolver to
"downgrade" its return type to an acl.Authorizer - aside from the
added complexity, this also loses the resolved identity information.
In the future, we may want to move the whole ACLResolver into the
acl/resolver package. For now, putting the result type there at least,
fixes the immediate import cycle issues.
2022-06-17 10:24:43 +01:00
Kyle Havlovitz
6bcd065270
Add changelog note
2022-06-16 18:26:25 -07:00
Kyle Havlovitz
7c5ef2aa3f
command: Add TLS support for envoy prometheus endpoint
2022-06-16 17:53:05 -07:00
sarahalsmiller
1c610cb01d
Update upgrade-specific-versions.mdx
2022-06-16 15:36:27 -05:00
Chris S. Kim
42f7d6a403
Update docs with peer query parameter ( #13462 )
...
Co-authored-by: Tu Nguyen <im2nguyen@users.noreply.github.com>
2022-06-16 16:25:44 -04:00
DanStough
37694eefb5
feat: tgtwy xDS generation for destinations
...
Signed-off-by: Dhia Ayachi <dhia@hashicorp.com>
2022-06-16 16:17:49 -04:00
alex
d73adfef81
peering: block Intention.Apply ops ( #13451 )
...
Signed-off-by: acpana <8968914+acpana@users.noreply.github.com>
2022-06-16 12:07:28 -07:00
alex
ba1f235d70
peering, state: account for peer intentions ( #13443 )
...
Signed-off-by: acpana <8968914+acpana@users.noreply.github.com>
2022-06-16 10:27:31 -07:00
Luke Kysow
d8a2825361
Add type info to options ( #13477 )
2022-06-16 10:09:39 -07:00
Luke Kysow
a7b01600b6
Update index.mdx ( #13476 )
2022-06-16 09:59:49 -07:00
Sam Salisbury
3712143786
Merge pull request #13469 from hashicorp/correct-redhat-tags
...
Correct redhat tags
2022-06-16 17:13:37 +01:00
Chris S. Kim
4b0ffb227a
Update docs with Source.Peer field ( #13463 )
2022-06-16 09:30:05 -04:00
Eric Haberkorn
fefb936456
Lambda documentation tweaks ( #13459 )
...
Lambda documentation tweaks
2022-06-16 09:00:21 -04:00
Sam Salisbury
cf603d51ff
correct redgat_tag ospid
2022-06-16 13:28:36 +01:00
Sam Salisbury
1f76000690
strip trailing whitespace
2022-06-16 13:27:37 +01:00
John Cowen
91bdeef373
ui: Fix intl keys in order to render correct messages for empty states ( #13409 )
...
* ui: Fix intl keys in order to render correct messages for empty states
* Add a debug only debug log to warn about missing keys
2022-06-16 12:07:04 +01:00
Tu Nguyen
6e0a42b150
Fix broken link in lambda docs
2022-06-15 21:23:56 -07:00
Jeff Boruszak
93a50d5b12
Additional consistency edits
2022-06-15 16:25:57 -05:00
Jeff Boruszak
8bd57c75fe
Apply suggestions from code review
...
Co-authored-by: Nitya Dhanushkodi <nitya@hashicorp.com>
Co-authored-by: Blake Covarrubias <blake@covarrubi.as>
2022-06-15 16:15:03 -05:00
Freddy
082bc3632b
Add peering endpoint API docs ( #13454 )
2022-06-15 14:18:14 -06:00
R.B. Boyer
9c5d818546
xds: begin refactor to always pass test snapshots through all xDS types ( #13461 )
2022-06-15 14:58:28 -05:00
Nathan Coleman
521e040356
Add note about expected status for invalid CertificateRef
2022-06-15 15:46:46 -04:00
R.B. Boyer
93611819e2
xds: mesh gateways now have their own leaf certificate when involved in a peering ( #13460 )
...
This is only configured in xDS when a service with an L7 protocol is
exported.
They also load any relevant trust bundles for the peered services to
eventually use for L7 SPIFFE validation during mTLS termination.
2022-06-15 14:36:18 -05:00
Jeff Boruszak
3b85a9dda2
Update website/data/docs-nav-data.json
...
Co-authored-by: trujillo-adam <47586768+trujillo-adam@users.noreply.github.com>
2022-06-15 14:26:54 -05:00
Jeff Boruszak
627173110b
Update website/content/docs/connect/cluster-peering/index.mdx
2022-06-15 14:26:40 -05:00
Jeff Boruszak
1a6eea4fc3
Apply suggestions from code review
...
Co-authored-by: trujillo-adam <47586768+trujillo-adam@users.noreply.github.com>
2022-06-15 14:23:18 -05:00
boruszak
b00262381b
Limitations -> Constraints
2022-06-15 14:21:58 -05:00
Jeff Boruszak
08716c5279
Apply suggestions from code review
...
Co-authored-by: Freddy <freddygv@users.noreply.github.com>
2022-06-15 14:19:03 -05:00
boruszak
37acf49357
typo fix
2022-06-15 14:08:34 -05:00
boruszak
80f779a528
Switch fronend-service and backend-service
2022-06-15 14:07:56 -05:00
Jeff Boruszak
e8d34bab68
Apply suggestions from code review
2022-06-15 14:04:52 -05:00
Jeff Boruszak
c23ab4259e
Apply suggestions from code review
...
Co-authored-by: Blake Covarrubias <blake@covarrubi.as>
Co-authored-by: trujillo-adam <47586768+trujillo-adam@users.noreply.github.com>
2022-06-15 14:01:34 -05:00
Jeff Boruszak
199e9a900a
Apply suggestions from code review
...
Co-authored-by: trujillo-adam <47586768+trujillo-adam@users.noreply.github.com>
Co-authored-by: Blake Covarrubias <blake@covarrubi.as>
2022-06-15 13:56:55 -05:00
boruszak
1c7d51f9d9
peering_token.json addition
2022-06-15 13:55:53 -05:00
Daniel Upton
8d39e1fd7e
docs: instructions for interacting with the private gRPC server locally
2022-06-15 18:26:58 +01:00
Riddhi Shah
414bb7e34e
[OSS] Support merge-central-config option in node services list API ( #13450 )
...
Adds the merge-central-config query param option to the /catalog/node-services/:node-name API,
to get a service definition in the response that is merged with central defaults (proxy-defaults/service-defaults).
Updated the consul connect envoy command to use this option when
retrieving the proxy service details so as to render the bootstrap configuration correctly.
2022-06-15 08:30:31 -07:00
Eric Haberkorn
eb9c341f5e
Lambda Beta Documentation ( #13426 )
...
* Document the `enable_serverless_plugin` Agent Configuration Option (#13372 )
* Initial AWS Lambda documentation (#13245 )
2022-06-15 11:14:16 -04:00
cskh
340a194894
Load test, upgrade packer version, fix k6s installation ( #13382 )
...
- fix sg: need remote access to test server
- Give the load generator a name
- Update loadtest hcl filename in readme
- Add terraform init
- Disable access to the server machine by default
2022-06-15 09:29:38 -04:00
Jared Kirschner
bd68f0f6f6
Merge branch 'main' into jkirschner-hashicorp-patch-3
2022-06-15 00:06:40 -04:00
Jared Kirschner
a01acbae1b
Merge pull request #13353 from hashicorp/jkirschner-hashicorp-patch-1
...
docs: show HCP Consul supports CTS enterprise
2022-06-15 00:05:30 -04:00
Jeff Boruszak
caa2dc5bfb
Apply suggestions from code review
...
Co-authored-by: Freddy <freddygv@users.noreply.github.com>
2022-06-14 17:34:21 -05:00
Evan Culver
ca7acd2970
connect: Use Envoy 1.22.2 instead of 1.22.1 ( #13444 )
2022-06-14 15:29:41 -07:00
Jeff Boruszak
687c16b9e0
Update website/content/docs/connect/cluster-peering/create-manage-peering.mdx
...
Co-authored-by: Freddy <freddygv@users.noreply.github.com>
2022-06-14 17:29:30 -05:00
Jeff Boruszak
9a8235993a
Update website/content/docs/connect/cluster-peering/create-manage-peering.mdx
2022-06-14 17:28:06 -05:00
Jeff Boruszak
fe0a5491d2
Update website/content/docs/connect/cluster-peering/create-manage-peering.mdx
...
Co-authored-by: Tu Nguyen <im2nguyen@users.noreply.github.com>
2022-06-14 17:27:03 -05:00
Jeff Boruszak
24409fa40b
Update website/content/docs/connect/cluster-peering/index.mdx
...
Co-authored-by: Tu Nguyen <im2nguyen@users.noreply.github.com>
2022-06-14 17:23:07 -05:00
boruszak
e22171cdbf
Cluster Peering on Kubernetes page creation
2022-06-14 17:15:14 -05:00
boruszak
72b91c3481
Nav.json updates
2022-06-14 17:14:34 -05:00
boruszak
703ce412c7
Removing k8s updates on this branch
2022-06-14 17:12:45 -05:00
boruszak
b9a4ff73ce
Updated nav.json
2022-06-14 17:01:48 -05:00