openstack-helm-infra/helm-toolkit/templates
Cliff Parsons 598faeb8db Make access control annotations more generic.
This patch takes into consideration that there could be multiple
options for mandatory access control in a cluster. The previously
defined Helm toolkit function for generating a MAC annotation can
now be specified generically, like in this example:

  mandatory_access_control:
    type: apparmor
    glance-api:
      init: runtime/default
      glance-api: runtime/default
      glance-perms: runtime/default
      ceph-keyring-placement: runtime/default
    glance-registry:
      init: runtime/default
      glance-registry: runtime/default

If no MAC is required, then the "type" can be set to null,
and no annotation would be generated. The only MAC type supported
at the moment is "apparmor".

Change-Id: I6b45533d73af82e8fff353b0ed9f29f0891f24f1
2018-11-28 08:54:15 +00:00
..
endpoints Revert "Update OSH Author copyrights to OSF" 2018-08-28 17:25:54 +00:00
manifests Add network policy toolkit function 2018-10-15 13:50:50 +00:00
scripts Revert "Fix rally deployment config to rally 1.2.0" 2018-11-07 19:31:49 +00:00
snippets Make access control annotations more generic. 2018-11-28 08:54:15 +00:00
tls TLS: Ensure CN is included in list of DNS alt names 2018-09-12 20:29:25 +00:00
utils Truncate long host names for overrides 2018-11-26 17:04:58 -08:00