Skip to content
Snippets Groups Projects
Commit 552b2f06 authored by jwfang's avatar jwfang
Browse files

change authorization_modes default value

parent 0b3badf3
No related branches found
No related tags found
No related merge requests found
......@@ -62,7 +62,7 @@ before_script:
KUBELET_DEPLOYMENT: "docker"
VAULT_DEPLOYMENT: "docker"
WEAVE_CPU_LIMIT: "100m"
AUTHORIZATION_MODES: "{ 'authorization_modes': ['AlwaysAllow'] }"
AUTHORIZATION_MODES: "{ 'authorization_modes': [] }"
MAGIC: "ci check this"
.gce: &gce
......
......@@ -69,7 +69,7 @@ following default cluster paramters:
Kubernetes
* *authorization_modes* - A list of [authorization mode](
https://kubernetes.io/docs/admin/authorization/#using-flags-for-your-authorization-module)
that the cluster should be configured for. Defaults to `['AlwaysAllow']`.
that the cluster should be configured for. Defaults to `[]` (i.e. no authorization).
Note: Only `AlwaysAllow`, `AlwaysDeny` and `RBAC` are tested.
Note, if cloud providers have any use of the ``10.233.0.0/16``, like instances'
......
......@@ -118,5 +118,5 @@ enable_network_policy: false
## List of authorization modes that must be configured for
## the k8s cluster. Only 'AlwaysAllow','AlwaysDeny', and
## 'RBAC' modes are tested.
authorization_modes: ['AlwaysAllow']
authorization_modes: []
rbac_enabled: "{{ 'RBAC' in authorization_modes }}"
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment