Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feature/skern 4961 least privilege access model nmd api and cps api (… #37

Conversation

kazuya-hpe
Copy link
Contributor

#36)

  • SKERN-4961: Updated for NMD Least Privilege Access Model

Updated opa policies for NMD Least Privilege Access Model

  • SKERN-4961: Updated for NMD access from NCN

  • SKERN-4998: Updated for CPS Least Privilege Access Model

Updated opa policies for CPS Least Privilege Access Model.

  • SKERN-4961: Fixed ckdump use opa xname Policy for ckdump

Updated ckdump to use .Values.opa.xnamePolicy.ckdump to check xname filtering

Co-authored-by: Kazuya Okubo kokubo@cray.com
(cherry picked from commit c8215b5)

Summary and Scope

Summarize what has changed. Explain why this PR is necessary. What is impacted? Is this a new feature, critical bug fix, etc?

Is this change backwards incompatible, backwards compatible, or a backwards compatible bugfix?

Issues and Related PRs

List and characterize relationship to Jira/Github issues and other pull requests. Be sure to list dependencies.

  • Resolves [issue id](issue link)
  • Change will also be needed in <insert branch name here>
  • Future work required by [issue id](issue link)
  • Documentation changes required in [issue id](issue link)
  • Merge with/before/after <insert PR URL here>

Testing

List the environments in which these changes were tested.

Tested on:

  • <development system>
  • Local development environment
  • Virtual Shasta

Test description:

How were the changes tested and success verified? If schema changes were part of this change, how were those handled in your upgrade/downgrade testing?

  • Were the install/upgrade-based validation checks/tests run (goss tests/install-validation doc)?
  • Were continuous integration tests run? If not, why?
  • Was upgrade tested? If not, why?
  • Was downgrade tested? If not, why?
  • Were new tests (or test issues/Jiras) created for this change?

Risks and Mitigations

Are there known issues with these changes? Any other special considerations?

Pull Request Checklist

  • Version number(s) incremented, if applicable
  • Copyrights updated
  • License file intact
  • Target branch correct
  • CHANGELOG.md updated
  • Testing is appropriate and complete, if applicable
  • HPC Product Announcement prepared, if applicable

…ray-HPE#36)

* SKERN-4961: Updated for NMD Least Privilege Access Model

Updated opa policies for NMD Least Privilege Access Model

* SKERN-4961: Updated for NMD access from NCN

* SKERN-4998: Updated for CPS Least Privilege Access Model

Updated opa policies for CPS Least Privilege Access Model.

* SKERN-4961: Fixed ckdump use opa xname Policy for ckdump

Updated ckdump to use .Values.opa.xnamePolicy.ckdump to check xname filtering

Co-authored-by: Kazuya Okubo <kokubo@cray.com>
(cherry picked from commit c8215b5)
@kazuya-hpe kazuya-hpe requested a review from a team as a code owner April 28, 2022 18:26
@kburns-hpe kburns-hpe merged commit ee7de78 into Cray-HPE:release/1.2 Apr 28, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants