linkerd2/cli
Andrew Seigner ec5a0ca8d9
Authorization-aware control-plane components (#2349)
The control-plane components relied on a `--single-namespace` param,
passed from `linkerd install` into each individual component, to
determine which namespaces they were authorized to access, and whether
to support ServiceProfiles. This command-line flag was redundant given
the authorization rules encoded in the parent `linkerd install` output,
via [Cluster]Role[Binding]s.

Modify the control-plane components to query Kubernetes at startup to
determine which namespaces they are authorized to access, and whether
ServiceProfile support is available. This allows removal of the
`--single-namespace` flag on the components.

Also update `bin/test-cleanup` to cleanup the ServiceProfile CRD.

TODO:
- Remove `--single-namespace` flag on `linkerd install`, part of #2164

Signed-off-by: Andrew Seigner <siggy@buoyant.io>
2019-02-26 11:54:52 -08:00
..
cmd Authorization-aware control-plane components (#2349) 2019-02-26 11:54:52 -08:00
install CNI: Removed unnecessary tolerations; added created-by annotation. (#2222) 2019-02-07 13:36:00 -08:00
installsp Rename linkerd-proxy-api to linkerd-destination (#2281) 2019-02-15 15:11:04 -08:00
static If GOPATH env var not set, use build.Default.GOPATH (#2215) 2019-02-06 13:23:48 -05:00
Dockerfile-bin Authorization-aware control-plane components (#2349) 2019-02-26 11:54:52 -08:00
main.go Introduce go generate to embed static templates (#2189) 2019-02-04 18:09:47 -08:00