Skip to content

Commit dd2d0e9

Browse files
authored
Merge pull request #10067 from zalando-incubator/dev-to-alpha
dev to alpha
2 parents 8a00b67 + 04a670f commit dd2d0e9

File tree

3 files changed

+15
-1
lines changed

3 files changed

+15
-1
lines changed

cluster/config-defaults.yaml

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -395,6 +395,7 @@ skipper_ingress_routegroup_crd_require_hosts: "true"
395395
skipper_open_policy_agent_enabled: "false"
396396
skipper_open_policy_agent_styra_token: ""
397397
skipper_open_policy_agent_data_preprocessing_optimization_enabled: "true"
398+
skipper_open_policy_agent_preloading_enabled: "false"
398399

399400
# Default timeout value in seconds for outgoing http calls from Open Policy Agent in a skipper filter
400401
skipper_open_policy_agent_styra_response_header_timeout: "2"
@@ -404,6 +405,11 @@ skipper_open_policy_agent_decision_logs_buffer_type_event_enable: "false"
404405
# Decision logging sets the maximum number of decision log events that can be buffered before being dropped
405406
skipper_open_policy_agent_decision_logs_buffer_type_event_limit: "10000"
406407

408+
# Open Policy Agent JWT cache configuration
409+
skipper_open_policy_agent_jwt_cache_enable: "false"
410+
# Sets default value for maximum number of entries in the Open Policy Agent JWT cache
411+
skipper_open_policy_agent_jwt_cache_max_num_entries: "1000"
412+
407413
#
408414
# FabricGateway controller config
409415
#

cluster/manifests/skipper/configmap-open-policy-agent.yaml

Lines changed: 7 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -37,6 +37,13 @@ data:
3737
buffer_type: "event"
3838
buffer_size_limit_events: {{ .Cluster.ConfigItems.skipper_open_policy_agent_decision_logs_buffer_type_event_limit }}
3939
{{ end }}
40+
{{ if eq .Cluster.ConfigItems.skipper_open_policy_agent_jwt_cache_enable "true" }}
41+
caching:
42+
inter_query_builtin_value_cache:
43+
named:
44+
io_jwt:
45+
max_num_entries: {{ .Cluster.ConfigItems.skipper_open_policy_agent_jwt_cache_max_num_entries }}
46+
{{ end }}
4047
envoymetadata.json: |-
4148
{
4249
"filter_metadata": {

cluster/manifests/skipper/deployment.yaml

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
{{/* image-updater-bot detects *image variables so use name with suffix to disable it for the main image */}}
22

3-
{{ $main_image_updated_manually := "container-registry.zalando.net/teapot/skipper-internal:v0.22.127-1233" }}
3+
{{ $main_image_updated_manually := "container-registry.zalando.net/teapot/skipper-internal:v0.22.141-1245" }}
44
{{ $canary_image := "container-registry.zalando.net/teapot/skipper-internal:v0.22.141-1245" }}
55

66
{{/* Optional canary arguments separated by "[cf724afc]" to allow whitespaces, e.g. "-foo=has a whitespace[cf724afc]-baz=qux" */}}
@@ -318,6 +318,7 @@ spec:
318318
- "-open-policy-agent-config-template=/etc/skipper/open-policy-agent/opaconfig.yaml"
319319
- "-open-policy-agent-envoy-metadata=/etc/skipper/open-policy-agent/envoymetadata.json"
320320
- "-enable-open-policy-agent-data-preprocessing-optimization={{ .Cluster.ConfigItems.skipper_open_policy_agent_data_preprocessing_optimization_enabled }}"
321+
- "-enable-open-policy-agent-preloading={{ .Cluster.ConfigItems.skipper_open_policy_agent_preloading_enabled }}"
321322
{{ end }}
322323
{{ if or (eq .Cluster.ConfigItems.nlb_switch "pre") (eq .Cluster.ConfigItems.nlb_switch "exec") }}
323324
- "-forwarded-headers=X-Forwarded-For,X-Forwarded-Proto=https,X-Forwarded-Port=443"

0 commit comments

Comments
 (0)