v0.5.29 Armory Agent Service (2021-10-07)
- Resolved an issue that occurred when watching Kubernetes kinds. The Agent now checks for both
watchpermissions. Previously, the Agent only checked for
listpermission, which resulted in errors like the following not being filtered out:
Failed to watch *unstructured.Unstructured: unknown.
Kubernetes account permissions format
kubernetes: accounts: - name: my-k8s-account permissions: - READ: ['role1', 'role2'] - WRITE: ['role3', 'role4']
Make sure that there are no whitespaces in the role configurations under the
WRITE tags. The permissions are not applied if there are whitespaces in the configuration. This means that all users will have access to the defined account.
Affected versions: all versions
Was this page helpful?
Thank you for letting us know!
Sorry to hear that. Please tell us how we can improve.
Last modified December 10, 2021: (556c295d)