mt-broker-reconciler: Create EventPolicies for mt-broker #7982
Labels
help wanted
Denotes an issue that needs help from a contributor. Must meet "help wanted" guidelines.
triage/accepted
Issues which should be fixed (post-triage)
As the mt-broker implementation uses Channels under the hood, we need to make sure we have the correct EventPolicies in place to not block requests to the underlying channel. Therefor the mt-broker reconciler should behave as described:
authentication-oidc
feature flag is set toenabled
:.spec.ref
: pointing to the channel.spec.from
: sub from the mt-broker-ingress (system:serviceaccount:knative-eventing:mt-broker-ingress-oidc
as defined in ingress_handler.go#L324)authentication-oidc
feature flag is set todisabled
:authentication-oidc
wasenabled
(e.g. by filtering on EventPolicies which have an owner reference to an mt-broker)Prerequisites:
EventPolicy
type #7971.status.policies
#7976Additional context:
Additional hints for new contributors before starting with this issue:
Draft
status, the issue is subject to change and thus should not be started to be worked on/assign
). Please be aware that we might unassign you, if we don't see any progress from your side to give other contributors also a chance to work on this issue.The text was updated successfully, but these errors were encountered: