bigbang icon indicating copy to clipboard operation
bigbang copied to clipboard

Support istio egressGateways directly in umbrella

Open p1-repo-sync-bot[bot] opened this issue 1 year ago • 431 comments

Bug

Description

specifying an egressGatway similar to ingressGateways leads to a schema validation error because the logic to support that in the umbrella chart is not present. Ensure we can supply istio.egressGateways via the umbrella chart and ensure it makes it through to the istio chart.

p1-repo-sync-bot[bot] avatar Mar 04 '24 17:03 p1-repo-sync-bot[bot]

charden commented:

This change will impact all/most of the packages. We should consider creating an epic for it.

ghost avatar Mar 21 '24 14:03 ghost

charden commented:

A couple of thoughts... We recently made changes to egress for istio hardened services by adding sidecars that restrict cluster traffic to REGISTRY_ONLY and custom serviceEntries to allow access to external services.

We'll need to go through each package and add DestinationRules to define TLS and VirtualServices to route traffic to the correct gateway for those known external services.

Will TLS originate from the application or does the egress gateway need to perform TLS origination?

  • We'll need to setup certs for the gateway

Do we want to setup networkpolicies to prevent bypassing the gateway?

I assume this is all voluntary and can be disabled in the overrides.

ghost avatar Mar 22 '24 17:03 ghost

andrewshoell commented:

this might relate to https://repo1.dso.mil/groups/big-bang/-/epics/187

ghost avatar Mar 25 '24 14:03 ghost

chris.oconnell commented:

MR started here by Marcus Montgomery. Not currently being worked

ghost avatar Apr 23 '24 17:04 ghost

bb8-bot commented:

@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost

bb8-bot commented:

Github Comment Mirrored Here


Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
Github Comment Mirrored Here
@benjamin.hester.6 this issue has been inactive for 30 days and is being labelled as ~stale. If this issue is still required please take action by removing the ~stale label and commenting with an update, status, or justification. If this issue is not required please close it or label it as ~delete-me. If no action is taken this issue will be auto closed in 60 days.

ghost avatar Jun 30 '24 09:06 ghost