-
Story
-
Resolution: Unresolved
-
Undefined
-
None
-
None
-
False
-
None
-
False
-
Release Note Not Required
-
-
-
Auth Feature Team - Sprint 265, Auth Feature Team - Sprint 266
What
Add a test that RBACs unauthorized group to have access to images.
Why
- We broke this feature, with changes to RBAC and we want to protect this feature.
Here’s the current situation:
- We’re unable to find a stable and accessible OAuth-proxy image, which is causing a bug that we haven’t fully resolved yet. Krzys made a PR to address this , but it’s not a complete solution since the image path doesn’t seem consistently available.
- Krzys tried referencing the OAuth-proxy image from the OpenShift openshift namespace, but it didn’t work reliably.
- There’s an imagestream for OAuth-proxy in the openshift namespace, which we might be able to reference in tests, but Krzys not certain of the correct Docker URL format for it. Also, it’s possible that there are permission issues, which could be why the image isn’t accessible when referenced this way.
- relates to
-
OCPBUGS-33453 Need auth to access public images
- Closed
- links to