From 92b4e3ca6096070021bf7e42b27a957890e91c67 Mon Sep 17 00:00:00 2001 From: Mike Danese Date: Mon, 13 Aug 2018 12:13:39 -0700 Subject: [PATCH] promote TokenRequest and projection to beta in 1.12 --- pkg/features/kube_features.go | 8 ++++---- .../rbac/bootstrappolicy/testdata/cluster-roles.yaml | 6 ++++++ 2 files changed, 10 insertions(+), 4 deletions(-) diff --git a/pkg/features/kube_features.go b/pkg/features/kube_features.go index 45cfe6fda49..bfc743c2fb9 100644 --- a/pkg/features/kube_features.go +++ b/pkg/features/kube_features.go @@ -255,13 +255,13 @@ const ( ScheduleDaemonSetPods utilfeature.Feature = "ScheduleDaemonSetPods" // owner: @mikedanese - // alpha: v1.10 + // beta: v1.12 // // Implement TokenRequest endpoint on service account resources. TokenRequest utilfeature.Feature = "TokenRequest" // owner: @mikedanese - // alpha: v1.11 + // beta: v1.12 // // Enable ServiceAccountTokenVolumeProjection support in ProjectedVolumes. TokenRequestProjection utilfeature.Feature = "TokenRequestProjection" @@ -389,8 +389,8 @@ var defaultKubernetesFeatureGates = map[utilfeature.Feature]utilfeature.FeatureS SupportPodPidsLimit: {Default: false, PreRelease: utilfeature.Alpha}, HyperVContainer: {Default: false, PreRelease: utilfeature.Alpha}, ScheduleDaemonSetPods: {Default: false, PreRelease: utilfeature.Alpha}, - TokenRequest: {Default: false, PreRelease: utilfeature.Alpha}, - TokenRequestProjection: {Default: false, PreRelease: utilfeature.Alpha}, + TokenRequest: {Default: true, PreRelease: utilfeature.Beta}, + TokenRequestProjection: {Default: true, PreRelease: utilfeature.Beta}, CRIContainerLogRotation: {Default: true, PreRelease: utilfeature.Beta}, GCERegionalPersistentDisk: {Default: true, PreRelease: utilfeature.Beta}, RunAsGroup: {Default: false, PreRelease: utilfeature.Alpha}, diff --git a/plugin/pkg/auth/authorizer/rbac/bootstrappolicy/testdata/cluster-roles.yaml b/plugin/pkg/auth/authorizer/rbac/bootstrappolicy/testdata/cluster-roles.yaml index 4f3d010fe44..053b5845baa 100644 --- a/plugin/pkg/auth/authorizer/rbac/bootstrappolicy/testdata/cluster-roles.yaml +++ b/plugin/pkg/auth/authorizer/rbac/bootstrappolicy/testdata/cluster-roles.yaml @@ -950,6 +950,12 @@ items: - get - patch - update + - apiGroups: + - "" + resources: + - serviceaccounts/token + verbs: + - create - apiGroups: - storage.k8s.io resources: