kubernetes-sigs/aws-load-balancer-controller

OIDC with IngressGroup

Aberta

#3.858 aberto em 23 de set. de 2024

 (7 comentários) (1 reação) (3 responsáveis)Go (1.644 forks)auto 404
good first issuekind/feature

Métricas do repositório

Stars
 (4.317 estrelas)
Métricas de merge de PR
 (Métricas PR pendentes)

Description

Describe the bug Our setup uses OIDC authentication with IngressGroup. The auth action does not get attached to the LoadBalancer Rule unless we add OIDC-related annotations to the corresponding ingress. Since OIDC annotations reference a secret that has to be in the same namespace as the Ingress, we have to ensure the secret is present in each namespace where the ingress with the group is present Steps to reproduce

Expected outcome We would like to have OIDC annotations only on 1 of the ingresses (that also has other exclusive annotations) instead of having to duplicate it over on each ingress

Environment

  • AWS Load Balancer controller version v2.7.2
  • Kubernetes version 1.25
  • Using EKS (yes/no), if so version? 1.25.16

Guia do colaborador