envoyproxy/envoy

Need CEL convenience function: inIpRange()

开放

#32,170 创建于 2024年2月2日

 (4 条评论) (0 个反应) (0 位负责人)C++ (5,373 个派生)batch import
area/celenhancementhelp wanted

仓库指标

星标
 (27,997 个星标)
PR 合并指标
 (平均合并 8天) (30 天内合并 378 个 PR)

描述

Currently, Envoy's CEL functions are essentially what the mainline CEL repo provides. However, as more use cases pile up, it may be worthwhile to add some additional convenience functions (where sensible) to make configuration & processing faster in Envoy.

In the case of this issue, the function being requested is inIpRange(). We have attributes that contain IP data (source.address, destination.address, etc.). Often times, a user wants to check if the IP is in a range. Its clunky and error prone to do this with string matches. So the request is to add an inIpRange() CEL function to Envoy whose semantics are like inIpRange(source.address, '9.9.9.0/24')

cc @kyessenov @tyxia

贡献者指南