kubernetes-sigs/aws-load-balancer-controller

OIDC with IngressGroup

开放

#3,858 创建于 2024年9月23日

 (7 条评论) (1 个反应) (3 位负责人)Go (1,644 个派生)auto 404
good first issuekind/feature

仓库指标

星标
 (4,317 个星标)
PR 合并指标
 (PR 指标待抓取)

描述

Describe the bug Our setup uses OIDC authentication with IngressGroup. The auth action does not get attached to the LoadBalancer Rule unless we add OIDC-related annotations to the corresponding ingress. Since OIDC annotations reference a secret that has to be in the same namespace as the Ingress, we have to ensure the secret is present in each namespace where the ingress with the group is present Steps to reproduce

Expected outcome We would like to have OIDC annotations only on 1 of the ingresses (that also has other exclusive annotations) instead of having to duplicate it over on each ingress

Environment

  • AWS Load Balancer controller version v2.7.2
  • Kubernetes version 1.25
  • Using EKS (yes/no), if so version? 1.25.16

贡献者指南