Merge pull request #34081 from Rishit-dagli/Rishit-dagli-patch-1
Fix CertificateSubjectRestriction in Admission Controllers docspull/34088/head
commit
6ee58cd67b
|
@ -139,7 +139,7 @@ requests with the `spec.signerName` requested on the CertificateSigningRequest r
|
|||
See [Certificate Signing Requests](/docs/reference/access-authn-authz/certificate-signing-requests/) for more
|
||||
information on the permissions required to perform different actions on CertificateSigningRequest resources.
|
||||
|
||||
### CertificateSubjectRestrictions {#certificatesubjectrestrictions}
|
||||
### CertificateSubjectRestriction {#certificatesubjectrestriction}
|
||||
|
||||
This admission controller observes creation of CertificateSigningRequest resources that have a `spec.signerName`
|
||||
of `kubernetes.io/kube-apiserver-client`. It rejects any request that specifies a 'group' (or 'organization attribute')
|
||||
|
|
Loading…
Reference in New Issue