Istio Security AssessmentIstio project that are using insecure hashing algo- rithms: • istio/istio/mixer/adapter/list/list.go (line 193) // determine whether the list has changed since the last fetch sha = sha1.Sum(buf) if sha == is unchanged") h.resetPurgeTimer() return } • istio/istio/mixer/pkg/runtime/handler/signature.go (line 80) 15 | Google Istio Security Assessment Google / NCC Group Confidential if encoded { sha := sha1 Sum(buf.Bytes()) pool.PutBuffer(buf) return sha } • istio/istio/mixer/pkg/config/store/fsstore.go (line 91) func parseFile(path string, data []byte) []*resource { chunks := bytes.Split(data, []byte("\n---\n"))0 码力 | 51 页 | 849.66 KB | 1 年前3
生产环境 istioExperiences from running Istio in a k8s production environment Line Moseng @linemoseng Johnny Horvi Norwegian Labour and Welfare Administration 5,2 million nais.io github.com/nais CD CD metrics0 码力 | 42 页 | 3.45 MB | 1 年前3
Is Your Virtual Machine Really Ready-to-go with Istio?independent streams ■ Extremely similar to HTTP/2, but in transport layer ● Improvements ○ TCP head of line blocking ○ Faster handshakes ○ Earlier data ○ Connection-ID ○ More encryption, always [1] Http30 码力 | 50 页 | 2.19 MB | 1 年前3
共 3 条
- 1













