Repository navigation
Conversation
Resolve the external scheme together with its authority when replacing an internal bind address with the registered gateway endpoint. Ported from NVIDIA#3714. Fixes: NVIDIA#3674 Signed-off-by: Daneyon Hansen <daneyon.hansen@solo.io>
|
/ok to test ce8e85e |
|
Label |
PR Review StatusThe independent code review found no blocking defects. The shared resolver now carries the external scheme through the CLI and all three TUI SSH paths, while retaining the reported endpoint for non-loopback hosts. @purp, your Action required: A maintainer must select Re-run all jobs on Branch E2E Checks. @danehans, add a small published docs note about SSH connect/exec/forwarding using the registered HTTPS endpoint behind TLS termination, or have a maintainer explain in this PR why docs are unnecessary. Blocking code findings: None. Carried findings: None. Non-blocking suggestion: Track the linked issue's dedicated Kubernetes regression coverage for SSH through frontend TLS termination with a plaintext backend, including the exact Gator metadata
|
Signed-off-by: Daneyon Hansen <daneyon.hansen@solo.io>
|
@purp I added a note clarifying that connect/exec/port forwarding use the registered external HTTPS endpoint behind TLS termination, PTAL. |
|
/ok to test c6dae2b |
PR Review StatusThanks @danehans, I checked your new SSH Relay note in @purp, your current-head Action required: A maintainer must approve Trivy Changes, which reports Blocking findings: None. Carried findings: None. Gator metadata
|
Summary
Preserve the registered external HTTPS scheme when SSH forwarding replaces an internal gateway bind address. This fix was ported from #3714 after that PR was closed.
Related Issue
Fixes: #3674
Changes
Testing
test:e2e)cargo fmt --all -- --checkcargo test -p openshell-core resolve_ssh_gatewaycargo test -p openshell-cli -p openshell-tuimise run docsChecklist