2 Copyright The Kubernetes Authors.
4 Licensed under the Apache License, Version 2.0 (the "License");
5 you may not use this file except in compliance with the License.
6 You may obtain a copy of the License at
8 http://www.apache.org/licenses/LICENSE-2.0
10 Unless required by applicable law or agreed to in writing, software
11 distributed under the License is distributed on an "AS IS" BASIS,
12 WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 See the License for the specific language governing permissions and
14 limitations under the License.
18 // This file was autogenerated by go-to-protobuf. Do not edit it manually!
22 package k8s.io.api.certificates.v1beta1;
24 import "k8s.io/apimachinery/pkg/apis/meta/v1/generated.proto";
25 import "k8s.io/apimachinery/pkg/runtime/generated.proto";
26 import "k8s.io/apimachinery/pkg/runtime/schema/generated.proto";
28 // Package-wide variables from generator "generated".
29 option go_package = "v1beta1";
31 // Describes a certificate signing request
32 message CertificateSigningRequest {
34 optional k8s.io.apimachinery.pkg.apis.meta.v1.ObjectMeta metadata = 1;
36 // The certificate request itself and any additional information.
38 optional CertificateSigningRequestSpec spec = 2;
40 // Derived information about the request.
42 optional CertificateSigningRequestStatus status = 3;
45 message CertificateSigningRequestCondition {
46 // request approval state, currently Approved or Denied.
47 optional string type = 1;
49 // brief reason for the request state
51 optional string reason = 2;
53 // human readable message with details about the request state
55 optional string message = 3;
57 // timestamp for the last update to this condition
59 optional k8s.io.apimachinery.pkg.apis.meta.v1.Time lastUpdateTime = 4;
62 message CertificateSigningRequestList {
64 optional k8s.io.apimachinery.pkg.apis.meta.v1.ListMeta metadata = 1;
66 repeated CertificateSigningRequest items = 2;
69 // This information is immutable after the request is created. Only the Request
70 // and Usages fields can be set on creation, other fields are derived by
71 // Kubernetes and cannot be modified by users.
72 message CertificateSigningRequestSpec {
73 // Base64-encoded PKCS#10 CSR data
74 optional bytes request = 1;
76 // allowedUsages specifies a set of usage contexts the key will be
78 // See: https://tools.ietf.org/html/rfc5280#section-4.2.1.3
79 // https://tools.ietf.org/html/rfc5280#section-4.2.1.12
80 repeated string usages = 5;
82 // Information about the requesting user.
83 // See user.Info interface for details.
85 optional string username = 2;
87 // UID information about the requesting user.
88 // See user.Info interface for details.
90 optional string uid = 3;
92 // Group information about the requesting user.
93 // See user.Info interface for details.
95 repeated string groups = 4;
97 // Extra information about the requesting user.
98 // See user.Info interface for details.
100 map<string, ExtraValue> extra = 6;
103 message CertificateSigningRequestStatus {
104 // Conditions applied to the request, such as approval or denial.
106 repeated CertificateSigningRequestCondition conditions = 1;
108 // If request was approved, the controller will place the issued certificate here.
110 optional bytes certificate = 2;
113 // ExtraValue masks the value so protobuf can generate
114 // +protobuf.nullable=true
115 // +protobuf.options.(gogoproto.goproto_stringer)=false
117 // items, if empty, will result in an empty slice
119 repeated string items = 1;