pomerium / ingress-controller

Pomerium Kubernetes Ingress Controller
https://pomerium.com
Apache License 2.0
21 stars 10 forks source link

build(deps): bump the go group with 4 updates #996

Closed dependabot[bot] closed 2 weeks ago

dependabot[bot] commented 2 weeks ago

Bumps the go group with 4 updates: github.com/go-playground/validator/v10, github.com/open-policy-agent/opa, github.com/spf13/cobra and google.golang.org/protobuf.

Updates github.com/go-playground/validator/v10 from 10.21.0 to 10.22.0

Commits


Updates github.com/open-policy-agent/opa from 0.65.0 to 0.66.0

Release notes

Sourced from github.com/open-policy-agent/opa's releases.

v0.66.0

This release contains a mix of features, performance improvements, and bugfixes.

Improved Test Reports (2546)

The opa test command now includes a new --var-values flag that enriches reporting of failed tests with the values and locations for variables in the failing expression. E.g.:

FAILURES
--------------------------------------------------------------------------------
data.test.test_my_policy: FAIL (0ms)

test.rego:8:
x == y + z
| | |
| | 3
| y + z: 5
| y: 2
1

SUMMARY

test.rego:
data.test.test_foo: FAIL (0ms)

FAIL: 1/1

Authored by @​johanfylling, reported by @​grosser.

Reading stdin in opa exec (#6538)

The opa exec command now supports reading input documents from stdin with the --stdin-input (-I) flag. E.g.:

$ echo '{"user": "alice"}' | opa exec --stdin-input --bundle my_bundle

Authored by @​colinjlacy, reported by @​humbertoc-silva.

Topdown and Rego

... (truncated)

Changelog

Sourced from github.com/open-policy-agent/opa's changelog.

0.66.0

This release contains a mix of features, performance improvements, and bugfixes.

Improved Test Reports (2546)

The opa test command now includes a new --var-values flag that enriches reporting of failed tests with the values and locations for variables in the failing expression. E.g.:

FAILURES
--------------------------------------------------------------------------------
data.test.test_my_policy: FAIL (0ms)

test.rego:8:
x == y + z
| | |
| | 3
| y + z: 5
| y: 2
1

SUMMARY

test.rego:
data.test.test_foo: FAIL (0ms)

FAIL: 1/1

Authored by @​johanfylling, reported by @​grosser.

Reading stdin in opa exec (#6538)

The opa exec command now supports reading input documents from stdin with the --stdin-input (-I) flag. E.g.:

$ echo '{"user": "alice"}' | opa exec --stdin-input --bundle my_bundle

Authored by @​colinjlacy, reported by @​humbertoc-silva.

Topdown and Rego

... (truncated)

Commits
  • 91348a8 Prepare v0.66.0 release (#6834)
  • 4e01537 server/authorizer: Fix gzip payload handling. (#6825)
  • c2cede7 ast: expanding nested expressions in every domain (#6832)
  • cb77956 docs: Update generated CLI docs
  • e50a306 cmd/exec: Supporting simultaneous input from stdin and files (#6831)
  • 5647253 docs: Update generated CLI docs
  • 96800d7 cmd/exec: adds --stdin-input (-I) flag for input piping or manual entry (#6822)
  • 96ecf38 trace+tester: Adding local var values to trace and test report (#6815)
  • 31120ce build: use chainguard images from dockerhub (#6830)
  • 5464b00 Bumping golangci-lint to v1.59.1 (#6817)
  • Additional commits viewable in compare view


Updates github.com/spf13/cobra from 1.8.0 to 1.8.1

Release notes

Sourced from github.com/spf13/cobra's releases.

v1.8.1

✨ Features

🐛 Bug fixes

🔧 Maintenance

🧪 Testing & CI/CD

✏️ Documentation

... (truncated)

Commits


Updates google.golang.org/protobuf from 1.34.1 to 1.34.2

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) - `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) - `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) - `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency - `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions