Skip to content

Move webhooks management-cluster rendering into the enterprise extension - #5164

Merged
caseydavenport merged 1 commit into
tigera:masterfrom
caseydavenport:casey-devariant-webhooks
Aug 13, 2026
Merged

Move webhooks management-cluster rendering into the enterprise extension#5164
caseydavenport merged 1 commit into
tigera:masterfrom
caseydavenport:casey-devariant-webhooks

Conversation

@caseydavenport

Copy link
Copy Markdown
Member

Follow-on to #4871, for CORE-13338.

The webhooks render was still branching on the variant to decide which management-cluster objects, flags and RBAC to add. All of that moves to the enterprise extension, so the base render is variant-blind and the apiserver controller no longer reads the variant at all. Behavior is unchanged, including the cleanup of the tunnel secret RBAC when the cluster isn't a management cluster or the operator is running as Calico.

None

The base webhooks render no longer reads the variant to decide on the
ManagedCluster webhook, its flags, or the tunnel secret RBAC.
@caseydavenport
caseydavenport force-pushed the casey-devariant-webhooks branch from 5f5c8a5 to 6f12dd6 Compare August 13, 2026 20:37
@caseydavenport
caseydavenport merged commit 165ba21 into tigera:master Aug 13, 2026
6 checks passed
@caseydavenport
caseydavenport deleted the casey-devariant-webhooks branch August 13, 2026 21:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants