-
Notifications
You must be signed in to change notification settings - Fork 8k
Issues: istio/istio
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Security vulnerabilities in istioctl 1.26.0 (CVE-2025-32386, CVE-2025-32387)
area/security
#56426
opened May 27, 2025 by
mukhan-axon
2 tasks done
Add Source/Destination SPIFFE principal to ExtAuthz input using waypoint
area/ambient
Issues related to ambient mesh
area/networking
area/security
kind/enhancement
#56379
opened May 21, 2025 by
remeric
pilot: include extra trust domains in cluster SANs verification
area/security
size/L
Denotes a PR that changes 100-499 lines, ignoring generated files.
#56371
opened May 20, 2025 by
jewertow
Loading…
tls: add PQC compliance policy
area/environments
area/security
size/S
Denotes a PR that changes 10-29 lines, ignoring generated files.
#56331
opened May 16, 2025 by
jewertow
Loading…
2 of 17 tasks
Feature request: PQC for mesh-internal traffic
area/ambient
Issues related to ambient mesh
area/environments
area/security
kind/enhancement
#56330
opened May 16, 2025 by
jewertow
feat: implements crl support for plugged-in CA
area/security
release-notes-none
Indicates a PR that does not require release notes.
size/XXL
Denotes a PR that changes 1000+ lines, ignoring generated files.
#56308
opened May 14, 2025 by
nilekhc
Loading…
Allow using ReferenceGrant for gateways and secrets
area/ambient
Issues related to ambient mesh
area/networking
area/security
kind/enhancement
#56232
opened May 9, 2025 by
dmosesson
NR filter_chain_not_found on egress gateway when trying to use TLS origination
area/networking
area/security
#56201
opened May 7, 2025 by
OQCDoe
2 tasks done
Allow RequestAuthentication policy without an issuer specified
area/security
size/L
Denotes a PR that changes 100-499 lines, ignoring generated files.
#56158
opened May 3, 2025 by
tjons
Loading…
Add support for customizing the securityContext of the istiod deployment via Helm values
area/environments
area/security
ok-to-test
Set this label allow normal testing to take place for a PR not submitted by an Istio org member.
size/S
Denotes a PR that changes 10-29 lines, ignoring generated files.
#56116
opened Apr 29, 2025 by
akash29chauhan
Loading…
3 of 16 tasks
Workload-level mTLS is not initiated when mTLS is disabled at the mesh-level
area/security
area/user experience
#56084
opened Apr 25, 2025 by
happyyi008
2 tasks done
Expose Gateway Readiness via HTTPS Listener
area/environments
area/networking
area/security
area/user experience
kind/enhancement
#56034
opened Apr 22, 2025 by
liweixi100
Enforce FIPS-202205 compliance policy
area/networking
area/security
needs-rebase
Indicates a PR needs to be rebased before being merged
size/M
Denotes a PR that changes 30-99 lines, ignoring generated files.
#55949
opened Apr 15, 2025 by
keithmattix
Loading…
start SDS server failed, report "too many open files"
area/networking
area/security
#55915
opened Apr 14, 2025 by
549433950
2 tasks done
Log file output path causes error due to read-only root filesystem in default pod security context
area/environments
area/security
#55694
opened Mar 27, 2025 by
nueavv
2 tasks done
mTLS origination in ambient mode
area/ambient
Issues related to ambient mesh
area/security
#55329
opened Mar 3, 2025 by
mosessond
2 tasks done
Unable to get certificates provided by custom SDS server for ingressgateways
area/networking
area/security
#55303
opened Feb 27, 2025 by
abhide
2 tasks done
Configuration to trust "trust domains" between two or more service mesh clusters
area/security
feature/Multi-cluster
issues related with multi-cluster support
kind/docs
kind/enhancement
#55288
opened Feb 27, 2025 by
nirvanagit
Multiple CUSTOM AuthorizationPolicies for same workload but different providers
area/networking
area/security
lifecycle/stale
Indicates a PR or issue hasn't been manipulated by an Istio team member for a while
#55142
opened Feb 17, 2025 by
kaiburjack
2 tasks done
Allow Gateway Public IP Override for NVA Integration with DNAT
area/networking
area/security
feature/Multi-cluster
issues related with multi-cluster support
feature/Multi-control-plane
issues related with multi-control-plane support in a cluster
kind/enhancement
#55041
opened Feb 10, 2025 by
remiminnebo
Make istio-init have read-only filesystem
area/networking
area/security
kind/enhancement
#54916
opened Jan 30, 2025 by
calikonur
[LFX 2025 Term 1] Support TLS for metrics endpoints
area/extensions and telemetry
area/security
#54760
opened Jan 20, 2025 by
kfaseela
Request to publish non go-versioned releases to OSV.dev
area/security
kind/docs
kind/enhancement
#54649
opened Jan 11, 2025 by
bharath-b-rh
Allow Locking Down of Admin Interface in Sidecars
area/networking
area/security
kind/enhancement
#54109
opened Nov 29, 2024 by
GabrielAlacchi
Previous Next
ProTip!
Type g i on any issue or pull request to go back to the issue listing page.