This commit is contained in:
2026-09-28 16:28:35 +01:00
parent 666b1ff877
commit e27aa106fd
76 changed files with 5634 additions and 906 deletions
@@ -259,9 +259,9 @@
"type": "array"
},
"signatureKeys": {
"description": "SignatureKeys contains a list of PGP key IDs that commits in Git must be signed with in order to be allowed for sync",
"description": "SignatureKeys contains a list of PGP key IDs that commits in Git must be signed with in order to be allowed for sync\n\nDeprecated: Use SourceIntegrity instead. SignatureKeys will be removed with the next major version.",
"items": {
"description": "SignatureKey is the specification of a key required to verify commit signatures with",
"description": "SignatureKey is the specification of a key required to verify commit signatures with\n\nDeprecated: Use SourceIntegrity instead. SignatureKeys will be removed with the next major version.",
"properties": {
"keyID": {
"description": "The ID of the key in hexadecimal notation",
@@ -276,6 +276,77 @@
},
"type": "array"
},
"sourceIntegrity": {
"description": "SourceIntegrity represents a constraint on manifest sources integrity to be met before they can be used.\nDo not access directly, use EffectiveSourceIntegrity() for correct backwards compatibility handling.",
"properties": {
"git": {
"description": "Git - policies for git source verification",
"properties": {
"policies": {
"items": {
"properties": {
"gpg": {
"description": "Verify GPG commit/tag signatures",
"properties": {
"keys": {
"description": "List of key IDs to trust. The keys need to be in the repository server keyring.",
"items": {
"type": "string"
},
"type": "array"
},
"mode": {
"type": "string"
}
},
"required": [
"keys",
"mode"
],
"type": "object",
"additionalProperties": false
},
"repos": {
"description": "List of repository criteria restricting repositories the policy will apply to",
"items": {
"properties": {
"url": {
"description": "URL specifier, glob.",
"type": "string"
}
},
"required": [
"url"
],
"type": "object",
"additionalProperties": false
},
"type": "array"
}
},
"required": [
"gpg",
"repos"
],
"type": "object",
"additionalProperties": false
},
"type": "array"
}
},
"required": [
"policies"
],
"type": "object",
"additionalProperties": false
}
},
"required": [
"git"
],
"type": "object",
"additionalProperties": false
},
"sourceNamespaces": {
"description": "SourceNamespaces defines the namespaces application resources are allowed to be created in",
"items": {
@@ -340,6 +411,10 @@
"description": "Schedule is the time the window will begin, specified in cron format",
"type": "string"
},
"syncOverrun": {
"description": "SyncOverrun allows ongoing syncs to continue in two scenarios:\nFor deny windows: allows syncs that started before the deny window became active to continue running\nFor allow windows: allows syncs that started during the allow window to continue after the window ends",
"type": "boolean"
},
"timeZone": {
"description": "TimeZone of the sync that will be applied to the schedule",
"type": "string"