Skip to main content
New Features

0.8.0

New

  • Authenticate to the Formal API with a JWT read from a file (oidc.file.path in the operator ConfigMap), such as a projected ServiceAccount token from Amazon EKS
  • Helm chart 0.10.0 adds oidc.serviceAccountToken: {}, which projects the pod’s ServiceAccount token with the Formal audience
New Features

0.7.0

New

  • Authenticate to the Formal API with AWS or Azure OIDC (oidc.integration_id plus aws: {} or azure: {} in the operator ConfigMap)

0.6.0

New

  • Load metrics and reconcile settings from a YAML file at FORMAL_CONFIG
  • Helm mounts that file from a ConfigMap and rolls the pod when it changes
  • METRICS_ADDR and RECONCILE_INTERVAL still override file fields
New Features

0.5.0

New

  • Add the FormalPolicy resource to define policies as code
New Features

0.4.0

New

  • Add identityLinks to FormalNativeUser to bind users, groups, and resource hostnames
New Features

0.3.0

New

  • Add spaceId field to FormalResource for organizing resources into spaces
New Features

0.2.0

New

  • Add support for Snowflake key pair, HTTP basic, HTTP bearer, HTTP API key, and Kubernetes native user secret types

0.1.0

New

  • Initial release of the Formal Kubernetes Operator