Skip to content

Cwcow policy changes - #2842

Open
Takuro Sato (takuro-sato) wants to merge 1 commit into
microsoft:mainfrom
takuro-sato:cwcow-policy-changes
Open

Cwcow policy changes#2842
Takuro Sato (takuro-sato) wants to merge 1 commit into
microsoft:mainfrom
takuro-sato:cwcow-policy-changes

Conversation

@takuro-sato

Copy link
Copy Markdown
Contributor

Changes

Misc changes

Comment thread internal/guest/runtime/hcsv2/uvm.go Outdated
@takuro-sato
Takuro Sato (takuro-sato) marked this pull request as ready for review August 6, 2026 16:27
@takuro-sato
Takuro Sato (takuro-sato) requested a review from a team as a code owner August 6, 2026 16:27
@anmaxvl

Copy link
Copy Markdown
Contributor

Takuro Sato (@takuro-sato) are all the commits necessary? can you clean them up (e.g. rebase drop/squash/edit messages)? if we squash merge, the message is going to be way too long.

@takuro-sato

Copy link
Copy Markdown
Contributor Author

Maksim An (@anmaxvl) I squashed the branch into a single commit with a much shorter message. I considered splitting it into logical commits, but the changes are too tightly coupled to keep each commit buildable.

Apply policy decisions to container creation, exec, environment, stdio, storage, mounts, registry changes, and CIM lifecycle operations.

Validate forwarded requests and unsupported fields, maintain policy state consistently, and fail closed when host operations fail.

Co-authored-by: Mahati Chamarthy <mahati.chamarthy@gmail.com>

Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
Signed-off-by: Takuro Sato <takurosato@microsoft.com>
@anmaxvl

Copy link
Copy Markdown
Contributor

Tingmao Wang (@micromaomao) , KenGordon review policy changes, I'll take a look at sidecar code.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants