Skip to content

feat: add transparent-tunnel CNI mode for GPS VFP enforcement (Linux) #20874

feat: add transparent-tunnel CNI mode for GPS VFP enforcement (Linux)

feat: add transparent-tunnel CNI mode for GPS VFP enforcement (Linux) #20874

Triggered via pull request April 16, 2026 17:58
Status Success
Total duration 12m 17s
Artifacts

codeql.yaml

on: pull_request
Matrix: Analyze
Fit to window
Zoom out
Zoom in

Annotations

19 errors and 2 warnings
Analyze (ubuntu-latest, go)
undefined: blockservice.BlockIptablesObjects
Analyze (ubuntu-latest, go)
undefined: blockservice.LoadBlockIptables
Analyze (ubuntu-latest, go)
undefined: blockservice.BlockIptablesObjects
Analyze (ubuntu-latest, go)
undefined: ingress.LoadIngressObjects
Analyze (ubuntu-latest, go)
undefined: ingress.IngressObjects
Analyze (ubuntu-latest, go)
undefined: egress.LoadEgressObjects
Analyze (ubuntu-latest, go)
undefined: egress.EgressObjects
Analyze (ubuntu-latest, go)
undefined: IngressObjects
Analyze (ubuntu-latest, go)
undefined: EgressObjects
Analyze (windows-latest, go)
undefined: syscall.Fstat
Analyze (windows-latest, go)
undefined: syscall.Fstat
Analyze (windows-latest, go)
undefined: syscall.Stat_t
Analyze (windows-latest, go)
undefined: syscall.Stat_t
Analyze (windows-latest, go)
cannot use fd (variable of uintptr type syscall.Handle) as int value in struct literal
Analyze (windows-latest, go)
cannot use l.fd (variable of type int) as syscall.Handle value in argument to syscall.Close
Analyze (windows-latest, go)
undefined: syscall.LOCK_NB
Analyze (windows-latest, go)
undefined: syscall.LOCK_EX
Analyze (windows-latest, go)
undefined: syscall.Flock
Analyze (windows-latest, go)
cannot use fmu.fd (variable of type int) as syscall.Handle value in argument to syscall.Close
Analyze (ubuntu-latest, go)
Starting April 2026, the CodeQL Action will skip computing file coverage information on pull requests to improve analysis performance. File coverage information will still be computed on non-PR analyses. To opt out of this change, set the `CODEQL_ACTION_FILE_COVERAGE_ON_PRS` environment variable to `true`. Alternatively, create a custom repository property with the name `github-codeql-file-coverage-on-prs` and the type "True/false", then set this property to `true` in the repository's settings.
Analyze (windows-latest, go)
Starting April 2026, the CodeQL Action will skip computing file coverage information on pull requests to improve analysis performance. File coverage information will still be computed on non-PR analyses. To opt out of this change, set the `CODEQL_ACTION_FILE_COVERAGE_ON_PRS` environment variable to `true`. Alternatively, create a custom repository property with the name `github-codeql-file-coverage-on-prs` and the type "True/false", then set this property to `true` in the repository's settings.