Files
kustomize/functions/examples/validator-kubeval
dependabot[bot] 2645f78639 build(deps): bump github.com/google/gnostic-models from 0.7.0 to 0.7.1
Bumps [github.com/google/gnostic-models](https://github.com/google/gnostic-models) from 0.7.0 to 0.7.1.
- [Commits](https://github.com/google/gnostic-models/compare/v0.7.0...v0.7.1)

---
updated-dependencies:
- dependency-name: github.com/google/gnostic-models
  dependency-version: 0.7.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2026-09-04 03:13:03 +00:00
..

Validation

This is an example of implementing a validation function against kubeval.

Function implementation

The function is implemented as an image, and built using make image.

The function is implemented as a go program, which reads a collection of input Resource configuration, passing each to kubeval.

Function configuration

A number of settings can be modified for kubeval in the function spec. See the API struct definition in main.go for documentation.

Function invocation

The function is invoked by authoring a local Resource with metadata.annotations.[config.kubernetes.io/function] and running:

kustomize fn run local-resource/

This exists non-zero if kubeval detects an invalid Resource.

Running the Example

Run the validator with:

kustomize fn run local-resource/

This will return an error:

Resource invalid: (Kind: Service, Name: svc)
prots: Additional property prots is not allowed
Error: exit status 1

Now fix the typo in example-use.yaml and run:

kustomize fn run local-resource/

This will return success (no output).