This is an automated email from the ASF dual-hosted git repository.
davsclaus pushed a commit to branch main
in repository https://gitbox.apache.org/repos/asf/camel-spring-boot.git
The following commit(s) were added to refs/heads/main by this push:
new 869a39a82c6 Regen
869a39a82c6 is described below
commit 869a39a82c62174b84f3721dd9d401af111a7095
Author: Claus Ibsen <[email protected]>
AuthorDate: Wed Sep 30 14:22:18 2026 +0200
Regen
---
.../springboot/catalog/components/knative.json | 10 ++++++++++
.../camel/springboot/catalog/components/opa.json | 8 ++++----
.../camel-opa-starter/src/main/docs/opa.json | 4 ++--
.../opa/springboot/OpaComponentConfiguration.java | 23 +++++++++++++---------
.../modules/ROOT/pages/starters/opa.adoc | 4 ++--
tooling/camel-spring-boot-dependencies/pom.xml | 9 +++++++--
6 files changed, 39 insertions(+), 19 deletions(-)
diff --git
a/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/knative.json
b/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/knative.json
index 1e8e07ab39e..ee206f6c653 100644
---
a/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/knative.json
+++
b/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/knative.json
@@ -49,6 +49,16 @@
"healthCheckConsumerEnabled": { "index": 21, "kind": "property",
"displayName": "Health Check Consumer Enabled", "group": "health", "label":
"health", "required": false, "type": "boolean", "javaType": "boolean",
"deprecated": false, "autowired": false, "secret": false, "defaultValue": true,
"description": "Used for enabling or disabling all consumer based health checks
from this component" },
"healthCheckProducerEnabled": { "index": 22, "kind": "property",
"displayName": "Health Check Producer Enabled", "group": "health", "label":
"health", "required": false, "type": "boolean", "javaType": "boolean",
"deprecated": false, "autowired": false, "secret": false, "defaultValue": true,
"description": "Used for enabling or disabling all producer based health checks
from this component. Notice: Camel has by default disabled all producer based
health-checks. You can turn on produce [...]
},
+ "headers": {
+ "CamelCloudEventID": { "index": 0, "kind": "header", "displayName": "",
"group": "common", "label": "common", "required": false, "javaType": "String",
"deprecated": false, "deprecationNote": "", "autowired": false, "secret":
false, "description": "The event ID. The producer uses the exchange ID when not
set.", "constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_ID" },
+ "CamelCloudEventSource": { "index": 1, "kind": "header", "displayName":
"", "group": "common", "label": "common", "required": false, "javaType":
"String", "deprecated": false, "deprecationNote": "", "autowired": false,
"secret": false, "description": "The event source. The producer uses the route
ID when not set.", "constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_SOURCE" },
+ "CamelCloudEventVersion": { "index": 2, "kind": "header", "displayName":
"", "group": "common", "label": "common", "required": false, "javaType":
"String", "deprecated": false, "deprecationNote": "", "autowired": false,
"secret": false, "description": "The CloudEvents specification version. The
producer uses the configured version when not set.", "constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_VERSION" },
+ "CamelCloudEventType": { "index": 3, "kind": "header", "displayName": "",
"group": "common", "label": "common", "required": false, "javaType": "String",
"deprecated": false, "deprecationNote": "", "autowired": false, "secret":
false, "description": "The event type. On a knative event endpoint with a type
ID in the URI, the type ID takes precedence over this header.", "constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_TYPE" },
+ "CamelCloudEventDataContentType": { "index": 4, "kind": "header",
"displayName": "", "group": "common", "label": "common", "required": false,
"javaType": "String", "deprecated": false, "deprecationNote": "", "autowired":
false, "secret": false, "description": "The content type of the event data.",
"constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_DATA_CONTENT_TYPE"
},
+ "CamelCloudEventSchemaURL": { "index": 5, "kind": "header", "displayName":
"", "group": "common", "label": "common", "required": false, "javaType":
"String", "deprecated": false, "deprecationNote": "", "autowired": false,
"secret": false, "description": "The URI of the schema that the event data
adheres to.", "constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_SCHEMA_URL" },
+ "CamelCloudEventSubject": { "index": 6, "kind": "header", "displayName":
"", "group": "common", "label": "common", "required": false, "javaType":
"String", "deprecated": false, "deprecationNote": "", "autowired": false,
"secret": false, "description": "The subject of the event in the context of the
event source.", "constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_SUBJECT" },
+ "CamelCloudEventTime": { "index": 7, "kind": "header", "displayName": "",
"group": "common", "label": "common", "required": false, "javaType": "String",
"deprecated": false, "deprecationNote": "", "autowired": false, "secret":
false, "description": "The time the event occurred. The producer uses the
exchange creation time when not set.", "constantName":
"org.apache.camel.component.knative.KnativeConstants#CLOUD_EVENT_TIME" }
+ },
"properties": {
"type": { "index": 0, "kind": "path", "displayName": "Type", "group":
"common", "label": "", "required": false, "type": "enum", "javaType":
"org.apache.camel.component.knative.spi.Knative.Type", "enum": [ "endpoint",
"channel", "event" ], "deprecated": false, "autowired": false, "secret": false,
"description": "The Knative resource type" },
"typeId": { "index": 1, "kind": "path", "displayName": "Type Id", "group":
"common", "label": "", "required": false, "type": "string", "javaType":
"java.lang.String", "deprecated": false, "autowired": false, "secret": false,
"description": "The identifier of the Knative resource" },
diff --git
a/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/opa.json
b/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/opa.json
index 7b5143e45f4..3856382220c 100644
---
a/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/opa.json
+++
b/catalog/camel-catalog-provider-springboot/src/main/resources/org/apache/camel/springboot/catalog/components/opa.json
@@ -25,7 +25,7 @@
},
"componentProperties": {
"allowKey": { "index": 0, "kind": "property", "displayName": "Allow Key",
"group": "producer", "label": "", "required": false, "type": "string",
"javaType": "java.lang.String", "deprecated": false, "autowired": false,
"secret": false, "defaultValue": "allow", "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "The key to read the allow\/deny verdict from
when the policy returns an object rather than a plain b [...]
- "batch": { "index": 1, "kind": "property", "displayName": "Batch",
"group": "producer", "label": "producer", "required": false, "type": "boolean",
"javaType": "boolean", "deprecated": false, "autowired": false, "secret":
false, "defaultValue": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Authorize a whole collection in one call. When
enabled the producer expects a List body, evaluates one input [...]
+ "batch": { "index": 1, "kind": "property", "displayName": "Batch",
"group": "producer", "label": "producer", "required": false, "type": "boolean",
"javaType": "boolean", "deprecated": false, "autowired": false, "secret":
false, "defaultValue": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Authorize a whole collection in one call. When
enabled the producer expects a List body, evaluates one input [...]
"configuration": { "index": 2, "kind": "property", "displayName":
"Configuration", "group": "producer", "label": "", "required": false, "type":
"object", "javaType": "org.apache.camel.component.opa.OpaConfiguration",
"deprecated": false, "autowired": false, "secret": false, "description": "The
component configuration." },
"entrypoint": { "index": 3, "kind": "property", "displayName":
"Entrypoint", "group": "producer", "label": "", "required": false, "type":
"string", "javaType": "java.lang.String", "deprecated": false, "autowired":
false, "secret": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "The compiled entrypoint to evaluate in wasm
mode. This is not the same thing as the policy path: an entrypoint is fixed wh
[...]
"evaluationMode": { "index": 4, "kind": "property", "displayName":
"Evaluation Mode", "group": "producer", "label": "", "required": false, "type":
"enum", "javaType": "java.lang.String", "enum": [ "rest", "wasm" ],
"deprecated": false, "autowired": false, "secret": false, "defaultValue":
"rest", "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "How the policy is evaluated. rest (the
default) calls a running [...]
@@ -44,7 +44,7 @@
"healthCheckConsumerEnabled": { "index": 17, "kind": "property",
"displayName": "Health Check Consumer Enabled", "group": "health", "label":
"health", "required": false, "type": "boolean", "javaType": "boolean",
"deprecated": false, "autowired": false, "secret": false, "defaultValue": true,
"description": "Used for enabling or disabling all consumer based health checks
from this component" },
"healthCheckProducerEnabled": { "index": 18, "kind": "property",
"displayName": "Health Check Producer Enabled", "group": "health", "label":
"health", "required": false, "type": "boolean", "javaType": "boolean",
"deprecated": false, "autowired": false, "secret": false, "defaultValue": true,
"description": "Used for enabling or disabling all producer based health checks
from this component. Notice: Camel has by default disabled all producer based
health-checks. You can turn on produce [...]
"bearerToken": { "index": 19, "kind": "property", "displayName": "Bearer
Token", "group": "security", "label": "security", "required": false, "type":
"string", "javaType": "java.lang.String", "deprecated": false, "autowired":
false, "secret": true, "security": "secret", "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Bearer token sent to the OPA server in the
Authorization header, for an OPA instance that [...]
- "failOpen": { "index": 20, "kind": "property", "displayName": "Fail Open",
"group": "security", "label": "security", "required": false, "type": "boolean",
"javaType": "boolean", "deprecated": false, "autowired": false, "secret":
false, "security": "insecure:dev", "defaultValue": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Whether to allow the exchange to proceed when
the policy cannot be evalua [...]
+ "failOpen": { "index": 20, "kind": "property", "displayName": "Fail Open",
"group": "security", "label": "security", "required": false, "type": "boolean",
"javaType": "boolean", "deprecated": false, "autowired": false, "secret":
false, "security": "insecure:dev", "defaultValue": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Whether to allow the exchange to proceed when
the policy decision point i [...]
"sslContextParameters": { "index": 21, "kind": "property", "displayName":
"Ssl Context Parameters", "group": "security", "label": "security", "required":
false, "type": "object", "javaType":
"org.apache.camel.support.jsse.SSLContextParameters", "deprecated": false,
"autowired": false, "secret": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "TLS configuration for the connection to the
OPA server in [...]
"useGlobalSslContextParameters": { "index": 22, "kind": "property",
"displayName": "Use Global Ssl Context Parameters", "group": "security",
"label": "security", "required": false, "type": "boolean", "javaType":
"boolean", "deprecated": false, "autowired": false, "secret": false,
"defaultValue": false, "description": "Enable usage of global SSL context
parameters." }
},
@@ -58,7 +58,7 @@
"properties": {
"policyPath": { "index": 0, "kind": "path", "displayName": "Policy Path",
"group": "producer", "label": "", "required": true, "type": "string",
"javaType": "java.lang.String", "deprecated": false, "deprecationNote": "",
"autowired": false, "secret": false, "description": "Path of the Rego rule head
to evaluate, relative to the OPA data document. For a rule named allow in a
policy declaring package authz.orders, this is authz\/orders\/allow. The path
is taken from the endpoint only: i [...]
"allowKey": { "index": 1, "kind": "parameter", "displayName": "Allow Key",
"group": "producer", "label": "", "required": false, "type": "string",
"javaType": "java.lang.String", "deprecated": false, "autowired": false,
"secret": false, "defaultValue": "allow", "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "The key to read the allow\/deny verdict from
when the policy returns an object rather than a plain [...]
- "batch": { "index": 2, "kind": "parameter", "displayName": "Batch",
"group": "producer", "label": "producer", "required": false, "type": "boolean",
"javaType": "boolean", "deprecated": false, "autowired": false, "secret":
false, "defaultValue": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Authorize a whole collection in one call. When
enabled the producer expects a List body, evaluates one input [...]
+ "batch": { "index": 2, "kind": "parameter", "displayName": "Batch",
"group": "producer", "label": "producer", "required": false, "type": "boolean",
"javaType": "boolean", "deprecated": false, "autowired": false, "secret":
false, "defaultValue": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Authorize a whole collection in one call. When
enabled the producer expects a List body, evaluates one input [...]
"entrypoint": { "index": 3, "kind": "parameter", "displayName":
"Entrypoint", "group": "producer", "label": "", "required": false, "type":
"string", "javaType": "java.lang.String", "deprecated": false, "autowired":
false, "secret": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "The compiled entrypoint to evaluate in wasm
mode. This is not the same thing as the policy path: an entrypoint is fixed w
[...]
"evaluationMode": { "index": 4, "kind": "parameter", "displayName":
"Evaluation Mode", "group": "producer", "label": "", "required": false, "type":
"enum", "javaType": "java.lang.String", "enum": [ "rest", "wasm" ],
"deprecated": false, "autowired": false, "secret": false, "defaultValue":
"rest", "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "How the policy is evaluated. rest (the
default) calls a runnin [...]
"includeBody": { "index": 5, "kind": "parameter", "displayName": "Include
Body", "group": "producer", "label": "", "required": false, "type": "boolean",
"javaType": "boolean", "deprecated": false, "autowired": false, "secret":
false, "defaultValue": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Whether to send the message body to OPA as
part of the input document. Disabled by default: bodies can [...]
@@ -73,7 +73,7 @@
"poolSize": { "index": 14, "kind": "parameter", "displayName": "Pool
Size", "group": "advanced", "label": "advanced", "required": false, "type":
"integer", "javaType": "int", "deprecated": false, "autowired": false,
"secret": false, "defaultValue": 8, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "How many WebAssembly policy instances to pool
in wasm mode. An instance carries mutable state and is not thr [...]
"requestTimeout": { "index": 15, "kind": "parameter", "displayName":
"Request Timeout", "group": "advanced", "label": "advanced", "required": false,
"type": "duration", "javaType": "long", "deprecated": false, "autowired":
false, "secret": false, "defaultValue": "30000", "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "How long to wait for the decision once
connected, in rest mode. A request that times out [...]
"bearerToken": { "index": 16, "kind": "parameter", "displayName": "Bearer
Token", "group": "security", "label": "security", "required": false, "type":
"string", "javaType": "java.lang.String", "deprecated": false, "autowired":
false, "secret": true, "security": "secret", "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "Bearer token sent to the OPA server in the
Authorization header, for an OPA instance tha [...]
- "failOpen": { "index": 17, "kind": "parameter", "displayName": "Fail
Open", "group": "security", "label": "security", "required": false, "type":
"boolean", "javaType": "boolean", "deprecated": false, "autowired": false,
"secret": false, "security": "insecure:dev", "defaultValue": false,
"configurationClass": "org.apache.camel.component.opa.OpaConfiguration",
"configurationField": "configuration", "description": "Whether to allow the
exchange to proceed when the policy cannot be evalu [...]
+ "failOpen": { "index": 17, "kind": "parameter", "displayName": "Fail
Open", "group": "security", "label": "security", "required": false, "type":
"boolean", "javaType": "boolean", "deprecated": false, "autowired": false,
"secret": false, "security": "insecure:dev", "defaultValue": false,
"configurationClass": "org.apache.camel.component.opa.OpaConfiguration",
"configurationField": "configuration", "description": "Whether to allow the
exchange to proceed when the policy decision point [...]
"sslContextParameters": { "index": 18, "kind": "parameter", "displayName":
"Ssl Context Parameters", "group": "security", "label": "security", "required":
false, "type": "object", "javaType":
"org.apache.camel.support.jsse.SSLContextParameters", "deprecated": false,
"autowired": false, "secret": false, "configurationClass":
"org.apache.camel.component.opa.OpaConfiguration", "configurationField":
"configuration", "description": "TLS configuration for the connection to the
OPA server i [...]
}
}
diff --git a/components-starter/camel-opa-starter/src/main/docs/opa.json
b/components-starter/camel-opa-starter/src/main/docs/opa.json
index 4e237bf6c8f..d91054868cc 100644
--- a/components-starter/camel-opa-starter/src/main/docs/opa.json
+++ b/components-starter/camel-opa-starter/src/main/docs/opa.json
@@ -30,7 +30,7 @@
{
"name": "camel.component.opa.batch",
"type": "java.lang.Boolean",
- "description": "Authorize a whole collection in one call. When enabled
the producer expects a List body, evaluates one input document per element -
each element as the body, sharing the exchange's headers and properties - and
returns the per-element verdicts in the CamelOpaBatchDecision header, a List
parallel to the input. An element whose evaluation could not be reached is
denied, unless failOpen is set; the batch is never allowed or denied as a whole
because one element failed. [...]
+ "description": "Authorize a whole collection in one call. When enabled
the producer expects a List body, evaluates one input document per element -
each element as the body, sharing the exchange's headers and properties - and
returns the per-element verdicts in the CamelOpaBatchDecision header, a List
parallel to the input. An element whose evaluation failed is denied, unless
failOpen is set and its decision point was unavailable; the batch is never
allowed or denied as a whole bec [...]
"sourceType":
"org.apache.camel.component.opa.springboot.OpaComponentConfiguration",
"defaultValue": false
},
@@ -87,7 +87,7 @@
{
"name": "camel.component.opa.fail-open",
"type": "java.lang.Boolean",
- "description": "Whether to allow the exchange to proceed when the policy
cannot be evaluated at all, for example because the OPA server is unreachable.
Disabled by default so that an unreachable policy decision point denies rather
than grants access. Do not enable this in production.",
+ "description": "Whether to allow the exchange to proceed when the policy
decision point is unavailable: in rest mode the OPA server cannot be reached,
times out, or a gateway in front of it answers 502, 503, 504 or 429; in wasm
mode no instance frees up within borrowTimeout. It never applies to an answer:
an undefined decision, a rejected request (400, or any other 4xx such as a
wrong or expired bearer token) and an error evaluating the policy (500) fail
closed even when this is se [...]
"sourceType":
"org.apache.camel.component.opa.springboot.OpaComponentConfiguration",
"defaultValue": false
},
diff --git
a/components-starter/camel-opa-starter/src/main/java/org/apache/camel/component/opa/springboot/OpaComponentConfiguration.java
b/components-starter/camel-opa-starter/src/main/java/org/apache/camel/component/opa/springboot/OpaComponentConfiguration.java
index 6d84633572c..ed0f80cc82d 100644
---
a/components-starter/camel-opa-starter/src/main/java/org/apache/camel/component/opa/springboot/OpaComponentConfiguration.java
+++
b/components-starter/camel-opa-starter/src/main/java/org/apache/camel/component/opa/springboot/OpaComponentConfiguration.java
@@ -52,11 +52,11 @@ public class OpaComponentConfiguration
* expects a List body, evaluates one input document per element - each
* element as the body, sharing the exchange's headers and properties - and
* returns the per-element verdicts in the CamelOpaBatchDecision header, a
- * List parallel to the input. An element whose evaluation could not be
- * reached is denied, unless failOpen is set; the batch is never allowed or
- * denied as a whole because one element failed. Only for {code
- * evaluationMode=rest}: it saves the per-element HTTP round-trip via OPA's
- * batch API, which has no meaning for in-process wasm.
+ * List parallel to the input. An element whose evaluation failed is
denied,
+ * unless failOpen is set and its decision point was unavailable; the batch
+ * is never allowed or denied as a whole because one element failed. Only
+ * for {code evaluationMode=rest}: it saves the per-element HTTP round-trip
+ * via OPA's batch API, which has no meaning for in-process wasm.
*/
private Boolean batch = false;
/**
@@ -199,10 +199,15 @@ public class OpaComponentConfiguration
*/
private String bearerToken;
/**
- * Whether to allow the exchange to proceed when the policy cannot be
- * evaluated at all, for example because the OPA server is unreachable.
- * Disabled by default so that an unreachable policy decision point denies
- * rather than grants access. Do not enable this in production.
+ * Whether to allow the exchange to proceed when the policy decision point
+ * is unavailable: in rest mode the OPA server cannot be reached, times
out,
+ * or a gateway in front of it answers 502, 503, 504 or 429; in wasm mode
no
+ * instance frees up within borrowTimeout. It never applies to an answer:
an
+ * undefined decision, a rejected request (400, or any other 4xx such as a
+ * wrong or expired bearer token) and an error evaluating the policy (500)
+ * fail closed even when this is set. Disabled by default so that an
+ * unavailable policy decision point denies rather than grants access. Do
+ * not enable this in production.
*/
private Boolean failOpen = false;
/**
diff --git a/docs/spring-boot/modules/ROOT/pages/starters/opa.adoc
b/docs/spring-boot/modules/ROOT/pages/starters/opa.adoc
index 954be400569..4728b977a02 100644
--- a/docs/spring-boot/modules/ROOT/pages/starters/opa.adoc
+++ b/docs/spring-boot/modules/ROOT/pages/starters/opa.adoc
@@ -30,7 +30,7 @@ The starter supports 24 options, which are listed below.
| Name | Description | Default | Type
| camel.component.opa.allow-key | The key to read the allow/deny verdict from
when the policy returns an object rather than a plain boolean. For a policy
returning \{allow: true, reasons: } the default value of allow is what you
want. A dotted path reaches a verdict nested inside the document: \{code
allowKey=result.allow} reads \{result: \{allow: true}}. A key with no dot is
looked up directly at the top level. | allow | String
| camel.component.opa.autowired-enabled | Whether autowiring is enabled. This
is used for automatic autowiring options (the option must be marked as
autowired) by looking up in the registry to find if there is a single instance
of matching type, which then gets configured on the component. This can be used
for automatic configuring JDBC data sources, JMS connection factories, AWS
Clients, etc. | true | Boolean
-| camel.component.opa.batch | Authorize a whole collection in one call. When
enabled the producer expects a List body, evaluates one input document per
element - each element as the body, sharing the exchange's headers and
properties - and returns the per-element verdicts in the CamelOpaBatchDecision
header, a List parallel to the input. An element whose evaluation could not be
reached is denied, unless failOpen is set; the batch is never allowed or denied
as a whole because one element [...]
+| camel.component.opa.batch | Authorize a whole collection in one call. When
enabled the producer expects a List body, evaluates one input document per
element - each element as the body, sharing the exchange's headers and
properties - and returns the per-element verdicts in the CamelOpaBatchDecision
header, a List parallel to the input. An element whose evaluation failed is
denied, unless failOpen is set and its decision point was unavailable; the
batch is never allowed or denied as a w [...]
| camel.component.opa.bearer-token | Bearer token sent to the OPA server in
the Authorization header, for an OPA instance that has its API authentication
enabled. | | String
| camel.component.opa.borrow-timeout | How long an exchange waits for a free
WebAssembly policy instance in wasm mode before the evaluation fails. An
exchange that cannot get an instance is not denied by a policy, so it is
reported as an evaluation failure and handled like any other: failing closed,
or proceeding if failOpen is set. Raise it, or poolSize, for a route whose
concurrency exceeds the pool. The option is a long type. | 30000 | Long
| camel.component.opa.configuration | The component configuration. The option
is a org.apache.camel.component.opa.OpaConfiguration type. | | OpaConfiguration
@@ -38,7 +38,7 @@ The starter supports 24 options, which are listed below.
| camel.component.opa.enabled | Whether to enable auto configuration of the
opa component. This is enabled by default. | | Boolean
| camel.component.opa.entrypoint | The compiled entrypoint to evaluate in wasm
mode. This is not the same thing as the policy path: an entrypoint is fixed
when the bundle is built, with \{code opa build -e}. Defaults to the endpoint's
policy path, which is the name \{code opa build} gives it. | | String
| camel.component.opa.evaluation-mode | How the policy is evaluated. rest (the
default) calls a running OPA server over its Data API. wasm evaluates a
WebAssembly bundle in-process, with no server involved - so there is no network
hop and no unreachable decision point, at the cost of the policy being a
build-time artefact rather than something a server distributes and updates.
serverUrl, bearerToken and failOpen do not apply in wasm mode. | rest | String
-| camel.component.opa.fail-open | Whether to allow the exchange to proceed
when the policy cannot be evaluated at all, for example because the OPA server
is unreachable. Disabled by default so that an unreachable policy decision
point denies rather than grants access. Do not enable this in production. |
false | Boolean
+| camel.component.opa.fail-open | Whether to allow the exchange to proceed
when the policy decision point is unavailable: in rest mode the OPA server
cannot be reached, times out, or a gateway in front of it answers 502, 503, 504
or 429; in wasm mode no instance frees up within borrowTimeout. It never
applies to an answer: an undefined decision, a rejected request (400, or any
other 4xx such as a wrong or expired bearer token) and an error evaluating the
policy (500) fail closed even whe [...]
| camel.component.opa.health-check-consumer-enabled | Used for enabling or
disabling all consumer based health checks from this component | true | Boolean
| camel.component.opa.health-check-producer-enabled | Used for enabling or
disabling all producer based health checks from this component. Notice: Camel
has by default disabled all producer based health-checks. You can turn on
producer checks globally by setting camel.health.producersEnabled=true. | true
| Boolean
| camel.component.opa.include-body | Whether to send the message body to OPA
as part of the input document. Disabled by default: bodies can be large or
streaming, and most authorization decisions only need headers. When enabled on
a streaming body, enable stream caching so that the body is still readable by
the rest of the route. | false | Boolean
diff --git a/tooling/camel-spring-boot-dependencies/pom.xml
b/tooling/camel-spring-boot-dependencies/pom.xml
index 0e58bc8ddd3..98146e9d84e 100644
--- a/tooling/camel-spring-boot-dependencies/pom.xml
+++ b/tooling/camel-spring-boot-dependencies/pom.xml
@@ -99,7 +99,7 @@
<dependency>
<groupId>com.openai</groupId>
<artifactId>openai-java</artifactId>
- <version>4.65.0</version>
+ <version>4.69.3</version>
</dependency>
<dependency>
<groupId>eu.maveniverse.maven.mima.runtime</groupId>
@@ -4429,6 +4429,11 @@
<artifactId>camel-openapi-validator</artifactId>
<version>4.23.0-SNAPSHOT</version>
</dependency>
+ <dependency>
+ <groupId>org.apache.camel</groupId>
+ <artifactId>camel-openfga</artifactId>
+ <version>4.23.0-SNAPSHOT</version>
+ </dependency>
<dependency>
<groupId>org.apache.camel</groupId>
<artifactId>camel-opensearch</artifactId>
@@ -5277,7 +5282,7 @@
<dependency>
<groupId>org.apache.commons</groupId>
<artifactId>commons-lang3</artifactId>
- <version>3.20.0</version>
+ <version>3.21.0</version>
</dependency>
<dependency>
<groupId>org.apache.maven.plugin-tools</groupId>