Commit Graph

1649 Commits

Author SHA1 Message Date
Jiahui Feng e832b4dc19 service account workaround for gce. 2022-02-15 12:13:37 -08:00
Kubernetes Prow Robot bffc60202c
Merge pull request #13113 from hierynomus/issue-12925
Allow PrefixList for sshAccess and kubernetesApiAccess
2022-02-15 07:20:03 -08:00
Jeroen van Erp 255a0322c9
Allow PrefixList for sshAccess and kubernetesApiAccess
Signed-off-by: Jeroen van Erp <jeroen@hierynomus.com>
2022-02-15 14:37:28 +01:00
Kubernetes Prow Robot bf43ae5694
Merge pull request #13228 from MoShitrit/aws-cni-1.10.2
Bump AWS CNI to 1.10.2
2022-02-14 21:52:04 -08:00
Moshe Shitrit 1efe9ab5fb Update expected 2022-02-14 20:25:50 -08:00
Jiahui Feng 39d4b68609 generated: go mod tidy
with go1.17.7
2022-02-14 15:38:57 -08:00
Jiahui Feng 5948ab6c9a test fixtures and script. 2022-02-14 15:38:12 -08:00
Jiahui Feng 1496708358 a recorder to observe the leader migration. 2022-02-14 15:37:34 -08:00
Ciprian Hacman dbaf479ea6 Run hack/update-expected.sh
Signed-off-by: Ciprian Hacman <ciprian@hakman.dev>
2022-02-14 11:27:26 +02:00
Kubernetes Prow Robot 36de05d86f
Merge pull request #13240 from hakman/install_runc
Install runc from opencontainers/runc
2022-02-13 03:01:47 -08:00
Kubernetes Prow Robot 7eb773bdca
Merge pull request #13243 from olemarkus/metrics-erver-e2e-6
Update metrics-server e2e test for 0.6.0
2022-02-12 12:43:46 -08:00
Ole Markus With c88f9995a6 Update metrics-server e2e test for 0.6.0 2022-02-12 20:21:50 +01:00
Ole Markus With 8b71cedccc Do not enable graceful shutdown if k8s version < 1.21 2022-02-12 19:13:52 +01:00
Ciprian Hacman 97f726f7d8 Run hack/update-expected.sh
Signed-off-by: Ciprian Hacman <ciprian@hakman.dev>
2022-02-12 14:02:43 +02:00
Ole Markus With 65c3a63d5d KCM should not run with leader migraton when aws ccm is enabled
AWS CCM is enabled by default in k8s 1.24, and KCM builder is now aware of that
2022-02-12 11:35:30 +01:00
Kubernetes Prow Robot ce5539c8ff
Merge pull request #13237 from jiahuif-forks/feature/test-gcp-project-env
allow specify GCP project via env.
2022-02-11 21:25:47 -08:00
Jiahui Feng 1eb7b3a2af allow specify GCP project via env. 2022-02-11 14:59:44 -08:00
Ole Markus With 7132486ebf hack update-expected 2022-02-11 20:51:42 +01:00
Ole Markus With 2625264fe5 Add support for graceful node shutdown
Update docs/cluster_spec.md

Co-authored-by: Ciprian Hacman <ciprianhacman@gmail.com>
2022-02-11 20:51:02 +01:00
Moshe Shitrit 46ba2882d2 Update expected 2022-02-10 12:13:21 -05:00
Kubernetes Prow Robot 95fc0ac5b8
Merge pull request #13212 from olemarkus/irsa-119
Fix irsa for k8s < 1.20
2022-02-09 12:25:49 -08:00
Kubernetes Prow Robot 7ceb4b78a0
Merge pull request #13092 from ryan-dyer-sp/Issue-12776-node-termination-handler
Update aws node termination handler to 1.14.0
2022-02-09 00:52:18 -08:00
Ole Markus With f4d8334050 Add test for irsa on k8s 1.19 2022-02-09 08:53:04 +01:00
Moshe Shitrit 7fc89bdfe1 Update expected 2022-02-08 22:16:26 -05:00
Moshe Shitrit 120f4647f9 Update expected 2022-02-08 22:05:09 -05:00
Ryan Dyer 52d5ae3394 update tests 2022-02-08 14:26:37 -06:00
Ryan Dyer f2f10e9011 Update tests (via hack) 2022-02-08 14:15:09 -06:00
Ciprian Hacman 934827e213 Run hack/update-expected.sh
Signed-off-by: Ciprian Hacman <ciprian@hakman.dev>
2022-02-08 20:05:33 +02:00
Kubernetes Prow Robot 7f9bf4ecab
Merge pull request #13219 from jiahuif-forks/feature/ccm-flagbuilder
CCM: use flagbuilder instead of manually building argv
2022-02-07 23:26:54 -08:00
Kubernetes Prow Robot 147052818b
Merge pull request #13203 from olemarkus/csi-featuregates
Fix CSI migration feature gates
2022-02-07 21:36:53 -08:00
Jiahui Feng 33e2094569 generated: ./hack/update-expected.sh 2022-02-07 15:26:51 -08:00
Kubernetes Prow Robot 08d532389b
Merge pull request #13208 from olemarkus/hash-version
Use short commit sha for default stage location instead of git-describe
2022-02-05 09:12:50 -08:00
Kubernetes Prow Robot 70f3a2ec7f
Merge pull request #13187 from jiahuif-forks/feature/enable-leader-election
Always enable Leader Election for cloud-controller-manager
2022-02-05 06:30:50 -08:00
Ole Markus With 709e0bf36a Use short commit sha for default stage location instead of git-describe 2022-02-05 12:36:19 +01:00
Ole Markus With ab4c83b021 Use non-legacy tag in karpenter subnet selector 2022-02-04 22:47:39 +01:00
Ole Markus With 66e3202f34 Fix CSI migration feature gates
We had a bug for KCM feature gate, and the scheuler and apiserver gate was missing entirely.
2022-02-04 15:29:28 +01:00
Kubernetes Prow Robot 2fbc3e0671
Merge pull request #13198 from hakman/containerd-1.6.0-rc.2
Update containerd to v1.6.0-rc.2
2022-02-03 18:28:11 -08:00
Kubernetes Prow Robot 4afc826e33
Merge pull request #13174 from olemarkus/ab-version
Add support for AB tests starting out with released kops version
2022-02-03 18:27:59 -08:00
Kubernetes Prow Robot ecef0b99fe
Merge pull request #13194 from justinsb/gce_iptables_from_gcr
Pull k8s-custom-iptables from k8s.gcr.io
2022-02-03 10:19:46 -08:00
Ciprian Hacman 84fd622189 Run hack/update-expected.sh
Signed-off-by: Ciprian Hacman <ciprian@hakman.dev>
2022-02-03 19:33:10 +02:00
justinsb 4f89c2e689 Update expected test output for etcd-manager bump 2022-02-03 11:21:54 -05:00
justinsb 3ff0ed0d08 Pull k8s-custom-iptables from k8s.gcr.io
This is more correct anyway, but also ensures it will be rewritten
correctly by mirroring.

Only used on GCE.
2022-02-03 10:45:50 -05:00
Kubernetes Prow Robot 56dd0136cb
Merge pull request #13189 from hakman/calico-3.21.4
Update Calico and Canal to v3.21.4
2022-02-03 05:29:46 -08:00
Kubernetes Prow Robot aa29a15d76
Merge pull request #13191 from olemarkus/fix-not-found-check-2
Fix etcd-manager for ipv6
2022-02-03 04:45:45 -08:00
Ole Markus With 6327cc378f Fix etcd-manager for ipv6 2022-02-03 12:59:26 +01:00
Kubernetes Prow Robot f555027deb
Merge pull request #13181 from zetaab/updateos
update GCE default images
2022-02-03 01:07:45 -08:00
Ciprian Hacman 01f75f4a78 Run hack/update-expected.sh
Signed-off-by: Ciprian Hacman <ciprian@hakman.dev>
2022-02-03 10:24:22 +02:00
Kubernetes Prow Robot f40bdef005
Merge pull request #13186 from nckturner/more-descriptive-error
More descriptive error message when public key file can't be opened
2022-02-02 12:48:05 -08:00
Jiahui Feng a0fe9ee638 generated: ./hack/update-expected.sh 2022-02-02 11:44:47 -08:00
Kubernetes Prow Robot 6913f645e0
Merge pull request #13185 from olemarkus/karpenter-60
Bump karpenter to 0.6.0
2022-02-02 07:04:21 -08:00
Ole Markus With dcf06e320c Bump karpenter to 0.6.0 2022-02-02 13:56:00 +01:00
Ole Markus With af4d69cab3 Use etcd-manager pre-release until final release has been cut 2022-02-02 13:10:32 +01:00
Jesse Haka d591ee9c80 update GCE default images 2022-02-02 13:57:50 +02:00
Nick Turner 84f41e424a More descriptive error message when public key file can't be opened 2022-02-02 03:08:16 -08:00
Ole Markus With 7620c232d8 Add support for AB tests starting out with released kops version 2022-01-31 19:51:29 +01:00
justinsb 16a676ffb3 JWKS / IRSA: Expose public ACLs to terraform
Otherwise terraform wasn't correctly / consistently exposing these
files for JWKS/IRSA/OIDC.
2022-01-30 15:02:50 -05:00
Ole Markus With 994588c0fd Bump etcd-manager to v3.0.20220128 2022-01-30 07:13:32 +01:00
Kubernetes Prow Robot 6ed628cff2
Merge pull request #13154 from olemarkus/bump-cas-2232
Bump cert-manager and related godep to 1.6.2
2022-01-27 09:57:59 -08:00
Ole Markus With 3fe8a56291 Add missing v prefix to default upgrade test version 2022-01-27 12:02:31 +01:00
Ole Markus With 85a7877666 Bump cert-manager and related godep to 1.6.2 2022-01-26 20:28:23 +01:00
Kubernetes Prow Robot 3b5998d4b4
Merge pull request #13152 from yurrriq/CVE-2022-0185
Promote alpha AMIs to stable
2022-01-25 23:16:25 -08:00
Eric Bailey 4033d83adc Promote alpha AMIs to stable
https://ubuntu.com/security/CVE-2022-0185
2022-01-26 00:23:03 -06:00
Ole Markus With be49fce8f7 Bump karpenter to 0.5.6 2022-01-25 21:49:58 +01:00
Ole Markus With 71a144136e Bump CCM images 2022-01-21 13:24:40 +01:00
Kubernetes Prow Robot fd242709f3
Merge pull request #12911 from olemarkus/tag-on-create
Tag on create for remaining CCM privileges
2022-01-21 00:11:59 -08:00
Ole Markus With 9d476c0e9c Add CreateSecurityGroup permission for vpcs 2022-01-20 17:49:36 +01:00
Ole Markus With 666cf710a2 Push partition into the policy struct 2022-01-20 17:49:36 +01:00
Jin c17ddb1600 Update to aws-sdk-go to v1.42.37 2022-01-21 00:36:31 +08:00
Ole Markus With dc0e7675ba Add a k8s 1.23 version of the ccm test 2022-01-20 15:32:46 +01:00
Ole Markus With 0a082fed12 Require tag on create for external AWS CCM 2022-01-20 15:32:46 +01:00
Ciprian Hacman df29b6e406 Run hack/update-expected.sh
Signed-off-by: Ciprian Hacman <ciprian@hakman.dev>
2022-01-19 13:00:36 +02:00
Kubernetes Prow Robot 4b1ea96448
Merge pull request #13111 from olemarkus/no-kubelet-section
Don't set unsupported configs by default
2022-01-19 01:10:05 -08:00
Kubernetes Prow Robot 4eb54f2260
Merge pull request #13114 from olemarkus/nodeup-describe-regions
Add DescribeRegions to nodeup privs
2022-01-18 22:14:05 -08:00
Kubernetes Prow Robot fda6210e29
Merge pull request #13104 from olemarkus/tag-on-create-func
Create helper function for ec2 create/tag-on-create IAM permissions
2022-01-18 19:30:06 -08:00
Ole Markus With 3f265a43bb Remove networking flags as of k8s 1.24 2022-01-18 22:15:16 +01:00
Kubernetes Prow Robot 85732b4c4d
Merge pull request #13030 from johngmyers/v6-topology
Use IPv6-only subnets for worker nodes in private IPv6 topology
2022-01-18 10:58:40 -08:00
Ole Markus With b80488906f Add DescribeRegions to nodeup privs 2022-01-17 09:34:29 +01:00
Ole Markus With da31a1198f Don't set legacy IAM by default 2022-01-16 14:54:56 +01:00
Ole Markus With c8e6d93304 No need to set kubelet in tests 2022-01-16 14:39:46 +01:00
Ole Markus With 0ef596dd49 Do not create an IAM role for dns-controller on gossip clusters 2022-01-16 10:31:11 +01:00
Ole Markus With f4e538508f Create helper function for ec2 create/tag-on-create IAM permissions 2022-01-14 18:41:28 +01:00
Ciprian Hacman de80986019 Run hack/update-expected.sh
Signed-off-by: Ciprian Hacman <ciprian@hakman.dev>
2022-01-13 07:42:06 +02:00
Ciprian Hacman 83804334d8 Run hack/update-expected.sh 2022-01-07 10:18:10 +02:00
John Gardiner Myers 8faa80361e hack/update-expected.sh 2022-01-06 21:02:34 -08:00
John Gardiner Myers 5385381633 Use IPv6-only subnets for worker nodes in private IPv6 topology 2022-01-06 21:00:00 -08:00
Kubernetes Prow Robot 4ffc83d811
Merge pull request #13028 from rifelpet/ipv6-tf
Extend terraform support for IPv6
2022-01-06 17:08:30 -08:00
John Gardiner Myers d5ac8862d5 Release 1.24.0-alpha.2 2022-01-01 10:35:11 -08:00
Ole Markus With 844c36b6d2 Bump external-snapshotted to v5.0.0 2022-01-01 07:53:28 +01:00
Ole Markus With ea9d0de847 Handle default in templating instead of ig population 2021-12-30 09:01:43 +01:00
Ole Markus With 655d63cec1 Use instance requirements to get a wider set of instance types by default 2021-12-29 20:14:58 +01:00
Kubernetes Prow Robot 4c664ad915
Merge pull request #13050 from olemarkus/bump-cas-223
Bump Cluster Autoscaler and update manifest
2021-12-29 09:53:35 -08:00
Ole Markus With dd06cd337f Bump Cluster Autoscaler and update manifest 2021-12-29 18:06:27 +01:00
Jesse Haka 2bad52ea8c update deps 2021-12-29 13:22:05 +02:00
John Gardiner Myers dae281d30e Migrate to GCE CCM in k8s 1.24 2021-12-28 19:33:07 -08:00
Ole Markus With 52aa9734d8 Prefix karpenter logging-config name 2021-12-27 11:17:41 +01:00
Ole Markus With 375b706dab Run karpenter in HA 2021-12-26 07:18:25 +01:00
Ole Markus With 85d347b8ee LBC has to run on the control plane, so set replicas accordingly 2021-12-25 19:54:35 +01:00
Peter Rifel e6305aa81e
./hack/update-expected.sh 2021-12-25 08:39:02 -06:00
Peter Rifel 23686f0ead
./hack/update-expected.sh 2021-12-25 08:38:22 -06:00
Kubernetes Prow Robot e95e359e3a
Merge pull request #13026 from johngmyers/ipv6-only
Allow IPv6-only subnets
2021-12-24 02:24:14 -08:00