Commit Graph

15667 Commits

Author SHA1 Message Date
Ole Markus With e7a5437a34 Add fixed version to all addons
This will make also older channels trigger addon updates
2021-09-30 15:25:29 +02:00
Jeroen van Erp 7850c4e284
Add support for YAML/JSON output to 'kops get instances' 2021-09-30 11:25:00 +02:00
Kubernetes Prow Robot 3dc1d25454
Merge pull request #12439 from rifelpet/nth-truncate
Truncate cluster name in NTH EventBridgeRules
2021-09-30 00:58:07 -07:00
Kubernetes Prow Robot ac760c699a
Merge pull request #12440 from ev-hines/master
Fix typo in name of new 'UseServiceAccountExternalPermissions' variable.
2021-09-29 19:24:07 -07:00
Peter Rifel 3311e45767
Truncate cluster name prefix used in event bridge rules 2021-09-29 19:12:49 -05:00
Peter Rifel 83e3d3c75d
Lengthen NTH integration test cluster name 2021-09-29 19:10:04 -05:00
Kubernetes Prow Robot dc9bf4f36c
Merge pull request #12419 from eddycharly/audiences
feat: add support for custom audience in aws oidc provider
2021-09-29 13:45:21 -07:00
Kubernetes Prow Robot 2006cc1b77
Merge pull request #12425 from rifelpet/awsiam-v1
Fix AWS IAM Authenticator support for k8s 1.22
2021-09-29 12:23:21 -07:00
Evan Hines 5372e614c8
Fix typo in name of new 'UseServiceAccountExternalPermissions' variable. 2021-09-29 13:38:03 -04:00
eddycharly e438897665
Apply suggestions from code review
Co-authored-by: Peter Rifel <rifelpet@users.noreply.github.com>
2021-09-29 13:38:29 +02:00
Kubernetes Prow Robot 960c4a796d
Merge pull request #12434 from rifelpet/gce-skip
Skip certain e2e tests in GCE
2021-09-28 23:44:48 -07:00
Kubernetes Prow Robot 0063140e8c
Merge pull request #12438 from dezmodue/issue-9441
Document cloud-init behaviour
2021-09-28 23:00:48 -07:00
Kubernetes Prow Robot 8f91247b59
Merge pull request #12234 from hierynomus/coredns-affinity-tolerations
Add ability to provide custom CoreDNS tolerations and affinity
2021-09-28 15:10:34 -07:00
Charles-Edouard Brétéché 7c8c9b9a23 feat: add support for custom audience in aws oidc provider
fix: missing json tags


fix: code gen


fix: switch to additional audiences


fix: oidc task


fix: add integration test
2021-09-28 22:39:56 +02:00
Simone Sciarrati 1ffdccd9dd Document cloud-init behaviour 2021-09-28 22:17:31 +02:00
Kubernetes Prow Robot f6c7974dff
Merge pull request #12430 from rifelpet/al2-docs
Update Amazon Linux 2 documentation to mention the 5.10 kernel
2021-09-28 12:48:34 -07:00
Jeroen van Erp c30ec8e310
Add ability to provide custom CoreDNS Tolerations and Affinity
Signed-off-by: Jeroen van Erp <jeroen@hierynomus.com>
2021-09-28 17:05:48 +02:00
Kubernetes Prow Robot b9d5e37e1f
Merge pull request #12431 from olemarkus/cilium-al2
Mount cgroupv2 for cilium at a custom location
2021-09-28 07:14:43 -07:00
Peter Rifel e3d11d9269
./hack/update-expected.sh 2021-09-28 08:30:57 -05:00
Peter Rifel 1c25193dc7
Upgrade aws-iam-authenticator to 0.5.3 2021-09-28 08:29:39 -05:00
Peter Rifel bb46e73ade
aws-iam-authenticator - use v1 CRD API for k8s 1.22 support 2021-09-28 08:29:39 -05:00
Peter Rifel 747fbcdd09
Update Amazon Linux 2 documentation to mention the 5.10 kernel 2021-09-28 08:26:33 -05:00
Peter Rifel 08ad2c6765
Skip certain e2e tests in GCE
These tests will never work with how kOps configures GCE clusters, so skip them for now
2021-09-27 22:28:54 -05:00
Kubernetes Prow Robot 0d31ba853c
Merge pull request #12426 from rifelpet/iam-apiserver
Allow aws-iam-authenticator to be scheduled onto dedicated apiserver nodes
2021-09-27 15:39:45 -07:00
Kubernetes Prow Robot 706f672401
Merge pull request #12427 from rifelpet/dump-etchosts
Have toolbox dump include contents of /etc/hosts
2021-09-27 12:43:45 -07:00
Kubernetes Prow Robot 25f43e194d
Merge pull request #12428 from rifelpet/apiserver-e2e
Add kubetest2-kops template for testing dedicated APIServer nodes
2021-09-27 11:17:45 -07:00
Ole Markus With 39178703c8 Mount cgroupv2 for cilium at a custom location 2021-09-27 19:29:36 +02:00
Kubernetes Prow Robot 6cdf2ff3c1
Merge pull request #12422 from justinsb/refactor_bootstrap
Refactor bootstrap verifier/authenticator into its own package
2021-09-27 09:03:35 -07:00
Peter Rifel cfdfb65e04
Allow api-server taint in e2e tests 2021-09-27 10:12:40 -05:00
Peter Rifel 6dd0d99f9b
Include --name in `kops toolbox template` 2021-09-27 10:12:40 -05:00
Peter Rifel d1148bce67
Add kubetest2-kops template for testing dedicated APIServer nodes 2021-09-27 10:12:40 -05:00
Peter Rifel 29e9276080
Have toolbox dump include contents of /etc/hosts
This should help troubleshoot DNS issues in gossip clusters
2021-09-26 19:04:13 -05:00
Peter Rifel 42ecabae28
Allow aws-iam-authenticator to be scheduled onto dedicated apiserver nodes 2021-09-26 11:09:30 -05:00
Kubernetes Prow Robot 76cc54159c
Merge pull request #12424 from justinsb/protokube_logspam
protokube: don't try to connect to apiserver if not control-plane
2021-09-26 08:52:21 -07:00
Kubernetes Prow Robot e1929d05a8
Merge pull request #12421 from justinsb/update_gcp_apis
Update google.golang.org/api to 0.57.0
2021-09-26 08:10:22 -07:00
justinsb 500f85e1f0 protokube: don't try to connect to apiserver if not control-plane
We run protokube on the nodes in gossip mode; however protokube tries
to connect to the apiserver on localhost, and that simply won't work
if running on a node.

This doesn't cause any actual problems beyond logspam, but it's an
easy fix.
2021-09-26 10:05:23 -04:00
justinsb fad6db8beb Refactor bootstrap verifier/authenticator into its own package
No code changes, but this avoids a circular package dependency that we
would otherwise introduce in the GCE logic.
2021-09-26 09:43:53 -04:00
justinsb 464879a405 Update google.golang.org/api to 0.57.0
In particular, we want the vTPM (shielded VM) support.
2021-09-26 09:39:10 -04:00
Kubernetes Prow Robot c742621468
Merge pull request #12386 from justaugustus/promo-tools-rename
release-process.md: Update references to artifact promotion
2021-09-25 18:26:21 -07:00
Kubernetes Prow Robot 93dc3b907c
Merge pull request #12412 from olemarkus/nlb-add-subnet
Allow adding more subnets to an NLB
2021-09-25 17:32:21 -07:00
Kubernetes Prow Robot ef22270b3f
Merge pull request #12394 from ReillyBrogan/reilly/ciliumBidirectionalMount
Add bidirectional BPF mount for Cilium >= 1.9.10 or >= 1.10.4
2021-09-25 09:42:21 -07:00
Kubernetes Prow Robot 8225c78eb8
Merge pull request #12415 from olemarkus/revert-sysctl
Revert "Remove unneeded network related sysctls"
2021-09-25 04:54:21 -07:00
Ole Markus With fed0c16085 Revert "Remove unneeded network related sysctls"
This reverts commit ce08ec68df.
2021-09-25 08:24:47 +02:00
Kubernetes Prow Robot 92ea7d58cb
Merge pull request #12398 from rifelpet/scheduler-critical
Remove critical-pod scheduler annotation.
2021-09-24 08:07:23 -07:00
Kubernetes Prow Robot 1774e6cae3
Merge pull request #12321 from dezmodue/private_bastion
Add option to create an internal load balancer for the bastion
2021-09-24 07:23:24 -07:00
Kubernetes Prow Robot b5369a5441
Merge pull request #12411 from hakman/cnf-lint-0.54.2
Upgrade cnf-lint to 0.54.2
2021-09-24 06:31:23 -07:00
Ole Markus With fc9c86e778 Allow adding more subnets to an NLB 2021-09-24 14:21:45 +02:00
Ciprian Hacman 895ac428e2 Upgrade cnf-lint to 0.54.2 2021-09-24 15:11:10 +03:00
Kubernetes Prow Robot 128b556369
Merge pull request #12410 from rifelpet/tf107
Run verify-cloudformation in host network
2021-09-24 04:57:24 -07:00
Peter Rifel d3f657bdc4
Run verify-cloudformation in host network 2021-09-24 06:20:31 -05:00