Kenji Kaneda
baff30d66e
Add an option to skip NTP installation
...
Add NTPConfig to ClusterSpec. NTPConfig has the SkipInstall option.
https://github.com/kubernetes/kops/issues/9661
2021-03-31 12:33:32 -07:00
Ole Markus With
ab1b85818d
Pass ctx to drain helper
...
In some rare cases, we hit an NPR because the k8s code tries to use the
ctx we are not passing.
2021-03-26 10:29:11 +01:00
Kubernetes Prow Robot
a01ee1d0fe
Merge pull request #11140 from jurriaanpro/cluster-autoscaler-add-scale-down-delay-after-add
...
Add scaleDownDelayAfterAdd to clusterAutoscaler spec
2021-03-25 05:57:29 -07:00
jurriaanpro
25955ceb6b
Add scaleDownDelayAfterAdd to clusterAutoscaler spec
2021-03-25 11:23:48 +01:00
Kubernetes Prow Robot
42fbb1c1c5
Merge pull request #11119 from guydog28/11074-pr
...
replace hard coded aws region checks with aws sdk calls
2021-03-24 09:14:08 -07:00
guydog28
bd80c3f2b4
replace hard coded aws region checks with aws sdk calls
2021-03-24 15:31:05 +00:00
Ole Markus With
b1d106e375
Validate that kube-apiserver has the necessary authz modes set
2021-03-24 10:42:06 +01:00
Kubernetes Prow Robot
1bf4fd744f
Merge pull request #11102 from srikiz/Fix-DO-Tag-Index-Match-Issue
...
[DigitalOcean] Fix DO Tag issue
2021-03-23 13:14:42 -07:00
Barry Melbourne
05123faf5a
Update containerd to v1.3.10/v1.4.4
2021-03-23 17:02:01 +00:00
Ciprian Hacman
fa72535f95
Release 1.21.0-alpha.2
2021-03-22 08:38:47 +02:00
srikiz
94d8a6f748
Fix DO Tag issue
2021-03-22 00:47:28 +05:30
Kubernetes Prow Robot
a99668db1e
Merge pull request #10843 from lichuan0620/fix-iops-error
...
Add additional IOPS validation for AWS EBS gp3 volumes
2021-03-21 09:17:43 -07:00
Justin SB
7494150f44
Remove unused RoleLabelName16
...
The constant was unused, confusing and deprecated. I shouldn't have
introduced it!
2021-03-21 10:53:14 -04:00
Kubernetes Prow Robot
d14ba1bba1
Merge pull request #11087 from justinsb/readd_jwks_tests
...
Re-add integration tests for jwks
2021-03-21 00:33:49 -07:00
Kubernetes Prow Robot
d43fb1e807
Merge pull request #11083 from bmelbourne/update-ubuntu-20.04-ami
...
Update Ubuntu 20.04 to latest AMI
2021-03-21 00:33:42 -07:00
Justin SB
c75e084158
Re-add integration tests for jwks
...
We removed them from #10756 , but they can be re-added.
2021-03-20 22:55:11 -04:00
Kubernetes Prow Robot
15e4028c81
Merge pull request #10722 from olemarkus/apiserver-nodes
...
Apiserver nodes
2021-03-20 16:43:42 -07:00
Kubernetes Prow Robot
4875bd1a15
Merge pull request #11081 from olemarkus/validate-public-store
...
Ensure a publicdatastore exists for jwks and that it can only be s3
2021-03-20 14:31:42 -07:00
Ole Markus With
20bd724f5e
Add support for scaling out the control plane with dedicated apiserver nodes
...
Ensure apiserver role can only be used on AWS (because of firewalling)
Apply api-server label to CP as well
Consolidate node not ready validation message
Guard apiserver nodes with a feature flag
Rename Apiserver role to APIServer
Add an integration test for apiserver nodes
Rename Apiserver role to APIServer
Enumerate all roles in rolling update docs
Apply suggestions from code review
Co-authored-by: Steven E. Harris <seh@panix.com>
2021-03-20 20:57:00 +01:00
Kubernetes Prow Robot
2b46042241
Merge pull request #11086 from justinsb/controlplane_should_not_need_dns_permissions
...
Don't add control-plane DNS permissions with UseServiceAccountIAM
2021-03-20 12:29:42 -07:00
Justin SB
d7683d85ce
Don't add control-plane DNS permissions with UseServiceAccountIAM
...
Should not be needed; dns-controller should run on the control-plane
node so there should not be a bootstrapping problem with the nodes.
Reverts #10529
2021-03-20 14:00:46 -04:00
Justin SB
48ebac6892
Improve error messages around PublicJWKS
...
I left off the publicDataStore (must pass --overwrite on create, I
believe), and the error message was a type-cast failure.
2021-03-20 13:59:14 -04:00
Barry Melbourne
d13b7407a0
Update Ubuntu 20.04 to latest AMI
2021-03-20 10:52:28 +00:00
Ole Markus With
6e3199bf86
Ensure a publicdatastore exists for jwks and that it can only be s3
2021-03-20 07:18:39 +01:00
Ole Markus With
397f58deb4
Fix comments from review
2021-03-19 20:51:18 +01:00
Ole Markus With
5178571db5
Comment where the CA sha1s come from
2021-03-19 20:07:57 +01:00
Ole Markus With
1900548213
Upload JWKS files as world readable
2021-03-19 20:07:38 +01:00
Ole Markus With
5a8d47d45f
Fix bug with deleting OIDC providers
2021-03-19 20:07:22 +01:00
Ole Markus With
2c1f88f40e
Do not need thumbprints to be resources
2021-03-19 20:05:37 +01:00
Ole Markus With
ed166313d2
Use well-known s3 fingerprints
2021-03-19 20:03:28 +01:00
Peter Rifel
7c900b7fae
Generate and upload keys.json + discovery.json to public store
...
Generate and upload keys.json + discovery.json to public store
Don't enable anonymous auth on publicjwks
Remove tests that won't work using FS VFS anymore
2021-03-19 20:03:26 +01:00
Ciprian Hacman
55f8c70779
Add channels entries for image architecture
2021-03-15 20:36:37 +02:00
Bharath Vedartham
059c7ef33a
Create an environment file for kops-configuration systemd process
2021-03-13 22:20:49 +05:30
Kubernetes Prow Robot
ad7c793050
Merge pull request #10913 from seh/scope-os-update-policy-to-instance-group-too
...
Honor OS update policy at InstanceGroup level too
2021-03-12 22:03:03 -08:00
Kubernetes Prow Robot
d1f17c6c1b
Merge pull request #11027 from hakman/fix_docker_insecure_registries
...
Fix rendering of multiple Docker insecure registries
2021-03-12 08:10:18 -08:00
Kubernetes Prow Robot
bafbdaef6d
Merge pull request #11026 from olemarkus/cilium-1.10
...
Allow cilium 1.10
2021-03-12 07:06:18 -08:00
Ciprian Hacman
79a0720143
Fix rendering of multiple Docker insecure registries
2021-03-12 16:30:15 +02:00
Kubernetes Prow Robot
928b8cc442
Merge pull request #11009 from spotinst/feat-launchspec-bdm
...
Spotinst: Add support for block device mappings in Ocean Launch Spec
2021-03-12 06:16:18 -08:00
Ole Markus With
8e2e60ae44
Allow cilium 1.10
2021-03-12 14:17:28 +01:00
Kubernetes Prow Robot
8a8a4c8e40
Merge pull request #10740 from hwoarang/ignore-detached-instances-aws
...
aws: Graceful handling of EC2 detach errors
2021-03-10 09:47:14 -08:00
liranp
dc1ee9402a
feat(spot/ocean): support for block device mappings in launchspec
2021-03-10 15:30:39 +02:00
Steven E. Harris
44061601da
Test default StorageClass management choice
2021-03-09 11:08:33 -05:00
Steven E. Harris
50e89c1c6a
Honor an OpenStack StorageClass management choice
...
When choosing a default value for the Cluster spec's
"cloudConfig.manageStorageClasses" field, first check whether a user
specified a concrete value for the related OpenStack
"blockStorage.createStorageClass" field. If so, use that value as the
effective default value for the former field as well, so as to avoid
an unnecessary conflict between the field values on the second
validation pass.
2021-03-09 09:10:56 -05:00
Bharath Vedartham
0c0767c0c9
Remove support for launch configurations
2021-03-09 09:04:15 +02:00
Kubernetes Prow Robot
fea7589d97
Merge pull request #10574 from bharath-123/feat/protokube-systemd
...
Run protokube as a systemd service
2021-03-07 22:03:44 -08:00
Ole Markus With
c6a741a148
Move dns and external_access to awsmodel
2021-03-07 22:07:17 +01:00
Ole Markus With
d415fdf1a1
Move bastion model to awsmodel
2021-03-07 22:06:20 +01:00
Ole Markus With
896f1740c6
Rename spotinst symbols and merge spotinstmodel with awsmodel
2021-03-07 22:06:12 +01:00
Kubernetes Prow Robot
ef7c934b9a
Merge pull request #10975 from ottosulin/feature/etcdmanagerconfs
...
Add etcd-manager discoveryPollInterval option
2021-03-05 22:11:43 -08:00
Bharath Vedartham
5a72ef0f94
Remove protokube image references
2021-03-06 00:33:12 +05:30