Kashif Saadat
3606865ad4
Canal v3.13.1
2020-03-25 12:09:46 +00:00
Ole Markus With
7e87eddbea
Make cilium operator health check go against localhost IP
...
Health check will fail otherwise
2020-03-25 08:38:47 +01:00
fentas
49b18cd3f7
Add cilium option tofqdns-dns-reject-response-code
2020-03-21 16:52:08 +01:00
Ole Markus With
e77a7d495c
Allow configuration of enable-remote-node-identity
2020-03-19 09:48:59 +01:00
Kubernetes Prow Robot
36cf282870
Merge pull request #8752 from johngmyers/missing-priority
...
Add missing priorityClassName to addons
2020-03-18 17:54:43 -07:00
liranp
526fd98afa
feature(spotinst): upgrade controller (v1.0.57)
2020-03-18 18:48:37 +02:00
Ciprian Hacman
eb2c9e336c
Update Weave Net to version 2.6.2
2020-03-17 19:44:20 +02:00
John Gardiner Myers
09df6ac844
Remove unreferenced template
2020-03-15 13:51:14 -07:00
John Gardiner Myers
63ccaa14d6
Add missing priorityClassName to addons
2020-03-15 13:51:10 -07:00
Ciprian Hacman
b3fbb494c6
Fix template for kube-router v0.4.0
2020-03-15 17:38:59 +02:00
Ciprian Hacman
507230fe75
Move Docker "health-check" to DockerBuilder
2020-03-15 09:47:47 +02:00
Kubernetes Prow Robot
88600407f4
Merge pull request #8629 from olemarkus/cilium-etcd-operator
...
Add option to use etcd managed by cilium-etcd-operator as kvstore
2020-03-14 17:18:34 -07:00
Ole Markus With
0c27aa3ce8
Update upup/models/cloudup/resources/addons/networking.cilium.io/k8s-1.12.yaml.template
...
Co-Authored-By: John Gardiner Myers <jgmyers@proofpoint.com>
2020-03-14 21:44:44 +01:00
eric-hole
450fad6e4c
Fixes the prom to sd params in metadata-proxy
2020-03-14 12:18:05 -07:00
eric-hole
bd6a54958f
Fix addon manifest version for metadata-proxy
2020-03-14 12:18:05 -07:00
eric-hole
b52e322159
Adds metadata concealment addon for GCE node
2020-03-14 12:18:05 -07:00
eric-hole
12ce5f0e9c
Node metadata-concealment in GCE, first pass
2020-03-14 12:18:05 -07:00
Kubernetes Prow Robot
7d030ae459
Merge pull request #8742 from hakman/kube-router-0.4.0-2
...
Fix template for kube-router v0.4.0
2020-03-14 10:42:35 -07:00
Kubernetes Prow Robot
ae51a5b138
Merge pull request #8582 from joshbranham/feature/better-default-storageclass
...
Create New Default StorageClass: kops-ssd-1-17
2020-03-14 08:46:35 -07:00
Ciprian Hacman
163c11fc6c
Fix template for kube-router v0.4.0
2020-03-14 17:23:12 +02:00
Ole Markus With
a98666d05a
Set kube-proxy-replacement to partial
...
Fully relying on kube-proxy breaks network policies.
Setting kube-proxy-replacement to partial instead of disabled makes
cilium behave as in 1.6.
2020-03-14 08:38:41 +01:00
Ole Markus With
e5ecce6edb
Remove conditional with only comments
2020-03-13 20:17:42 +01:00
Ole Markus With
2274045924
Add option to use etcd managed by cilium-etcd-operator as kvstore
2020-03-13 20:17:42 +01:00
Ciprian Hacman
84648dce4a
Update kube-router to v0.4.0
2020-03-13 17:54:32 +02:00
Kubernetes Prow Robot
e902c45a08
Merge pull request #8697 from UnderMyBed/kuberouter-1.16-fix
...
Fix kuberouter for k8s 1.16+
2020-03-12 11:12:38 -07:00
Matt Shipman
26fb6d030b
fix kuberouter for k8s 1.16
...
Starting in k8s 1.16 the kublet requires that cniVersion is set in the cni config
2020-03-12 10:27:08 -07:00
Peter Rifel
a999b3ea61
fix OWNERS labels format
...
These need to be lists
2020-03-10 22:47:50 -05:00
Ole Markus With
e92e70c7d0
When nodeport is enabled, use strict kube-proxy-replacement to ensure cilium fully replaces kube-proxy
2020-03-10 18:05:44 +01:00
Kubernetes Prow Robot
db435ee7cd
Merge pull request #8717 from rifelpet/owners-labels
...
Add labels to OWNERS files
2020-03-10 08:23:51 -07:00
Peter Rifel
237a125f2c
Add labels to OWNERS files
...
This will automatically label PRs that touch these directories.
This makes it easier to query GitHub for PRs that affect certain areas of the code.
I mostly used existing labels but created some new ones as well.
2020-03-10 08:35:58 -05:00
Ilya Dmitrichenko
c304d221a6
Bump Cilium to 1.7.1 for k8s 1.12+
2020-03-10 11:05:12 +00:00
Ciprian Hacman
689be235e5
Update Weave Net to version 2.6.1
2020-03-06 20:40:23 +02:00
mikesplain
07ffaaefc3
Add env var config
2020-03-05 16:51:03 -05:00
Peter Rifel
70f4429622
Revert "Update AWS IAM Authenticator to 0.5.0"
...
This reverts commit 03ccbfeb99 .
2020-03-04 07:38:42 -06:00
Peter Rifel
318e9a1441
Revert "Switch AWS IAM Authenticator to use non-scratch image"
...
This reverts commit 79027c18d4 .
2020-03-04 07:38:30 -06:00
Ciprian Hacman
f218f0bd7a
Update Calico and Canal to v3.12.0
2020-02-27 04:03:42 +02:00
Kubernetes Prow Robot
e07f84708e
Merge pull request #8276 from rifelpet/aws-vpc-cni-env-vars
...
Add support for custom env vars in amazon-vpc-cni
2020-02-26 15:07:20 -08:00
Matteo Ruina
555d82b58c
Update coredns to 1.6.7
2020-02-21 09:16:00 +01:00
Ole Markus With
84837a81a4
Fix typo in the cilium default version
2020-02-20 08:07:07 +01:00
Josh Branham
9f033f8e99
Set kops-ssd-1-17 class name
2020-02-19 12:43:09 -05:00
Josh Branham
67d377c49f
Update expected
2020-02-19 12:42:54 -05:00
Ole Markus With
d0d833144d
Bump Cilium to 1.7 for k8s 1.12+
...
Cilium 1.7 requires K8s 1.12 minimum. Changed the templates so that we
can have different cilium versions for different k8s versions.
This also mean that this addon will behave similar to other addons wrt
upgrades. Cilium used to add a fixed version to the cluster spec on cluster creation so
upgrades were slightly more manual. Now, for new clusters, upgrades will
happen implicitly with kops updates unless the .Version is added
manually to the cluster spec.
2020-02-19 18:26:07 +01:00
Ciprian Hacman
87bbcd615c
Use cluster name as default subnet tag for Lyft CNI
2020-02-17 17:39:07 +02:00
Ole Markus With
ced8f00201
Add option to use ENI as IPAM mode for Cilium
...
* Force cilium-operator run on master nodes
* Add option for setting cilium ipam mode
* If cilium ipam mode is eni, add additional permissions to master nodes
* Allow NonMasqueradeCIDR overlap with NetworkCIDR when Cilium ENI is enabled
2020-02-16 19:11:01 +01:00
Kubernetes Prow Robot
0e4db376df
Merge pull request #8561 from justinsb/gobindata
...
Replace unmaintained go-bindata
2020-02-14 20:25:27 -08:00
Justin SB
7e2ee13fa1
go-bindata: don't store file metadata
...
This was a big contributor to the build being non-repeatable.
2020-02-14 22:04:57 -05:00
Justin SB
fcd75d5e83
Replace unmaintained go-bindata
...
k/k uses go-bindata/go-bindata, so that's what we will use as well.
2020-02-14 13:57:29 -05:00
Kubernetes Prow Robot
721ed47e9d
Merge pull request #8555 from rifelpet/aws-iam-authenticator-scratch
...
Switch AWS IAM Authenticator to use non-scratch image
2020-02-13 20:10:17 -08:00
Peter Rifel
cd34cf41c5
Switch AWS IAM Authenticator to use non-scratch image
...
The authenticator binary uses glog which requires write access to the filesystem under /tmp
On the scratch image /tmp doesnt exist which caused a crash loop:
```
time="2020-02-14T02:06:00Z" level=info msg="creating event broadcaster"
time="2020-02-14T02:06:00Z" level=info msg="setting up event handlers"
W0214 02:06:00.358119 1 client_config.go:539] Neither --kubeconfig nor --master was specified. Using the inClusterConfig. This might not work.
log: exiting because of error: log: cannot create log: open /tmp/aws-iam-authenticator.ip-X-X-X-X.aws-iam-authenticator.log.WARNING.20200214-020600.1: no such file or directory
```
Switching to debian-stretch fixed the issue although it could really be any of the other images in the release [0]
[0] https://github.com/kubernetes-sigs/aws-iam-authenticator/releases/tag/v0.5.0
2020-02-13 20:29:49 -06:00
Kubernetes Prow Robot
91867ce4b5
Merge pull request #8220 from olemarkus/cilium-nodeport
...
Cilium nodeport
2020-02-13 09:18:36 -08:00