Merge pull request #30712 from funkypenguin/issue30661

Fix auditing example to permit log rotation
This commit is contained in:
Kubernetes Prow Robot 2021-12-06 06:04:32 -08:00 committed by GitHub
commit d6865d1a1f
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 4 additions and 4 deletions

View File

@ -147,7 +147,7 @@ If your cluster's control plane runs the kube-apiserver as a Pod, remember to mo
to the location of the policy file and log file, so that audit records are persisted. For example: to the location of the policy file and log file, so that audit records are persisted. For example:
```shell ```shell
--audit-policy-file=/etc/kubernetes/audit-policy.yaml \ --audit-policy-file=/etc/kubernetes/audit-policy.yaml \
--audit-log-path=/var/log/audit.log --audit-log-path=/var/log/kubernetes/audit/audit.log
``` ```
then mount the volumes: then mount the volumes:
@ -157,7 +157,7 @@ volumeMounts:
- mountPath: /etc/kubernetes/audit-policy.yaml - mountPath: /etc/kubernetes/audit-policy.yaml
name: audit name: audit
readOnly: true readOnly: true
- mountPath: /var/log/audit.log - mountPath: /var/log/kubernetes/audit/
name: audit-log name: audit-log
readOnly: false readOnly: false
``` ```
@ -172,8 +172,8 @@ and finally configure the `hostPath`:
- name: audit-log - name: audit-log
hostPath: hostPath:
path: /var/log/audit.log path: /var/log/kubernetes/audit/
type: FileOrCreate type: DirectoryOrCreate
``` ```