linkerd2/controller/proxy-injector/fake/data
Alejandro Pedraza fe79b598ed
chore(helm)!: change iptables default mode to `nft` (#14326)
* chore(helm)!: change iptables default mode to `nft`

This change sets as a new default `nft` for the `proxyInit.iptablesMode`
and `iptablesMode` values in the linkerd-control-plane and linkerd2-cni
helm charts. This doesn't imply any change in user-facing behavior.

This was prompted by EKS with k8s 1.33 no longer supporting the iptables
legacy mode.

Further testing in multiple platforms with different k8s versions
revealed nft mode is now broadly supported.

Upgrading via Helm will apply the new default, unless the initial
install explicitly set the legacy mode.
2025-08-06 17:01:09 -05:00
..
annotation.patch.json
deployment-inject-disabled.yaml
deployment-with-injected-proxy.yaml
filter-pod-opaque-ports.yaml
filter-service-opaque-ports.yaml
filtered-pod-opaque-ports.json
filtered-service-opaque-ports.json
inject-init-container-spec.yaml
inject-linkerd-secrets-volume-spec.yaml
namespace-inject-disabled.yaml
namespace-inject-enabled.yaml
namespace-with-opaque-ports.yaml
pod-cpu-ratio.json
pod-inject-empty.yaml
pod-inject-enabled-cpu-ratio.yaml
pod-inject-enabled-log-level.yaml
pod-inject-enabled.yaml
pod-log-level.json
pod-with-custom-debug-tag.yaml
pod-with-custom-debug.patch.json
pod-with-debug-disabled.yaml
pod-with-debug-enabled.yaml
pod-with-debug.patch.json
pod-with-ns-annotations.patch.json
pod-with-opaque-ports.yaml
pod-without-opaque-ports.yaml
pod.patch.json
service-with-opaque-ports.yaml
service-without-opaque-ports.yaml