78 Commits (1bfbc5bbc483c94d2bc4a2cd5864e7a9db9c3b51)

Author SHA1 Message Date
Zou Nengren 1bfbc5bbc4 remove resource-container default value for kube-proxy (#4994) 5 years ago
Matthew Mosesohn 7cf8ad4dc7 Optionally refresh kubeadm token every time (#5043) 5 years ago
okamototk f2b8a3614d Use K8s 1.15 (#4905) 5 years ago
Tony Fouchard 216631bf02 Repair kube_proxy_exclude_cidrs (#4909) 5 years ago
Matthew Mosesohn 4348e78b24 Enable kubeadm etcd mode (#4818) 5 years ago
Sergey Kolekonov 4a10dca7d4 Add an ability to provide oidc cert in base64 (#4618) 6 years ago
Matthew Mosesohn 05dc2b3a09 Use K8s 1.14 and add kubeadm experimental control plane mode (#4514) 6 years ago
Matthew Mosesohn d39c273d96 Revert "Use K8s 1.14 and add kubeadm experimental control plane mode (#4317)" (#4510) 6 years ago
Matthew Mosesohn 316508626d Use K8s 1.14 and add kubeadm experimental control plane mode (#4317) 6 years ago
Xavi 20b12751af add Cinder allowVolumeExpansion option (#4415) 6 years ago
Sergey 55890e1b82 keep compatibility as it was before (#4268) 6 years ago
Manuel Cintron 07b2894080 Adding ability to maintain existing Encryption Secrets at Rest. (#4255) 6 years ago
Chad Swenson 1d9c0c7d17 Fix readOnly flag in kubeadm-config.v1beta1.yaml.j2 6 years ago
Andreas Holmsten 4d5b41b8db Allow override of bind addr for controller-manager and scheduler (#3968) 6 years ago
Chad Swenson 80379f6cab Fix kube-proxy configuration for kubeadm (#3958) 6 years ago
Seongjin Cho 16715adfa0 Adds support for webhook token auth. (#3939) 6 years ago
Rong Zhang cd42e649a7 Fix reconfigure and upgrade cluster (#3938) 6 years ago
ihard 30a9149b52 add vars for cilium init container (#3893) 6 years ago
Andreas Krüger d5ce5874e8 Streamline path to certs dir (#3836) 6 years ago
Chad Swenson 487cfa5e6c Add options for configuring control plane component extra volumes (#3779) 6 years ago
Erwan Miran 1e22c83f0f kube_override_hostname must be in kubernetes/master role defaults (#3647) 6 years ago
Erwan Miran 7bec169d58 Fix ansible syntax to avoid ansible deprecation warnings (#3512) 6 years ago
sangwook 0536125f75 Better fix for openstack cinder zone issue using ignore-volume-az option (#2980) 6 years ago
Andreas Krüger d6ebe8c3e7 Sync manifests with kubeadm (#3383) 6 years ago
Erwan Miran a644b7c267 Introducing credentials_dir in order to be able to override it 6 years ago
rongzhang 5a4352657d Fix install audit failed 6 years ago
Erwan Miran 80cfeea957 psp, roles and rbs for PodSecurityPolicy when podsecuritypolicy_enabled is true 6 years ago
Erwan Miran fc38b6d0ca Ability to define custom audit polcy rules 6 years ago
Erwan Miran c34900e569 Define apiserver flags directly instead of relying on auditPolicy section in order to have the ability to redirect audit log to stdout with kubeadm 6 years ago
Erwan Miran 58d4d65fab minor variable fix and reuse + handle auditlog redirected to stdout 6 years ago
rongzhang 2ffc1afe40 Support audit 6 years ago
Robert Everson 4eadf3228e Only add admission plugins if defined 6 years ago
Robert Everson 99c5aa5a02 Use k8s default plugin list 6 years ago
Robert Everson 6ed65d762b Separate out plugins into 2 variables 6 years ago
Matthew Mosesohn 07cc981971
refactor vault role (#2733) 7 years ago
Suzuka Asagiri f81e6d2ccf
Add oidc-user-prefix and oidc-group-prefix args 7 years ago
Marcelo Grebois 88765f62e6
Updating order 7 years ago
Marcelo Grebois 4c12b273ac
Enabling MutatingAdmissionWebhook for Istio Automatic sidecar injection 7 years ago
Wong Hoi Sing Edison 195d6d791a Integrate jetstack/cert-manager 0.2.3 to Kubespray 7 years ago
mirwan ee8f678010 Addition of the .creds extension to the credentials files generated by password lookup in order for Ansible not to consider them as inventory files with inventory_ignore_extensions set accordingly (#2446) 7 years ago
Andreas Krüger 3d6fd49179 Added option for encrypting secrets to etcd v.2 (#2428) 7 years ago
Ayaz Ahmed Khan 89847d5684 Explicitly defines the --kubelet-preferred-address-types parameter 7 years ago
Maxim Krasilnikov 03c61685fb
Added apiserver extra args variable for kubeadm config (#2291) 7 years ago
mlushpenko 4e61fb9cd3 Refactored kubeadm join process and fixed uncrodonng for master nodes 7 years ago
Maxim Krasilnikov 95b8ac5f62 Added optional controller and scheduler extra args to kubeadm config (#2205) 7 years ago
Virgil Chereches a4d142368b Renamed variable from disable_volume_zone_conflict to volume_cross_zone_attachment and removed cloud provider condition; fix identation 7 years ago
Virgil Chereches 3125f93b3f Added disable_volume_zone_conflict variable 7 years ago
Matthew Mosesohn 6bb46e3ecb
Fix param names in preparation for Kubernetes v1.9.0 (#2098) 7 years ago
Steven Hardy d39a88d63f Allow setting --bind-address for apiserver hyperkube (#1985) 7 years ago
Chiang Fong Lee 5dc56df64e Fix ordering of kube-apiserver admission control plug-ins (#1841) 7 years ago