957 Commits (57ee3042603bdc92737496dd51672c9f79a49819)

Author SHA1 Message Date
Vladimir Rutsky bff955ff7e Mount host's /var/log into kubelet container 7 years ago
Matthew Mosesohn 80c0e747a7 Fix references to CoreOS and Container Linux by CoreOS 7 years ago
Matthew Mosesohn 617edda9ba Adjust weave daemonset for serial deployment 7 years ago
Vladimir Rutsky 7ab04b2e73 fix typo in "kibana_base_url" variable name 7 years ago
Matthew Mosesohn 97ebbb9672 Add graceful upgrade process 7 years ago
Vladimir Rutsky a1ec6f401c fix load balancer DNS name index evaluation in openssl.conf 7 years ago
Spencer Smith fbaef7e60f specify grace period for draining 8 years ago
Spencer Smith 017a813621 first cut of an upgrade process 8 years ago
Brad Beam 4c891b8bb0 Adding support for proxy w/ rkt kubelet 7 years ago
Sergii Golovatiuk 2b6179841b Install pip on Ubuntu 7 years ago
Vladimir Rutsky 09847567ae set "check_mode: no" for read-only "shell" steps that registers result 7 years ago
Sergii Golovatiuk 732ae69d22 Install pip on Ubuntu 7 years ago
Greg Althaus 2b10376339 When resolv.conf changes during host_resolvconf mode, we need to 7 years ago
Matthew Mosesohn b5be335db3 Clean up dnsmasq purge task 7 years ago
Sergii Golovatiuk 5f4cc3e1de Replace always_run with check_mode 7 years ago
Matthew Mosesohn ec567bd53c Update calico to v1.0.2 7 years ago
Sergii Golovatiuk aeadaa1184 Set ssl_ca_dirs for rkt based on fact 7 years ago
Matthew Mosesohn 6ae70e03cb fixup upgrades for canal and weave 7 years ago
Matthew Mosesohn 2c532cb74d Disable kube_proxy_masquerade_all 7 years ago
Alexander Block d2e010cbe1 Add kernel upgrade for CentOS 7 years ago
Matthew Mosesohn a44a0990f5 Enable reset of dnsmasq if manifest or config changes 7 years ago
Sergii Golovatiuk c07d60bc90 Kubernetes Reliability Improvements 7 years ago
Matthew Mosesohn 29fd957352 Enable weave upgrade from previous versions 7 years ago
Greg Althaus 3f0c13af8a Make kubelet_load_modules always present but false. 7 years ago
Greg Althaus fcd78eb1f7 Due to the nsenter and other reworks, it appears that 7 years ago
Mark Lee e414c25fd7 follow sysctl.conf file symlink if linked 7 years ago
Mark Lee 34a71554ae use ansible sysctl module for config ip forwarding 7 years ago
Josh Conant 245e05ce61 Vault security hardening and role isolation 7 years ago
Josh Conant f4ec2d18e5 Adding the Vault role 7 years ago
Sergii Golovatiuk 4124d84c00 Lower weave RAM settings. 7 years ago
Matthew Mosesohn 3c713a3f53 Fix upgrade for all daemonset type resources 7 years ago
Alexander Block 89e570493a Also add the system nameservers to upstream servers in dnsmasq 7 years ago
Mark Lee 3eacd0c871 Update rh_docker.repo.j2 7 years ago
Matthew Mosesohn 3eb13e83cf Change docker save compress level to 1 7 years ago
Mark Lee de50f37fea enable proxy support on docker repository 7 years ago
Alexander Block 010fe30b53 Host mount /dev for kubelet 7 years ago
Matthew Mosesohn e5779ab786 Fix check for node-NODEID certs existence 7 years ago
Matthew Mosesohn 71e14a13b4 Re-tune ETCD performance params 7 years ago
Aleksandr Didenko 54af533b31 Update playbooks to support new netchecker 7 years ago
Matthew Mosesohn f3a0f73588 Prevent dynamic port allocation in nodePort range 7 years ago
Matthew Mosesohn fd30131dc2 Revert "Drop linux capabilities and rework users/groups" 7 years ago
Sergii Golovatiuk 5122697f0b Improve Weave 7 years ago
Brad Beam df3e11bdb8 Adding EFK logging stack 7 years ago
Vladimir Rutsky b4327fdc99 handle both 'ansible_host' and 'ansible_ssh_host' in bastion configuration 7 years ago
Sergii Golovatiuk 585afef945 Remove nsenter workaround 7 years ago
Sergii Golovatiuk f2e4ffcac2 Fix weave-net after upgrade to 1.82 7 years ago
Greg Althaus 923057c1a8 This continues the DHCP hook checks. Also protect the create side 7 years ago
Matthew Mosesohn 39d87a96aa Rename weave-kube to weave-net 7 years ago
Matthew Mosesohn 08822ec684 Fix cert distribution at scale 7 years ago
Artem Panchenko 1418fb394b Explicitly set config path for DNSMasq 7 years ago