294 Commits (b61c64a8ea7139c94d8da4d981411099033e2843)

Author SHA1 Message Date
Matthew Mosesohn 7c93e71801
Upgrade k8s to 1.10.2 (#2748) 6 years ago
Christopher J. Ruwe 73800ef111 make certificates non-executable 6 years ago
Miouge1 ad48606e4e Restart scheduler when policy changes 6 years ago
Matthew Mosesohn 07cc981971
refactor vault role (#2733) 6 years ago
Miouge1 70e0998a70 Update kube-scheduler policy 6 years ago
Suzuka Asagiri f81e6d2ccf
Add oidc-user-prefix and oidc-group-prefix args 6 years ago
Chad Swenson d87b6fd9f3 Use dedicated front-proxy-ca for front-proxy-client 6 years ago
Christian Phu 3535c29e59 Fix apiserver manifest for kube version < 1.9 6 years ago
Marcelo Grebois 88765f62e6
Updating order 6 years ago
Marcelo Grebois 4c12b273ac
Enabling MutatingAdmissionWebhook for Istio Automatic sidecar injection 6 years ago
woopstar 86e3506ae6 Etcd cluster setup makeover 6 years ago
Wong Hoi Sing Edison 195d6d791a Integrate jetstack/cert-manager 0.2.3 to Kubespray 6 years ago
georgejdli 572ab650db copy dedicated service account token signing key for kubeadm migration 6 years ago
Matthew Mosesohn 03bcfa7ff5
Stop templating kube-system namespace and creating it (#2545) 6 years ago
Andreas Kruger af5f376163 Revert 6 years ago
woopstar 004b0a3fcf Fix merge conflict 6 years ago
Kuldip Madnani daeeae1a91 Added retries in pre-upgrade.yml and retries while applying kube-dns.yml (#2553) 6 years ago
georgejdli c8f857eae4 configure kubespray to sign service account tokens with a dedicated and stable key 6 years ago
Dann Bohn 1d0415a6cf fixes typo in kube_override_hostname for kubeadm 6 years ago
Dann Bohn 9fa995ac9d only sets nodeName in kubeadm-config when kube_override_hostname is set 6 years ago
mirwan ee8f678010 Addition of the .creds extension to the credentials files generated by password lookup in order for Ansible not to consider them as inventory files with inventory_ignore_extensions set accordingly (#2446) 6 years ago
Bharat Kunwar 13e47e73c8
Update kubeadm-config.yaml.j2 6 years ago
Bharat Kunwar 6c4e5e0e3d
Update kubeadm-config.yaml.j2 6 years ago
Bharat Kunwar d2fd7b7462
Update kube-apiserver.manifest.j2 6 years ago
Bharat Kunwar d9453f323b
Update kube-apiserver.manifest.j2 6 years ago
Bharat Kunwar b787b76c6c
Update kube-apiserver.manifest.j2 6 years ago
woopstar a94a407a43 Fix duplicate --proxy-client-cert-file and --proxy-client-key-file 6 years ago
woopstar 40c0f3756b Encapsulate item instead of casting to string 6 years ago
Andreas Krüger 3d6fd49179 Added option for encrypting secrets to etcd v.2 (#2428) 6 years ago
Andreas Krüger 788e41a315
Make sure output from extra args is strings 6 years ago
Andreas Krüger 39d247a238
Add support to kubeadm too 6 years ago
Ayaz Ahmed Khan 89847d5684 Explicitly defines the --kubelet-preferred-address-types parameter 7 years ago
RongZhang 67ffd8e923 Add etcd-events cluster for kube-apiserver (#2385) 6 years ago
Nedim Haveric 2bd3776ddb fix apiserver manifest when disabling insecure_port 6 years ago
Andreas Krüger d84ff06f73 Set filemode to 0640 (#2315) 6 years ago
melkosoft f13e76d022 Added cilium support (#2236) 6 years ago
Dann Bohn 95e2bde15b set nodeName to "{{ inventory_hostname }}" in kubeadm-config 6 years ago
Miouge1 4c280e59d4 Use legacy policy config to apply the scheduler policy 6 years ago
Virgil Chereches d72232f15b Increased timeout values for k8s API server restart 6 years ago
Maxim Krasilnikov 03c61685fb
Added apiserver extra args variable for kubeadm config (#2291) 6 years ago
Chia-liang Kao 338238d086
Fix version comparison 6 years ago
mlushpenko 4e61fb9cd3 Refactored kubeadm join process and fixed uncrodonng for master nodes 6 years ago
woopstar f193b12059 Kubeadm auto creates this 6 years ago
woopstar 2cd254954c Remove defaults of allowed names. Updated kubeadm 6 years ago
woopstar 4dab92ce69 Rename from aggregator-proxy-client to front-proxy-client to match kubeadm design. Added kubeadm support too. Changed to use variables set and not hardcode paths. Still missing cert generation for Vault 6 years ago
woopstar b2d30d68e7 Rename CN for aggreator back. Add flags to apiserver when version is >= 1.9 6 years ago
Maxim Krasilnikov 95b8ac5f62 Added optional controller and scheduler extra args to kubeadm config (#2205) 6 years ago
Dann Bohn dc6c703741 --etcd-quorum-read is depricated in kube >= 1.9 6 years ago
rong.zhang b10c308a5a Support ipvs mode for kube-proxy 6 years ago
Matthew Mosesohn dc6a17e092
Use include/import tasks (#2192) 6 years ago