Mikael Johansson
040dda37ed
Add comment clarifying network allocation and sizes ( #6607 )
* Add comment from roles/kubespray-defaults/defaults/main.yaml clarifying network allocation and sizes
Signed-off-by: Mikael Johansson <mik.json@gmail.com>
* Rewrite of the comment and added new examples
Signed-off-by: Mikael Johansson <mik.json@gmail.com>
4 years ago
holmesb
a99ba3bb16
Allowing resource management of metrics-server container. Will allow fine-tuning of resource allocation and solving throttling issues. Setting defaults as per the current request & limit allocation: cpu: 43m, memory 55Mi for both limits & requests. ( #6652 )
Signed-off-by: Brendan Holmes <holmesb@users.noreply.github.com>
Co-authored-by: Brendan Holmes <holmesb@users.noreply.github.com>
4 years ago
Florian Ruynat
05ff4a527d
Fix a bunch of failed quality rules ( #6646 )
4 years ago
Florian Ruynat
ae5328c500
Update calico to 3.16.1 ( #6644 )
4 years ago
spaced
34ff39e654
NetworkManager lists must be separated by , ( #6643 )
4 years ago
Florian Ruynat
8e3915f5bf
Set ansible_python_interpreter to python3 on debian (fix error with mitogen) ( #6633 )
4 years ago
Maxime Guyot
6019a1006c
Use v2.14.0 as base image for CI ( #6636 )
4 years ago
Maxime Guyot
a1f04e9869
Cleanup v1.16 hashes ( #6635 )
4 years ago
Maxime Guyot
961149b865
Update kube_version_min_required for 2.14 release ( #6634 )
4 years ago
Barry Melbourne
597c810ef0
Resolve Vagrant etcd unhealthy cluster error ( #6630 )
4 years ago
spaced
2de6a5676d
Fedora coreos networkmanager global dns and bootstrapping fix ( #6577 )
* remove podman cni plugin
* configure networkamanger global dns
* allow installation of python3-libselinux by disabling update repo temporary
* remove ipv4 section because it is not a valid configuration
4 years ago
Florian Ruynat
050578da94
Update Cilium to 1.8.3 ( #6629 )
4 years ago
Florent Monbillard
5a437add01
Fix upgrade playbook name ( #6625 )
* Fix upgrade playbook name
* Fix my fix :)
4 years ago
Florian Ruynat
6fc73e3038
Add Kubernetes 1.16.15 hashes ( #6624 )
4 years ago
Florian Ruynat
d97e9b9e50
Fix oracle linux repo ( #6627 )
4 years ago
Florian Ruynat
fa0eb11bf4
Update kubernetes dashboard ( #6623 )
4 years ago
Julien Pervillé
f660c29348
Declare port 10254 in nginx ingress pod template ( #6609 )
4 years ago
Hans Feldt
6613895de0
remove kubelet startup warnings for non docker container runtime ( #6605 )
Removes these startup warnings:
Warning: For remote container runtime, --pod-infra-container-image is ignored in kubelet, which should be set in that remote runtime instead
Using "/var/run/crio/crio.sock" as endpoint is deprecated, please consider using full url format "unix:///var/run/crio/crio.sock".
4 years ago
Hans Feldt
803d52ffce
kubernetes: remove unused variables ( #6601 )
4 years ago
tasekida
fc61f8d52e
Update cert manager to 0.16.1 ( #6600 )
* Update cert manager to 0.16.1
* Update cert manager to 0.16.1
Co-authored-by: Barry Melbourne <9964974+bmelbourne@users.noreply.github.com>
4 years ago
Maxim Pogozhiy
0553814b4f
Add selectable dns policy for kube-router ( #6586 )
4 years ago
Florian Ruynat
f1566cb8c2
Add protectKernelDefaults option (default true) to kubelet config file ( #6611 )
4 years ago
Lovro Seder
c1ba8e1b3a
Rotate kubelet server certificate. ( #6453 )
* Rotate kubelet server certificate.
* CI test kubelet server cert rotation
* Approve kubelet serving certificates in tests.
4 years ago
Hugo Blom
2ff7ab8d40
Add snapshot-controller for CSI drivers and snapshot CRDs, add a default volumesnapshotclass when running cinder CSI ( #6537 )
* add snapshot-controller and v1beta1 snapshot api
* fix typo
* udpate manifest to v1beta1
* update
* update manifests
* fix spelling
* wait until crd is applied
* fix missing info in kube module
* revert snapshotclass
* add snapshot crds before applying the csi driver
* add crds, missed them in last commit
* use pull policy from kubespray
4 years ago
Hans Feldt
93698a8f73
Calico: update crds to v1 and cr ( #6360 )
* Update CustomResourceDefinition for kubecontrollersconfigurations.crd.projectcalico.org to v1
* Align ClusterRole for kube-controllers with upstream (calico)
4 years ago
Maxime Guyot
6245587dc8
Fix E306 in roles/network_plugin ( #6516 )
Signed-off-by: Miouge1 <maxime@root314.com>
4 years ago
Florian Ruynat
2faf53b039
Check node_ip is defined when removing etcd node ( #6603 )
4 years ago
Florian Ruynat
e0b1787740
Use crictl 1.19.0 for k8s 1.19.x ( #6598 )
4 years ago
Florian Ruynat
9849dba5d3
Update cni plugins with minor fix ( #6592 )
4 years ago
Barry Melbourne
03c9c091f2
Docker: Set Cgroup driver by default to systemd ( #6563 )
* Set Docker Cgroup driver to systemd
* Add docker_cgroup_driver in Docker defaults
4 years ago
Marc-Antoine
5a8b68a429
Add support for openstack application credentials ( #6534 )
* Add support for openstack application credentials
* Add some lines for readability
* Update external_openstack_tenant_id check
Do not check external_openstack_tenant_id when application credentials are defined
* Add check for external_openstack_domain_id
* Fix typo
4 years ago
Maxime Guyot
34d88ea6d9
Fix Ansible-lint E303 ( #6409 )
4 years ago
Florian Ruynat
0665b45e61
Update nginx ingress to 0.35.0 ( #6599 )
4 years ago
Maxime Guyot
648fcf3a2e
Fix E306 in roles/etcd ( #6515 )
4 years ago
Barry Melbourne
058438a25d
Remove support for CoreOS Container Linux ( #6576 )
4 years ago
Maxime Guyot
6e938a3106
Fix E306 in other roles ( #6517 )
4 years ago
Florian Ruynat
2f93d62aa5
Update nginx ingress to 0.34.1 ( #6571 )
4 years ago
Florian Ruynat
8ba3d7ec75
Add Kubernetes 1.19 hashes ( #6593 )
4 years ago
Hans Feldt
9e2d282709
cri-o: add variable to configure unsecure pull ( #6568 )
By default do not allow "unqualified" (without a registry) images
because it is considered unsecure and subject to mitm attacks.
To enable insecure pull configure for example:
crio_registries:
- "docker.io"
- "quay.io"
4 years ago
Florian Ruynat
706c7cb4f1
etcd should not fail when adding an already existing member ( #6587 )
4 years ago
Florian Ruynat
5884eeb606
Remove ethtool workaround, issue is now fixed ( #6579 )
4 years ago
Florian Ruynat
e7ee19bd66
Update bunch of dependencies with minor fixes ( #6570 )
4 years ago
Hugo Blom
2f8fc92182
make it possible to open additional ports on master nodes ( #6547 )
4 years ago
nic0las
f59d3fc4a3
Deviceroutesourceaddress ( #6508 )
* add FELIX_DEVICEROUTESOURCEADDRESS calico option
* add calico_use_default_route_src_ipaddr option
add calico_use_default_route_src_ipaddr option to use FELIX_DEVICEROUTESOURCEADDRESS calico option
* Update k8s-net-calico.yml
4 years ago
Barry Melbourne
8e2bae0f2a
Fix Ansible Lint warnings (No such file or directory) ( #6581 )
4 years ago
Arthur Outhenin-Chalandre
e6dae03a0d
Add cilium hubble server in config ( #6575 )
Signed-off-by: Arthur Outhenin-Chalandre <arthur@cri.epita.fr>
4 years ago
Arthur Outhenin-Chalandre
2f2ed116f7
Improve metallb template for bgp peers ( #6574 )
Signed-off-by: Arthur Outhenin-Chalandre <arthur@cri.epita.fr>
4 years ago
Kuralamudhan Ramakrishnan
e91c6a7bd1
update the ovn4nfv-k8s-plugin image version to v1.1.0 ( #6531 )
Signed-off-by: Kuralamudhan Ramakrishnan <kuralamudhan.ramakrishnan@intel.com>
4 years ago
Florian Ruynat
1ff95e85f4
Rollback coredns, should not have been updated before 1.19 ( #6573 )
4 years ago
Sulochan Acharya
36924b63dc
Allow webhook authorization ( #6502 )
4 years ago