466 Commits (c3d5fdff642393337605db658a43aae7f89c0e2a)

Author SHA1 Message Date
Matthew Mosesohn d176818c44 Use find module for checking for certificates 7 years ago
Vincent Schwarzer 68e8d74545 Changes based on feedback (additional ansible checks) 7 years ago
Vincent Schwarzer fc054e21f6 Modified how adding LB for the Kube API is handled (AWS) 7 years ago
Vijay Katam a0b1eda1d0 Add support for atomic host 7 years ago
Sergii Golovatiuk 295103adc0 Allow to specify etcd backend for kube-api 7 years ago
Brad Beam bfff06d402 Adding KUBELET_CLOUDPROVIDER to kubelet.rkt.service 7 years ago
Brad Beam 30a9899262 Making openstack domain name optional 7 years ago
Xavier Lange dd10b8a27c Bug fix: support kilo's keystone requirement for domain-name, extracts from ENV var 7 years ago
Brad Beam dbf13290f5 Updating vsphere cloud provider support 7 years ago
Jan Jungnickel df476b0088 Initial support for vsphere as cloud provider 8 years ago
Brad Beam 56664b34a6 Lower default memory requests 7 years ago
Sergii Golovatiuk 00cfead9bb Increase SSL TTL to 3650 days 7 years ago
Bogdan Dobrelya f2a4619c57 Align LB defaults with the HA docs 7 years ago
Bogdan Dobrelya 712872efba Rework inventory all by real groups' vars 8 years ago
Ivan Shvedunov 0006e5ab45 Fix shell special vars 7 years ago
Abel Lopez 0bfc2d0f2f
Safe disable SELinux 7 years ago
Matthew Mosesohn a21eb036ee Add no_log to cert tar tasks 7 years ago
Andrew Greenwood ca9ea097df Cleanup legacy syntax, spacing, files all to yml 7 years ago
Vladimir Rutsky bff955ff7e Mount host's /var/log into kubelet container 7 years ago
Matthew Mosesohn 80c0e747a7 Fix references to CoreOS and Container Linux by CoreOS 7 years ago
Vladimir Rutsky a1ec6f401c fix load balancer DNS name index evaluation in openssl.conf 7 years ago
Brad Beam 4c891b8bb0 Adding support for proxy w/ rkt kubelet 7 years ago
Vladimir Rutsky 09847567ae set "check_mode: no" for read-only "shell" steps that registers result 7 years ago
Greg Althaus 2b10376339 When resolv.conf changes during host_resolvconf mode, we need to 7 years ago
Sergii Golovatiuk 5f4cc3e1de Replace always_run with check_mode 7 years ago
Sergii Golovatiuk aeadaa1184 Set ssl_ca_dirs for rkt based on fact 7 years ago
Matthew Mosesohn 2c532cb74d Disable kube_proxy_masquerade_all 7 years ago
Sergii Golovatiuk c07d60bc90 Kubernetes Reliability Improvements 7 years ago
Greg Althaus 3f0c13af8a Make kubelet_load_modules always present but false. 7 years ago
Greg Althaus fcd78eb1f7 Due to the nsenter and other reworks, it appears that 7 years ago
Mark Lee e414c25fd7 follow sysctl.conf file symlink if linked 7 years ago
Mark Lee 34a71554ae use ansible sysctl module for config ip forwarding 7 years ago
Josh Conant 245e05ce61 Vault security hardening and role isolation 7 years ago
Alexander Block 010fe30b53 Host mount /dev for kubelet 7 years ago
Matthew Mosesohn e5779ab786 Fix check for node-NODEID certs existence 7 years ago
Aleksandr Didenko 54af533b31 Update playbooks to support new netchecker 7 years ago
Matthew Mosesohn f3a0f73588 Prevent dynamic port allocation in nodePort range 7 years ago
Matthew Mosesohn fd30131dc2 Revert "Drop linux capabilities and rework users/groups" 7 years ago
Sergii Golovatiuk 585afef945 Remove nsenter workaround 7 years ago
Greg Althaus 923057c1a8 This continues the DHCP hook checks. Also protect the create side 7 years ago
Matthew Mosesohn 08822ec684 Fix cert distribution at scale 7 years ago
Tyler Britten f8ffa1601d Fixed for non-null output 7 years ago
Tyler Britten da01bc1fbb Updated OpenStack vars to check for tenant_id (v2) and project_id (v3) 7 years ago
Xavier Lange e5fdc63bdd Bugfix: skip cloud_config on etcd 7 years ago
Bogdan Dobrelya cb2e5ac776 Drop linux capabilities and rework users/groups 8 years ago
Greg Althaus 0d44599a63 Add explicit name printing in task names for deletgated task during 7 years ago
Matthew Mosesohn b6c3e61603 Fix setting resolvconf when using rkt deploy mode 7 years ago
Matthew Mosesohn b2a27ed089 Fix bash completion installation 7 years ago
Greg Althaus 6905edbeb6 Add a variable that defaults to kube_apiserver_port that defines 7 years ago
Greg Althaus 6c69da1573 This PR adds/or modifies a few tasks to allow for the playbook to 7 years ago