Matthew Mosesohn
ad6fecefa8
Update Kubernetes to v1.9.0 ( #2100 )
Update checksum for kubeadm
Use v1.9.0 kubeadm params
Include hash of ca.crt for kubeadm join
Update tag for testing upgrades
Add workaround for testing upgrades
Remove scale CI scenarios because of slow inventory parsing
in ansible 2.4.x.
Change region for tests to us-central1 to
improve ansible performance
6 years ago
Jan Jungnickel
3fdb2ccf55
Revert back to using an empty var as default to exclude hostname ( #2110 )
6 years ago
Matthew Mosesohn
29f5b55d42
remove unwanted whitespace for kube_override_hostname ( #2105 )
6 years ago
rong.zhang
5aef52e8c0
fix dashboard certs secret
6 years ago
Brad Beam
336e0cbf70
Merge pull request #2102 from spiffxp/update-code-of-conduct
Update code-of-conduct.md
7 years ago
Aaron Crickenberger
3cd06b0eb4
Update code-of-conduct.md
Refer to kubernetes/community as authoritative source for code of conduct
7 years ago
Matthew Mosesohn
6bb46e3ecb
Fix param names in preparation for Kubernetes v1.9.0 ( #2098 )
This does not update v1.9.0, but fixes two incompatibilities
when trying to deploy v1.9.0.
7 years ago
Matthew Mosesohn
127bc01857
Do not override kubelet hostname if cloud_provider is used ( #2095 )
Starting with Kubernetes v1.8.4, kubelet ignores the AWS cloud
provider string and uses the override hostname, which fails
Node admission checks.
Fixes #2094
7 years ago
Evan Zeimet
a6975c1850
Rename runtime docker_version ( #2082 )
Renaming runtime docker_version to prevent setting that
value on the command line from breaking the play run.
This fixes #2081
7 years ago
Stanislav Makar
b2cb0725ac
Default OpenStack Cinder Storage Class ( #2083 )
Add possibility to create default OpenStack Cinder Storage Class
Closes : #1609
7 years ago
rong.zhang
b974b144a8
Add RBAC to binding Dahsboard UI
7 years ago
Matthew Mosesohn
bfb25fa47b
Change vault cert ttl to 8y ( #2013 )
7 years ago
Wei Tie
3bb505d43f
Remove unrequired mounts
7 years ago
Matthew Mosesohn
b135bcb9d9
Split download container task for delegate and non-delegate modes ( #2077 )
Ansible cannot seem to handle omitting delegate_to since v2.4.0.0.
Possibly related: https://github.com/ansible/ansible/issues/30760
7 years ago
Wei Tie
4e97225424
Add quote for etcd endpoints
7 years ago
rong.zhang
0771cd8599
Remove dashboard_tls_key and dashboard_tls_cert
7 years ago
Fang Zhen
91d848f98a
Make spliting system_search_domains more robust
The search line in /etc/resolv.conf could have
multiple spaces or tabs between domains.
split(' ') will give wrong results in some case,
use split() without argument instead.
e.g.
>>> 'domain.tld cluster.tld '.split(' ')
['domain.tld\tcluster.tld', '']
>>> 'domain.tld cluster.tld '.split()
['domain.tld', 'cluster.tld']
7 years ago
rong.zhang
40edf8c6f5
Update dashboard version to v1.8.0
Update dependencies to be compatible with Kubernetes v1.8
7 years ago
Chad Swenson
e78562830f
Retry kube container removal during upgrade
As we have seen with other containers, sometimes container removal fails on the first attempt due to some Docker bugs. Retrying typically corrects the issue.
7 years ago
Simon Li
bef259a6eb
Always set net.bridge.bridge-nf-call-* sysctl
7 years ago
Brad Beam
39ce1bd8be
Merge pull request #2059 from bradbeam/vaultalt
Fixing alt_names for vault cert generation
7 years ago
Spencer Smith
6291881943
Merge pull request #2057 from rsmitty/master
set docker_version fact regardless of docker_dns in use
7 years ago
Brad Beam
802fd94dad
Merge pull request #2054 from ArchiFleKs/os-cloud-provider-domain-fix
Fix domain id for OpenStack provider
7 years ago
Xu Zhipei
66f38a1b31
fix: always only one docker image got synced after download
7 years ago
Brad Beam
d3850a4da5
Fixing alt_names for vault cert generation
7 years ago
Spencer Smith
53a4355e60
set docker_version fact regardless of docker_dns in use
7 years ago
Spencer Smith
18a616f57c
Merge pull request #2052 from ArchiFleKs/os-terraform-fix-inventory
Change OpenStack inventory to python2
7 years ago
Spencer Smith
32333eb627
Merge pull request #2035 from brutus333/fix/proxy
Added proxy_env to scale and upgrade playbooks
7 years ago
Brad Beam
19def41fdf
Merge pull request #2047 from bradbeam/vaulttime
Adding retries for vault-temp to come online
7 years ago
ArchiFleKs
44b9dce134
Fix domain id for OpenStack provider
OpenStack authentication does not support using a mix of DomainID and
DomainName, only one or the other should be used.
7 years ago
Brad Beam
fa5a538fe5
Merge pull request #2050 from jbonachera/fix-vault-tls-validation
append newline char to vault generated certs
7 years ago
ArchiFleKs
5e3fd2253f
Change OpenStack inventory to python2
For distribution who ship python3 as default python, it breaks the
inventory script as it is not compatible with python3.
7 years ago
Brad Beam
9643c2c1e3
Fixes to reset ( #2046 )
- adding additional directories to cleanup (rkt/vault)
- targeting kubespray ansible groups instead of all
7 years ago
Brad Beam
93f3614382
Fixes #2039 - changing alt_names to be string instead of list ( #2043 )
7 years ago
Brad Beam
cbc8a7d679
Merge pull request #1995 from b0r1sp/patch-1
Update main.yml
7 years ago
Julien BONACHERA
290bc993a5
append newline char to vault generated certs
7 years ago
Brad Beam
3694657eb6
Adding retries for vault-init to come online
7 years ago
Thomas Sarboni
79417e07ca
Fix systemd service unit for docker >= 17.03 ( #1844 )
7 years ago
Wei Tie
dad95c873b
Remove templating for etcd members
Use a etcd-initer init container to generate etcd args, it determines
etcd name by comparing its ip and etcd cluster ips. This way will
make etcd configuration independent to the ansible templating so
that could be easier on adding master nodes.
7 years ago
Spencer Smith
626b35e1b0
Merge pull request #2005 from riverzhang/patch-1
Delete helm home
7 years ago
Wei Tie
5881ba43f8
Split contiv etcd and etcd-proxy into two daemonsets
Putting contiv etcd and etcd-proxy into the same daemonset and manage
the difference by a env file is not good for scaling (adding nodes).
This commit split them into two daemonsets so that when adding nodes,
k8s could automatically starting a etcd-proxy on new nodes without need
to run related play that putting env file.
7 years ago
Brad Beam
fed7b97dcb
Merge pull request #2030 from mattymo/removerbaccheck
Remove RBAC from boolean checks
7 years ago
Spencer Smith
c4458c9d9a
Merge pull request #1997 from mrbobbytables/feature-keepalived-cloud-provider
Add minimal keepalived-cloud-provider support
7 years ago
Virgil Chereches
7bae2a4547
Added proxy_env to scale and upgrade playbooks
7 years ago
riverzhang
aeb3e647d4
Remove the network device created by the flannel ( #2006 )
* Remove the network device created by the flannel
Remove the network device created by the flannel
* Modify flannel.1 device path
Modify flannel.1 device path
* remove trailing spaces
7 years ago
Kuldip Madnani
fe036cbe77
Adding changes to handle updation of yum Management cache in rhel. ( #2026 )
* Adding changes to handle updation of yum cache in rhel.
* Removed the redundant spaces
7 years ago
Matthew Mosesohn
952ec65a40
Remove RBAC from boolean checks
7 years ago
Chad Swenson
b8788421d5
Support for disabling apiserver insecure port
This allows `kube_apiserver_insecure_port` to be set to 0 (disabled).
Rework of #1937 with kubeadm support
Also, fixed an issue in `kubeadm-migrate-certs` where the old apiserver cert was copied as the kubeadm key
7 years ago
Brad Beam
c2347db934
Merge pull request #1953 from chadswen/dashboard-refactor
Kubernetes Dashboard v1.7.1 Refactor
7 years ago
Brad Beam
27ead5d4fa
Merge pull request #2003 from abelgana/master
Change altnames to alt_names
7 years ago