- Mar 09, 2018
-
-
chadswen authored
Add `state: directory` to `file` task so that `recurse: yes` will actually take effect and ensure certs/keys have the right file mode and owner
-
chadswen authored
Change the name of `system:node` CRB to `kubespray:system:node` to avoid conflicts with the auto-reconciled CRB also named `system:node` Fixes #2121
-
- Mar 08, 2018
-
-
zhengchuan hu authored
-
zhengchuan hu authored
-
rong.zhang authored
Drain node except daemonsets resource Use reset cluser for delete deploy data Then delete node
-
Wong Hoi Sing Edison authored
-
- Mar 07, 2018
-
-
Chris Mildebrandt authored
Change "command" to "shell" in order for the pipe to work correctly
-
Wong Hoi Sing Edison authored
-
RongZhang authored
* Use docker-ce 17.03.2 * Docker-engine may be discarded
-
zhengchuan hu authored
-
- Mar 06, 2018
-
-
RongZhang authored
Enable OOM killing like docker run etcd
-
Dominic Lam authored
This is trying to match what the roles/bastion-ssh-config is trying to do. When the setup is going through bastion, we want to ssh private key to be used on the bastion instance.
-
- Mar 05, 2018
-
-
Wong Hoi Sing Edison authored
-
- Mar 03, 2018
-
-
Jonas Kongslund authored
-
Jonas Kongslund authored
-
- Mar 02, 2018
-
-
Wong Hoi Sing Edison authored
-
Matthew Mosesohn authored
Fixes #2397
-
rong.zhang authored
-
- Mar 01, 2018
-
-
RongZhang authored
Add etcd-events cluster for kube-apiserver
-
- Feb 28, 2018
-
-
Matthew Mosesohn authored
-
Brad Beam authored
-
Miouge1 authored
-
Dmitry Vlasov authored
-
- Feb 27, 2018
-
-
Matthew Mosesohn authored
For etcdctl commands, use admin cert instead of node because this file doesn't exist on etcd only hosts.
-
Matthew Mosesohn authored
-
Brad Beam authored
-
RongZhang authored
* Fix run kubectl error Fix run kubectl error when first master doesn't work * if access_ip is define use first_kube_master else different master use a different ip * Delete set first_kube_master and use kube_apiserver_access_address
-
RongZhang authored
Upgrade to Kubernetes v1.9.3
-
- Feb 22, 2018
-
-
Brad Beam authored
-
Nedim Haveric authored
-
Brad Beam authored
-
Maxim Krasilnikov authored
* Fixed generate front proxy client certs with vault * fix vault cert management * Distrebute etcd node certs to vault hosts
-
- Feb 21, 2018
-
-
Andreas Krüger authored
Adding health checking to kube proxy. Fixes #2308
-
Andreas Krüger authored
* Set filemode to 0640 weave-net.yml file is readable by all users on the host. It however contains the weave_password to encrypt all pod communication. It should only be readable by root. * Set mode 0640 on users_file with basic auth
-
Matthew Mosesohn authored
Now calico can be deployed if there are other existing pools and not confuse IPAM and end up with pods in the wrong pools.
-
Dann Bohn authored
-
Chris Mildebrandt authored
-
Matthew Mosesohn authored
-
Wong Hoi Sing Edison authored
-
Wong Hoi Sing Edison authored
-