- Dec 09, 2019
-
-
Etienne Champetier authored
* Fix python3-libselinux installation for RHEL/CentOS 8 In bootstrap-centos.yml we haven't gathered the facts, so #5127 couldn't work Minimum ansible version to run kubespray is 2.7.8, so ansible_distribution_major_version is defined an there is no need to default it Signed-off-by: Etienne Champetier <champetier.etienne@gmail.com> * Restart NetworkManager for RHEL/CentOS 8 network.service doesn't exist anymore # systemctl status network Unit network.service could not be found. Signed-off-by: Etienne Champetier <champetier.etienne@gmail.com> * Add module_hotfixes=True to docker / containerd yum repo config https://bugzilla.redhat.com/show_bug.cgi?id=1734081 https://bugzilla.redhat.com/show_bug.cgi?id=1756473 Without this setting you end up with the following error: # yum install docker-ce Failed to set locale, defaulting to C Last metadata expiration check: 0:03:21 ago on Thu Sep 26 22:00:05 2019. Error: Problem: package docker-ce-3:19.03.2-3.el7.x86_64 requires containerd.io >= 1.2.2-3, but none of the providers can be installed - cannot install the best candidate for the job - package containerd.io-1.2.2-3.3.el7.x86_64 is excluded - package containerd.io-1.2.2-3.el7.x86_64 is excluded - package containerd.io-1.2.4-3.1.el7.x86_64 is excluded - package containerd.io-1.2.5-3.1.el7.x86_64 is excluded - package containerd.io-1.2.6-3.3.el7.x86_64 is excluded (try to add '--skip-broken' to skip uninstallable packages or '--nobest' to use not only best candidate packages) Signed-off-by: Etienne Champetier <champetier.etienne@gmail.com>
-
- Dec 05, 2019
-
-
Maxime Guyot authored
-
Matthew Mosesohn authored
Change-Id: Iea9a366cf6ccc4d491bfc49c5d2dba6d98f81b69
-
Hugo Blom authored
-
- Dec 03, 2019
-
-
Matthew Mosesohn authored
Change-Id: I1634ba2d2d3337243ffcdea86750003a559f2576
-
- Dec 02, 2019
-
-
Matthew Mosesohn authored
Change-Id: I33d46c7e0c5374467e22c5a652b282d1703dea85
-
- Nov 28, 2019
-
-
Matthew Mosesohn authored
Change-Id: I3fff04f0211cd9c2e8235acaf51c3aa98abc8bb7
-
- Nov 27, 2019
-
-
Yujun Zhang authored
-
Anton Fayzrahmanov authored
* Add extra tolerations for coredns * dns_extra_tolerations option * dns_extra_tolerations * missing starting space in comment
-
Florian Ruynat authored
-
- Nov 26, 2019
-
-
Aaron Crickenberger authored
Initially this was to fix a mis-indented approvers key. However, it turns out that 'oilbeater' is not a member of kubernetes-sigs nor kubernetes-incubator (the org this repo was migrated from). Thus this OWNERS file is failing prow's validation check. As a workaround I've opted to move them to emeritus_approver, which isn't valiated and can be used as a hint for other approvers in this repo
-
- Nov 22, 2019
-
-
Etienne Champetier authored
Lot's of bugs and security fixes: https://github.com/containerd/containerd/releases/tag/v1.2.10 CVE-2019-16884 / CVE-2019-16276 https://github.com/containerd/containerd/releases/tag/v1.2.9 CVE-2019-9512 / CVE-2019-9514 / CVE-2019-9515 https://github.com/containerd/containerd/releases/tag/v1.2.8 CVE-2019-9512 / CVE-2019-9514 https://github.com/containerd/containerd/releases/tag/v1.2.7 Signed-off-by: Etienne Champetier <champetier.etienne@gmail.com>
-
- Nov 20, 2019
-
-
Michael Shen authored
-
- Nov 18, 2019
-
-
Matthew Mosesohn authored
This fixes the scenario where masters are upgraded one at a time and coredns gets improperly scaled back up to 2 replicas. Change-Id: I7cc9283f40efcfd61b5813c89a5805c95d901567
-
- Nov 14, 2019
-
-
Matthew Mosesohn authored
Change-Id: I68a962a9dd28c83ef07eaeaf53eb98287f38bca9
-
- Nov 11, 2019
-
-
LuciferInLove authored
-
Matthew Mosesohn authored
Change-Id: I298496e55a6889c158b2085fcadeda5e679a873e
-
Jacopo Secchiero authored
-
Bjoern Teipel authored
Since upgrading k8s beyond 1.16.0 version, helm init does no longer work with helm < 2.16.0 due to https://github.com/helm/helm/issues/6374 This PR closes issue #5331
-
Julien Pervillé authored
-
Florent Monbillard authored
| Kubernetes Version | cri-tools Version | |--------------------|-------------------| | 1.16.x | v1.16.0 | | 1.15.X | v1.15.0 | | 1.14.X | v1.14.0 | | 1.13.X | v1.13.0 | | 1.12.X | v1.12.0 | | 1.11.X | v1.11.1 | - Upgrade to cri-tools 1.16.1 - Add checksums for cri-tools 1.16.1
-
YichenWong authored
-
Quentin Gliech authored
-
Junho Suh authored
-
Dmitry Chusovitin authored
-
- Nov 09, 2019
-
-
Matthew Mosesohn authored
It will be enabled correctly in downloads Change-Id: Ief0b7aa2a8ee2ba6a6849820802f8542584b2c04 Related-story: PRODX-1171
-
- Nov 06, 2019
-
-
Matthew Mosesohn authored
Change-Id: I54d706f7941b4b86c4c6cd45340295577155b884
-
Matthew Mosesohn authored
Change-Id: If3e253a40782e03cde7fc4a91493517ae31fda17
-
- Nov 05, 2019
-
-
Matthew Mosesohn authored
Change-Id: I128b0f9c1acbb956d9a6c4e5510b45a36e296af7
-
- Nov 01, 2019
-
-
Ali Sanhaji authored
* Deploy Cinder CSI driver to provision volumes over OpenStack * Deploy Cinder CSI StorageClass * Cinder CSI doc
-
- Oct 30, 2019
-
-
Matthew Mosesohn authored
Change-Id: If965cc6aa0daaca232dcf2ca0efd649aa097497f
-
Matthew Mosesohn authored
Change-Id: I87844b43b9a18064e7a99567ce57c1ca1ffcc4a8
-
- Oct 28, 2019
-
-
Matthew Mosesohn authored
Change-Id: Iad27b107860213759c7ae51f0891d7e5e7c6d96b
-
- Oct 25, 2019
-
-
Matthew Mosesohn authored
Change-Id: I23116efefe8626d361d1904fc6fb8448f66cf3c5
-
- Oct 17, 2019
-
-
Matthew Mosesohn authored
* Generate TLS certs for calico typha Change-Id: I3883f49c124c52d0fc5b900ca2b44e4e2ed0d707 * Add group vars note Change-Id: I63550dfef616e884efdbd42010a90b2c04c5eb69
-
Sergey authored
-
Sergey authored
check on all cluster node - kubelet_max_pods <= (2 ** (32 - kube_network_node_prefix | int)) - 2 (#5279)
-
Sergey authored
* download container always been on download_delegate host * fix also check pull required
-
Michael Oglesby authored
Kubespray Pull Request #5084 (https://github.com/kubernetes-sigs/kubespray/pull/5084) caused more problems than it solved due to limitations with the synchronize module. See comments on Kubespray Issues #5059 (https://github.com/kubernetes-sigs/kubespray/issues/5059) and #5116 (https://github.com/kubernetes-sigs/kubespray/issues/5116). Details from Ansible documentation: "Currently, synchronize is limited to elevating permissions via passwordless sudo. This is because rsync itself is connecting to the remote machine and rsync doesn’t give us a way to pass sudo credentials in. ... Currently there are only a few connection types which support synchronize (ssh, paramiko, local, and docker) because a sync strategy has been determined for those connection types. Note that the connection for these must not need a password as rsync itself is making the connection and rsync does not provide us a way to pass a password to the connection. ..." Thus, reverting Pull Request #5084.
-
yelhouti authored
-