- Oct 23, 2020
-
-
axelgobletbdr authored
* added an ansible var to manage retention of etcd backups * refactord ls/grep into find in etcd backup removal command
-
Victor Morales authored
* Enable Kata Containers for CRI-O runtime Kata Containers is an OCI runtime where containers are run inside lightweight VMs. This runtime has been enabled for containerd runtime thru the kata_containers_enabled variable. This change enables Kata Containers to CRI-O container runtime. Signed-off-by:
Victor Morales <v.morales@samsung.com> * Set appropiate conmon_cgroup when crio_cgroup_manager is 'cgroupfs' * Set manage_ns_lifecycle=true when KataContainers is enabed * Add preinstall check for katacontainers Signed-off-by:
Victor Morales <v.morales@samsung.com> Co-authored-by:
Pasquale Toscano <pasqualetoscano90@gmail.com>
-
- Oct 22, 2020
-
-
Florian Ruynat authored
-
Maciej authored
Command line flags aren't added to kube-proxy which results in missing feature gates set in this component. Add appropriate setting to ConfigMap instead. Signed-off-by:
Maciej Wereski <m.wereski@partner.samsung.com>
-
- Oct 21, 2020
-
-
Hans Feldt authored
'ansible.vars.hostvars.HostVarsVars object' has no attribute 'kubeadm_upload_cert' kubeadm_upload_cert will never be found as a hostvar for the first master since the task is executed for a worker. Fix by executing the upload task for the first master and register the needed key. After that, workers can read hostvars for the master Var kubeadm_etcd_refresh_cert_key removed since it no longer has any use.
-
Hans Feldt authored
When using kubeadm managed etcd, configuring an etcd group can now be skipped.
-
Maxime Guyot authored
-
Florian Ruynat authored
-
wand3r3r authored
* Adding option to disable gloablly applying a proxy to etc/yum.conf * Change made to proxy_yum_globaly basedon reviewer feedback * fix trailing spaces in ymllint
-
- Oct 20, 2020
-
-
Etienne Champetier authored
This fixes the Containerd + EL8 case that was missed in 7d1ab337 On CentOS 8 with proxy ansible render inline `proxy` and `module_hotfixes` options. For example: ``` proxy=http://127.0.0.1:3128module_hotfixes=True ``` But expected result: ``` proxy=http://127.0.0.1:3128 module_hotfixes=True ``` Signed-off-by:
Etienne Champetier <champetier.etienne@gmail.com>
-
- Oct 19, 2020
-
-
David Louks authored
* Use existing variable for tiller service account name * keep crb as tiller
-
- Oct 15, 2020
-
-
Florent Monbillard authored
-
- Oct 13, 2020
-
-
Matt Calvert authored
I can't see any reason why audio devices would be needed, and it can cause issues with the host audio
-
Hans Feldt authored
* bump crio version to 1.19 * crio package name has changed for debian/ubuntu * crio upgrade does not work, see #6757 * update crio info in docs
-
Sergey authored
-
Samuel Liu authored
-
yelhouti authored
-
Hans Feldt authored
crio refuses to delete pods when cni is unavailable which is the case e.g. using calico with kdd datastore. See: https://github.com/cri-o/cri-o/issues/4084 Fix by deleting storage associated with containers. Stop and disable crio service so switching container runtime can be done.
-
- Oct 12, 2020
-
-
Bogdan Peste authored
* Added option to force apiserver and respective client certificate to be regenerated without necessarily needing to bump the K8S cluster version * Removed extra blank line
-
Hans Feldt authored
No longer used/supported
-
rptaylor authored
k8s_master_no_etcd_fips should not be input var
-
- Oct 11, 2020
-
-
holmesb authored
Signed-off-by:
holmesb <5072156+holmesb@users.noreply.github.com>
-
Nikita Velgin authored
Handlers with the same name (Kubeadm | restart kubelet) leads to incorrect playbook execution. As a result, after completing the tasks, kubelet does not restart. This PR fix this behavior
-
Hans Feldt authored
Users should opt in for features and not opt out.
-
- Oct 09, 2020
-
-
Kenichi Omichi authored
After upgrading to newer Kubernetes(v1.17 at least), kubectl command shows the following warning message: WARNING: Kubernetes configuration file is group-readable. This is insecure. Location: /home/foo/.kube/config The kubeconfig was copied from {{ artifacts_dir }}/admin.conf with kubeconfig_localhost feature. It is better to set valid file mode at getting it on Kubespray.
-
Florian Ruynat authored
-
holmesb authored
If no_proxy_exclude_workers is true, workers will be excluded from the no_proxy variable. This prevents docker engine restarting when scaling workers. (#6520) Signed-off-by:
holmesb <5072156+holmesb@users.noreply.github.com>
-
- Oct 07, 2020
-
-
Hans Feldt authored
-
- Oct 06, 2020
-
-
Sergey authored
Remove task with install etcdctl from etcd role when etcd_kubeadm_enabled=true
-
rafal-jan authored
-
bozzo authored
The CA cert was only deployed on master nodes
-
5-sigma authored
Added Comment line above checksum section to add clarification about Kubespray's version support and testing (#6785)
-
Florian Ruynat authored
-
Florian Ruynat authored
-
Kenichi Omichi authored
-
Bob Killen authored
The label triage/support has been reclassified as kind/support. The kind/* family of labels makes more logical sense, as they describe the "kind" of thing an issue or PR is. For more information, see the announcement email: https://groups.google.com/g/kubernetes-dev/c/YcaJpsjjLKw/m/i15cLLx5CAAJ
-
Florian Ruynat authored
-
- Oct 05, 2020
-
-
Hans Feldt authored
reset playbook fails and does not continue cleanup after for example a host reboot with kubelet stopped/disabled
-
- Oct 02, 2020
-
-
Joren Zandstra authored
-
Florian Ruynat authored
-