- Nov 09, 2022
-
-
Ilya Margolin authored
-
- Nov 08, 2022
-
-
Ilya Margolin authored
by setting a default runtime spec with a patch for RLIMIT_NOFILE. - Introduces containerd_base_runtime_spec_rlimit_nofile. - Generates base_runtime_spec on-the-fly, to use the containerd version of the node.
-
emiran-orange authored
* Ability to define options for DNS upstream servers * Doc and sample inventory vars
-
Olivier Lemasle authored
- Update and re-work the documentation: - Update links - Fix formatting (especially for lists) - Remove documentation about `useAlphaApi`, a flag only for k8s versions < v1.10 - Attempt to clarify the doc - Update to version 1.5.0 - Remove PodSecurityPolicy (deprecated in k8s v1.21+) - Update ClusterRole following upstream (cf https://github.com/kubernetes-sigs/sig-storage-local-static-provisioner/pull/292) - Add nodeSelector to DaemonSet (following upstream)
-
- Oct 31, 2022
-
-
lijin-union authored
-
- Oct 28, 2022
-
-
biqiang Wu authored
Signed-off-by: dcwbq <biqiang.wu@daocloud.io> Signed-off-by: dcwbq <biqiang.wu@daocloud.io>
-
- Oct 26, 2022
-
-
William Turner authored
* Fix inconsistent handling of admission plugin list * Adjust hardening doc with the normalized admission plugin list * Add pre-check for admission plugins format change * Ignore checking admission plugins value when variable is not defined
-
- Oct 24, 2022
-
-
杨刚 authored
-
- Oct 18, 2022
-
-
Kay Yan authored
-
- Oct 13, 2022
-
-
Kay Yan authored
-
Kenichi Omichi authored
When trying to add a hardening CI job by copying configuration from hardening.md, yamllint CI job deleted invalid format. This fixes it for maintaining the CI job.
-
- Oct 07, 2022
-
-
Kenichi Omichi authored
To block merging pull requests which contain typo automatically.
-
- Sep 30, 2022
-
-
Kenichi Omichi authored
We are maintaining version info on the README.md, and it is not necessary to maintain that on setting-up-your-first-cluster.md
-
- Sep 26, 2022
-
- Sep 24, 2022
-
-
Kevin Huang authored
feat(docs/openstack.md): Put Additional step needed when using calico or kube-router in own section (#9320)
-
- Sep 23, 2022
-
-
Florian Ruynat authored
-
Ilya Margolin authored
and supply a default runtime spec.
-
Emin AKTAS authored
Signed-off-by: eminaktas <eminaktas34@gmail.com> Signed-off-by: eminaktas <eminaktas34@gmail.com>
-
- Sep 19, 2022
-
-
Necatican Yıldırım authored
* Drop support for Cilium < 1.10 Signed-off-by: necatican <necaticanyildirim@gmail.com> * Synchronize Cilium templates for 1.11.7 Signed-off-by: necatican <contact@necatican.com> * Set Cilium v1.12.1 as the default version Signed-off-by: necatican <contact@necatican.com> Signed-off-by: necatican <necaticanyildirim@gmail.com> Signed-off-by: necatican <contact@necatican.com>
-
- Sep 15, 2022
-
-
Mahdi Abbasi authored
-
lijin-union authored
-
Kay Yan authored
-
- Sep 13, 2022
-
-
Ho Kim authored
* Add optional NAT support in calico router mode * Add a blank line in front of lists * Remove mutual exclusivity: NAT and router mode * Ignore router mode from NAT * Update calico doc
-
- Sep 05, 2022
-
-
Kay Yan authored
-
- Sep 04, 2022
-
-
Michael Schmitz authored
-
- Aug 31, 2022
-
-
Cristian Calin authored
-
- Aug 30, 2022
-
-
Alessio Greggi authored
* feat: add kubelet systemd service hardening option * refactor: move variable name to kubelet_secure_addresses Co-authored-by: Cristian Calin <6627509+cristicalin@users.noreply.github.com> * docs: add diagram about kubelet_secure_addresses variable Co-authored-by: Cristian Calin <6627509+cristicalin@users.noreply.github.com>
-
lijin-union authored
-
Kay Yan authored
* fix-kube-vip-strict-arp * fix-kube-vip-strict-arp
-
- Aug 24, 2022
-
-
Cristian Calin authored
* add pre-commit hook configuration * add tmp.md to .gitignore * describe the use of pre-commit hook in CONTRIBUTING.md * fix docs/integration.md errors identified by markdownlint * fix docs/<file>.md errors identified by markdownlint * docs/azure-csi.md * docs/azure.md * docs/bootstrap-os.md * docs/calico.md * docs/debian.md * docs/fcos.md * docs/vagrant.md * docs/gcp-lb.md * docs/kubernetes-apps/registry.md * docs/setting-up-your-first-cluster.md * docs/vagrant.md * docs/vars.md * fix contrib/<file>.md errors identified by markdownlint
-
- Aug 23, 2022
-
-
Bishal das authored
-
Shelming.Song authored
-
- Aug 22, 2022
-
-
Bishal das authored
-
Tristan authored
See #9035
-
- Aug 19, 2022
-
-
Ho Kim authored
-
- Aug 18, 2022
-
-
Tomas Zvala authored
* Add the option to enable default Pod Security Configuration Enable Pod Security in all namespaces by default with the option to exempt some namespaces. Without the change only namespaces explicitly configured will receive the admission plugin treatment. * Fix the PR according to code review comments * Revert the latest changes - leave the empty file when kube_pod_security_use_default, but add comment explaining the empty file - don't attempt magic at conditionally adding PodSecurity to kube_apiserver_admission_plugins_needs_configuration
-
maxgio92 authored
Signed-off-by: Massimiliano Giovagnoli <me@maxgio.it> Signed-off-by: Massimiliano Giovagnoli <me@maxgio.it>
-
Samuel Liu authored
* update calico rr * fix bgppeer conf * fix yamllint * fix ansible lint * fix calico deploy * fix yamllint * fix some typo
-
- Aug 04, 2022
-
-
ERIK authored
Signed-off-by: bo.jiang <bo.jiang@daocloud.io>
-
- Aug 03, 2022
-
-
Florian Ruynat authored
-