fix the cluster creation #14

Merged
aaron merged 16 commits from dev into main 2022-11-23 06:06:35 +01:00
Owner

The cluster does not build because of Problems with apparmor and kubelet (and probably a ton of other stuff).
In this PR we try to fix it.

  • Firewall
  • Apparmor
  • Kubelet
  • Kube Proxy
The cluster does not build because of Problems with apparmor and kubelet (and probably a ton of other stuff). In this PR we try to fix it. - [x] Firewall - [x] Apparmor - [x] Kubelet - [x] Kube Proxy
aaron self-assigned this 2022-11-06 15:24:05 +01:00
aaron requested review from tom 2022-11-06 15:24:33 +01:00
Owner

AppArmor can be used for container security, but have to be configured manually. With default settings, AppArmor is ignored anyway, so we should be able to disable it without any problems.

AppArmor can be used for container security, but have to be configured manually. With default settings, AppArmor is ignored anyway, so we should be able to disable it without any problems.
Owner

Kubelet creates an IPTables chain "KUBE-FIREWALL" which blocks all packets marked with "0x8000". I have now disabled this in the kubeadm configs. Probably with future k8s versions the IPTables support / usage will be dropped anyway.
https://kubernetes.io/blog/2022/09/07/iptables-chains-not-api/

Kubelet creates an IPTables chain "KUBE-FIREWALL" which blocks all packets marked with "0x8000". I have now disabled this in the kubeadm configs. Probably with future k8s versions the IPTables support / usage will be dropped anyway. https://kubernetes.io/blog/2022/09/07/iptables-chains-not-api/
tom changed title from WIP: fix the cluster creation to fix the cluster creation 2022-11-16 09:10:22 +01:00
tom approved these changes 2022-11-16 09:10:44 +01:00
Owner

ready for squash merge @aaron ? It should solve issue #6, #11, #15 and #22

ready for squash merge @aaron ? It should solve issue [#6](https://git.ar21.de/yolokube/ansible/issues/6), [#11](https://git.ar21.de/yolokube/ansible/issues/11), [#15](https://git.ar21.de/yolokube/ansible/issues/15) and [#22](https://git.ar21.de/yolokube/ansible/issues/22)
aaron merged commit 2faf03c9aa into main 2022-11-23 06:06:35 +01:00
aaron referenced this pull request from a commit 2022-11-23 06:06:36 +01:00
Sign in to join this conversation.
No description provided.