Code Review
/
ta
/
caas-kubernetes.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
review
|
tree
raw
|
inline
| side by side
Kubernetes refactered node role.
[ta/caas-kubernetes.git]
/
ansible
/
roles
/
kube_proxy
/
templates
/
kube-proxy.yml
diff --git
a/ansible/roles/kube_proxy/templates/kube-proxy.yml
b/ansible/roles/kube_proxy/templates/kube-proxy.yml
index
5aff9ad
..
21ad2b6
100644
(file)
--- a/
ansible/roles/kube_proxy/templates/kube-proxy.yml
+++ b/
ansible/roles/kube_proxy/templates/kube-proxy.yml
@@
-29,9
+29,16
@@
spec:
command:
- "/kube-proxy"
- "--kubeconfig=/etc/kubernetes/kubeconfig/proxyc.yml"
command:
- "/kube-proxy"
- "--kubeconfig=/etc/kubernetes/kubeconfig/proxyc.yml"
- - "--hostname-override={{ ansible_host }}"
+ - "--bind-address={{ networking.infra_internal.ip }}"
+ - "--hostname-override={{ networking.infra_internal.ip }}"
- "--masquerade-all=true"
- "--masquerade-all=true"
+ resources:
+ requests:
+ cpu: "10m"
volumeMounts:
volumeMounts:
+ - name: time-mount
+ mountPath: /etc/localtime
+ readOnly: true
- name: secret-kubernetes
mountPath: /etc/kubernetes/ssl
readOnly: true
- name: secret-kubernetes
mountPath: /etc/kubernetes/ssl
readOnly: true
@@
-42,6
+49,9
@@
spec:
mountPath: /etc/kubernetes/kubeconfig
readOnly: true
volumes:
mountPath: /etc/kubernetes/kubeconfig
readOnly: true
volumes:
+ - name: time-mount
+ hostPath:
+ path: /etc/localtime
- name: secret-kubernetes
hostPath:
path: /etc/kubernetes/ssl
- name: secret-kubernetes
hostPath:
path: /etc/kubernetes/ssl