Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

dev to eks #7914

Merged
merged 158 commits into from
Jul 29, 2024
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
158 commits
Select commit Hold shift + click to select a range
42490ad
update skipper main fleet
MustafaSaber Jun 20, 2024
9a0fb35
skipper: set skipper_prometheus_start_label_enabled by default
AlexanderYastrebov Jun 24, 2024
7e53319
fabric-gateway: update to master-256
AlexanderYastrebov Jun 24, 2024
e64364e
Merge pull request #7739 from zalando-incubator/fabric-gateway/update…
AlexanderYastrebov Jun 24, 2024
310d1a3
Merge pull request #7738 from zalando-incubator/skipper/make-skipper_…
AlexanderYastrebov Jun 24, 2024
9286346
journald-reader: mount /usr to access libsystemd and python
linki Jun 6, 2024
45998e9
ingress-controller: configure keyValue log parser
AlexanderYastrebov Jun 25, 2024
3b45341
fix: routesrv metrics port was changed to 9911 a while ago
szuecs Jun 25, 2024
cdb1152
Merge pull request #7746 from zalando-incubator/fix/routesrv-metrics
szuecs Jun 25, 2024
a5444ed
Merge pull request #7745 from zalando-incubator/ingress-controller/co…
AlexanderYastrebov Jun 25, 2024
67e2c3c
Merge pull request #7724 from zalando-incubator/update-main-fleet-ski…
MustafaSaber Jun 25, 2024
e9616dc
Update pdb-controller to kubernetes v1.30.2
mikkeloscar Jun 26, 2024
9d196db
Update kube-metrics-adapter to kubernetes v1.30.2
mikkeloscar Jun 26, 2024
3a855ae
Update stackset-controller to kubernetes v1.30.2
mikkeloscar Jun 26, 2024
81ed968
Update kube-aws-iam-controller to kubernetes v1.30.2
mikkeloscar Jun 26, 2024
79a24c4
Merge pull request #7749 from zalando-incubator/kubernetes-v1.30.2-co…
linki Jun 26, 2024
7303813
egress: Update to Kubernetes v1.30.2 + aws-sdk-go-v2
mikkeloscar Jun 27, 2024
c44ebde
Merge pull request #7751 from zalando-incubator/kube-static-egress-ku…
linki Jun 27, 2024
b252623
update CSI components to Kubernetes 1.30
linki Jun 27, 2024
a374749
update cluster-lifecycle-controller to Kubernetes 1.30
linki Jun 27, 2024
1788b07
update kube-ingress-aws-controller to Kubernetes 1.30
linki Jun 27, 2024
3870915
Merge pull request #7752 from zalando-incubator/kubernetes-1.30-images
linki Jun 27, 2024
a473620
update skipper canary version
MustafaSaber Jun 27, 2024
9a2ebb1
Disable cadvisor by default
mikkeloscar Jun 27, 2024
2470e9a
Merge pull request #7757 from zalando-incubator/skipper/update-canary…
MustafaSaber Jun 27, 2024
ee957c3
admission-controller: Native sleep preStop hook
mikkeloscar Jun 28, 2024
161baab
Don't set Cluster.ID on etcd LT tags
mikkeloscar Jun 28, 2024
83e3dfd
Merge pull request #7762 from zalando-incubator/admission-controller-…
linki Jun 28, 2024
8ad4ee1
Merge pull request #7763 from zalando-incubator/etcd-lt-tag
linki Jun 28, 2024
8d36bc9
Merge pull request #7758 from zalando-incubator/cadvisor-false
mikkeloscar Jun 28, 2024
b3ebaa0
Update nvidia device plugin to v0.15.1
mikkeloscar Jun 28, 2024
aa610ec
Merge pull request #7764 from zalando-incubator/nvidia-device-plugin
mikkeloscar Jun 28, 2024
7c5e51b
skipper: add config item for default authentication filters
AlexanderYastrebov Jun 19, 2024
29a3edf
Merge pull request #7642 from zalando-incubator/journald-reader
linki Jul 1, 2024
c93a4bc
Update to node-exporter 1.8.1
mikkeloscar Jul 1, 2024
5b9d278
Update to flannel v0.25.4
mikkeloscar Jul 1, 2024
b705d8c
Update aws-cloud-controller-manager to v1.30.2
mikkeloscar Jul 1, 2024
948b20b
Update components to Kubernetes v1.30
zaklawrencea Jul 1, 2024
9aec2b1
Update to Prometheus v2.53.0
mikkeloscar Jul 1, 2024
f71c8ea
Merge pull request #7769 from zalando-incubator/skipper/default-auth
AlexanderYastrebov Jul 1, 2024
d30efa6
Update to kube-state-metrics v2.12.0
mikkeloscar Jul 1, 2024
cc8ffcc
Merge pull request #7771 from zalando-incubator/node-exporter-1.8.1
katyanna Jul 1, 2024
a87823e
Merge pull request #7772 from zalando-incubator/flannel-v0.25.4
katyanna Jul 1, 2024
d95e297
Merge pull request #7775 from zalando-incubator/1.30-components
mikkeloscar Jul 1, 2024
38be517
Merge pull request #7773 from zalando-incubator/aws-cloud-controller-…
katyanna Jul 1, 2024
1f4f1c1
Merge pull request #7774 from zalando-incubator/prometheus-v2.53.0
katyanna Jul 1, 2024
7346ece
Merge pull request #7776 from zalando-incubator/ksm-2.12.0
katyanna Jul 1, 2024
f2f328d
cleanup config item skipper_redis_replicas
szuecs Jul 1, 2024
22ebb8a
disable swim port by default
szuecs Jul 1, 2024
57e8577
fix: func call missing
szuecs Jul 1, 2024
7134e84
skipper: update canary to v0.21.139
AlexanderYastrebov Jul 2, 2024
d9d0d15
Update ExternalDNS to v0.14.2
linki Jul 2, 2024
cc61d81
Merge pull request #7786 from zalando-incubator/skipper/update-canary…
AlexanderYastrebov Jul 2, 2024
eaaf541
skipper: update main fleet version to v0.21.139
MustafaSaber Jun 27, 2024
a72a694
Merge pull request #7783 from zalando-incubator/cleanup-unused-config…
szuecs Jul 2, 2024
e374ea5
update deployment-service deps for k8s v1.30
demonCoder95 Jul 2, 2024
fc589cd
Merge pull request #7787 from zalando-incubator/external-dns-v0.14.2
szuecs Jul 2, 2024
2a61ef2
Merge pull request #7792 from zalando-incubator/deps-1.30
katyanna Jul 3, 2024
18311e4
Update kube-node-ready-controller to Kubernetes v1.30
zaklawrencea Jul 3, 2024
f5fd380
Merge pull request #7795 from zalando-incubator/1.30-kube-node-ready
zaklawrencea Jul 3, 2024
b64cbd0
Merge pull request #7760 from zalando-incubator/skipper/update-main-f…
RomanZavodskikh Jul 3, 2024
2494bd3
fabric: enable on all clusters by default
MustafaSaber Jul 3, 2024
f8e1a65
Remove configs because they don't make sense any more if we want to e…
MustafaSaber Jul 3, 2024
89d41c3
Revert "Remove configs because they don't make sense any more if we w…
MustafaSaber Jul 3, 2024
232ccac
Update preStop hooks
AlexanderYastrebov Jul 3, 2024
cf6c91c
revert & use configItem for setting replica
MustafaSaber Jul 3, 2024
6df4313
Merge pull request #7796 from zalando-incubator/fabric/enable-by-default
MustafaSaber Jul 4, 2024
99a6b6c
Merge pull request #7798 from zalando-incubator/update-preStop
AlexanderYastrebov Jul 4, 2024
778307b
Update stackset CRDs to Kubernetes v1.30
mikkeloscar Jul 4, 2024
c4775d9
Force imdsv2 (master nodes)
mikkeloscar Dec 18, 2023
86e419e
update deployment-service and add the new CRD
demonCoder95 Jul 4, 2024
244d648
Merge pull request #7803 from zalando-incubator/stackset-crd-v1.30
szuecs Jul 4, 2024
bbd9838
Merge pull request #6669 from zalando-incubator/ami-imdsv2
mikkeloscar Jul 5, 2024
4d6e505
Merge pull request #7804 from zalando-incubator/update-deployment-ser…
mikkeloscar Jul 5, 2024
6e46fa5
skipper: remove deprecated enable_skipper_eastwest config
AlexanderYastrebov Jun 11, 2024
30ec685
update deployment-service to add cleanup task endpoint
demonCoder95 Jul 5, 2024
738b013
Merge pull request #7675 from zalando-incubator/skipper/remove-enable…
AlexanderYastrebov Jul 5, 2024
d0fd9df
fix: skipper build go version 1.22.5
szuecs Jul 5, 2024
31509bf
Merge pull request #7811 from zalando-incubator/update-deployment-ser…
mikkeloscar Jul 5, 2024
a1aac6d
Merge pull request #7813 from zalando-incubator/fix/skipper-go-1-22-5
demonCoder95 Jul 5, 2024
726f8f6
update deployment-service with resource cleanup task handler
demonCoder95 Jul 8, 2024
d00b63f
Merge pull request #7822 from zalando-incubator/update-deployment-ser…
demonCoder95 Jul 8, 2024
0e96890
update kube-node-ready-controller
myaser Jul 8, 2024
314b856
give deployment-service permission to handle resource cleanup tasks
linki Jul 8, 2024
c5c5d44
Merge pull request #7827 from zalando-incubator/deployment-service-pe…
demonCoder95 Jul 8, 2024
9681fc1
Merge pull request #7825 from zalando-incubator/kube-node-ready-contr…
mikkeloscar Jul 9, 2024
a78b16a
fix: skipper fleet to use Go version 1.22.5
szuecs Jul 10, 2024
837b6b0
update CDPResourceCleanupTask resource to the latest spec
linki Jul 11, 2024
7e4d817
Update to Prometheus v2.53.1
mikkeloscar Jul 11, 2024
18bc0ce
Merge pull request #7831 from zalando-incubator/fix/skipper-fleet-go-…
szuecs Jul 11, 2024
def3545
Merge pull request #7833 from zalando-incubator/phase-for-cleanups
mikkeloscar Jul 11, 2024
0f294c3
Disable ssh by default
mikkeloscar Jul 11, 2024
eb60e99
Merge pull request #7834 from zalando-incubator/prom-v2.53.1
mikkeloscar Jul 11, 2024
6a7520e
Merge pull request #7837 from zalando-incubator/disable-ssh-internet
mikkeloscar Jul 11, 2024
23bb667
Update tokeninfo base image to use static base image
mikkeloscar Jul 12, 2024
c02b617
Use base image for pdb-controller
mikkeloscar Jul 12, 2024
6312dad
Use base image for kube-static-egress-controller
mikkeloscar Jul 12, 2024
1d424ae
Merge pull request #7843 from zalando-incubator/use-base-image
linki Jul 12, 2024
c513557
Merge pull request #7842 from zalando-incubator/tokeninfo-static-base…
linki Jul 12, 2024
b1cf501
Use static base image for VPA components
mikkeloscar Jul 12, 2024
9488561
Merge pull request #7845 from zalando-incubator/vpa-static-base-image
linki Jul 12, 2024
21ab26b
update deployment-service to expose resource status
linki Jul 12, 2024
9890331
Merge pull request #7847 from zalando-incubator/deployment-service-re…
linki Jul 12, 2024
2edd81c
Update encryption-provider to use static base image
mikkeloscar Jul 12, 2024
5d1840c
Merge pull request #7849 from zalando-incubator/encryption-provider-s…
linki Jul 15, 2024
e084912
skip mustache rendering by default
linki Jul 15, 2024
750efcf
fix: skipper unset endpointslices
szuecs Jul 15, 2024
e2f1f8c
Include alias in Prometheus endpoint
mikkeloscar Jul 11, 2024
820502f
Enable access log to detect clients
mikkeloscar Jul 15, 2024
e867788
Merge pull request #7841 from zalando-incubator/promtheus-endpoint-alias
AlexanderYastrebov Jul 15, 2024
bc370c0
Merge pull request #7854 from zalando-incubator/fix/skipper-unset-end…
szuecs Jul 15, 2024
bb4e00f
Merge pull request #7853 from zalando-incubator/linki-patch-1
linki Jul 16, 2024
a9b72be
fix: skipper unset endpointslices step2
szuecs Jul 16, 2024
898d680
Merge pull request #7860 from zalando-incubator/fix/skipper-unset-end…
demonCoder95 Jul 17, 2024
2c50b1c
prometheus-node-exporter: Update to version v1.8.2-master-22
zalando-teapot-robot Jul 17, 2024
dd19f94
Merge pull request #7863 from zalando-incubator/container-registry.za…
linki Jul 17, 2024
f42b0f7
aws-credentials-waiter: Update to version master-224
zalando-teapot-robot Jul 17, 2024
39ac2a6
kube-aws-iam-controller: Update to version v0.3.0-23-g4f4bbaf
zalando-teapot-robot Jul 17, 2024
f95574c
deployment-controller: Update to version master-221
zalando-teapot-robot Jul 17, 2024
16951a7
pause: Update to version 3.7-master-21
zalando-teapot-robot Jul 17, 2024
dd123fd
kube-cluster-autoscaler: Update to version v1.18.2-internal.48
zalando-teapot-robot Jul 17, 2024
3718e78
kube-metrics-adapter: Update to version kube-metrics-adapter-0.2.3-14…
zalando-teapot-robot Jul 17, 2024
1d04cd5
prometheus: Update to version v2.53.1-master-56
zalando-teapot-robot Jul 17, 2024
6c01cc1
nvidia-dcgm-exporter: Update to version v3.3.6-3.4.2-ubuntu22.04-mast…
zalando-teapot-robot Jul 17, 2024
3c2286b
kube2iam: Update to version 0.11.2-master-18.patched
zalando-teapot-robot Jul 18, 2024
5952b40
aws-cloud-controller-manager-internal: Update to version v1.30.2-mast…
zalando-teapot-robot Jul 18, 2024
5ab7af2
Merge pull request #7865 from zalando-incubator/926694233939.dkr.ecr.…
linki Jul 18, 2024
33fe3c0
Merge pull request #7866 from zalando-incubator/container-registry.za…
linki Jul 18, 2024
30742b0
Merge pull request #7869 from zalando-incubator/container-registry.za…
linki Jul 18, 2024
4b0ab21
Merge pull request #7870 from zalando-incubator/container-registry.za…
linki Jul 18, 2024
e0107d5
Merge pull request #7874 from zalando-incubator/container-registry.za…
linki Jul 18, 2024
b283acd
Merge pull request #7868 from zalando-incubator/container-registry.za…
linki Jul 18, 2024
ef956f1
aws-cloud-controller-manager-internal: Update to version v1.30.2-mast…
zalando-teapot-robot Jul 18, 2024
d78a2fc
pause: Update to version 3.7-master-21
zalando-teapot-robot Jul 18, 2024
4f47976
Merge pull request #7871 from zalando-incubator/container-registry.za…
demonCoder95 Jul 18, 2024
8049660
add latest CRD spec for resource cleanup tasks
linki Jul 18, 2024
5b2d203
flannel: Update to version v0.25.5-master-28
zalando-teapot-robot Jul 18, 2024
ed27c6d
nvidia-gpu-device-plugin: Update to version v0.16.0-master-13
zalando-teapot-robot Jul 18, 2024
4d56ab6
Merge pull request #7872 from zalando-incubator/container-registry.za…
mikkeloscar Jul 19, 2024
0a45d30
fabric: update crd
MustafaSaber Jul 19, 2024
d5dcfba
deployment-controller: Update to version master-222
zalando-teapot-robot Jul 19, 2024
9306b44
Merge pull request #7875 from zalando-incubator/container-registry.za…
linki Jul 19, 2024
01d0f49
Merge pull request #7885 from zalando-incubator/fabric/update-version
MustafaSaber Jul 19, 2024
51c09f6
Merge pull request #7883 from zalando-incubator/container-registry.za…
linki Jul 22, 2024
f5ccd8f
Merge pull request #7882 from zalando-incubator/container-registry.za…
gargravarr Jul 22, 2024
c6df785
Merge pull request #7867 from zalando-incubator/container-registry.za…
gargravarr Jul 22, 2024
2e7d49c
Merge pull request #7879 from zalando-incubator/container-registry.za…
katyanna Jul 22, 2024
6153500
skipper: update canary to v0.21.161
AlexanderYastrebov Jul 25, 2024
37a4a33
Merge pull request #7891 from zalando-incubator/skipper/update-v0.21.…
AlexanderYastrebov Jul 25, 2024
ffaa3c2
Configure flannel-awaiter requests.
gargravarr Jul 25, 2024
5576dbe
deployment-controller: Update to version master-223
zalando-teapot-robot Jul 25, 2024
d55e4b8
Merge pull request #7894 from zalando-incubator/config-flannel-awaiter
gargravarr Jul 25, 2024
4d44365
Merge pull request #7895 from zalando-incubator/container-registry.za…
gargravarr Jul 26, 2024
a86d4ed
skipper: update main fleet to v0.21.161
Jul 26, 2024
ad91c51
Merge pull request #7903 from zalando-incubator/skipper/update-v0.21.…
linki Jul 26, 2024
5cdcf3b
aws-credentials-waiter: Update to version master-226
zalando-teapot-robot Jul 29, 2024
7a5c836
Merge pull request #7909 from zalando-incubator/926694233939.dkr.ecr.…
linki Jul 29, 2024
098b659
Fix conflicts
gargravarr Jul 29, 2024
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion cluster/cluster.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -510,7 +510,7 @@ Resources:
FromPort: 9998
IpProtocol: tcp
ToPort: 9999
{{- if ne .Cluster.ConfigItems.skipper_redis_replicas "0"}}
{{- if eq .Cluster.ConfigItems.skipper_ingress_redis_swim_enabled "true" }}
- CidrIp: "{{.Values.vpc_ipv4_cidr}}"
FromPort: 9990
IpProtocol: tcp
Expand Down
41 changes: 17 additions & 24 deletions cluster/config-defaults.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -112,6 +112,8 @@ skipper_validate_query: "true"
skipper_validate_query_log: "false"

skipper_default_filters: 'disableAccessLog(2,3,404,429) -> fifo(2000,20,"1s")'
# skipper_default_filters_authentication defines filters that implement default request authentication
skipper_default_filters_authentication: ''
skipper_default_filters_append: 'stateBagToTag("auth-user", "client.uid")'
skipper_disabled_filters: "static,bearerinjector"
skipper_lua_sources: "file"
Expand All @@ -122,7 +124,8 @@ skipper_endpointslices_enabled: "true"

skipper_compress_encodings: "gzip,deflate,br"

skipper_prometheus_start_label_enabled: "false"
# Adds "start" label to each prometheus counter with the value of counter creation timestamp as unix nanoseconds
skipper_prometheus_start_label_enabled: "true"

# skipper profiling settings, 0 keeps default, <0 disable, >0 enable with value
# https://pkg.go.dev/runtime@master#SetBlockProfileRate
Expand Down Expand Up @@ -163,8 +166,6 @@ skipper_termination_grace_period: "392"

# skipper redis settings
enable_dedicate_nodepool_skipper_redis: "false"
# TODO: skipper_redis_replicas cleanup after merge
skipper_redis_replicas: 1
skipper_redis_cpu: "100m"
skipper_redis_memory: "512Mi"
skipper_redis_dial_timeout: "25ms"
Expand All @@ -173,6 +174,7 @@ skipper_redis_read_timeout: "25ms"
skipper_redis_write_timeout: "25ms"

skipper_ingress_redis_swarm_enabled: "true"
skipper_ingress_redis_swim_enabled: "false"
skipper_ingress_redis_target_average_utilization_cpu: "30"
skipper_ingress_redis_target_average_utilization_memory: "60"
skipper_ingress_redis_min_replicas: "1"
Expand Down Expand Up @@ -228,15 +230,6 @@ zmon_kairosdb_url: "https://data-service.zmon.zalan.do/kairosdb-proxy"
## Nakadi URL (for the stats API)
nakadi_url: ""

# skipper east-west feature - deprecated configuration
# enable_skipper_eastwest is the legacy feature gate for the automatic
# ingress.cluster.local addresses created by skipper.
# enable_skipper_eastwest_dns only enables DNS and assumes users define the
# ingress.cluster.local names explicitly on ingress/routegroup/stacksets
enable_skipper_eastwest_dns: "true"
enable_skipper_eastwest: "false"


# enable temporary logging of ingress.cluster.local names
# used to find services for which it's being used.
skipper_eastwest_dns_log_enabled: "false"
Expand Down Expand Up @@ -336,14 +329,13 @@ skipper_open_policy_agent_styra_token: ""
#
# FabricGateway controller config
#
# fabric_gateway_controller_mode:
# - disabled: scales controller to zero replicas
# - production: runs the controller
# fabric_gateway_controller_enabled:
# - false: scales controller to zero replicas
# - true: runs the controller
#
fabric_gateway_controller_mode: "disabled"
fabric_gateway_controller_enabled: "true"
fabric_gateway_controller_cpu: "50m"
fabric_gateway_controller_memory: "150Mi"
fabric_gateway_crd_v1_enabled: "false"
fabric_gateway_controller_allow_all_filters: "false"
fabric_gateway_controller_ssl_policy: ""
fabric_gateway_controller_log_level: "INFO"
Expand All @@ -360,7 +352,7 @@ event_rate_limit_config_burst: "1000"
cadvisor_cpu: "150m"
cadvisor_memory: "150Mi"
cadvisor_profiling_enabled: "false"
cadvisor_enabled: "true"
cadvisor_enabled: "false"

# settings for enabling the kubelet-summary-metrics proxy and prometheus metric
# collection.
Expand Down Expand Up @@ -389,6 +381,9 @@ kube_proxy_verbose_level: "2"
flannel_cpu: "25m"
flannel_memory: "100Mi"

flannel_awaiter_cpu: "25m"
flannel_awaiter_memory: "50Mi"

# nvidia device plugin
nvidia_device_plugin_cpu: "10m"
nvidia_device_plugin_memory: "50Mi"
Expand Down Expand Up @@ -707,10 +702,8 @@ tracing_coredns_local_zone_traces_endpoint: ""
# AMI id given the image name and the Image AWS account owner.
#
# [0]: https://github.com/zalando-incubator/cluster-lifecycle-manager/blob/8a9bd1cb2d094038a9e23e646421f8146b48886a/provisioner/template.go#L116
kuberuntu_image_v1_29_jammy_amd64: {{ amiID "zalando-ubuntu-jammy-22.04-kubernetes-production-v1.29.4-amd64-master-328" "861068367966" }}
kuberuntu_image_v1_29_jammy_arm64: {{ amiID "zalando-ubuntu-jammy-22.04-kubernetes-production-v1.29.4-arm64-master-328" "861068367966" }}
kuberuntu_image_v1_30_jammy_amd64: {{ amiID "zalando-ubuntu-jammy-22.04-kubernetes-production-v1.30.2-amd64-master-337" "861068367966" }}
kuberuntu_image_v1_30_jammy_arm64: {{ amiID "zalando-ubuntu-jammy-22.04-kubernetes-production-v1.30.2-arm64-master-337" "861068367966" }}
kuberuntu_image_v1_30_jammy_amd64: {{ amiID "zalando-ubuntu-jammy-22.04-kubernetes-production-v1.30.2-amd64-master-341" "861068367966" }}
kuberuntu_image_v1_30_jammy_arm64: {{ amiID "zalando-ubuntu-jammy-22.04-kubernetes-production-v1.30.2-arm64-master-341" "861068367966" }}

# Which distro from the previous config items should be used. Valid options are only `jammy` for now. Can be set for each node pool.
kuberuntu_distro_master: "jammy"
Expand Down Expand Up @@ -814,7 +807,7 @@ auditlog_metric_dimensions: "authorization_decision"
auditlog_read_access: "false"

# allow ssh access for internal VPC IPs only
ssh_vpc_only: "false"
ssh_vpc_only: "true"

# configure custom dns zone
custom_dns_zone: "" # zone name e.g. example.org
Expand Down Expand Up @@ -968,7 +961,7 @@ deployment_service_ml_experiments_enabled: "true"
deployment_service_cf_auto_expand_enabled: "false"
deployment_service_cf_update_source_branch_changes: "true"
deployment_service_executor_cdp_permissions: "false"
deployment_service_skip_mustache_rendering: "false"
deployment_service_skip_mustache_rendering: "true"
{{- if eq .Cluster.Environment "test" }}
# disable CF update of source branch changes in test to avoid updating CF stacks
# on any PR.
Expand Down
2 changes: 1 addition & 1 deletion cluster/etcd/stack.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -43,7 +43,7 @@ Resources:
- Key: component
Value: etcd-cluster
- Key: Name
Value: 'etcd-cluster ({{.Cluster.ID}})'
Value: 'etcd-cluster'
NetworkInterfaces:
- DeviceIndex: 0
AssociatePublicIpAddress: true
Expand Down
2 changes: 0 additions & 2 deletions cluster/manifests/01-coredns-local/configmap-local.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -65,7 +65,6 @@ data:
}
{{ end }}

{{ if eq .Cluster.ConfigItems.enable_skipper_eastwest_dns "true"}}
ingress.cluster.local:9254 {
{{ if eq .Cluster.ConfigItems.skipper_eastwest_dns_log_enabled "true"}}
log
Expand All @@ -81,7 +80,6 @@ data:
prometheus :9153
ready :9155
}
{{ end }}

# Defines that this server is authority for reverse
# lookups for these ranges.
Expand Down
2 changes: 1 addition & 1 deletion cluster/manifests/02-admission-control/config.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -27,7 +27,7 @@ data:
pod.service-account-iam.enable: "true"
pod.service-account-iam.base-aws-account-id: "{{ accountID .Cluster.InfrastructureAccount }}"
{{- if eq .Cluster.ConfigItems.teapot_admission_controller_inject_aws_waiter "true" }}
pod.aws-waiter.image: "926694233939.dkr.ecr.eu-central-1.amazonaws.com/production_namespace/automata/aws-credentials-waiter:master-173"
pod.aws-waiter.image: "926694233939.dkr.ecr.eu-central-1.amazonaws.com/production_namespace/automata/aws-credentials-waiter:master-226"
{{- end }}
pod.env-inject.enable: "{{ .Cluster.ConfigItems.teapot_admission_controller_inject_environment_variables }}"
pod.env-inject.variable._PLATFORM_ACCOUNT: "{{ .Cluster.Alias }}"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -26,9 +26,9 @@ spec:
containers:
- name: admission-controller
{{if eq .Cluster.ConfigItems.vertical_pod_autoscaler_version "current"}}
image: container-registry.zalando.net/teapot/vpa-admission-controller:v1.1.2-main-2-custom
image: container-registry.zalando.net/teapot/vpa-admission-controller:v1.1.2-main-5-custom
{{else if eq .Cluster.ConfigItems.vertical_pod_autoscaler_version "legacy"}}
image: container-registry.zalando.net/teapot/vpa-admission-controller:v1.1.1-main-1-custom
image: container-registry.zalando.net/teapot/vpa-admission-controller:v1.1.2-main-2-custom
{{end}}
command:
- /admission-controller
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,9 +24,9 @@ spec:
containers:
- name: recommender
{{if eq .Cluster.ConfigItems.vertical_pod_autoscaler_version "current"}}
image: container-registry.zalando.net/teapot/vpa-recommender:v1.1.2-main-2-custom
image: container-registry.zalando.net/teapot/vpa-recommender:v1.1.2-main-5-custom
{{else if eq .Cluster.ConfigItems.vertical_pod_autoscaler_version "legacy"}}
image: container-registry.zalando.net/teapot/vpa-recommender:v1.1.1-main-1-custom
image: container-registry.zalando.net/teapot/vpa-recommender:v1.1.2-main-2-custom
{{end}}
args:
- --logtostderr
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -24,9 +24,9 @@ spec:
containers:
- name: updater
{{if eq .Cluster.ConfigItems.vertical_pod_autoscaler_version "current"}}
image: container-registry.zalando.net/teapot/vpa-updater:v1.1.2-main-2-custom
image: container-registry.zalando.net/teapot/vpa-updater:v1.1.2-main-5-custom
{{else if eq .Cluster.ConfigItems.vertical_pod_autoscaler_version "legacy"}}
image: container-registry.zalando.net/teapot/vpa-updater:v1.1.1-main-1-custom
image: container-registry.zalando.net/teapot/vpa-updater:v1.1.2-main-2-custom
{{end}}
command:
- ./updater
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -27,7 +27,7 @@ spec:
hostNetwork: true
containers:
- name: kube-aws-iam-controller
image: container-registry.zalando.net/teapot/kube-aws-iam-controller:v0.3.0-12-g1eb9449
image: container-registry.zalando.net/teapot/kube-aws-iam-controller:v0.3.0-23-g4f4bbaf
env:
- name: AWS_DEFAULT_REGION
value: "{{.Cluster.Region}}"
Expand Down
10 changes: 5 additions & 5 deletions cluster/manifests/04-ebs-csi/controller.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -37,7 +37,7 @@ spec:
runAsUser: 1000
containers:
- name: ebs-plugin
image: container-registry.zalando.net/teapot/aws-ebs-csi-driver:v1.29.1-master-17
image: container-registry.zalando.net/teapot/aws-ebs-csi-driver:v1.32.0-master-19
args:
- controller
- --endpoint=$(CSI_ENDPOINT)
Expand Down Expand Up @@ -84,7 +84,7 @@ spec:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
- name: csi-provisioner
image: container-registry.zalando.net/teapot/external-provisioner:v4.0.1-eks-1-29-10-master-17
image: container-registry.zalando.net/teapot/external-provisioner:v5.0.1-eks-1-30-8-master-19
args:
- --csi-address=$(ADDRESS)
- --v=2
Expand All @@ -109,7 +109,7 @@ spec:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
- name: csi-attacher
image: container-registry.zalando.net/teapot/external-attacher:v4.5.1-eks-1-29-10-master-17
image: container-registry.zalando.net/teapot/external-attacher:v4.6.1-eks-1-30-8-master-19
args:
- --csi-address=$(ADDRESS)
- --v=2
Expand All @@ -131,7 +131,7 @@ spec:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
- name: csi-resizer
image: container-registry.zalando.net/teapot/external-resizer:v1.10.1-eks-1-29-10-master-17
image: container-registry.zalando.net/teapot/external-resizer:v1.11.1-eks-1-30-8-master-19
args:
- --csi-address=$(ADDRESS)
- --v=2
Expand All @@ -153,7 +153,7 @@ spec:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
- name: liveness-probe
image: container-registry.zalando.net/teapot/livenessprobe:v2.12.0-eks-1-29-10-master-17
image: container-registry.zalando.net/teapot/livenessprobe:v2.13.0-eks-1-30-8-master-19
args:
- --csi-address=/csi/csi.sock
resources:
Expand Down
6 changes: 3 additions & 3 deletions cluster/manifests/04-ebs-csi/node.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -34,7 +34,7 @@ spec:
runAsUser: 0
containers:
- name: ebs-plugin
image: container-registry.zalando.net/teapot/aws-ebs-csi-driver:v1.29.1-master-17
image: container-registry.zalando.net/teapot/aws-ebs-csi-driver:v1.32.0-master-19
args:
- node
- --endpoint=$(CSI_ENDPOINT)
Expand Down Expand Up @@ -77,7 +77,7 @@ spec:
privileged: true
readOnlyRootFilesystem: true
- name: node-driver-registrar
image: container-registry.zalando.net/teapot/node-driver-registrar:v2.10.1-eks-1-29-10-master-17
image: container-registry.zalando.net/teapot/node-driver-registrar:v2.11.0-eks-1-30-8-master-19
args:
- --csi-address=$(ADDRESS)
- --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH)
Expand Down Expand Up @@ -114,7 +114,7 @@ spec:
allowPrivilegeEscalation: false
readOnlyRootFilesystem: true
- name: liveness-probe
image: container-registry.zalando.net/teapot/livenessprobe:v2.12.0-eks-1-29-10-master-17
image: container-registry.zalando.net/teapot/livenessprobe:v2.13.0-eks-1-30-8-master-19
args:
- --csi-address=/csi/csi.sock
volumeMounts:
Expand Down
2 changes: 1 addition & 1 deletion cluster/manifests/audittrail-adapter/daemonset.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -33,7 +33,7 @@ spec:
hostNetwork: true
containers:
- name: audittrail-adapter
image: container-registry.zalando.net/teapot/audittrail-adapter:master-64
image: container-registry.zalando.net/teapot/audittrail-adapter:master-65
env:
- name: AWS_REGION
value: "{{ .Cluster.Region }}"
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -28,7 +28,7 @@ spec:
- --cloud-provider=aws
- --use-service-account-credentials=true
- --configure-cloud-routes=false
image: container-registry.zalando.net/teapot/aws-cloud-controller-manager-internal:v1.30.0-master-120
image: container-registry.zalando.net/teapot/aws-cloud-controller-manager-internal:v1.30.2-master-126
name: aws-cloud-controller-manager
resources:
requests:
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -39,7 +39,7 @@ spec:
{{- end}}
containers:
- name: cluster-lifecycle-controller
image: container-registry.zalando.net/teapot/cluster-lifecycle-controller:master-41
image: container-registry.zalando.net/teapot/cluster-lifecycle-controller:master-42
args:
- --drain-grace-period={{.Cluster.ConfigItems.drain_grace_period}}
- --drain-min-pod-lifetime={{.Cluster.ConfigItems.drain_min_pod_lifetime}}
Expand Down
2 changes: 1 addition & 1 deletion cluster/manifests/cronjob-fixer/deployment.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -27,7 +27,7 @@ spec:
serviceAccountName: cronjob-fixer
containers:
- name: cronjob-fixer
image: "container-registry.zalando.net/teapot/cronjob-fixer:master-15"
image: "container-registry.zalando.net/teapot/cronjob-fixer:master-16"
resources:
limits:
cpu: 5m
Expand Down
Loading