magnum/magnum/drivers/common/templates/kubernetes/fragments
Spyros Trigazis 205e8adafa k8s_fedora: Add kubelet authentication/authorization
* disable kubelet anonymous-auth
* enable kubelet webhook-(token) authorization
* disable kubelet cadvisor and read-only ports
* listen kubelet only on internal ipv4 ip
* update kubelet certs
* Update heapster RBAC to access kubelets
* update api config to access kubelet over https

Closes-Bug: #1758672
Change-Id: I2c6046ce5921a63a2d56f51435433497b1ff30ba
2018-03-26 15:17:57 +00:00
..
add-proxy.sh Make Docker proxy configuration consistent across template 2016-12-20 10:08:42 +01:00
calico-service.sh Support calico as network driver 2018-02-21 14:47:54 +13:00
configure-etcd.sh Run etcd and flanneld in a system container 2018-02-22 12:30:27 +00:00
configure-kubernetes-master.sh k8s_fedora: Add kubelet authentication/authorization 2018-03-26 15:17:57 +00:00
configure-kubernetes-minion.sh k8s_fedora: Add kubelet authentication/authorization 2018-03-26 15:17:57 +00:00
core-dns-service.sh Support calico as network driver 2018-02-21 14:47:54 +13:00
disable-selinux.sh Add bashate checks to pep8 step 2016-12-07 15:25:41 +01:00
enable-cert-api-manager [k8s] allow enabling kubernetes cert manager api 2018-02-15 14:25:48 +00:00
enable-ingress-controller [kubernetes] add ingress controller 2018-02-22 15:54:46 +00:00
enable-ingress-traefik Add service account to daemonset in traefik 2018-03-16 13:38:43 +01:00
enable-node-exporter.sh k8s_fedora: Add container_infra_prefix label 2017-09-22 12:08:07 +02:00
enable-prometheus-monitoring Specify grafana version 2018-02-23 18:21:37 +08:00
enable-services-master.sh [k8s] allow enabling kubernetes cert manager api 2018-02-15 14:25:48 +00:00
enable-services-minion.sh Launch kube-proxy as a system container 2017-08-22 14:01:43 +02:00
kube-apiserver-to-kubelet-role.sh k8s: Fix kubelet, add RBAC and pass e2e tests 2018-02-08 13:35:00 +00:00
kube-dashboard-service.sh k8s_fedora: Add kubelet authentication/authorization 2018-03-26 15:17:57 +00:00
make-cert-client.sh k8s_fedora: Add kubelet authentication/authorization 2018-03-26 15:17:57 +00:00
make-cert.sh Run etcd and flanneld in a system container 2018-02-22 12:30:27 +00:00
network-config-service.sh Run etcd and flanneld in a system container 2018-02-22 12:30:27 +00:00
network-service.sh Run etcd and flanneld in a system container 2018-02-22 12:30:27 +00:00
start-container-agent.sh Leverage heat-container-agent for monitoring 2017-12-17 16:35:50 +00:00
wc-notify-master.sh Add missing translation for verify_ca 2018-01-04 13:30:49 -08:00
write-heat-params-master.yaml Update kubernetes dashboard to v1.8.3 2018-02-23 09:42:44 +13:00
write-heat-params.yaml Merge "k8s: allow passing extra options to kube daemons" 2018-02-22 19:43:45 +00:00
write-kube-os-config.sh Run etcd and flanneld in a system container 2018-02-22 12:30:27 +00:00
write-network-config.sh Run etcd and flanneld in a system container 2018-02-22 12:30:27 +00:00