mirror of
https://github.com/k3s-io/kubernetes.git
synced 2025-07-31 15:25:57 +00:00
Remove Initializers from federation
This commit is contained in:
parent
7bbc615b97
commit
034f06d7e4
@ -258,7 +258,7 @@ function create-federation-api-objects {
|
|||||||
export FEDERATION_APISERVER_KEY_BASE64="${FEDERATION_APISERVER_KEY_BASE64}"
|
export FEDERATION_APISERVER_KEY_BASE64="${FEDERATION_APISERVER_KEY_BASE64}"
|
||||||
|
|
||||||
# Enable the NamespaceLifecycle admission control by default.
|
# Enable the NamespaceLifecycle admission control by default.
|
||||||
export FEDERATION_ADMISSION_CONTROL="${FEDERATION_ADMISSION_CONTROL:-Initializers,NamespaceLifecycle}"
|
export FEDERATION_ADMISSION_CONTROL="${FEDERATION_ADMISSION_CONTROL:-NamespaceLifecycle}"
|
||||||
|
|
||||||
for file in federation-etcd-pvc.yaml federation-apiserver-{deployment,secrets}.yaml federation-controller-manager-deployment.yaml; do
|
for file in federation-etcd-pvc.yaml federation-apiserver-{deployment,secrets}.yaml federation-controller-manager-deployment.yaml; do
|
||||||
echo "Creating manifest: ${file}"
|
echo "Creating manifest: ${file}"
|
||||||
|
@ -692,7 +692,7 @@ func createAPIServer(clientset client.Interface, namespace, name, federationName
|
|||||||
"--client-ca-file": "/etc/federation/apiserver/ca.crt",
|
"--client-ca-file": "/etc/federation/apiserver/ca.crt",
|
||||||
"--tls-cert-file": "/etc/federation/apiserver/server.crt",
|
"--tls-cert-file": "/etc/federation/apiserver/server.crt",
|
||||||
"--tls-private-key-file": "/etc/federation/apiserver/server.key",
|
"--tls-private-key-file": "/etc/federation/apiserver/server.key",
|
||||||
"--admission-control": "Initializers,NamespaceLifecycle",
|
"--admission-control": "NamespaceLifecycle",
|
||||||
}
|
}
|
||||||
|
|
||||||
if advertiseAddress != "" {
|
if advertiseAddress != "" {
|
||||||
|
@ -869,7 +869,7 @@ func fakeInitHostFactory(apiserverServiceType v1.ServiceType, federationName, na
|
|||||||
fmt.Sprintf("--secure-port=%d", apiServerSecurePort),
|
fmt.Sprintf("--secure-port=%d", apiServerSecurePort),
|
||||||
"--tls-cert-file=/etc/federation/apiserver/server.crt",
|
"--tls-cert-file=/etc/federation/apiserver/server.crt",
|
||||||
"--tls-private-key-file=/etc/federation/apiserver/server.key",
|
"--tls-private-key-file=/etc/federation/apiserver/server.key",
|
||||||
"--admission-control=Initializers,NamespaceLifecycle",
|
"--admission-control=NamespaceLifecycle",
|
||||||
fmt.Sprintf("--advertise-address=%s", address),
|
fmt.Sprintf("--advertise-address=%s", address),
|
||||||
}
|
}
|
||||||
|
|
||||||
|
@ -34,7 +34,7 @@ function run_federation_apiserver() {
|
|||||||
kube::log::status "Starting federation-apiserver"
|
kube::log::status "Starting federation-apiserver"
|
||||||
|
|
||||||
# Admission Controllers to invoke prior to persisting objects in cluster
|
# Admission Controllers to invoke prior to persisting objects in cluster
|
||||||
ADMISSION_CONTROL="Initializers,NamespaceLifecycle"
|
ADMISSION_CONTROL="NamespaceLifecycle"
|
||||||
|
|
||||||
"${KUBE_OUTPUT_HOSTBIN}/federation-apiserver" \
|
"${KUBE_OUTPUT_HOSTBIN}/federation-apiserver" \
|
||||||
--insecure-port="${API_PORT}" \
|
--insecure-port="${API_PORT}" \
|
||||||
|
Loading…
Reference in New Issue
Block a user