Production-Grade Container Scheduling and Management
Go to file
Rodrigo Campos 5e7201df69 Revert "Enforce the Minimum Kernel Version 6.3 for UserNamespacesSupport feature"
This reverts commit 8597b343fa.

I wrote in the Kubernetes documentation:

	In practice this means you need at least Linux 6.3, as tmpfs started
	supporting idmap mounts in that version. This is usually needed as
	several Kubernetes features use tmpfs (the service account token that is
	mounted by default uses a tmpfs, Secrets use a tmpfs, etc.)

The check is wrong for several reasons:
	* Pods can use userns before 6.3, they will just need to be
	  careful to not use a tmpfs (like a serviceaccount). MOST users
	  will probably need 6.3, but it is possible to use earlier kernel
	  versions. 5.19 probably works fine and with improvements in
          the runtime 5.12 can probably be supported too.
	* Several distros backport changes and the recommended way is
	  usually to try the syscall instead of testing kernel versions.
	  I expect support for simple fs like tmpfs will be backported
	  in several distros, but with this check it can generate confusion.
	* Today a clear error is shown when the pod is created, so it's
	  unlikely a user will not understand why it fails.
	* Returning an error if utilkernel fails to understand what
	  kernel version is running is also too strict (as we are
	  logging a warning even if it is not the expected version)
	* We are switching to enabled by default, which will log a
	  warning on every user that runs on an older than 6.3 kernel,
	  adding noise to the logs.

For there reasons, let's just remove the hardcoded kernel version check.

Signed-off-by: Rodrigo Campos <rodrigoca@microsoft.com>
2025-05-15 12:26:08 +02:00
.github Add new contribex leads to sig-contribex-approvers 2023-04-10 12:34:03 +05:30
api DRA API: bump maximum size of ReservedFor to 256 2025-01-09 14:27:03 +01:00
build Bump images, dependencies and versions 2025-04-29 11:56:47 +02:00
CHANGELOG Update CHANGELOG/CHANGELOG-1.32.md for v1.32.4 2025-04-22 16:22:00 +00:00
cluster Merge pull request #126798 from borg-land/easy-rsa-patch 2024-10-28 19:02:53 +00:00
cmd Merge pull request #130313 from neolit123/automated-cherry-pick-of-#130202-origin-release-1.32 2025-03-05 16:35:45 -08:00
docs Make root approval non-recursive 2022-10-10 08:26:53 -04:00
hack Add codegen::register to hack/update-codegen.sh 2025-02-24 11:40:42 +01:00
LICENSES vendoring changes for new hnslib v0.0.8. 2024-11-18 23:30:50 +05:30
logo logo: better alignment of layers 2022-10-19 12:17:25 -07:00
pkg Revert "Enforce the Minimum Kernel Version 6.3 for UserNamespacesSupport feature" 2025-05-15 12:26:08 +02:00
plugin Add Additional Tests 2025-02-27 10:53:15 +09:00
staging Bump images, dependencies and versions 2025-04-29 11:56:47 +02:00
test Bump images, dependencies and versions 2025-04-29 11:56:47 +02:00
third_party Merge pull request #128506 from kolyshkin/cgroups-nit 2024-11-08 02:21:34 +00:00
vendor bump netlink 2025-02-07 17:40:31 +05:30
.generated_files remove clearly unnecessary lingering BUILD file references 2022-10-04 16:47:25 -07:00
.gitattributes Mark api/openapi-spec/**/*.json as generated files 2024-10-28 13:33:50 -07:00
.gitignore Generate go.work files 2024-02-29 00:22:06 -08:00
.go-version Bump images, dependencies and versions 2025-04-29 11:56:47 +02:00
CHANGELOG.md Revert "Add link to to file" 2023-01-05 15:53:04 +08:00
code-of-conduct.md
CONTRIBUTING.md Remove stale analytics links from docs 2020-11-18 07:04:48 -06:00
go.mod bump netlink 2025-02-07 17:40:31 +05:30
go.sum bump netlink 2025-02-07 17:40:31 +05:30
go.work Drop use of winreadlinkvolume godebug option 2024-12-06 02:43:45 -05:00
go.work.sum vendoring changes for new hnslib v0.0.8. 2024-11-18 23:30:50 +05:30
LICENSE
Makefile
OWNERS Add sig-architecture-approvers and dep-approvers to root dir 2022-10-10 13:43:04 -04:00
OWNERS_ALIASES Merge pull request #128127 from macsko/add_macsko_to_sig_scheduling_reviewers 2024-10-24 03:34:52 +01:00
README.md Get rid of most references to GOPATH 2024-02-29 22:06:51 -08:00
SECURITY_CONTACTS Update SECURITY_CONTACTS 2023-10-10 14:45:43 +00:00
SUPPORT.md Update SUPPORT.md 2022-06-27 16:58:44 +02:00

Kubernetes (K8s)

CII Best Practices Go Report Card GitHub release (latest SemVer)


Kubernetes, also known as K8s, is an open source system for managing containerized applications across multiple hosts. It provides basic mechanisms for the deployment, maintenance, and scaling of applications.

Kubernetes builds upon a decade and a half of experience at Google running production workloads at scale using a system called Borg, combined with best-of-breed ideas and practices from the community.

Kubernetes is hosted by the Cloud Native Computing Foundation (CNCF). If your company wants to help shape the evolution of technologies that are container-packaged, dynamically scheduled, and microservices-oriented, consider joining the CNCF. For details about who's involved and how Kubernetes plays a role, read the CNCF announcement.


To start using K8s

See our documentation on kubernetes.io.

Take a free course on Scalable Microservices with Kubernetes.

To use Kubernetes code as a library in other applications, see the list of published components. Use of the k8s.io/kubernetes module or k8s.io/kubernetes/... packages as libraries is not supported.

To start developing K8s

The community repository hosts all information about building Kubernetes from source, how to contribute code and documentation, who to contact about what, etc.

If you want to build Kubernetes right away there are two options:

You have a working Go environment.
git clone https://github.com/kubernetes/kubernetes
cd kubernetes
make
You have a working Docker environment.
git clone https://github.com/kubernetes/kubernetes
cd kubernetes
make quick-release

For the full story, head over to the developer's documentation.

Support

If you need support, start with the troubleshooting guide, and work your way through the process that we've outlined.

That said, if you have questions, reach out to us one way or another.

Community Meetings

The Calendar has the list of all the meetings in the Kubernetes community in a single location.

Adopters

The User Case Studies website has real-world use cases of organizations across industries that are deploying/migrating to Kubernetes.

Governance

Kubernetes project is governed by a framework of principles, values, policies and processes to help our community and constituents towards our shared goals.

The Kubernetes Community is the launching point for learning about how we organize ourselves.

The Kubernetes Steering community repo is used by the Kubernetes Steering Committee, which oversees governance of the Kubernetes project.

Roadmap

The Kubernetes Enhancements repo provides information about Kubernetes releases, as well as feature tracking and backlogs.