Production-Grade Container Scheduling and Management
Go to file
Kubernetes Submit Queue 75b3a0f3de Merge pull request #48607 from luxas/kubeadm_cleanup_selfhosting
Automatic merge from submit-queue (batch tested with PRs 46210, 48607, 46874, 46598, 49240)

kubeadm: Make the hostPath volume mount code more secure

**What this PR does / why we need it**:

 - Refactors the hostpath volume mounting code for the Static Pods
 - Splits out the functionality that was in a big function to something testable
 - Unit test a lot
 - Adds support for mounting external etcd CA/cert/key files in an other path than `/etc/ssl/certs`. Before this you **had** to have your files in there or the apiserver would crashloop
 - Significantly improves comment coverage
 - Now only mounts the bare essentials instead of nearly everything. For example, don't mount full `/etc/kubernetes` when the only thing you need is `/etc/kubernetes/scheduler.conf`
 - Make everything but the etcd datadir read-only for components.

**Which issue this PR fixes** *(optional, in `fixes #<issue number>(, fixes #<issue_number>, ...)` format, will close that issue when PR gets merged)*: fixes #

Fixes: https://github.com/kubernetes/kubeadm/issues/341

**Special notes for your reviewer**:

**Release note**:

```release-note
NONE
```
cc @kubernetes/sig-cluster-lifecycle-pr-reviews
2017-07-21 17:00:15 -07:00
.github Merge pull request #46714 from castrojo/new-issue-template 2017-06-22 16:43:47 -07:00
api Autogen 2017-07-20 14:16:43 -07:00
build Merge pull request #48565 from jmillikin-stripe/support-external-deps 2017-07-21 01:13:17 -07:00
cluster Merge pull request #49344 from shyamjvs/master-disk-size 2017-07-21 06:24:39 -07:00
cmd Merge pull request #48607 from luxas/kubeadm_cleanup_selfhosting 2017-07-21 17:00:15 -07:00
docs Autogen 2017-07-20 14:16:43 -07:00
examples Update wordpress to 4.8.0 2017-07-20 10:08:49 +08:00
federation Autogen 2017-07-20 14:16:43 -07:00
Godeps update godep 2017-07-20 11:03:49 -07:00
hack Merge pull request #48746 from janetkuo/apps-v1beta2 2017-07-21 11:47:21 -07:00
logo
pkg Merge pull request #46210 from xiangpengzhao/print-volume-info 2017-07-21 16:45:37 -07:00
plugin Merge pull request #48526 from jianglingxia/jlx0706 2017-07-21 04:20:45 -07:00
staging fix race in proxy unit test 2017-07-21 15:17:14 -04:00
test Merge pull request #48746 from janetkuo/apps-v1beta2 2017-07-21 11:47:21 -07:00
third_party Merge pull request #47614 from mengqiy/fix_naming 2017-07-19 21:51:49 -07:00
translations removed 'Storage' option from 'kubectl top' like options 2017-06-23 08:34:53 -07:00
vendor update godep 2017-07-20 11:03:49 -07:00
.bazelrc move build related files out of the root directory 2017-05-15 15:53:54 -07:00
.generated_files
.gitattributes
.gitignore Remove verify_gen_openapi make rule. 2017-04-25 17:41:33 -07:00
.kazelcfg.json Switch from gazel to kazel, and move kazelcfg into build/root 2017-07-18 12:48:51 -07:00
BUILD.bazel move build related files out of the root directory 2017-05-15 15:53:54 -07:00
CHANGELOG.md Update CHANGELOG.md for v1.7.2. 2017-07-21 13:43:30 +02:00
code-of-conduct.md
CONTRIBUTING.md
labels.yaml Update labels.yaml 2017-07-11 11:21:18 -07:00
LICENSE
Makefile move build related files out of the root directory 2017-05-15 15:53:54 -07:00
Makefile.generated_files move build related files out of the root directory 2017-05-15 15:53:54 -07:00
OWNERS Add jregan to OWNERS for kubectl isolation work. 2017-05-30 14:32:48 -07:00
OWNERS_ALIASES update cli owner 2017-07-18 12:58:22 -07:00
README.md
Vagrantfile
WORKSPACE move build related files out of the root directory 2017-05-15 15:53:54 -07:00

Kubernetes

Submit Queue Widget GoDoc Widget


Kubernetes is an open source system for managing containerized applications across multiple hosts, providing basic mechanisms for deployment, maintenance, and scaling of applications.

Kubernetes builds upon a decade and a half of experience at Google running production workloads at scale using a system called Borg, combined with best-of-breed ideas and practices from the community.

Kubernetes is hosted by the Cloud Native Computing Foundation (CNCF). If you are a company that wants to help shape the evolution of technologies that are container-packaged, dynamically-scheduled and microservices-oriented, consider joining the CNCF. For details about who's involved and how Kubernetes plays a role, read the CNCF announcement.


To start using Kubernetes

See our documentation on kubernetes.io.

Try our interactive tutorial.

Take a free course on Scalable Microservices with Kubernetes.

To start developing Kubernetes

The community repository hosts all information about building Kubernetes from source, how to contribute code and documentation, who to contact about what, etc.

If you want to build Kubernetes right away there are two options:

You have a working Go environment.
$ go get -d k8s.io/kubernetes
$ cd $GOPATH/src/k8s.io/kubernetes
$ make
You have a working Docker environment.
$ git clone https://github.com/kubernetes/kubernetes
$ cd kubernetes
$ make quick-release

If you are less impatient, head over to the developer's documentation.

Support

If you need support, start with the troubleshooting guide and work your way through the process that we've outlined.

That said, if you have questions, reach out to us one way or another.

Analytics