-
We are running [kube-router](https://www.kube-router.io/) for the k8s networking. We moved away from Calico.
We changed the host-interface to `kube-bridge`. (Ref: https://github.com/jtblin/kube2ia…
-
The problem is this:
The kube-resources-autosave-dumper requires aws s3 bucket access to port its manifest exports
The kube-system namespace is automatically enabled for kiam when kiam flag is enabl…
-
#331
輕聲的狀況較複雜
我上一開始攏是共`輕聲詞`佮`頭前詞`敆做伙
舊年佇itaigi摻人討論了,才共兩个分開
舊年討論的過程:
教典內的`矣 --ah`佮`一寡 --tsi̍t-kuá.`是詞無問題
毋過教典例句
我食飽矣。Guá tsia̍h-pá--ah.
加減食一寡。Ke-kiám tsia̍h--tsi̍t-kuá.
斷詞…
-
It'd be nice to make it really easy for people to deploy with Helm. I suspect a prerequisite for this would be #29.
-
Tried to test changing the KIAMImage today and found that the client is configurable by the cluster.yaml setting KIAMImage (yaml kiamImage) but this did not change the kiam server because it has been …
-
kiam seems to succeed kube2iam on several points:
- Built on a master/agent architecture so that we need IAM permissions only on controller nodes
- Restriction of allowed IAM roles per namespace
…
-
checked the kiam-agent logs on the node where the pod (which was to be assigned the iam role) was scheduled which look like
```
{"addr":"10.2.40.2:34938","headers":{},"level":"info","method":"GET"…
-
I am noticing
```yaml
securityContext:
privileged: true
```
Could the container be run without privileged if it did not set up the DNAT rule with iptables? Or is there another r…
-
Running beta 7, but was happening on beta 6 too. Deleting the pod doesnt make it go away.
```
I1001 22:34:08.200030 1 albingress.go:230] XXXXXXXX/YYYYYY-ing: Ingress rebuilt from existing AL…
-
When the server and agent attempt to start they are missing their TLS secrets as
```
MountVolume.SetUp failed for volume "tls" : secrets "kiam-server-tls" not found
```
On investigation, these sec…