Closed pjlewisuk closed 8 months ago
History here is that the AKS Baseline reference architecture was used instead of the Portal. The Portal doesn't necessarily volunteer the best defaults for a typical Hub-Spoke network configuration.
networkProfile: {
networkPlugin: 'azure'
networkPolicy: 'azure'
outboundType: 'userDefinedRouting'
loadBalancerSku: 'standard'
loadBalancerProfile: null
serviceCidr: '172.16.0.0/16'
dnsServiceIP: '172.16.0.10'
}
Issue smells stale, no activity for 30 days. Stale Label will be removed if the issue is updated, otherwise closed in a month.
I would like to bump this.
the defaults for AKS Construction for serviceCidr are not in the private space (RFC 1918).
172.16.0.0/16 would be a better default than 172.10.0.0/16 to avoid any possible conflict with public space.
I would like to bump this.
the defaults for AKS Construction for serviceCidr are not in the private space (RFC 1918).
172.16.0.0/16 would be a better default than 172.10.0.0/16 to avoid any possible conflict with public space.
Hi @AmitSheth, thanks for this, that's a really good shout. Have you noticed any issues with using the 172.10.0.0/16 address range, or is this just to align with best practices and the RFC definition? Happy to make the change.
Issue smells stale, no activity for 30 days. Stale Label will be removed if the issue is updated, otherwise closed in a month.
Describe the bug When you create an AKS cluster using the Azure CLI, you can choose to pass in optional parameters such as
--pod-cidr
and--service-cidr
. If you don't supply them, AKS uses sane defaults.Similarly, you can configure AKS to use an existing Vnet with the
--vnet-subnet-id
parameter, but if you don't, AKS will create a Vnet with default CIDR configuration and use that.The defaults for ASK vs AKS Construction are listed below:
We should update AKS Construction to align with the AKS Service defaults. To Reproduce Steps to reproduce the behavior:
Expected behavior AKS Construction defaults should align with the AKS service defaults, unless we have a good reason to deviate from them.
Screenshots
Additional context Add any other context about the problem here.