Brad Davidson
199d9eae8a
[release-1.28] Backports for 2024-08 release cycle ( #10666 )
...
* Use pagination when retrieving etcd snapshot list
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit c2216a62ad )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Update secretsencrypt pagination
Make secretsencrypt page size and iteration consistent with other paginators
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 891e72f90f )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Cap length of generated name used for servicelb daemonset
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 21611c5665 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Fix ipv6 sysctl required by non-ipv6 LoadBalancer service
This is a partial revert of 095ecdb034 ,
with the workaround moved into klipper-lb.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit d4c3422a85 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* remove deprecated use of wait functions
Signed-off-by: Will <will7989@hotmail.com >
(cherry picked from commit e4f3cc7b54 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Update pkg/cluster/managed.go
Co-authored-by: Derek Nola <derek.nola@suse.com >
Signed-off-by: Will Andrews <will7989@hotmail.com >
(cherry picked from commit e2179aa957 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Wire lasso metrics up to common gatherer
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit e168438d44 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Fix cloudprovider controller name
Looking at metrics revealed the cloudprovider controller name was anempty string.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit bffdf463e1 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
---------
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
Signed-off-by: Will <will7989@hotmail.com >
Signed-off-by: Will Andrews <will7989@hotmail.com >
Co-authored-by: Will <will7989@hotmail.com >
Co-authored-by: Derek Nola <derek.nola@suse.com >
2024-08-05 09:35:31 -07:00
Derek Nola
edc7ea53d5
[Release-1.28] July Test Backports ( #10509 )
...
* Move test-compat to GHA (#10414 )
Signed-off-by: Derek Nola <derek.nola@suse.com >
* For E2E upgrade test, automatically determine the channel to use (#10461 )
Signed-off-by: Derek Nola <derek.nola@suse.com >
---------
Signed-off-by: Derek Nola <derek.nola@suse.com >
2024-07-17 09:34:49 -07:00
github-actions[bot]
5ea8f13b21
Bump Local Path Provisioner version ( #10394 )
...
* chore: Bump Local Path Provisioner version
Made with ❤️ ️ by updatecli
---------
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
(cherry picked from commit a0b374508e )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-07-15 10:14:40 -07:00
Brad Davidson
0df8a0d0df
Bump k3s-root to v0.14.0
...
Also remove the wg-add script that has been unused since v1.26 dropped the legacy wireguard backend
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 047664b610 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-07-15 10:14:40 -07:00
github-actions[bot]
0c8a2b4296
Bump Local Path Provisioner version ( #10268 )
...
* chore: Bump Local Path Provisioner version
Made with ❤️ ️ by updatecli
(cherry picked from commit 1268779ea0 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-06-04 13:21:47 -07:00
Anuj Garg
d15e487d8e
Updating the script binary_size_check to complete the command name by adding .exe extension to the k3s binary name to make it available to run stat command
...
Signed-off-by: Anuj Garg <anujgarg@microsoft.com >
(cherry picked from commit eb192197eb )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-05-31 09:17:13 -07:00
Brad Davidson
1d4e4ea0c5
Bump klipper-helm image for tls secret support
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 6683fcdb65 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-05-31 09:17:13 -07:00
Brad Davidson
03c02c693c
Update packaged manifests
...
* Update traefik chart to bump image tag and fix quoting
* Fix image quoting in flat manifests
* Update local-path-provisioner config to stop using deprecated hostpath volume type
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-04-11 10:01:16 -07:00
Derek Nola
f68f04dc37
Run docker tests in E2E GH Action
...
Build image with new input option
Run most of the basic docker tests in E2E
Signed-off-by: Derek Nola <derek.nola@suse.com >
2024-03-08 11:14:14 -08:00
Derek Nola
1075b3ca5a
Move docker tests into tests folder ( #9555 )
...
* Move docker tests into tests folder
* Remove old test certs
* Update TESTING.md with docker test inf
Signed-off-by: Derek Nola <derek.nola@suse.com >
2024-03-08 11:14:14 -08:00
Brad Davidson
3cef278fcb
Bump metrics-server to v0.7.0
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-03-07 16:36:56 -08:00
Brad Davidson
7f1b0c2b79
Include flannel version in flannel cni plugin version
...
We were misreporting the flannel version as the flannel cni plugin version; restore the actual flannel version as build metadata
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 6f331ea7b5 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-03-07 16:36:56 -08:00
Brad Davidson
da998e09cb
Use and version flannel/cni-plugin properly
...
Moves us closer to using the proper upstream for our flannel CNI plugin, instead of the snapshot that is vendored into our plugins fork.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 88d30f940d )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-03-07 16:36:56 -08:00
Brad Davidson
2ae8aa48aa
Bump helm-controller/klipper-helm versions
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 109e3e454c )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-03-07 16:36:56 -08:00
Manuel Buil
9894592e2f
Update klipper-lb image version
...
Signed-off-by: Manuel Buil <mbuil@suse.com >
2024-03-05 19:45:06 +01:00
Brad Davidson
4c1b91e3f9
Use 3/2/1 cluster for split role test
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-02-21 13:26:08 -08:00
Brooks Newberry
9f78e474d7
Update Kubernetes to v1.28.7 ( #9492 )
...
Signed-off-by: Brooks Newberry <brooks@newberry.com >
2024-02-15 13:15:00 -08:00
Brad Davidson
3d46c7da70
Bump CNI plugins to v1.4.0
...
Ref: https://github.com/rancher/plugins/compare/v1.3.0-k3s1...v1.4.0-k3s2
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit 77ba9904d1 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-02-10 00:49:18 -08:00
Matt Trachier
35ef1cec92
Bump Local Path Provisioner version ( #8953 ) ( #9426 )
...
* chore: Bump Local Path Provisioner version
---------
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2024-02-07 18:24:30 -06:00
Brad Davidson
2f9788ab55
Bump runc and helm-controller versions
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-02-01 18:52:07 -08:00
Brad Davidson
3b863906e0
Fix OS PRETTY_NAME on tagged releases
...
These were always showing up as dev due to the build arg not being set by the drone step.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit eae221f9e5 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-01-11 16:29:20 -08:00
Brad Davidson
ee85990a83
Add runtime checking of golang version
...
Forces other groups packaging k3s to intentionally choose to build k3s with an unvalidated golang version
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit b297996b92 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-01-11 16:29:20 -08:00
Brad Davidson
3248fd05c7
Add ServiceLB support for PodHostIPs FeatureGate
...
If the feature-gate is enabled, use status.hostIPs for dual-stack externalTrafficPolicy=Local support
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
(cherry picked from commit a27d660a24 )
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2024-01-11 16:29:20 -08:00
Pedro Tashima
6ba6c1b65f
remove s390x from manifest ( #8998 )
...
Signed-off-by: Pedro Tashima <pedro.tashima@suse.com >
Co-authored-by: Pedro Tashima <pedro.tashima@suse.com >
2023-12-06 18:20:20 -03:00
Sean Yen
0c9bf36fe0
[K3s][Windows Port] Build script, multi-call binary, and Flannel ( #7259 )
...
* initial windows port.
Signed-off-by: Sean Yen <seanyen@microsoft.com >
Signed-off-by: Derek Nola <derek.nola@suse.com >
Co-authored-by: Derek Nola <derek.nola@suse.com >
Co-authored-by: Wei Ran <weiran@microsoft.com >
2023-10-16 14:53:09 -04:00
Brad Davidson
2291d6d079
Add etcd-only/control-plane-only server test
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-10-13 23:24:16 -07:00
Brad Davidson
7bb4a826af
Update kube-router package in build script
...
Package was changed in version script in bc332ac667 but we missed changing it here as well.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-10-13 14:42:41 -07:00
Brad Davidson
3abc8b82ed
Bump traefik, golang.org/x/net, google.golang.org/grpc
...
Fixes exposure to CVE-2023-39325
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-10-13 09:45:54 -07:00
dlorenc
3d25e9f66c
Switch build target from main.go to a package. ( #8342 )
...
* Switch build target from main.go to a package.
* Dont build with vcs
Signed-off-by: Dan Lorenc <dlorenc@chainguard.dev >
Signed-off-by: Derek Nola <derek.nola@suse.com >
Co-authored-by: Derek Nola <derek.nola@suse.com >
2023-10-12 16:20:32 -07:00
Brad Davidson
9bb1ce1253
Bump busybox to v1.36.1
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-10-12 15:00:45 -07:00
Johnatas
ba750e28b7
[v1.28] System agent push tags fix ( #8568 )
...
* change script and drone
Signed-off-by: Johnatas <johnatasr@hotmail.com >
* adjust secret
Signed-off-by: Johnatas <johnatasr@hotmail.com >
---------
Signed-off-by: Johnatas <johnatasr@hotmail.com >
2023-10-06 16:33:48 -03:00
Jose D. Gomez R
79b44cee29
Create and validate install.sh signatures ( #8312 )
...
- SHA256 Signature of the install script
- Added a sha256sum invocations in the validate script.
These calls will validate that the install script signatures
match. And when the script is changed the signatures must be
recalculated as reported by the error message in sha256sum.
Signed-off-by: Jose D. Gomez R <jose.gomez@suse.com >
2023-09-27 12:34:08 -07:00
Johnatas
6330a5b49c
Update to v1.28.2 and go v1.20.8 ( #8364 )
...
* Update to v1.28.2
Signed-off-by: Johnatas <johnatasr@hotmail.com >
* Bump containerd and stargz versions
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Print message on upgrade fail
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Send Bad Gateway instead of Service Unavailable when tunnel dial fails
Works around new handling for Service Unavailable by apiserver aggregation added in kubernetes/kubernetes#119870
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
* Add 60 seconds to server upgrade wait to account for delays in apiserver readiness
Also change cleanup helper to ensure upgrade test doesn't pollute the
images for the rest of the tests.
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
---------
Signed-off-by: Johnatas <johnatasr@hotmail.com >
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
Co-authored-by: Brad Davidson <brad.davidson@rancher.com >
2023-09-19 10:18:47 -03:00
Hussein Galal
af50e1b096
Update to v1.28.0-k3s1 ( #8199 )
...
* Update to v1.28.0
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* Update golang to v1.20.7
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* more changes
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* update wrangler
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* update wrangler
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* fix nodepassword test
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* fix nodepassword test
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* disable CGO before running golangci-lint
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* execlude CGO Enabled checks
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* Ignore reapply change error with logging
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
* Update google api client
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
---------
Signed-off-by: galal-hussein <hussein.galal.ahmed.11@gmail.com >
2023-08-23 00:09:31 +03:00
Brad Davidson
84ded911e9
Bump helm-controller/klipper-helm versions
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-08-15 22:24:12 -07:00
Derek Nola
9702f92345
Fix for Kubeflag Integration test ( #8154 )
...
* Use argument that doesn't require file
* Use build-k3s workflow in cgroup
* Bump timeout on integration tests
Signed-off-by: Derek Nola <derek.nola@suse.com >
2023-08-07 14:04:04 -07:00
Brad Davidson
b2e71553ce
Use VERSION_K8S in tests instead of grep go.mod
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-08-04 16:06:47 -07:00
Brad Davidson
bc332ac667
Use 'go list -m' instead of grep to look up versions
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-08-04 12:26:54 -07:00
Manuel Buil
e56839b329
Update cni plugins version to v1.3.0
...
Signed-off-by: Manuel Buil <mbuil@suse.com >
2023-07-27 11:37:28 +02:00
Ian Cardoso
58a8deb25d
fix image_scan.sh script and download trivy version ( #7950 )
...
Signed-off-by: Ian Cardoso <osodracnai@gmail.com >
2023-07-13 15:03:50 -03:00
Derek Nola
70691a95ee
Faster K3s Binary Build Option ( #7805 )
...
* Add local build option
Signed-off-by: Derek Nola <derek.nola@suse.com >
2023-06-27 10:28:23 -07:00
Manuel Buil
869e030bdd
VPN PoC
...
Signed-off-by: Manuel Buil <mbuil@suse.com >
2023-06-09 12:39:33 +02:00
Brad Davidson
e9958cf070
Bump metrics-server to v0.6.3 and update tls-cipher-suites
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-05-30 17:44:06 -07:00
Brad Davidson
93279d2f59
Bump klipper-lb to v0.4.4
...
Fixes issue with localhost access to ServiceLB when
ExternalTrafficPolicy=Local
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-05-30 17:38:59 -07:00
Brad Davidson
8f450bafe1
Bump helm-controller version for repo auth/ca support
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-05-10 14:57:37 -07:00
Brad Davidson
607cbf0ad6
Bump containerd to v1.7.0 and move back into multicall binary
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-05-10 08:34:03 -07:00
Derek Nola
c6dc789e25
Add support for -cover + integration test code coverage ( #7415 )
...
* Add support for -cover in k3s server
* Update codecov reporting
* Sigterm in StopK3sServer
Signed-off-by: Derek Nola <derek.nola@suse.com >
2023-05-08 12:46:51 -07:00
Brad Davidson
cedefeff24
Bump cni plugins to v1.2.0-k3s1
...
Also add bandwidth and firewall plugins. The bandwidth plugin is
automatically registered with the appropriate capability, but the
firewall plugin must be configured by the user if they want to use it.
Ref: https://www.cni.dev/plugins/current/meta/firewall/
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-05-04 13:58:42 -07:00
Brad Davidson
0bbc6ad3f0
Bump traefik to v2.9.10
...
Signed-off-by: Brad Davidson <brad.davidson@rancher.com >
2023-04-28 11:13:47 -07:00
Derek Nola
ef648b7a5d
Bump Runc and Containerd ( #7339 )
...
* Bump runc
Signed-off-by: Derek Nola <derek.nola@suse.com >
* Bump to containerd, recombine build and go.mod version
Signed-off-by: Derek Nola <derek.nola@suse.com >
---------
Signed-off-by: Derek Nola <derek.nola@suse.com >
2023-04-28 09:37:32 -07:00