Skip to content

Instantly share code, notes, and snippets.

@richardcase
Last active January 31, 2022 15:03
Show Gist options
  • Select an option

  • Save richardcase/5310dd090eab79a12258c67c765f775a to your computer and use it in GitHub Desktop.

Select an option

Save richardcase/5310dd090eab79a12258c67c765f775a to your computer and use it in GitHub Desktop.
EKSA Bundle Override
apiVersion: anywhere.eks.amazonaws.com/v1alpha1
kind: Bundles
metadata:
creationTimestamp: "2022-01-25T04:54:45Z"
spec:
cliMaxVersion: v0.0.0
cliMinVersion: v0.0.0
number: 1
versionsBundles:
- aws:
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-aws/manifests/infrastructure-aws/v0.6.4/cluster-template.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-aws/manifests/infrastructure-aws/v0.6.4/infrastructure-components.yaml
controller:
arch:
- amd64
description: Container image for cluster-api-aws-controller image
imageDigest: sha256:2bad064ce26348fad6ae1bf08bb550f1bbcbce8a80cc08c285eae3f67b1c1d23
name: cluster-api-aws-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api-provider-aws/cluster-api-aws-controller:v0.6.4-eks-a-v0.0.0-dev-build.1168
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-aws/manifests/infrastructure-aws/v0.6.4/metadata.yaml
version: v0.6.4+a751b0c
bootstrap:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/bootstrap-kubeadm/v1.0.2/bootstrap-components.yaml
controller:
arch:
- amd64
description: Container image for kubeadm-bootstrap-controller image
imageDigest: sha256:2a2ef5b1a2eda19d851fd477de9400111a5af882ab7970c286961899226ed671
name: kubeadm-bootstrap-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/kubeadm-bootstrap-controller:v1.0.2-eks-a-v0.0.0-dev-build.982
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/bootstrap-kubeadm/v1.0.2/metadata.yaml
version: v1.0.2+86527f2
bottlerocketAdmin:
admin:
arch:
- amd64
description: Container image for bottlerocket-admin image
imageDigest: sha256:f258d34f6d42663aaa67bb23328dbbb577d2b73baa55cb04902214649995722a
name: bottlerocket-admin
os: linux
uri: public.ecr.aws/bottlerocket/bottlerocket-admin:v0.7.3
bottlerocketBootstrap:
bootstrap:
arch:
- amd64
description: Container image for bottlerocket-bootstrap image
imageDigest: sha256:e70c79cfc446eebd61415e6bcf612db875f96ab18e8d0249ace3797df7071908
name: bottlerocket-bootstrap
os: linux
uri: public.ecr.aws/l0g8r8j6/bottlerocket-bootstrap:v1-20-10-eks-a-v0.0.0-dev-build.1101
certManager:
acmesolver:
arch:
- amd64
description: Container image for cert-manager-acmesolver image
imageDigest: sha256:918998d2cfb2c914896cf0a341ed7723dc2ed36194d0c2ad25dc8e6e0911e556
name: cert-manager-acmesolver
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-acmesolver:v1.5.3-eks-a-v0.0.0-dev-build.902
cainjector:
arch:
- amd64
description: Container image for cert-manager-cainjector image
imageDigest: sha256:eab339d17e56789b2160b90097ca184c8cfc5280a95ebe5de4f05c8bb5ed13fd
name: cert-manager-cainjector
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-cainjector:v1.5.3-eks-a-v0.0.0-dev-build.902
controller:
arch:
- amd64
description: Container image for cert-manager-controller image
imageDigest: sha256:5756e10013513503d0b509220add0c5eb4dfd94c1453c06a0b16bf58410d6393
name: cert-manager-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-controller:v1.5.3-eks-a-v0.0.0-dev-build.902
manifest:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cert-manager/manifests/v1.5.3/cert-manager.yaml
version: v1.5.3+66e1acc
webhook:
arch:
- amd64
description: Container image for cert-manager-webhook image
imageDigest: sha256:52466afbbb6b596b97f758cb99f54130e2d8da1ea44f632b05e45d8abdd62bae
name: cert-manager-webhook
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-webhook:v1.5.3-eks-a-v0.0.0-dev-build.902
cilium:
cilium:
arch:
- amd64
description: Container image for cilium image
imageDigest: sha256:e0c5180610dd7a2bac4ed271309b07eb6102d0bd74ed7dd33fb619879cc006f3
name: cilium
os: linux
uri: public.ecr.aws/isovalent/cilium:v1.9.11-eksa.1
helmChart:
description: Helm chart for cilium-chart
imageDigest: sha256:5982a9b5feded74c14a0b410006bba6d748655f8bc01f393b4519c9b10a463d0
name: cilium-chart
uri: public.ecr.aws/isovalent/cilium:1.9.11-eksa.1
manifest:
uri: https://gist.githubusercontent.com/richardcase/5310dd090eab79a12258c67c765f775a/raw/cafe97e48e2d2e96f1dd889fe836c67d718f1bd6/cilium.yaml
#uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cilium/manifests/cilium/v1.9.11-eksa.1/cilium.yaml
operator:
arch:
- amd64
description: Container image for operator-generic image
imageDigest: sha256:fd78027e876b00ea850f875e87a9ce81f6e4e6b4d963f115e978e8e7d180f478
name: operator-generic
os: linux
uri: public.ecr.aws/isovalent/operator-generic:v1.9.11-eksa.1
version: v1.9.11-eksa.1
clusterAPI:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/cluster-api/v1.0.2/core-components.yaml
controller:
arch:
- amd64
description: Container image for cluster-api-controller image
imageDigest: sha256:2d27ba6c1000a0ad8705c645715380bc544da36f91ef7ba73125278f395f58b8
name: cluster-api-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/cluster-api-controller:v1.0.2-eks-a-v0.0.0-dev-build.982
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/cluster-api/v1.0.2/metadata.yaml
version: v1.0.2+d48fa87
controlPlane:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/control-plane-kubeadm/v1.0.2/control-plane-components.yaml
controller:
arch:
- amd64
description: Container image for kubeadm-control-plane-controller image
imageDigest: sha256:3e0776cf7db4b1e3f238264d5560c15dfa5b9ba2fe40a81245d9b8fbafbe9ce7
name: kubeadm-control-plane-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/kubeadm-control-plane-controller:v1.0.2-eks-a-v0.0.0-dev-build.982
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/control-plane-kubeadm/v1.0.2/metadata.yaml
version: v1.0.2+ec531b2
docker:
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/infrastructure-docker/v1.0.2/cluster-template-development.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/infrastructure-docker/v1.0.2/infrastructure-components-development.yaml
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
manager:
arch:
- amd64
description: Container image for capd-manager image
imageDigest: sha256:7541d8ea7f8139f33f3bf56269c9d79989bfbb87b0dc845020b72b12c1c47169
name: capd-manager
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/capd-manager:v1.0.2-eks-a-v0.0.0-dev-build.982
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/infrastructure-docker/v1.0.2/metadata.yaml
version: v1.0.2+644474e
eksD:
channel: 1-20
gitCommit: |
743fe53e2987e5228069703bd5aa1584959ed3e4
kindNode:
arch:
- amd64
description: Container image for kind-node image
imageDigest: sha256:f7e3a32a1d6862b9d39e8404b4797245efe57d1d894247a4a5f5ddcfe271bada
name: kind-node
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/kind/node:v1.20.11-eks-d-1-20-10-eks-a-v0.0.0-dev-build.1100
kubeVersion: v1.20.11
manifestUrl: https://distro.eks.amazonaws.com/kubernetes-1-20/kubernetes-1-20-eks-10.yaml
name: kubernetes-1-20-eks-10
ova:
bottlerocket:
arch:
- amd64
crictl: {}
description: Bottlerocket OVA for EKS-D 1-20-10 release
etcdadm: {}
name: bottlerocket-v1.20.11-eks-d-1-20-10-eks-a-v0.0.0-dev-build.1168-amd64.ova
os: linux
osName: bottlerocket
sha256: 32adc502c633ba1bb9a3f201c4a38849a7b978c4fffaae3eec92aca2f226f1f9
sha512: 0fa2a1fae31a3c89cf2d334aeb42b3d455d561760e3109de623a4a91a8e7a897b54e810da00e2df47b51ab0f6c881db7e0db069ef91b6bfa0828792c80fb1c23
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/eks-distro/ova/1-20/1-20-10/bottlerocket-v1.20.11-eks-d-1-20-10-eks-a-v0.0.0-dev-build.1168-amd64.ova
ubuntu:
arch:
- amd64
crictl:
arch:
- amd64
description: cri-tools tarball for linux/amd64
name: cri-tools-v0.0.0-dev+build.1168-linux-amd64.tar.gz
os: linux
sha256: c4afdcc2437f128168054d57e9d90d73e3607e3f7e9bafb6cf7eee1d6163d951
sha512: f6232cc6e30c2bc7576be11c180ba29c5f1231ee6d8d7a8f02192e6ecfc8bef9453a7c5f93fa3be0a886f3b6810692326bd72998e98966a6c8d1470a8b8d2507
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cri-tools/v1.20.0/cri-tools-v0.0.0-dev+build.1168-linux-amd64.tar.gz
description: Ubuntu OVA for EKS-D 1-20-10 release
etcdadm:
arch:
- amd64
description: etcdadm tarball for linux/amd64
name: etcdadm-v0.0.0-dev+build.1168-linux-amd64.tar.gz
os: linux
sha256: 8ca0577efa829009b10e530aaa66a0f407d446df647c3de4bc5b9d410822d252
sha512: f296772a9475d69dccdc2fe9558ed564cc052670b2803b6ee5ca4d480dff1f271a185f5cdafaec0bc1577bd30dc65a66647cd4ba8532d77a6a90f7b89fd1da2c
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm/5b496a72af3d80d64a16a650c85ce9a5882bc014/etcdadm-v0.0.0-dev+build.1168-linux-amd64.tar.gz
name: ubuntu-v1.20.11-eks-d-1-20-10-eks-a-v0.0.0-dev-build.1168-amd64.ova
os: linux
osName: ubuntu
sha256: 06eeb0f667e753bbaa372a4d4d9f61105d8adc89e0fae16cffaef93d030316e1
sha512: a79412e5ff6e673d4174bd387a2c9b02f4b67ad4e0498aa8077eb0a6f99e094b0a863572b0bf8905ba2c414fbba3e73cd68e92ac4833f3d9f89d294c5fdd4c88
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/eks-distro/ova/1-20/1-20-10/ubuntu-v1.20.11-eks-d-1-20-10-eks-a-v0.0.0-dev-build.1168-amd64.ova
eksa:
cliTools:
arch:
- amd64
description: Container image for eks-anywhere-cli-tools image
imageDigest: sha256:f05ef3d35321d07e5d69b36ae7c1b312793ad9ef683614693a8353f3138fd91e
name: eks-anywhere-cli-tools
os: linux
uri: public.ecr.aws/l0g8r8j6/eks-anywhere-cli-tools:v0.1.0-eks-a-v0.0.0-dev-build.589
clusterController:
arch:
- amd64
description: Container image for eks-anywhere-cluster-controller image
imageDigest: sha256:7df8ad638b9ab0d57281dfb682f2e6f9dda28ef280f0a0082e47f820d972c52e
name: eks-anywhere-cluster-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/eks-anywhere-cluster-controller:v0.0.0-eks-a-v0.0.0-dev-build.739
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/eks-anywhere/manifests/cluster-controller/v0.6.1/eksa-components.yaml
diagnosticCollector:
arch:
- amd64
description: Container image for eks-anywhere-diagnostic-collector image
imageDigest: sha256:572ad83c22e8dd0986aaf3fd2e59eeae05239a8ecc7d7ebfabc3458a3d39ddaf
name: eks-anywhere-diagnostic-collector
os: linux
uri: public.ecr.aws/l0g8r8j6/eks-anywhere-diagnostic-collector:v0.0.0-eks-a-v0.0.0-dev-build.1168
version: v0.0.0-dev+build.1168+360a991
etcdadmBootstrap:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-bootstrap-provider/manifests/bootstrap-etcdadm-bootstrap/v1.0.0-rc4/bootstrap-components.yaml
controller:
arch:
- amd64
description: Container image for etcdadm-bootstrap-provider image
imageDigest: sha256:3a9c51fabe38cf00aba14fe25cf6f755596f519623684edef5c2c9e9776666ba
name: etcdadm-bootstrap-provider
os: linux
uri: public.ecr.aws/l0g8r8j6/mrajashree/etcdadm-bootstrap-provider:v1.0.0-rc4-eks-a-v0.0.0-dev-build.1152
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-bootstrap-provider/manifests/bootstrap-etcdadm-bootstrap/v1.0.0-rc4/metadata.yaml
version: v1.0.0-rc4+3e2a092
etcdadmController:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-controller/manifests/bootstrap-etcdadm-controller/v1.0.0-rc4/bootstrap-components.yaml
controller:
arch:
- amd64
description: Container image for etcdadm-controller image
imageDigest: sha256:eca4f69a15fbd6fcd1cd0ace0d11ca241e720379c6ec0b84139ddb6e0e090fc7
name: etcdadm-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/mrajashree/etcdadm-controller:v1.0.0-rc4-eks-a-v0.0.0-dev-build.1152
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-controller/manifests/bootstrap-etcdadm-controller/v1.0.0-rc4/metadata.yaml
version: v1.0.0-rc4+fa4d7a1
flux:
helmController:
arch:
- amd64
description: Container image for helm-controller image
imageDigest: sha256:15b21033a38bc566c80871494f12bfa5a5a9b77971904dbd954fb5cd20cfabb4
name: helm-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/helm-controller:v0.15.0-eks-a-v0.0.0-dev-build.1058
kustomizeController:
arch:
- amd64
description: Container image for kustomize-controller image
imageDigest: sha256:8d8ee0eb1e9f8430502d2297a73df7c5a6c5dfa63a26bfbc4772fc8e5675a43c
name: kustomize-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/kustomize-controller:v0.19.0-eks-a-v0.0.0-dev-build.1058
notificationController:
arch:
- amd64
description: Container image for notification-controller image
imageDigest: sha256:d410ecd03a99621950dc168b23088fd94bc2b25470eb643f18aa86bb9aeda2b6
name: notification-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/notification-controller:v0.20.1-eks-a-v0.0.0-dev-build.1058
sourceController:
arch:
- amd64
description: Container image for source-controller image
imageDigest: sha256:b6c1c3fd5495566d5db927f9b65513a67a60a96709b8ed03edfcde0f5512ba47
name: source-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/source-controller:v0.20.1-eks-a-v0.0.0-dev-build.1060
version: v0.25.1+7431c4c
kindnetd:
manifest:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/kind/manifests/kindnetd.yaml
version: v0.11.1+51a7970
kubeVersion: "1.20"
tinkerbell:
cfssl:
arch:
- amd64
description: Container image for cfssl image
imageDigest: sha256:ddff79ac309a87a93c2d043b2ed5d91a2aaebb2f389d54638c1fb13308c25bdf
name: cfssl
os: linux
uri: public.ecr.aws/l0g8r8j6/cloudflare/cfssl:v1.6.1-eks-a-v0.0.0-dev-build.1168
clusterAPIController:
arch:
- amd64
description: Container image for cluster-api-provider-tinkerbell image
imageDigest: sha256:300a9a51d8a00bac96414cd2ff4bceafa84d466667f29c4c5632d960ef5173eb
name: cluster-api-provider-tinkerbell
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/cluster-api-provider-tinkerbell:v0.1.0-eks-a-v0.0.0-dev-build.1168
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-tinkerbell/manifests/infrastructure-tinkerbell/v0.1.0/cluster-template.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-tinkerbell/manifests/infrastructure-tinkerbell/v0.1.0/infrastructure-components.yaml
hegel:
arch:
- amd64
description: Container image for hegel image
imageDigest: sha256:5fe12652d1f32509e194f52ecd595f5823697241aab2139093bb516e5c1dcd0f
name: hegel
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/hegel:0edcd19290838e6b0d45184311cc25a3ba13acbd-eks-a-v0.0.0-dev-build.1168
kubeVip:
arch:
- amd64
description: Container image for kube-vip image
imageDigest: sha256:8acb1befaf1829b612dc7cbe91eac8a4397ddbee6601ecf103cc593adb63c314
name: kube-vip
os: linux
uri: public.ecr.aws/l0g8r8j6/plunder-app/kube-vip:v0.3.7-eks-a-v0.0.0-dev-build.581
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-tinkerbell/manifests/infrastructure-tinkerbell/v0.1.0/metadata.yaml
tinkCli:
arch:
- amd64
description: Container image for tink-cli image
imageDigest: sha256:144ecc36e071aad885736efef431dd8da0b33cd9a65a4af9d28922a68fdd22bd
name: tink-cli
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/tink/tink-cli:b89f887c4f7d1c47809548ef0e3446dab8129c88-eks-a-v0.0.0-dev-build.1168
tinkServer:
arch:
- amd64
description: Container image for tink-server image
imageDigest: sha256:c90c405d35afc65794cdf6fa95b602ef40eeeaef8616b45641870c1d634cb6e3
name: tink-server
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/tink/tink-server:b89f887c4f7d1c47809548ef0e3446dab8129c88-eks-a-v0.0.0-dev-build.1168
tinkWorker:
arch:
- amd64
description: Container image for tink-worker image
imageDigest: sha256:308348bc5e7aac3aea5e99f86ab9c176b0534aae79aac6b683cbeeb7cf160695
name: tink-worker
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/tink/tink-worker:b89f887c4f7d1c47809548ef0e3446dab8129c88-eks-a-v0.0.0-dev-build.1168
version: v0.1.0+dbad4c1
microvm:
version: v1.0.2+644474e
metadata:
uri: https://gist.githubusercontent.com/richardcase/15c5e661c1bc50c7fbf77950dd159516/raw/55b60a90ddafeb312a3d72895a5cc6b841a0ddda/metadata.yaml
clusterTemplate:
uri: https://gist.githubusercontent.com/richardcase/15c5e661c1bc50c7fbf77950dd159516/raw/d7d4ee23c5e9bf265e4b7b99106eeee3df3ce512/cluster-template.yaml
components:
uri: https://gist.githubusercontent.com/richardcase/15c5e661c1bc50c7fbf77950dd159516/raw/8f070acc91ff5d86c06cd9cdb06b58639abb4d92/infrastructure-components.yaml
clusterAPIController:
arch:
- amd64
description: Container image for cluster-api-provider-microvm image
imageDigest: sha256:d07bebb4987b47e280bd6eab302cf682ba98882c636a9ac6a7d579f3ac32eb48
name: cluster-api-provider-microvm
os: linux
uri: docker.io/richardcase/cluster-api-provider-microvm:dev
kubeVip:
arch:
- amd64
description: Container image for kube-vip image
imageDigest: sha256:8acb1befaf1829b612dc7cbe91eac8a4397ddbee6601ecf103cc593adb63c314
name: kube-vip
os: linux
uri: public.ecr.aws/l0g8r8j6/plunder-app/kube-vip:v0.3.7-eks-a-v0.0.0-dev-build.581
vSphere:
clusterAPIController:
arch:
- amd64
description: Container image for cluster-api-vsphere-controller image
imageDigest: sha256:59e6027e5a537de19ab95e129817be0743495849a1baad5778d62d586ef8aafb
name: cluster-api-vsphere-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api-provider-vsphere/release/manager:v1.0.1-eks-a-v0.0.0-dev-build.902
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-vsphere/manifests/infrastructure-vsphere/v1.0.1/cluster-template.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-vsphere/manifests/infrastructure-vsphere/v1.0.1/infrastructure-components.yaml
driver:
arch:
- amd64
description: Container image for vsphere-csi-driver image
imageDigest: sha256:ce71c475ac6cc531eec68d23d98f61aac10b083a4eef4565b2283822f99b8318
name: vsphere-csi-driver
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/vsphere-csi-driver/csi/driver:v2.2.0-eks-a-v0.0.0-dev-build.581
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
kubeVip:
arch:
- amd64
description: Container image for kube-vip image
imageDigest: sha256:8acb1befaf1829b612dc7cbe91eac8a4397ddbee6601ecf103cc593adb63c314
name: kube-vip
os: linux
uri: public.ecr.aws/l0g8r8j6/plunder-app/kube-vip:v0.3.7-eks-a-v0.0.0-dev-build.581
manager:
arch:
- amd64
description: Container image for cloud-provider-vsphere image
imageDigest: sha256:7667c89c75782917d85012057fdd5cb1e4a2f67c401810bdb11bf71cb2144567
name: cloud-provider-vsphere
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes/cloud-provider-vsphere/cpi/manager:v1.20.0-eks-d-1-20-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-vsphere/manifests/infrastructure-vsphere/v1.0.1/metadata.yaml
syncer:
arch:
- amd64
description: Container image for vsphere-csi-syncer image
imageDigest: sha256:394dfee28e7e8869d30ad4c82796289871845c016780f9dd087be9424c9617c6
name: vsphere-csi-syncer
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/vsphere-csi-driver/csi/syncer:v2.2.0-eks-a-v0.0.0-dev-build.580
version: v1.0.1+a476fa8
- aws:
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-aws/manifests/infrastructure-aws/v0.6.4/cluster-template.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-aws/manifests/infrastructure-aws/v0.6.4/infrastructure-components.yaml
controller:
arch:
- amd64
description: Container image for cluster-api-aws-controller image
imageDigest: sha256:2bad064ce26348fad6ae1bf08bb550f1bbcbce8a80cc08c285eae3f67b1c1d23
name: cluster-api-aws-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api-provider-aws/cluster-api-aws-controller:v0.6.4-eks-a-v0.0.0-dev-build.1168
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-aws/manifests/infrastructure-aws/v0.6.4/metadata.yaml
version: v0.6.4+a751b0c
bootstrap:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/bootstrap-kubeadm/v1.0.2/bootstrap-components.yaml
controller:
arch:
- amd64
description: Container image for kubeadm-bootstrap-controller image
imageDigest: sha256:2a2ef5b1a2eda19d851fd477de9400111a5af882ab7970c286961899226ed671
name: kubeadm-bootstrap-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/kubeadm-bootstrap-controller:v1.0.2-eks-a-v0.0.0-dev-build.982
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/bootstrap-kubeadm/v1.0.2/metadata.yaml
version: v1.0.2+86527f2
bottlerocketAdmin:
admin:
arch:
- amd64
description: Container image for bottlerocket-admin image
imageDigest: sha256:f258d34f6d42663aaa67bb23328dbbb577d2b73baa55cb04902214649995722a
name: bottlerocket-admin
os: linux
uri: public.ecr.aws/bottlerocket/bottlerocket-admin:v0.7.3
bottlerocketBootstrap:
bootstrap:
arch:
- amd64
description: Container image for bottlerocket-bootstrap image
imageDigest: sha256:f9cc3e9323c900f08b9a7426579f505dc09c1f12b68bbfb1069be624cd3c3842
name: bottlerocket-bootstrap
os: linux
uri: public.ecr.aws/l0g8r8j6/bottlerocket-bootstrap:v1-21-8-eks-a-v0.0.0-dev-build.1101
certManager:
acmesolver:
arch:
- amd64
description: Container image for cert-manager-acmesolver image
imageDigest: sha256:918998d2cfb2c914896cf0a341ed7723dc2ed36194d0c2ad25dc8e6e0911e556
name: cert-manager-acmesolver
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-acmesolver:v1.5.3-eks-a-v0.0.0-dev-build.902
cainjector:
arch:
- amd64
description: Container image for cert-manager-cainjector image
imageDigest: sha256:eab339d17e56789b2160b90097ca184c8cfc5280a95ebe5de4f05c8bb5ed13fd
name: cert-manager-cainjector
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-cainjector:v1.5.3-eks-a-v0.0.0-dev-build.902
controller:
arch:
- amd64
description: Container image for cert-manager-controller image
imageDigest: sha256:5756e10013513503d0b509220add0c5eb4dfd94c1453c06a0b16bf58410d6393
name: cert-manager-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-controller:v1.5.3-eks-a-v0.0.0-dev-build.902
manifest:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cert-manager/manifests/v1.5.3/cert-manager.yaml
version: v1.5.3+66e1acc
webhook:
arch:
- amd64
description: Container image for cert-manager-webhook image
imageDigest: sha256:52466afbbb6b596b97f758cb99f54130e2d8da1ea44f632b05e45d8abdd62bae
name: cert-manager-webhook
os: linux
uri: public.ecr.aws/l0g8r8j6/jetstack/cert-manager-webhook:v1.5.3-eks-a-v0.0.0-dev-build.902
cilium:
cilium:
arch:
- amd64
description: Container image for cilium image
imageDigest: sha256:e0c5180610dd7a2bac4ed271309b07eb6102d0bd74ed7dd33fb619879cc006f3
name: cilium
os: linux
uri: public.ecr.aws/isovalent/cilium:v1.9.11-eksa.1
helmChart:
description: Helm chart for cilium-chart
imageDigest: sha256:5982a9b5feded74c14a0b410006bba6d748655f8bc01f393b4519c9b10a463d0
name: cilium-chart
uri: public.ecr.aws/isovalent/cilium:1.9.11-eksa.1
manifest:
uri: https://gist.githubusercontent.com/richardcase/5310dd090eab79a12258c67c765f775a/raw/cafe97e48e2d2e96f1dd889fe836c67d718f1bd6/cilium.yaml
#uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cilium/manifests/cilium/v1.9.11-eksa.1/cilium.yaml
operator:
arch:
- amd64
description: Container image for operator-generic image
imageDigest: sha256:fd78027e876b00ea850f875e87a9ce81f6e4e6b4d963f115e978e8e7d180f478
name: operator-generic
os: linux
uri: public.ecr.aws/isovalent/operator-generic:v1.9.11-eksa.1
version: v1.9.11-eksa.1
clusterAPI:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/cluster-api/v1.0.2/core-components.yaml
controller:
arch:
- amd64
description: Container image for cluster-api-controller image
imageDigest: sha256:2d27ba6c1000a0ad8705c645715380bc544da36f91ef7ba73125278f395f58b8
name: cluster-api-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/cluster-api-controller:v1.0.2-eks-a-v0.0.0-dev-build.982
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/cluster-api/v1.0.2/metadata.yaml
version: v1.0.2+d48fa87
controlPlane:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/control-plane-kubeadm/v1.0.2/control-plane-components.yaml
controller:
arch:
- amd64
description: Container image for kubeadm-control-plane-controller image
imageDigest: sha256:3e0776cf7db4b1e3f238264d5560c15dfa5b9ba2fe40a81245d9b8fbafbe9ce7
name: kubeadm-control-plane-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/kubeadm-control-plane-controller:v1.0.2-eks-a-v0.0.0-dev-build.982
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/control-plane-kubeadm/v1.0.2/metadata.yaml
version: v1.0.2+ec531b2
docker:
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/infrastructure-docker/v1.0.2/cluster-template-development.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/infrastructure-docker/v1.0.2/infrastructure-components-development.yaml
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
manager:
arch:
- amd64
description: Container image for capd-manager image
imageDigest: sha256:7541d8ea7f8139f33f3bf56269c9d79989bfbb87b0dc845020b72b12c1c47169
name: capd-manager
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api/capd-manager:v1.0.2-eks-a-v0.0.0-dev-build.982
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api/manifests/infrastructure-docker/v1.0.2/metadata.yaml
version: v1.0.2+644474e
eksD:
channel: 1-21
gitCommit: |
743fe53e2987e5228069703bd5aa1584959ed3e4
kindNode:
arch:
- amd64
description: Container image for kind-node image
imageDigest: sha256:a4b2bf106b638f9ad293a4877c7b8e5899581a536b51d1057eb19aeab6c1bf09
name: kind-node
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/kind/node:v1.21.5-eks-d-1-21-8-eks-a-v0.0.0-dev-build.1100
kubeVersion: v1.21.5
manifestUrl: https://distro.eks.amazonaws.com/kubernetes-1-21/kubernetes-1-21-eks-8.yaml
name: kubernetes-1-21-eks-8
ova:
bottlerocket:
arch:
- amd64
crictl: {}
description: Bottlerocket OVA for EKS-D 1-21-8 release
etcdadm: {}
name: bottlerocket-v1.21.5-eks-d-1-21-8-eks-a-v0.0.0-dev-build.1168-amd64.ova
os: linux
osName: bottlerocket
sha256: a06619916346fce1d17f10619cd4ad080e6313ee02b88d3f7d79053bf3cedb05
sha512: 3d64570f574428e5a44e4bead8852d61202ab488a885dd99e6ff70a376869089be24e880cd119065fabc42c55ed9df82783e1d56305527b23c2f958c505d6564
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/eks-distro/ova/1-21/1-21-8/bottlerocket-v1.21.5-eks-d-1-21-8-eks-a-v0.0.0-dev-build.1168-amd64.ova
ubuntu:
arch:
- amd64
crictl:
arch:
- amd64
description: cri-tools tarball for linux/amd64
name: cri-tools-v0.0.0-dev+build.1168-linux-amd64.tar.gz
os: linux
sha256: c4afdcc2437f128168054d57e9d90d73e3607e3f7e9bafb6cf7eee1d6163d951
sha512: f6232cc6e30c2bc7576be11c180ba29c5f1231ee6d8d7a8f02192e6ecfc8bef9453a7c5f93fa3be0a886f3b6810692326bd72998e98966a6c8d1470a8b8d2507
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cri-tools/v1.20.0/cri-tools-v0.0.0-dev+build.1168-linux-amd64.tar.gz
description: Ubuntu OVA for EKS-D 1-21-8 release
etcdadm:
arch:
- amd64
description: etcdadm tarball for linux/amd64
name: etcdadm-v0.0.0-dev+build.1168-linux-amd64.tar.gz
os: linux
sha256: 8ca0577efa829009b10e530aaa66a0f407d446df647c3de4bc5b9d410822d252
sha512: f296772a9475d69dccdc2fe9558ed564cc052670b2803b6ee5ca4d480dff1f271a185f5cdafaec0bc1577bd30dc65a66647cd4ba8532d77a6a90f7b89fd1da2c
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm/5b496a72af3d80d64a16a650c85ce9a5882bc014/etcdadm-v0.0.0-dev+build.1168-linux-amd64.tar.gz
name: ubuntu-v1.21.5-eks-d-1-21-8-eks-a-v0.0.0-dev-build.1168-amd64.ova
os: linux
osName: ubuntu
sha256: fdc2a5808807c22b933e617f19dbbf24dbf9b19bf4cf97dcd0f2156d554dc5ca
sha512: c3b24bbde18ee5f815bcc5c0b5c15130b3bc53aff63b1343114607b6661e7af655eb7ceba302b02a0451247381ee68a78a88cd2cc1dfb94e0d9dc159dd5cbde8
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/eks-distro/ova/1-21/1-21-8/ubuntu-v1.21.5-eks-d-1-21-8-eks-a-v0.0.0-dev-build.1168-amd64.ova
eksa:
cliTools:
arch:
- amd64
description: Container image for eks-anywhere-cli-tools image
imageDigest: sha256:f05ef3d35321d07e5d69b36ae7c1b312793ad9ef683614693a8353f3138fd91e
name: eks-anywhere-cli-tools
os: linux
uri: public.ecr.aws/l0g8r8j6/eks-anywhere-cli-tools:v0.1.0-eks-a-v0.0.0-dev-build.589
clusterController:
arch:
- amd64
description: Container image for eks-anywhere-cluster-controller image
imageDigest: sha256:7df8ad638b9ab0d57281dfb682f2e6f9dda28ef280f0a0082e47f820d972c52e
name: eks-anywhere-cluster-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/eks-anywhere-cluster-controller:v0.0.0-eks-a-v0.0.0-dev-build.739
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/eks-anywhere/manifests/cluster-controller/v0.6.1/eksa-components.yaml
diagnosticCollector:
arch:
- amd64
description: Container image for eks-anywhere-diagnostic-collector image
imageDigest: sha256:572ad83c22e8dd0986aaf3fd2e59eeae05239a8ecc7d7ebfabc3458a3d39ddaf
name: eks-anywhere-diagnostic-collector
os: linux
uri: public.ecr.aws/l0g8r8j6/eks-anywhere-diagnostic-collector:v0.0.0-eks-a-v0.0.0-dev-build.1168
version: v0.0.0-dev+build.1168+360a991
etcdadmBootstrap:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-bootstrap-provider/manifests/bootstrap-etcdadm-bootstrap/v1.0.0-rc4/bootstrap-components.yaml
controller:
arch:
- amd64
description: Container image for etcdadm-bootstrap-provider image
imageDigest: sha256:3a9c51fabe38cf00aba14fe25cf6f755596f519623684edef5c2c9e9776666ba
name: etcdadm-bootstrap-provider
os: linux
uri: public.ecr.aws/l0g8r8j6/mrajashree/etcdadm-bootstrap-provider:v1.0.0-rc4-eks-a-v0.0.0-dev-build.1152
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-bootstrap-provider/manifests/bootstrap-etcdadm-bootstrap/v1.0.0-rc4/metadata.yaml
version: v1.0.0-rc4+3e2a092
etcdadmController:
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-controller/manifests/bootstrap-etcdadm-controller/v1.0.0-rc4/bootstrap-components.yaml
controller:
arch:
- amd64
description: Container image for etcdadm-controller image
imageDigest: sha256:eca4f69a15fbd6fcd1cd0ace0d11ca241e720379c6ec0b84139ddb6e0e090fc7
name: etcdadm-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/mrajashree/etcdadm-controller:v1.0.0-rc4-eks-a-v0.0.0-dev-build.1152
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/etcdadm-controller/manifests/bootstrap-etcdadm-controller/v1.0.0-rc4/metadata.yaml
version: v1.0.0-rc4+fa4d7a1
flux:
helmController:
arch:
- amd64
description: Container image for helm-controller image
imageDigest: sha256:15b21033a38bc566c80871494f12bfa5a5a9b77971904dbd954fb5cd20cfabb4
name: helm-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/helm-controller:v0.15.0-eks-a-v0.0.0-dev-build.1058
kustomizeController:
arch:
- amd64
description: Container image for kustomize-controller image
imageDigest: sha256:8d8ee0eb1e9f8430502d2297a73df7c5a6c5dfa63a26bfbc4772fc8e5675a43c
name: kustomize-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/kustomize-controller:v0.19.0-eks-a-v0.0.0-dev-build.1058
notificationController:
arch:
- amd64
description: Container image for notification-controller image
imageDigest: sha256:d410ecd03a99621950dc168b23088fd94bc2b25470eb643f18aa86bb9aeda2b6
name: notification-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/notification-controller:v0.20.1-eks-a-v0.0.0-dev-build.1058
sourceController:
arch:
- amd64
description: Container image for source-controller image
imageDigest: sha256:b6c1c3fd5495566d5db927f9b65513a67a60a96709b8ed03edfcde0f5512ba47
name: source-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/fluxcd/source-controller:v0.20.1-eks-a-v0.0.0-dev-build.1060
version: v0.25.1+7431c4c
kindnetd:
manifest:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/kind/manifests/kindnetd.yaml
version: v0.11.1+51a7970
kubeVersion: "1.21"
tinkerbell:
cfssl:
arch:
- amd64
description: Container image for cfssl image
imageDigest: sha256:ddff79ac309a87a93c2d043b2ed5d91a2aaebb2f389d54638c1fb13308c25bdf
name: cfssl
os: linux
uri: public.ecr.aws/l0g8r8j6/cloudflare/cfssl:v1.6.1-eks-a-v0.0.0-dev-build.1168
clusterAPIController:
arch:
- amd64
description: Container image for cluster-api-provider-tinkerbell image
imageDigest: sha256:300a9a51d8a00bac96414cd2ff4bceafa84d466667f29c4c5632d960ef5173eb
name: cluster-api-provider-tinkerbell
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/cluster-api-provider-tinkerbell:v0.1.0-eks-a-v0.0.0-dev-build.1168
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-tinkerbell/manifests/infrastructure-tinkerbell/v0.1.0/cluster-template.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-tinkerbell/manifests/infrastructure-tinkerbell/v0.1.0/infrastructure-components.yaml
hegel:
arch:
- amd64
description: Container image for hegel image
imageDigest: sha256:5fe12652d1f32509e194f52ecd595f5823697241aab2139093bb516e5c1dcd0f
name: hegel
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/hegel:0edcd19290838e6b0d45184311cc25a3ba13acbd-eks-a-v0.0.0-dev-build.1168
kubeVip:
arch:
- amd64
description: Container image for kube-vip image
imageDigest: sha256:8acb1befaf1829b612dc7cbe91eac8a4397ddbee6601ecf103cc593adb63c314
name: kube-vip
os: linux
uri: public.ecr.aws/l0g8r8j6/plunder-app/kube-vip:v0.3.7-eks-a-v0.0.0-dev-build.581
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-tinkerbell/manifests/infrastructure-tinkerbell/v0.1.0/metadata.yaml
tinkCli:
arch:
- amd64
description: Container image for tink-cli image
imageDigest: sha256:144ecc36e071aad885736efef431dd8da0b33cd9a65a4af9d28922a68fdd22bd
name: tink-cli
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/tink/tink-cli:b89f887c4f7d1c47809548ef0e3446dab8129c88-eks-a-v0.0.0-dev-build.1168
tinkServer:
arch:
- amd64
description: Container image for tink-server image
imageDigest: sha256:c90c405d35afc65794cdf6fa95b602ef40eeeaef8616b45641870c1d634cb6e3
name: tink-server
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/tink/tink-server:b89f887c4f7d1c47809548ef0e3446dab8129c88-eks-a-v0.0.0-dev-build.1168
tinkWorker:
arch:
- amd64
description: Container image for tink-worker image
imageDigest: sha256:308348bc5e7aac3aea5e99f86ab9c176b0534aae79aac6b683cbeeb7cf160695
name: tink-worker
os: linux
uri: public.ecr.aws/l0g8r8j6/tinkerbell/tink/tink-worker:b89f887c4f7d1c47809548ef0e3446dab8129c88-eks-a-v0.0.0-dev-build.1168
version: v0.1.0+dbad4c1
vSphere:
clusterAPIController:
arch:
- amd64
description: Container image for cluster-api-vsphere-controller image
imageDigest: sha256:59e6027e5a537de19ab95e129817be0743495849a1baad5778d62d586ef8aafb
name: cluster-api-vsphere-controller
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/cluster-api-provider-vsphere/release/manager:v1.0.1-eks-a-v0.0.0-dev-build.902
clusterTemplate:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-vsphere/manifests/infrastructure-vsphere/v1.0.1/cluster-template.yaml
components:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-vsphere/manifests/infrastructure-vsphere/v1.0.1/infrastructure-components.yaml
driver:
arch:
- amd64
description: Container image for vsphere-csi-driver image
imageDigest: sha256:ce71c475ac6cc531eec68d23d98f61aac10b083a4eef4565b2283822f99b8318
name: vsphere-csi-driver
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/vsphere-csi-driver/csi/driver:v2.2.0-eks-a-v0.0.0-dev-build.581
kubeProxy:
arch:
- amd64
description: Container image for kube-rbac-proxy image
imageDigest: sha256:56491bd29d62c950b7016588f7cd52f6f5f13d7b73e09ea9aa0917b222a0825d
name: kube-rbac-proxy
os: linux
uri: public.ecr.aws/l0g8r8j6/brancz/kube-rbac-proxy:v0.8.0-eks-a-v0.0.0-dev-build.580
kubeVip:
arch:
- amd64
description: Container image for kube-vip image
imageDigest: sha256:8acb1befaf1829b612dc7cbe91eac8a4397ddbee6601ecf103cc593adb63c314
name: kube-vip
os: linux
uri: public.ecr.aws/l0g8r8j6/plunder-app/kube-vip:v0.3.7-eks-a-v0.0.0-dev-build.581
manager:
arch:
- amd64
description: Container image for cloud-provider-vsphere image
imageDigest: sha256:6fcd3fb0e374068555a21ec2cca6b9ed5fd0f2012862555b0be0f85b72b30bd5
name: cloud-provider-vsphere
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes/cloud-provider-vsphere/cpi/manager:v1.21.0-eks-d-1-21-eks-a-v0.0.0-dev-build.578
metadata:
uri: https://dev-release-prod-pdx.s3.amazonaws.com/artifacts/v0.0.0-dev-build.1168/cluster-api-provider-vsphere/manifests/infrastructure-vsphere/v1.0.1/metadata.yaml
syncer:
arch:
- amd64
description: Container image for vsphere-csi-syncer image
imageDigest: sha256:394dfee28e7e8869d30ad4c82796289871845c016780f9dd087be9424c9617c6
name: vsphere-csi-syncer
os: linux
uri: public.ecr.aws/l0g8r8j6/kubernetes-sigs/vsphere-csi-driver/csi/syncer:v2.2.0-eks-a-v0.0.0-dev-build.580
version: v1.0.1+633ee2a
status: {}
---
# Source: cilium/templates/cilium-agent-serviceaccount.yaml
apiVersion: v1
kind: ServiceAccount
metadata:
name: cilium
namespace: kube-system
---
# Source: cilium/templates/cilium-operator-serviceaccount.yaml
apiVersion: v1
kind: ServiceAccount
metadata:
name: cilium-operator
namespace: kube-system
---
# Source: cilium/templates/cilium-configmap.yaml
apiVersion: v1
kind: ConfigMap
metadata:
name: cilium-config
namespace: kube-system
data:
# Identity allocation mode selects how identities are shared between cilium
# nodes by setting how they are stored. The options are "crd" or "kvstore".
# - "crd" stores identities in kubernetes as CRDs (custom resource definition).
# These can be queried with:
# kubectl get ciliumid
# - "kvstore" stores identities in a kvstore, etcd or consul, that is
# configured below. Cilium versions before 1.6 supported only the kvstore
# backend. Upgrades from these older cilium versions should continue using
# the kvstore by commenting out the identity-allocation-mode below, or
# setting it to "kvstore".
identity-allocation-mode: crd
cilium-endpoint-gc-interval: "5m0s"
# If you want to run cilium in debug mode change this value to true
debug: "false"
# The agent can be put into the following three policy enforcement modes
# default, always and never.
# https://docs.cilium.io/en/latest/policy/intro/#policy-enforcement-modes
enable-policy: "default"
# Enable IPv4 addressing. If enabled, all endpoints are allocated an IPv4
# address.
enable-ipv4: "true"
# Enable IPv6 addressing. If enabled, all endpoints are allocated an IPv6
# address.
enable-ipv6: "false"
# Users who wish to specify their own custom CNI configuration file must set
# custom-cni-conf to "true", otherwise Cilium may overwrite the configuration.
custom-cni-conf: "false"
enable-bpf-clock-probe: "true"
# If you want cilium monitor to aggregate tracing for packets, set this level
# to "low", "medium", or "maximum". The higher the level, the less packets
# that will be seen in monitor output.
monitor-aggregation: medium
# The monitor aggregation interval governs the typical time between monitor
# notification events for each allowed connection.
#
# Only effective when monitor aggregation is set to "medium" or higher.
monitor-aggregation-interval: 5s
# The monitor aggregation flags determine which TCP flags which, upon the
# first observation, cause monitor notifications to be generated.
#
# Only effective when monitor aggregation is set to "medium" or higher.
monitor-aggregation-flags: all
# Specifies the ratio (0.0-1.0) of total system memory to use for dynamic
# sizing of the TCP CT, non-TCP CT, NAT and policy BPF maps.
bpf-map-dynamic-size-ratio: "0.0025"
# bpf-policy-map-max specifies the maximum number of entries in endpoint
# policy map (per endpoint)
bpf-policy-map-max: "16384"
# bpf-lb-map-max specifies the maximum number of entries in bpf lb service,
# backend and affinity maps.
bpf-lb-map-max: "65536"
# Pre-allocation of map entries allows per-packet latency to be reduced, at
# the expense of up-front memory allocation for the entries in the maps. The
# default value below will minimize memory usage in the default installation;
# users who are sensitive to latency may consider setting this to "true".
#
# This option was introduced in Cilium 1.4. Cilium 1.3 and earlier ignore
# this option and behave as though it is set to "true".
#
# If this value is modified, then during the next Cilium startup the restore
# of existing endpoints and tracking of ongoing connections may be disrupted.
# As a result, reply packets may be dropped and the load-balancing decisions
# for established connections may change.
#
# If this option is set to "false" during an upgrade from 1.3 or earlier to
# 1.4 or later, then it may cause one-time disruptions during the upgrade.
preallocate-bpf-maps: "false"
# Regular expression matching compatible Istio sidecar istio-proxy
# container image names
sidecar-istio-proxy-image: "cilium/istio_proxy"
# Name of the cluster. Only relevant when building a mesh of clusters.
cluster-name: default
# Unique ID of the cluster. Must be unique across all conneted clusters and
# in the range of 1 and 255. Only relevant when building a mesh of clusters.
cluster-id: ""
# Encapsulation mode for communication between nodes
# Possible values:
# - disabled
# - vxlan (default)
# - geneve
tunnel: vxlan
# Enables L7 proxy for L7 policy enforcement and visibility
enable-l7-proxy: "true"
# wait-bpf-mount makes init container wait until bpf filesystem is mounted
wait-bpf-mount: "false"
masquerade: "true"
enable-bpf-masquerade: "true"
enable-xt-socket-fallback: "true"
install-iptables-rules: "true"
auto-direct-node-routes: "false"
enable-bandwidth-manager: "false"
enable-local-redirect-policy: "false"
kube-proxy-replacement: "probe"
kube-proxy-replacement-healthz-bind-address: ""
enable-health-check-nodeport: "true"
node-port-bind-protection: "true"
enable-auto-protect-node-port-range: "true"
enable-session-affinity: "true"
enable-endpoint-health-checking: "true"
enable-health-checking: "true"
enable-well-known-identities: "false"
enable-remote-node-identity: "true"
operator-api-serve-addr: "127.0.0.1:9234"
# Enable Hubble gRPC service.
enable-hubble: "true"
# UNIX domain socket for Hubble server to listen to.
hubble-socket-path: "/var/run/cilium/hubble.sock"
# An additional address for Hubble server to listen to (e.g. ":4244").
hubble-listen-address: ":4244"
hubble-disable-tls: "false"
hubble-tls-cert-file: /var/lib/cilium/tls/hubble/server.crt
hubble-tls-key-file: /var/lib/cilium/tls/hubble/server.key
hubble-tls-client-ca-files: /var/lib/cilium/tls/hubble/client-ca.crt
ipam: "cluster-pool"
cluster-pool-ipv4-cidr: "10.0.0.0/8"
cluster-pool-ipv4-mask-size: "24"
disable-cnp-status-updates: "true"
cgroup-root: "/run/cilium/cgroupv2"
---
# Source: cilium/templates/cilium-agent-clusterrole.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
name: cilium
rules:
- apiGroups:
- networking.k8s.io
resources:
- networkpolicies
verbs:
- get
- list
- watch
- apiGroups:
- discovery.k8s.io
resources:
- endpointslices
verbs:
- get
- list
- watch
- apiGroups:
- ""
resources:
- namespaces
- services
- nodes
- endpoints
verbs:
- get
- list
- watch
- apiGroups:
- ""
resources:
- pods
- pods/finalizers
verbs:
- get
- list
- watch
- update
- delete
- apiGroups:
- ""
resources:
- nodes
verbs:
- get
- list
- watch
- update
- apiGroups:
- ""
resources:
- nodes
- nodes/status
verbs:
- patch
- apiGroups:
- apiextensions.k8s.io
resources:
- customresourcedefinitions
verbs:
# Deprecated for removal in v1.10
- create
- list
- watch
- update
# This is used when validating policies in preflight. This will need to stay
# until we figure out how to avoid "get" inside the preflight, and then
# should be removed ideally.
- get
- apiGroups:
- cilium.io
resources:
- ciliumnetworkpolicies
- ciliumnetworkpolicies/status
- ciliumnetworkpolicies/finalizers
- ciliumclusterwidenetworkpolicies
- ciliumclusterwidenetworkpolicies/status
- ciliumclusterwidenetworkpolicies/finalizers
- ciliumendpoints
- ciliumendpoints/status
- ciliumendpoints/finalizers
- ciliumnodes
- ciliumnodes/status
- ciliumnodes/finalizers
- ciliumidentities
- ciliumidentities/finalizers
- ciliumlocalredirectpolicies
- ciliumlocalredirectpolicies/status
- ciliumlocalredirectpolicies/finalizers
verbs:
- '*'
---
# Source: cilium/templates/cilium-operator-clusterrole.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRole
metadata:
name: cilium-operator
rules:
- apiGroups:
- ""
resources:
# to automatically delete [core|kube]dns pods so that are starting to being
# managed by Cilium
- pods
verbs:
- get
- list
- watch
- delete
- apiGroups:
- discovery.k8s.io
resources:
- endpointslices
verbs:
- get
- list
- watch
- apiGroups:
- ""
resources:
# to perform the translation of a CNP that contains `ToGroup` to its endpoints
- services
- endpoints
# to check apiserver connectivity
- namespaces
verbs:
- get
- list
- watch
- apiGroups:
- cilium.io
resources:
- ciliumnetworkpolicies
- ciliumnetworkpolicies/status
- ciliumnetworkpolicies/finalizers
- ciliumclusterwidenetworkpolicies
- ciliumclusterwidenetworkpolicies/status
- ciliumclusterwidenetworkpolicies/finalizers
- ciliumendpoints
- ciliumendpoints/status
- ciliumendpoints/finalizers
- ciliumnodes
- ciliumnodes/status
- ciliumnodes/finalizers
- ciliumidentities
- ciliumidentities/status
- ciliumidentities/finalizers
- ciliumlocalredirectpolicies
- ciliumlocalredirectpolicies/status
- ciliumlocalredirectpolicies/finalizers
verbs:
- '*'
- apiGroups:
- apiextensions.k8s.io
resources:
- customresourcedefinitions
verbs:
- create
- get
- list
- update
- watch
# For cilium-operator running in HA mode.
#
# Cilium operator running in HA mode requires the use of ResourceLock for Leader Election
# between mulitple running instances.
# The preferred way of doing this is to use LeasesResourceLock as edits to Leases are less
# common and fewer objects in the cluster watch "all Leases".
# The support for leases was introduced in coordination.k8s.io/v1 during Kubernetes 1.14 release.
# In Cilium we currently don't support HA mode for K8s version < 1.14. This condition make sure
# that we only authorize access to leases resources in supported K8s versions.
- apiGroups:
- coordination.k8s.io
resources:
- leases
verbs:
- create
- get
- update
---
# Source: cilium/templates/cilium-agent-clusterrolebinding.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: cilium
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: cilium
subjects:
- kind: ServiceAccount
name: cilium
namespace: kube-system
---
# Source: cilium/templates/cilium-operator-clusterrolebinding.yaml
apiVersion: rbac.authorization.k8s.io/v1
kind: ClusterRoleBinding
metadata:
name: cilium-operator
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: cilium-operator
subjects:
- kind: ServiceAccount
name: cilium-operator
namespace: kube-system
---
# Source: cilium/templates/cilium-agent-daemonset.yaml
apiVersion: apps/v1
kind: DaemonSet
metadata:
labels:
k8s-app: cilium
name: cilium
namespace: kube-system
spec:
selector:
matchLabels:
k8s-app: cilium
updateStrategy:
rollingUpdate:
maxUnavailable: 2
type: RollingUpdate
template:
metadata:
annotations:
# This annotation plus the CriticalAddonsOnly toleration makes
# cilium to be a critical pod in the cluster, which ensures cilium
# gets priority scheduling.
# https://kubernetes.io/docs/tasks/administer-cluster/guaranteed-scheduling-critical-addon-pods/
scheduler.alpha.kubernetes.io/critical-pod: ""
labels:
k8s-app: cilium
spec:
affinity:
podAntiAffinity:
requiredDuringSchedulingIgnoredDuringExecution:
- labelSelector:
matchExpressions:
- key: k8s-app
operator: In
values:
- cilium
topologyKey: kubernetes.io/hostname
containers:
- args:
- --config-dir=/tmp/cilium/config-map
command:
- cilium-agent
livenessProbe:
httpGet:
host: '127.0.0.1'
path: /healthz
port: 9876
scheme: HTTP
httpHeaders:
- name: "brief"
value: "true"
failureThreshold: 10
# The initial delay for the liveness probe is intentionally large to
# avoid an endless kill & restart cycle if in the event that the initial
# bootstrapping takes longer than expected.
initialDelaySeconds: 120
periodSeconds: 30
successThreshold: 1
timeoutSeconds: 5
readinessProbe:
httpGet:
host: '127.0.0.1'
path: /healthz
port: 9876
scheme: HTTP
httpHeaders:
- name: "brief"
value: "true"
failureThreshold: 3
initialDelaySeconds: 5
periodSeconds: 30
successThreshold: 1
timeoutSeconds: 5
env:
- name: K8S_NODE_NAME
valueFrom:
fieldRef:
apiVersion: v1
fieldPath: spec.nodeName
- name: CILIUM_K8S_NAMESPACE
valueFrom:
fieldRef:
apiVersion: v1
fieldPath: metadata.namespace
- name: CILIUM_FLANNEL_MASTER_DEVICE
valueFrom:
configMapKeyRef:
key: flannel-master-device
name: cilium-config
optional: true
- name: CILIUM_FLANNEL_UNINSTALL_ON_EXIT
valueFrom:
configMapKeyRef:
key: flannel-uninstall-on-exit
name: cilium-config
optional: true
- name: CILIUM_CLUSTERMESH_CONFIG
value: /var/lib/cilium/clustermesh/
- name: CILIUM_CNI_CHAINING_MODE
valueFrom:
configMapKeyRef:
key: cni-chaining-mode
name: cilium-config
optional: true
- name: CILIUM_CUSTOM_CNI_CONF
valueFrom:
configMapKeyRef:
key: custom-cni-conf
name: cilium-config
optional: true
image: "quay.io/cilium/cilium:v1.9.12@sha256:7d4ef9dc7e504ba1a55a01dd743260daced11ded02fc268965ef2c98eb8b8bde"
imagePullPolicy: IfNotPresent
lifecycle:
postStart:
exec:
command:
- "/cni-install.sh"
- "--enable-debug=false"
preStop:
exec:
command:
- /cni-uninstall.sh
name: cilium-agent
securityContext:
capabilities:
add:
- NET_ADMIN
- SYS_MODULE
privileged: true
volumeMounts:
- mountPath: /sys/fs/bpf
name: bpf-maps
- mountPath: /var/run/cilium
name: cilium-run
- mountPath: /host/opt/cni/bin
name: cni-path
- mountPath: /host/etc/cni/net.d
name: etc-cni-netd
- mountPath: /var/lib/cilium/clustermesh
name: clustermesh-secrets
readOnly: true
- mountPath: /tmp/cilium/config-map
name: cilium-config-path
readOnly: true
# Needed to be able to load kernel modules
- mountPath: /lib/modules
name: lib-modules
readOnly: true
- mountPath: /run/xtables.lock
name: xtables-lock
- mountPath: /var/lib/cilium/tls/hubble
name: hubble-tls
readOnly: true
hostNetwork: true
initContainers:
# Required to mount cgroup2 filesystem on the underlying Kubernetes node.
# We use nsenter command with host's cgroup and mount namespaces enabled.
- name: mount-cgroup
env:
- name: CGROUP_ROOT
value: /run/cilium/cgroupv2
- name: BIN_PATH
value: /opt/cni/bin
command:
- sh
- -c
# The statically linked Go program binary is invoked to avoid any
# dependency on utilities like sh and mount that can be missing on certain
# distros installed on the underlying host. Copy the binary to the
# same directory where we install cilium cni plugin so that exec permissions
# are available.
- 'cp /usr/bin/cilium-mount /hostbin/cilium-mount && nsenter --cgroup=/hostproc/1/ns/cgroup --mount=/hostproc/1/ns/mnt "${BIN_PATH}/cilium-mount" $CGROUP_ROOT; rm /hostbin/cilium-mount'
image: "quay.io/cilium/cilium:v1.9.12@sha256:7d4ef9dc7e504ba1a55a01dd743260daced11ded02fc268965ef2c98eb8b8bde"
imagePullPolicy: IfNotPresent
volumeMounts:
- mountPath: /hostproc
name: hostproc
- mountPath: /hostbin
name: cni-path
securityContext:
privileged: true
- command:
- /init-container.sh
env:
- name: CILIUM_ALL_STATE
valueFrom:
configMapKeyRef:
key: clean-cilium-state
name: cilium-config
optional: true
- name: CILIUM_BPF_STATE
valueFrom:
configMapKeyRef:
key: clean-cilium-bpf-state
name: cilium-config
optional: true
- name: CILIUM_WAIT_BPF_MOUNT
valueFrom:
configMapKeyRef:
key: wait-bpf-mount
name: cilium-config
optional: true
image: "quay.io/cilium/cilium:v1.9.12@sha256:7d4ef9dc7e504ba1a55a01dd743260daced11ded02fc268965ef2c98eb8b8bde"
imagePullPolicy: IfNotPresent
name: clean-cilium-state
securityContext:
capabilities:
add:
- NET_ADMIN
privileged: true
volumeMounts:
- mountPath: /sys/fs/bpf
name: bpf-maps
mountPropagation: HostToContainer
# Required to mount cgroup filesystem from the host to cilium agent pod
- mountPath: /run/cilium/cgroupv2
name: cilium-cgroup
mountPropagation: HostToContainer
- mountPath: /var/run/cilium
name: cilium-run
resources:
requests:
cpu: 100m
memory: 100Mi
restartPolicy: Always
priorityClassName: system-node-critical
serviceAccount: cilium
serviceAccountName: cilium
terminationGracePeriodSeconds: 1
tolerations:
- operator: Exists
volumes:
# To keep state between restarts / upgrades
- hostPath:
path: /var/run/cilium
type: DirectoryOrCreate
name: cilium-run
# To keep state between restarts / upgrades for bpf maps
- hostPath:
path: /sys/fs/bpf
type: DirectoryOrCreate
name: bpf-maps
# To mount cgroup2 filesystem on the host
- hostPath:
path: /proc
type: Directory
name: hostproc
# To keep state between restarts / upgrades for cgroup2 filesystem
- hostPath:
path: /run/cilium/cgroupv2
type: DirectoryOrCreate
name: cilium-cgroup
# To install cilium cni plugin in the host
- hostPath:
path: /opt/cni/bin
type: DirectoryOrCreate
name: cni-path
# To install cilium cni configuration in the host
- hostPath:
path: /etc/cni/net.d
type: DirectoryOrCreate
name: etc-cni-netd
# To be able to load kernel modules
- hostPath:
path: /lib/modules
name: lib-modules
# To access iptables concurrently with other processes (e.g. kube-proxy)
- hostPath:
path: /run/xtables.lock
type: FileOrCreate
name: xtables-lock
# To read the clustermesh configuration
- name: clustermesh-secrets
secret:
defaultMode: 420
optional: true
secretName: cilium-clustermesh
# To read the configuration from the config map
- configMap:
name: cilium-config
name: cilium-config-path
- name: hubble-tls
projected:
sources:
- secret:
name: hubble-server-certs
items:
- key: tls.crt
path: server.crt
- key: tls.key
path: server.key
optional: true
- configMap:
name: hubble-ca-cert
items:
- key: ca.crt
path: client-ca.crt
optional: true
---
# Source: cilium/templates/cilium-operator-deployment.yaml
apiVersion: apps/v1
kind: Deployment
metadata:
labels:
io.cilium/app: operator
name: cilium-operator
name: cilium-operator
namespace: kube-system
spec:
# We support HA mode only for Kubernetes version > 1.14
# See docs on ServerCapabilities.LeasesResourceLock in file pkg/k8s/version/version.go
# for more details.
replicas: 1
selector:
matchLabels:
io.cilium/app: operator
name: cilium-operator
strategy:
rollingUpdate:
maxSurge: 1
maxUnavailable: 1
type: RollingUpdate
template:
metadata:
annotations:
labels:
io.cilium/app: operator
name: cilium-operator
spec:
# In HA mode, cilium-operator pods must not be scheduled on the same
# node as they will clash with each other.
affinity:
podAntiAffinity:
requiredDuringSchedulingIgnoredDuringExecution:
- labelSelector:
matchExpressions:
- key: io.cilium/app
operator: In
values:
- operator
topologyKey: kubernetes.io/hostname
containers:
- args:
- --config-dir=/tmp/cilium/config-map
- --debug=$(CILIUM_DEBUG)
command:
- cilium-operator-generic
env:
- name: K8S_NODE_NAME
valueFrom:
fieldRef:
apiVersion: v1
fieldPath: spec.nodeName
- name: CILIUM_K8S_NAMESPACE
valueFrom:
fieldRef:
apiVersion: v1
fieldPath: metadata.namespace
- name: CILIUM_DEBUG
valueFrom:
configMapKeyRef:
key: debug
name: cilium-config
optional: true
image: "quay.io/cilium/operator-generic:v1.9.12@sha256:b89b16476cf6500d68763a70fb3d449e0309296bd00122cbe24f306c7e5e5180"
imagePullPolicy: IfNotPresent
name: cilium-operator
livenessProbe:
httpGet:
host: '127.0.0.1'
path: /healthz
port: 9234
scheme: HTTP
initialDelaySeconds: 60
periodSeconds: 10
timeoutSeconds: 3
volumeMounts:
- mountPath: /tmp/cilium/config-map
name: cilium-config-path
readOnly: true
hostNetwork: true
restartPolicy: Always
priorityClassName: system-cluster-critical
serviceAccount: cilium-operator
serviceAccountName: cilium-operator
tolerations:
- operator: Exists
volumes:
# To read the configuration from the config map
- configMap:
name: cilium-config
name: cilium-config-path
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment