Compare commits

...

3104 Commits

Author SHA1 Message Date
Kubernetes Prow Robot 0aff213843 Merge pull request #34353 from s-kawamura-w664/apiref-1.23
Fix api-reference shortcode for localized pages. (v1.23 backport)
2022-06-17 02:06:32 -07:00
s-kawamura-w664 a0586da0b1 Fix api-reference shortcode for localized pages. 2022-06-17 08:28:32 +00:00
Kubernetes Prow Robot ebcef2a59d Merge pull request #34350 from jihoon-seo/220617_Fix_incorrectly_displayed_minor_versions_in_1.23
Fix incorrectly displayed K8s minor versions for `release-1.23` branch
2022-06-17 00:20:32 -07:00
Jihoon Seo 9a0f729913 Fix incorrectly displayed K8s minor versions 2022-06-17 15:48:15 +09:00
Kubernetes Prow Robot d89b82eef0 Merge pull request #34295 from sftim/20220615_mark_1.23_docs_stale
Mark v1.23 docs as stale
2022-06-14 23:13:17 -07:00
Tim Bannister 3f4d4ff0e0 Mark v1.23 docs as stale
Fixup a step overlooked during the Kubernetes v1.24 release.
2022-06-15 03:03:22 +01:00
Nate W 28fe5e2814 Merge pull request #33412 from nate-double-u/update-release-1.23-config.toml
update release-1.23 config.toml for release 1.24
2022-05-03 16:12:42 -07:00
Nate W f0b1ec8a8e update release-1.23 config.toml for release 1.24
Signed-off-by: Nate W <4453979+nate-double-u@users.noreply.github.com>
2022-05-02 11:41:46 -07:00
Kubernetes Prow Robot a8b640bd6f Merge pull request #33388 from kinzhi/kinzhi79
[zh]Update /docs/tasks/debug/debug-application/debug-running-pod
2022-05-02 04:07:14 -07:00
Kubernetes Prow Robot cdbdf86f50 Merge pull request #33389 from kinzhi/kinzhi80
[zh]Update content/zh/docs/setup/production-environment/_index.md
2022-05-02 04:05:13 -07:00
Kubernetes Prow Robot c2c0864b39 Merge pull request #33376 from my-git9/cassandra4
[zh] Update statefule-application/cassandra.md
2022-05-02 03:57:13 -07:00
Kubernetes Prow Robot cc862075d0 Merge pull request #33358 from kinzhi/kinzhi70
[zh]Update content/zh/blog/_posts/2022-02-17-updated-dockershim-faq.md
2022-05-02 03:51:13 -07:00
Kubernetes Prow Robot f96d4b35ac Merge pull request #33394 from Arhell/upd-name
[fr] update pod-topology-spread-constraints adding the missing schedu…
2022-05-01 23:33:14 -07:00
Arhell 2ee729786c [fr] update pod-topology-spread-constraints adding the missing scheduler name 2022-05-02 00:34:38 +03:00
wei.wang 17321b2b64 [zh]Update content/zh/docs/setup/production-environment/_index.md 2022-05-02 03:17:44 +08:00
wei.wang d2a0ae199d [zh]Update /docs/tasks/debug/debug-application/debug-running-pod) 2022-05-02 03:07:26 +08:00
xin.li 6b326ece29 [zh] Update statefule-application/cassandra.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-05-01 19:42:32 +08:00
Kubernetes Prow Robot 06e3808ae1 Merge pull request #33370 from kinzhi/kinzhi75
[zh]Update content/zh/blog/_posts/2020-12-08-kubernetes-release-1.20.md
2022-05-01 03:49:12 -07:00
Kubernetes Prow Robot 3bad0359e4 Merge pull request #33369 from my-git9/resource-metrics-pipeline4
[zh] Sync horizontal-pod-autoscale.md
2022-05-01 03:47:12 -07:00
Kubernetes Prow Robot 37f35be43d Merge pull request #33349 from JarHMJ/add/content/zh/docs/tasks/debug/debug-application/_index.md
[zh] add content/zh/docs/tasks/debug/debug-application/_index.md
2022-05-01 03:43:13 -07:00
Kubernetes Prow Robot 46d1b3c69a Merge pull request #33368 from kinzhi/kinzhi74
[zh]Update content/zh/examples/pods/probe/exec-liveness.yaml
2022-05-01 03:41:12 -07:00
wei.wang 5da1001dda [zh]Update content/zh/blog/_posts/2020-12-08-kubernetes-release-1.20.md 2022-05-01 18:22:09 +08:00
xin.li cdea498639 [zh] change debug link
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-05-01 18:21:30 +08:00
wei.wang d640b30faa [zh]Update content/zh/examples/pods/probe/exec-liveness.yaml 2022-05-01 18:16:26 +08:00
Kubernetes Prow Robot a8cc362592 Merge pull request #33359 from kinzhi/kinzhi71
[zh]Sync content/zh/docs/tasks/debug/debug-application/debug-service.md
2022-05-01 02:21:13 -07:00
Kubernetes Prow Robot a782ed0712 Merge pull request #33357 from kinzhi/kinzhi69
[zh]Sync content/zh/docs/tasks/debug/debug-cluster/crictl.md
2022-05-01 02:13:13 -07:00
Kubernetes Prow Robot 449d80c1c8 Merge pull request #32919 from tallclair/broken-links-ru
[ru] Clean up various broken links
2022-05-01 00:11:12 -07:00
Kubernetes Prow Robot 2c6a497b16 Merge pull request #33352 from JarHMJ/content/zh/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md
[zh] sync Resource metrics pipeline of task section
2022-05-01 00:01:13 -07:00
huangminjie 388ac4d825 [zh] sync content/zh/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md 2022-05-01 14:54:19 +08:00
wei.wang eaf047e51b [zh]Update content/zh/blog/_posts/2022-02-17-updated-dockershim-faq.md
Update content/zh/blog/_posts/2022-02-17-updated-dockershim-faq.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-05-01 14:25:59 +08:00
huangminjie c5b195d41d [zh] add content/zh/docs/tasks/debug/debug-application/_index.md 2022-05-01 09:08:45 +08:00
Kubernetes Prow Robot 683b9cd198 Merge pull request #33351 from JarHMJ/content/zh/docs/tasks/debug-application-cluster/monitor-node-health.md
[zh] sync content/zh/docs/tasks/debug/debug-cluster/monitor-node-heal…
2022-04-30 17:55:12 -07:00
Kubernetes Prow Robot 1afdc660ff Merge pull request #33348 from kinzhi/kinzhi63
[zh]Update content/zh/docs/concepts/configuration/manage-resources-containers.md
2022-04-30 17:53:12 -07:00
Kubernetes Prow Robot 4e5482fb45 Merge pull request #33347 from JarHMJ/update/local-debugging
[zh] sync content/zh/docs/tasks/debug/debug-cluster/local-debugging.md
2022-04-30 17:51:12 -07:00
Kubernetes Prow Robot afdb056cce Merge pull request #33332 from kinzhi/kinzhi60
[zh]Add content/zh/docs/tasks/debug/debug-application/get-shell-running-container.md
2022-04-30 17:49:12 -07:00
Kubernetes Prow Robot 0cc95c646a Merge pull request #33330 from kinzhi/kinzhi58
[zh]Update content/zh/docs/tutorials/stateful-application/mysql-wordpress-persistent-volume.md
2022-04-30 17:47:13 -07:00
Kubernetes Prow Robot c3d577cac0 Merge pull request #33350 from kinzhi/kinzhi65
[zh]Update content/zh/docs/concepts/overview/components.md
2022-04-30 17:43:12 -07:00
Kubernetes Prow Robot ac5faa199f Merge pull request #33344 from JarHMJ/patch-3
[en] Update tools/_index.md  remove old helm definition
2022-04-30 17:41:12 -07:00
Kubernetes Prow Robot f0fe1778e5 Merge pull request #33353 from JarHMJ/content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_upgrade.md
[zh] update content/zh/docs/reference/setup-tools/kubeadm/generated/k…
2022-04-30 17:39:13 -07:00
Kubernetes Prow Robot 0245a54018 Merge pull request #33354 from kinzhi/kinzhi66
[en]Modify /docs/tasks/debug/debug-application/debug-running-pod/
2022-04-30 17:07:12 -07:00
Kubernetes Prow Robot 8f68cd36b4 Merge pull request #33355 from kinzhi/kinzhi67
[zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs_renew.md
2022-04-30 17:05:12 -07:00
wei.wang b008adb1e6 [zh]Sync content/zh/docs/tasks/debug/debug-application/debug-service.md 2022-05-01 02:01:28 +08:00
wei.wang 9716dd08cf [zh]Sync content/zh/docs/tasks/debug/debug-cluster/crictl.md 2022-05-01 01:34:21 +08:00
wei.wang cd693ade42 [zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs_renew.md 2022-05-01 01:11:32 +08:00
Kubernetes Prow Robot 314ad4c43a Merge pull request #32326 from nirroz93/patch-2
Changing note about limits without requests
2022-04-30 10:11:12 -07:00
Kubernetes Prow Robot f57b6a42a9 Merge pull request #32221 from amitech/patch-1
Updated configure-liveness-readiness-startup-probes.md
2022-04-30 10:07:12 -07:00
Kubernetes Prow Robot ed5ae05402 Merge pull request #33316 from my-git9/debug-running-pod3
[en] modify debug-application/debug-running-pod
2022-04-30 09:59:13 -07:00
wei.wang 708924d9d5 [en]Modify /docs/tasks/debug/debug-application/debug-running-pod/ 2022-05-01 00:57:38 +08:00
huangminjie e6c738a96b [zh] update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_upgrade.md 2022-05-01 00:34:09 +08:00
huangminjie f0990a0f29 update 2022-05-01 00:10:45 +08:00
huangminjie 439665c82e [zh] sync content/zh/docs/tasks/debug/debug-cluster/monitor-node-health.md 2022-05-01 00:02:51 +08:00
wei.wang 59b33cc694 [zh]Update content/zh/docs/concepts/overview/components.md 2022-04-30 23:52:09 +08:00
wei.wang b761b7de94 [zh]Update content/zh/docs/concepts/configuration/manage-resources-containers.md 2022-04-30 23:45:05 +08:00
wei.wang aaf7e99434 [zh]Add content/zh/docs/tasks/debug/debug-application/get-shell-running-container.md
[zh]Add content/zh/docs/tasks/debug/debug-application/get-shell-running-container.md

[zh]Add content/zh/docs/tasks/debug/debug-application/get-shell-running-container.md
2022-04-30 23:32:23 +08:00
huangminjie fdcf1d8a4c [zh] sync content/zh/docs/tasks/debug/debug-cluster/local-debugging.md 2022-04-30 22:46:12 +08:00
Kubernetes Prow Robot 22dbbe1dda Merge pull request #33343 from JarHMJ/update/generated/kubeadm.md
[zh] update content/zh/docs/reference/setup-tools/kubeadm/generated/k…
2022-04-30 07:09:12 -07:00
Kubernetes Prow Robot 57a43f30ca Merge pull request #33340 from my-git9/resource-usage-monitoring3
[en] modify link about debug
2022-04-30 07:07:12 -07:00
Kubernetes Prow Robot 1096f1f5c2 Merge pull request #33270 from kinzhi/kinzhi46
[zh]Update content/zh/docs/tasks/configmap-secret/managing-secret-using-kubectl.md
2022-04-30 07:05:13 -07:00
Kubernetes Prow Robot 41dfc83423 Merge pull request #33339 from my-git9/debuglink4
[en] modify link about debug
2022-04-30 07:03:12 -07:00
Kubernetes Prow Robot 28cffafcd9 Merge pull request #33331 from kinzhi/kinzhi59
[en]Update content/en/docs/reference/kubectl/docker-cli-to-kubectl.md
2022-04-30 06:51:13 -07:00
Kubernetes Prow Robot 0579b23b9a Merge pull request #33329 from kinzhi/kinzhi57
[zh]Sync content/zh/docs/tasks/debug/debug-cluster/audit.md
2022-04-30 06:49:12 -07:00
Kubernetes Prow Robot 92ec6853fc Merge pull request #33328 from kinzhi/kinzhi56
[en]Update content/en/docs/concepts/workloads/pods/init-containers.md
2022-04-30 06:47:13 -07:00
Kubernetes Prow Robot 62ee8c2a11 Merge pull request #33326 from geraldmayr/main
Add missing verb
2022-04-30 06:45:13 -07:00
Kubernetes Prow Robot f6c9375176 Merge pull request #33318 from JarHMJ/fix/kubeadm_init_phase_certs_etcd-server
[zh] update   kubeadm_init_phase_certs_etcd-server.md
2022-04-30 06:37:12 -07:00
Kubernetes Prow Robot 11bfde39cd Merge pull request #33325 from kinzhi/kinzhi55
[zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs.md
2022-04-30 05:39:12 -07:00
Kubernetes Prow Robot a66ba6a53e Merge pull request #33291 from kinzhi/kinzhi52
[zh]Sync content/zh/examples/policy/restricted-psp.yaml
2022-04-30 05:37:12 -07:00
Kubernetes Prow Robot 20ce068d30 Merge pull request #33314 from my-git9/debug-cluster-crictl
[en] modify  link debug-cluster/crictl
2022-04-30 05:35:13 -07:00
xin.li 5810ecfd49 [en] modify debug-cluster/crictl
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-30 18:58:16 +08:00
wei.wang bf84c6a5a0 [zh]Sync content/zh/examples/policy/restricted-psp.yaml
[zh]Sync content/zh/examples/policy/restricted-psp.yaml
2022-04-30 18:38:25 +08:00
Kubernetes Prow Robot ced5dc9fa7 Merge pull request #33333 from kinzhi/kinzhi61
[zh]Update content/zh/docs/doc-contributor-tools/linkchecker/README.md
2022-04-30 03:21:13 -07:00
Kubernetes Prow Robot d2c2ba269b Merge pull request #33319 from kinzhi/kinzhi54
[zh]Update content/zh/docs/concepts/cluster-administration/_index.md
2022-04-30 03:17:12 -07:00
huangminjie 5f5be17db9 [en] Update tools/_index.md remove old helm definition 2022-04-30 16:16:28 +08:00
huangminjie 551a8e5bcf [zh] update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm.md 2022-04-30 15:25:43 +08:00
xin.li e6276724bb [en] modify link about debug
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-30 09:48:28 +08:00
xin.li 781b2b381c [en] modify link about debug
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-30 09:21:16 +08:00
wei.wang f19090942f [zh]Update content/zh/docs/doc-contributor-tools/linkchecker/README.md 2022-04-30 03:28:13 +08:00
wei.wang 64f58b2c75 [en]Update content/en/docs/reference/kubectl/docker-cli-to-kubectl.md 2022-04-30 03:11:53 +08:00
wei.wang 91754929a8 [zh]Update content/zh/docs/tutorials/stateful-application/mysql-wordpress-persistent-volume.md 2022-04-30 03:08:22 +08:00
wei.wang be918fc2b3 [zh]Sync content/zh/docs/tasks/debug/debug-cluster/audit.md 2022-04-30 03:02:03 +08:00
Kubernetes Prow Robot c22bef44a0 Merge pull request #32418 from bswartz/volume-populators-beta-blog
v1.24 blog post: Volume populators beta
2022-04-29 11:57:14 -07:00
wei.wang d9690ad314 [en]Update content/en/docs/concepts/workloads/pods/init-containers.md 2022-04-30 02:55:03 +08:00
Gerald Mayr 86c0e4e5b9 Add missing verb 2022-04-29 20:27:22 +02:00
wei.wang a4d0f3e347 [zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs.md 2022-04-30 02:26:20 +08:00
Kubernetes Prow Robot 9fba921214 Merge pull request #33321 from marosset/win-containerd-install-fixes
Updating containerd install details
2022-04-29 11:04:15 -07:00
Mark Rossetti aaadcc1c9a Update content/en/docs/setup/production-environment/container-runtimes.md
Co-authored-by: divya-mohan0209 <divya.mohan0209@gmail.com>
2022-04-29 10:33:57 -07:00
Mark Rossetti 86265a1742 Updating containerd install details
Signed-off-by: Mark Rossetti <marosset@microsoft.com>
2022-04-29 10:23:14 -07:00
Kubernetes Prow Robot e506834edc Merge pull request #33311 from Tej-Singh-Rana/master
fixed the link
2022-04-29 09:29:13 -07:00
wei.wang 283448b922 [zh]Update content/zh/docs/concepts/cluster-administration/_index.md 2022-04-29 23:38:12 +08:00
Kubernetes Prow Robot 9c710f7f7b Merge pull request #33315 from thomasd-ign/patch-1
Dead link correction
2022-04-29 08:29:13 -07:00
huangminjie e29fa4ea2e update kubeadm_init_phase_certs_etcd-server.md
Signed-off-by: huangminjie <minjie.huang@daocloud.io>
2022-04-29 23:12:34 +08:00
thomasd-ign 99c5658119 Update content/en/blog/_posts/2022-04-28-Increasing-the-security-bar-in-Ingress-NGINX/index.md
Co-authored-by: Rey Lejano <rlejano@gmail.com>
2022-04-29 17:11:14 +02:00
Kubernetes Prow Robot cb12791012 Merge pull request #33222 from kinzhi/kinzhi37
[zh]Sync content/zh/case-studies/babylon
2022-04-29 07:59:13 -07:00
Kubernetes Prow Robot b54bcde04e Merge pull request #33292 from kinzhi/kinzhi53
[zh]Sync content/zh/case-studies/squarespace
2022-04-29 07:09:13 -07:00
Kubernetes Prow Robot 4a67ea76d0 Merge pull request #33313 from my-git9/debug-cluster-audit
[en] modify debug-cluster/audit
2022-04-29 07:01:13 -07:00
Tej Singh Rana c68c4e9518 Added back the bracket 2022-04-29 19:17:14 +05:30
Mitesh Jain a2bf86409a Adding dockershim to glossary. (#32950)
* Adding dockershim to glossary.

* updated dockershim faq url.

Co-authored-by: Chris Negus <cnegus@redhat.com>

* Update content/en/docs/reference/glossary/dockershim.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/docs/reference/glossary/dockershim.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/docs/reference/glossary/dockershim.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Changes to accomodate review comments.

Co-authored-by: Chris Negus <cnegus@redhat.com>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-04-29 06:37:13 -07:00
xin.li d46e06a1c3 [en] modify debug-application/debug-running-pod
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 20:53:12 +08:00
thomasd-ign 34c8d99054 Dead link correction
Correct a dead link pointing to a page about namespaces in kubernetes
2022-04-29 14:50:10 +02:00
xin.li b831e96c6a [en] modify debug-cluster/audit
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 20:40:59 +08:00
Tej Singh Rana ca413bf30e fixed the broken link 2022-04-29 18:07:53 +05:30
Tej Singh Rana bc04fd0df7 Merge branch 'kubernetes:main' into master 2022-04-29 18:07:00 +05:30
Kubernetes Prow Robot 6d9dea7623 Merge pull request #33306 from my-git9/security-a-cluster1
[en] modify debug link in securing-a-cluster.md
2022-04-29 05:33:15 -07:00
Kubernetes Prow Robot ddb35a0be8 Merge pull request #33309 from my-git9/local-debug2
[en] modify debug link in local-debug
2022-04-29 05:29:14 -07:00
Tej Singh Rana 256d6a2638 Fixed the link 2022-04-29 17:56:41 +05:30
Tej Singh Rana 6006d67647 Merge branch 'kubernetes:main' into master 2022-04-29 17:54:26 +05:30
Kubernetes Prow Robot 86bdc7228a Merge pull request #33310 from my-git9/define-comom
[en] modify link in define-command-argument-container
2022-04-29 05:19:13 -07:00
Tej Singh Rana a982e451bb fixed the link 2022-04-29 17:45:55 +05:30
Kubernetes Prow Robot 8b116a343a Merge pull request #33305 from my-git9/resource-metrics-pipeline3
[en]modify debug link in resource-metrics-pipeline.md
2022-04-29 05:05:13 -07:00
Kubernetes Prow Robot 4aa7234881 Merge pull request #33272 from kinzhi/kinzhi48
[zh]Sync case-studies/jd-com
2022-04-29 04:57:12 -07:00
Kubernetes Prow Robot 68c3adc0a8 Merge pull request #33308 from my-git9/configure-pod-init1
[en] modify debug link in configure-pod-init
2022-04-29 04:47:13 -07:00
Kubernetes Prow Robot 4e96ae79d7 Merge pull request #33307 from my-git9/resource-usage-monitoring2
[en] modify debug link in resource-usage-monitoring
2022-04-29 04:43:12 -07:00
xin.li cb6b4c8dcb [en] modify debug link in resource-usage-monitoring
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 19:28:10 +08:00
Kubernetes Prow Robot 7dc296222e Merge pull request #33262 from kinzhi/kinzhi43
[zh]Update content/zh/docs/setup/production-environment/windows/user-guide-windows-containers.md
2022-04-29 04:27:13 -07:00
xin.li 6f0bc9a0a1 [en] modify link in define-command-argument-container
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 19:07:13 +08:00
xin.li 8acb8f13f6 [en] modify debug link in local-debug
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 19:04:11 +08:00
Kubernetes Prow Robot aae0e2e64b Merge pull request #33304 from my-git9/manual-rotation-of-ca2
[en] modify the link about debug-application
2022-04-29 04:03:14 -07:00
xin.li 3d69e98fb4 [en] modify debug link in configure-pod-init
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 19:01:34 +08:00
xin.li aef1fb68d1 [zh] modify debug link in securing-a-cluster.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 18:49:00 +08:00
xin.li b66a80db00 [zh] modify debug link in resource-metrics-pipeline.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 18:43:27 +08:00
Kubernetes Prow Robot 76c5c6df6d Merge pull request #33303 from my-git9/mysql-wordpress-persistent
[en] modify the link about debug-application
2022-04-29 03:39:13 -07:00
xin.li 0e0f62c478 [en] modify the link about debug-application
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 18:34:13 +08:00
Kubernetes Prow Robot 1e11e7e813 Merge pull request #33302 from my-git9/kubeadm-upgrade2
[zh] Update administer-cluster/kubeadm/kubeadm-upgrade.md
2022-04-29 03:31:13 -07:00
Kubernetes Prow Robot 68b340858b Merge pull request #33296 from my-git9/linkchecker1
[en] Update docs/doc-contributor-tools/linkchecker
2022-04-29 03:29:12 -07:00
Kubernetes Prow Robot 7ad1a47fae Merge pull request #33271 from kinzhi/kinzhi47
[zh]Update content/zh/blog/_posts/2018-10-01-health-checking-grpc.md
2022-04-29 03:27:12 -07:00
Kubernetes Prow Robot df074540c4 Merge pull request #33233 from kinzhi/kinzhi38
[zh]Update content/zh/examples/application/mysql/mysql-statefulset.yaml
2022-04-29 03:25:13 -07:00
xin.li f43e6f5cdb [en] modify the link about debug-application in mysql-wordpress-persistent-volume.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 18:13:46 +08:00
xin.li 13c03b0d58 [zh] Update administer-cluster/kubeadm/kubeadm-upgrade.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 17:58:37 +08:00
Ed 3ae803b707 Added link to Version Skew Policy in Upgrading Kubeadm Cluster (#33293)
* Added link to Version Skew Policy in Upgrading Kubeadm Cluster

* Update content/en/docs/tasks/administer-cluster/kubeadm/kubeadm-upgrade.md

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>
2022-04-29 02:53:13 -07:00
Kubernetes Prow Robot 2f0824c6ea Merge pull request #33298 from skmkzyk/patch-1
current link is pointing 404 page.
2022-04-29 00:53:12 -07:00
Kubernetes Prow Robot 2f0c1a741d Merge pull request #33260 from kinzhi/kinzhi42
[zh]Update content/zh/docs/tasks/extend-kubernetes/custom-resources/custom-resource-definition-versioning.md
2022-04-29 00:47:13 -07:00
Kubernetes Prow Robot ce5e2830e1 Merge pull request #33289 from kinzhi/kinzhi50
[zh]Update content/zh/docs/reference/labels-annotations-taints/audit-annotations.md
2022-04-29 00:41:12 -07:00
Kazuyuki Sakemi 9d98815cc5 current link is pointing 404 page.
replacing relative link from "/docs/tasks/debug-application-cluster/debug-service/" to "/docs/tasks/debug/debug-application/debug-service/".
2022-04-29 15:10:44 +09:00
xin.li e832559fa0 [en] Update docs/doc-contributor-tools/linkchecker
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-29 12:11:43 +08:00
wei.wang 75a812ca5c [zh]Update content/zh/docs/setup/production-environment/windows/user-guide-windows-containers.md
[zh]Sync x

[zh]Update content/zh/docs/setup/production-environment/windows/user-guide-windows-containers.md
2022-04-29 12:08:43 +08:00
wei.wang 1be8669808 [zh]Update content/zh/docs/reference/labels-annotations-taints/audit-annotations.md
[zh]Update content/zh/docs/reference/labels-annotations-taints/audit-annotations.md

Update content/zh/docs/reference/labels-annotations-taints/audit-annotations.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/docs/reference/labels-annotations-taints/audit-annotations.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/docs/reference/labels-annotations-taints/audit-annotations.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-29 11:51:02 +08:00
Kubernetes Prow Robot 5fe82f5e21 Merge pull request #33288 from kinzhi/kinzhi49
[zh]Update content/zh/docs/concepts/storage/storage-classes.md
2022-04-28 16:59:12 -07:00
Kubernetes Prow Robot ba287bed01 Merge pull request #33290 from kinzhi/kinzhi51
[zh]Sync content/zh/docs/tasks/configure-pod-container/security-context.md
2022-04-28 16:57:12 -07:00
Kubernetes Prow Robot f781bf851d Merge pull request #31734 from serithemage/patch-1
[ko] Update namespaces.md to align with en site
2022-04-28 16:43:12 -07:00
Kubernetes Prow Robot d320ecb2ab Merge pull request #33286 from reylejano/followup-blog
Follow-up to PR 33280, Blog 1.23 lead interview transcript
2022-04-28 11:13:50 -07:00
wei.wang 2e92ea8627 [zh]Sync content/zh/case-studies/squarespace 2022-04-29 01:47:29 +08:00
wei.wang a571fef7c8 [zh]Sync content/zh/docs/tasks/configure-pod-container/security-context.md 2022-04-29 01:32:16 +08:00
wei.wang b569079875 [zh]Update content/zh/docs/concepts/storage/storage-classes.md 2022-04-29 01:07:30 +08:00
wei.wang 2d733bbb03 [zh]Update content/zh/blog/_posts/2018-10-01-health-checking-grpc.md
Update content/zh/blog/_posts/2018-10-01-health-checking-grpc.md

Co-authored-by: Hao Yuan <howieyuen@outlook.com>

Update content/zh/blog/_posts/2018-10-01-health-checking-grpc.md

Co-authored-by: Hao Yuan <howieyuen@outlook.com>

Update content/zh/blog/_posts/2018-10-01-health-checking-grpc.md

Co-authored-by: Hao Yuan <howieyuen@outlook.com>
2022-04-29 00:58:05 +08:00
wei.wang d9a0e4123b [zh]Update content/zh/docs/tasks/configmap-secret/managing-secret-using-kubectl.md
Update content/zh/docs/tasks/configmap-secret/managing-secret-using-kubectl.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/docs/tasks/configmap-secret/managing-secret-using-kubectl.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-29 00:54:24 +08:00
Kubernetes Prow Robot 48788780ec Merge pull request #33089 from MrErlison/annotation-ptbr
Add content/pt-br/docs/reference/glossary/annotation.md
2022-04-28 09:27:50 -07:00
wei.wang 1f9f0a29d0 [zh]Update content/zh/docs/tasks/extend-kubernetes/custom-resources/custom-resource-definition-versioning.md
Update content/zh/docs/tasks/extend-kubernetes/custom-resources/custom-resource-definition-versioning.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/docs/tasks/extend-kubernetes/custom-resources/custom-resource-definition-versioning.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/docs/tasks/extend-kubernetes/custom-resources/custom-resource-definition-versioning.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-29 00:13:42 +08:00
wei.wang c88343d6b5 [zh]Update content/zh/examples/application/mysql/mysql-statefulset.yaml
[zh]Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Update content/zh/examples/application/mysql/mysql-statefulset.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-28 23:53:50 +08:00
Kubernetes Prow Robot 859641120b Merge pull request #33281 from SataQiu/fix-20220428
Update content/en/docs/reference/labels-annotations-taints/audit-annotations.md
2022-04-28 08:37:51 -07:00
Rey Lejano b0d1c433cd follow-up PR to PR 33280 2022-04-28 08:24:50 -07:00
Kubernetes Prow Robot cc442b1dcb Merge pull request #32659 from pohly/kubernetes-1.24-storage-capacity-ga
storage capacity GA blog post
2022-04-28 08:19:50 -07:00
Kubernetes Prow Robot d4bbdb5aa7 Merge pull request #33219 from chrisnegus/dockershim-podsecurity-docs
Update pod security docs for dockershim removal
2022-04-28 08:17:50 -07:00
Kubernetes Prow Robot 27d1959c22 Merge pull request #33280 from craigbox/interview-1.23
Add release interview for 1.23
2022-04-28 08:15:50 -07:00
Ricardo Katz 78a765f16c Add Ingress NGINX v1.2.0 blogpost (#32965)
* Add Ingress NGINX v1.2.0 blogpost

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Apply suggestions from code review

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Apply suggestions from code review

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-04-15-Increasing-the-security-bar-in-Ingress-NGINX/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Fix some reviews

* Change publishing date

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-04-28 07:37:50 -07:00
Patrick Ohly 0e56bf9cae blog: storage capacity GA 2022-04-28 15:54:08 +02:00
SataQiu 279fbc658d Update content/en/docs/reference/labels-annotations-taints/audit-annotations.md
Signed-off-by: SataQiu <shidaqiu2018@gmail.com>
2022-04-28 19:53:21 +08:00
Kubernetes Prow Robot a56ad60c84 Merge pull request #33167 from tengqm/zh-crictl
[zh] Resync crictl
2022-04-28 04:43:51 -07:00
Craig Box f5e420e226 You know, I actually wanted some --s 2022-04-28 23:26:53 +12:00
Craig Box b00a8192a1 Add 1.23 blog post 2022-04-28 23:19:49 +12:00
Kubernetes Prow Robot d0a46e83bd Merge pull request #33277 from howieyuen/managing-tls-in-a-cluster
[zh]resync tls task: Manage TLS Certificates in a Cluster
2022-04-28 03:57:51 -07:00
Kubernetes Prow Robot 0bb6926031 Merge pull request #33256 from youwalther65/patch-1
Remove gp3 from supported EBS volume types for in-tree provisioner "kubernetes.io/aws-ebs"
2022-04-28 03:45:51 -07:00
howieyuen bf5afce482 [zh]resync tls task: Manage TLS Certificates in a Cluster 2022-04-28 16:56:33 +08:00
Kubernetes Prow Robot 84971bc765 Merge pull request #33267 from HeGaoYuan/patch-5
Update security-context.md
2022-04-27 20:18:55 -07:00
Kubernetes Prow Robot be58d7882d Merge pull request #33275 from Arhell/upd-link
[zh] update external provisioner specification reference
2022-04-27 19:50:54 -07:00
kinzhi ecbd6257a4 [zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs_certificate-key.md (#33269)
* [zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs_certificate-key.md

* [zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs_certificate-key.md

* [zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_certs_certificate-key.md
2022-04-27 19:40:55 -07:00
Kubernetes Prow Robot be881ec734 Merge pull request #33125 from tengqm/zh-tweak-nodes-page
[zh] Update the nodes concept page
2022-04-27 19:20:55 -07:00
Qiming Teng 3660d10034 [zh] Update the nodes concept page 2022-04-28 08:37:24 +08:00
Kubernetes Prow Robot 79552a5af3 Merge pull request #33258 from my-git9/podindexmd
[zh] Update workloads/pods/_index.md
2022-04-27 17:32:54 -07:00
Kubernetes Prow Robot 5f77c3e475 Merge pull request #33257 from my-git9/caseing2
[zh] Update case-studies/ing
2022-04-27 17:30:54 -07:00
Kubernetes Prow Robot 573aab1693 Merge pull request #33253 from my-git9/denso
[zh] Sync denso
2022-04-27 17:26:54 -07:00
Arhell 67227ff394 [zh] update external provisioner specification reference 2022-04-28 01:16:59 +03:00
wei.wang bc617ec9ce [zh]Sync case-studies/jd-com 2022-04-28 02:10:54 +08:00
Ben Swartzlander e7089f9c40 v1.24 blog post: Volume populators beta 2022-04-27 13:31:52 -04:00
HeGaoYuan ae677063f9 Update security-context.md
typo
2022-04-28 00:47:00 +08:00
Kubernetes Prow Robot eabb62c66c Merge pull request #33254 from Arhell/upd-link
[id] Update external provisioner specification reference
2022-04-27 09:04:11 -07:00
Kubernetes Prow Robot 87aaa6dd8e Merge pull request #33064 from 85humberto/patch-1
[pt-br] Correct typing error
2022-04-27 08:58:10 -07:00
Kubernetes Prow Robot 6744be1a00 Merge pull request #33189 from my-git9/pod-security-policy4
[zh] Update docs/reference/glossary/pod-security-policy.md
2022-04-27 05:42:10 -07:00
Kubernetes Prow Robot 93b8604924 Merge pull request #33126 from tengqm/zh-update-node-comm
[zh] Update control plane to node communication page
2022-04-27 05:40:10 -07:00
xin.li 4993a0d743 [zh] Update workloads/pods/_index.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-27 19:03:39 +08:00
xin.li 107ff07d78 [zh] Update case-studies/ing
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-27 18:14:39 +08:00
Jens-Uwe Walther 511c74564d Remove gp3 from supported EBS volume types
gp3 is not supported for the in-tree plugin "kubernetes.io/aws-ebs", only for external EBS CSI driver. So we have to remove it here
See following issue which shows that it does not work:
https://github.com/kubernetes/website/issues/33036#issuecomment-1110766774
2022-04-27 12:14:03 +02:00
Arhell 7f57114949 [id] Update external provisioner specification reference 2022-04-27 12:39:02 +03:00
xin.li 2983e62cb0 [zh] Sync denso
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-27 16:21:30 +08:00
Kubernetes Prow Robot dcff2a8ac0 Merge pull request #33249 from my-git9/booz-allen-case-stu
[zh] Sync booz-allen
2022-04-27 01:16:10 -07:00
xin.li 7727724266 --amend
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-27 16:14:03 +08:00
kinzhi 69b402cccf [zh]Update content/zh/examples/admin/dns/dns-horizontal-autoscaler.yaml (#33234)
* [zh]Update content/zh/examples/admin/dns/dns-horizontal-autoscaler.yaml

* [zh]Update content/zh/examples/admin/dns/dns-horizontal-autoscaler.yaml

* Update content/zh/examples/admin/dns/dns-horizontal-autoscaler.yaml

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-27 01:12:10 -07:00
xin.li a9a1b0d2b6 [zh] Sync booz-allen
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-27 15:50:21 +08:00
Kubernetes Prow Robot d97df38b70 Merge pull request #33121 from nasa9084/update-readme-ja
[ja] Update README-ja.md
2022-04-26 23:00:10 -07:00
nasa9084 3c54dacb3e Update README-ja.md
Update README-ja.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

fix anchor
2022-04-27 14:44:51 +09:00
Kubernetes Prow Robot 56d177d0b4 Merge pull request #33245 from chengleqi/patch-1
Update configure-projected-volume-storage.md
2022-04-26 22:24:09 -07:00
Qiming Teng 446de63a6c [zh] Update controlplane to node communication page 2022-04-27 13:18:13 +08:00
chengleqi 10e566a222 Update configure-projected-volume-storage.md 2022-04-27 12:15:30 +08:00
Kubernetes Prow Robot 059cd734dd Merge pull request #33172 from zaunist/main
[zh]: Resync kubeadm-upgrade.md
2022-04-26 19:58:10 -07:00
Kubernetes Prow Robot 931d9bf5f1 Merge pull request #33173 from kinzhi/kinzhi24
[zh]Remove content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_alpha.md
2022-04-26 19:54:10 -07:00
Kubernetes Prow Robot 682bafa836 Merge pull request #33214 from my-git9/exampletls
[zh] Add examples/tls
2022-04-26 19:42:10 -07:00
Kubernetes Prow Robot cdabbdab46 Merge pull request #33216 from my-git9/examplesecurity
[zh] Sync security/*.sh
2022-04-26 19:40:10 -07:00
Kubernetes Prow Robot 14b2c1938e Merge pull request #33215 from my-git9/mongodbexamples
[zh] Create examples/mongodb
2022-04-26 19:18:10 -07:00
Kubernetes Prow Robot e41b1698c0 Merge pull request #33210 from fenggw-fnst/update-kubeadm-join
[zh] Update kubeadm-join.md
2022-04-26 19:02:10 -07:00
Kubernetes Prow Robot 4181b99270 Merge pull request #33217 from my-git9/docsimages2
[zh] Create docs/images
2022-04-26 18:58:10 -07:00
xin.li f86fe141aa [zh] Create docs/images
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-27 09:40:42 +08:00
Kubernetes Prow Robot de90edc29d Merge pull request #33241 from tengqm/fix-33232
Fix dockershim alias
2022-04-26 18:38:10 -07:00
xin.li 08bfda6a06 [zh] Sync security/*.sh
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-27 09:30:18 +08:00
Qiming Teng a9c422d816 Fix dockershim alias 2022-04-27 09:12:38 +08:00
Kubernetes Prow Robot 45ad741b81 Merge pull request #33203 from kinzhi/kinzhi36
[zh]Update content/zh/docs/concepts/architecture/nodes.md
2022-04-26 18:10:11 -07:00
Guangwen Feng d21ecec59e [zh] Update kubeadm-join.md
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2022-04-27 09:09:04 +08:00
Kubernetes Prow Robot 0577a89dff Merge pull request #33218 from my-git9/case-studiesadidas
[zh] Sync case-studies/adidas
2022-04-26 18:08:10 -07:00
Kubernetes Prow Robot 23af479d73 Merge pull request #33237 from kinzhi/kinzhi40
[zh]Update content/zh/docs/test.md
2022-04-26 17:06:10 -07:00
Kubernetes Prow Robot eb2e24a71e Merge pull request #33238 from kinzhi/kinzhi41
[zh]Sync content/zh/case-studies/booking-com
2022-04-26 16:58:11 -07:00
wei.wang a1831b3eb1 [zh]Sync content/zh/case-studies/booking-com 2022-04-27 07:14:54 +08:00
wei.wang a61b79601d [zh]Update content/zh/docs/test.md 2022-04-27 07:04:41 +08:00
wei.wang 8b9a91cbf5 [zh]Sync content/zh/case-studies/babylon 2022-04-26 22:53:16 +08:00
Christopher Negus a34a0567f9 Updated wording in yaml file 2022-04-26 13:59:38 +00:00
Christopher Negus 59d3e1e7a2 Update pod security docs for dockershim removal 2022-04-26 13:39:55 +00:00
xin.li cfe468a0d5 [zh] Sync case-studies/adidas
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-26 21:13:19 +08:00
kinzhi e0e1b3095c Update content/zh/docs/concepts/architecture/nodes.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-26 21:03:04 +08:00
xin.li 38aada60db [zh] Create examples/mongodb
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-26 20:54:03 +08:00
xin.li 32b87c471a [zh] Add examples/tls
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-26 20:49:42 +08:00
Sean 6b15373d61 [zh] Fix the translation for "Advanced" (#33162)
* [zh] Sync Hugo shortcodes with upstream

* [zh] Fix the translation for "Advanced"
2022-04-26 04:56:53 -07:00
Kubernetes Prow Robot 4854405971 Merge pull request #33207 from fenggw-fnst/fix-typo
Fix a typo in cadvisor.md
2022-04-26 04:54:52 -07:00
Kubernetes Prow Robot ea8f1032dc Merge pull request #33209 from 0xff-dev/storageclass
[zh] update dynamic-provisioning.md
2022-04-26 04:52:53 -07:00
0xff-dev 6e35802d4c [zh] update dynamic-provisioning.md 2022-04-26 17:15:56 +08:00
Guangwen Feng 8f68e2cc94 Fix a typo in cadvisor.md
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2022-04-26 16:12:42 +08:00
Kubernetes Prow Robot ec74e19095 Merge pull request #33199 from Arhell/fix-build
[es] use cat instead of shell built-in to read checksum
2022-04-26 01:04:52 -07:00
wei.wang 5e46c9bac2 [zh]Update content/zh/docs/concepts/architecture/nodes.md 2022-04-26 13:15:50 +08:00
Kubernetes Prow Robot 05d16dd49f Merge pull request #33185 from my-git9/panic-kubernetes-and-docker
[zh] Update 2020-12-02-dont-panic-kubernetes-and-docker.md
2022-04-25 22:06:51 -07:00
Kubernetes Prow Robot 3c357de8da Merge pull request #33184 from kinzhi/kinzhi28
[zh]Use JavaScript instead of Javascript
2022-04-25 22:04:52 -07:00
Kubernetes Prow Robot 7e035aa7e2 Merge pull request #33181 from fenggw-fnst/fix-ref_idx
[zh] Fix incorrect description
2022-04-25 22:02:52 -07:00
Kubernetes Prow Robot 8fff2ddd22 Merge pull request #33186 from my-git9/dockershim-faq2
[zh] Update blog/2020-12-02-dockershim-faq.md
2022-04-25 22:00:52 -07:00
Kubernetes Prow Robot a0c7a38874 Merge pull request #33191 from kinzhi/kinzhi29
[zh]Update content/zh/examples/service/networking/minimal-ingress.yaml
2022-04-25 21:52:51 -07:00
Kubernetes Prow Robot d00be65c2d Merge pull request #33190 from my-git9/shuffle-sharding4
[zh] Update shuffle-sharding.md
2022-04-25 21:50:51 -07:00
Kubernetes Prow Robot 047515bd68 Merge pull request #33187 from my-git9/volumes4
[zh] Update storage/volumes.md
2022-04-25 21:48:51 -07:00
Kubernetes Prow Robot 7298ae1eaa Merge pull request #33192 from kinzhi/kinzhi30
[zh]Update content/zh/examples/service/access/Dockerfile
2022-04-25 21:46:51 -07:00
Kubernetes Prow Robot eed5cc1598 Merge pull request #33196 from kinzhi/kinzhi34
[zh]Update content/zh/examples/README.md
2022-04-25 21:42:52 -07:00
Kubernetes Prow Robot dba55fc802 Merge pull request #33195 from kinzhi/kinzhi33
[zh]Update content/zh/examples/application/mysql/mysql-services.yaml
2022-04-25 21:40:52 -07:00
Kubernetes Prow Robot 63619c645c Merge pull request #33178 from Sea-n/fix-state
[zh] Fix 2 missing feature state
2022-04-25 21:38:52 -07:00
Kubernetes Prow Robot 6515c93e79 Merge pull request #33194 from kinzhi/kinzhi32
[zh]Sync from the English format
2022-04-25 21:36:52 -07:00
Kubernetes Prow Robot a9e59b8119 Merge pull request #33193 from kinzhi/kinzhi31
[zh]Remove excess whitespace
2022-04-25 21:34:53 -07:00
Kubernetes Prow Robot b6f08cd226 Merge pull request #33198 from kinzhi/kinzhi35
[zh]Sync content/zh/training/_index.html
2022-04-25 21:32:51 -07:00
Paul Schweigert f26e8eff23 Reorg the monitoring task section (#32823)
* reorg the monitoring task section

Signed-off-by: Paul S. Schweigert <paulschw@us.ibm.com>

* reorg from review comments

Signed-off-by: Paul S. Schweigert <paulschw@us.ibm.com>

* review comments

Signed-off-by: Paul S. Schweigert <paulschw@us.ibm.com>

* review fixes

Signed-off-by: Paul S. Schweigert <paulschw@us.ibm.com>
2022-04-25 21:30:51 -07:00
Kubernetes Prow Robot 5521d32c12 Merge pull request #33201 from soul-craft/patch-1
Update labels.md
2022-04-25 20:00:52 -07:00
Soul Craft e39058d2e4 Update labels.md
add a new line
2022-04-26 10:34:37 +08:00
Arhell 8e1ca057b6 [es] use cat instead of shell built-in to read checksum 2022-04-26 00:33:44 +03:00
Kubernetes Prow Robot b01ce83193 Merge pull request #33188 from sftim/20220425_fix_codenew_old_releases
Use previous release examples in codenew shortcode
2022-04-25 13:25:38 -07:00
Kubernetes Prow Robot c2666031e0 Merge pull request #33124 from tengqm/tweak-nodes-page
Tweak the Nodes page
2022-04-25 11:47:40 -07:00
wei.wang 193abb66c4 [zh]Sync content/zh/training/_index.html 2022-04-26 02:28:25 +08:00
wei.wang c0739ad6ef [zh]Sync content/zh/training/_index.html 2022-04-26 00:59:24 +08:00
wei.wang 6dbf0cfaf8 [zh]Update content/zh/examples/README.md 2022-04-25 23:50:10 +08:00
wei.wang 68dbecde3a [zh]Update content/zh/examples/application/mysql/mysql-services.yaml 2022-04-25 23:36:20 +08:00
zaunist 36f3fedebb docs: Rsyc kubeadm-upgrade.md 2022-04-25 23:32:32 +08:00
Sean Wei d124118918 [zh] Fix feature state 2022-04-25 23:31:29 +08:00
wei.wang 97dbcfbb9f [zh]Remove excess whitespace 2022-04-25 23:30:56 +08:00
wei.wang 0182438cfa [zh]Sync from the English format 2022-04-25 23:29:03 +08:00
wei.wang 8251775798 [zh]Remove excess whitespace 2022-04-25 23:24:52 +08:00
wei.wang e4e09e7241 [zh]Update content/zh/examples/service/access/Dockerfile 2022-04-25 22:12:25 +08:00
wei.wang 3af7b0a15f [zh]Update content/zh/examples/service/networking/minimal-ingress.yaml 2022-04-25 22:05:52 +08:00
xin.li e635ad2bcf [zh] Update shuffle-sharding.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-25 21:45:03 +08:00
xin.li 5fbba61bbc [zh] Update docs/reference/glossary/pod-security-policy.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-25 21:40:02 +08:00
Tim Bannister d3708001d8 Use previous release examples in codenew shortcode
Fix a minor bug in the codenew shortcode.
When serving a previous release, link to the example for that specific
release (and not to the example for the current release).
2022-04-25 14:27:28 +01:00
xin.li 248cf890a3 Update storage/volumes.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-25 21:17:55 +08:00
xin.li 6f9f2b8efa [zh] Update blog/2020-12-02-dockershim-faq.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-25 20:58:21 +08:00
xin.li 5a1b3ce971 [zh] Update 2020-12-02-dont-panic-kubernetes-and-docker.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-25 20:49:10 +08:00
wei.wang 38cbb50e5c [zh]Use JavaScript instead of Javascript 2022-04-25 20:14:42 +08:00
Guangwen Feng 77d736f31c [zh] Fix incorrect description
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2022-04-25 16:41:29 +08:00
Kubernetes Prow Robot a49bb7fed1 Merge pull request #33161 from Sea-n/fix-js
Use JavaScript instead of Javascript
2022-04-24 23:47:38 -07:00
Kubernetes Prow Robot 7e386e505f Merge pull request #33170 from kinzhi/kinzhi22
[zh]Update content/zh/docs/reference/glossary/api-eviction.md
2022-04-24 17:25:37 -07:00
Kubernetes Prow Robot adcce7a46c Merge pull request #33176 from kinzhi/kinzhi27
[zh]Update content/zh/docs/reference/setup-tools/kubeadm/kubeadm-reset-phase.md
2022-04-24 17:21:37 -07:00
Kubernetes Prow Robot 7298ee3ea7 Merge pull request #33174 from kinzhi/kinzhi25
[zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_config_print.md
2022-04-24 15:55:36 -07:00
Kubernetes Prow Robot c35adc1bac Merge pull request #33177 from Arhell/fix-state
[zh] fix feature state
2022-04-24 15:43:37 -07:00
Arhell f73d046f63 [zh] fix feature state 2022-04-25 00:33:16 +03:00
wei.wang ab63d9a541 [zh]Update content/zh/docs/reference/setup-tools/kubeadm/kubeadm-reset-phase.md 2022-04-25 02:15:45 +08:00
wei.wang 560e16d93b [zh]Update content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_config_print.md 2022-04-25 01:52:02 +08:00
wei.wang 190bd0b902 [zh]Remove content/zh/docs/reference/setup-tools/kubeadm/generated/kubeadm_alpha.md 2022-04-25 01:45:02 +08:00
wei.wang 87edc6a9f8 [zh]Update content/zh/docs/reference/glossary/api-eviction.md 2022-04-24 23:09:57 +08:00
Qiming Teng 7f7f53dc53 [zh] Resync crictl 2022-04-24 21:14:20 +08:00
kinzhi 22c0708cdf [zh]update content/zh/docs/concepts/workloads/controllers/job.md (#33157)
* [zh]update content/zh/docs/concepts/workloads/controllers/job.md

* [zh]update content/zh/docs/concepts/workloads/controllers/job.md

* Update content/zh/docs/concepts/workloads/controllers/job.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/concepts/workloads/controllers/job.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/concepts/workloads/controllers/job.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/concepts/workloads/controllers/job.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/concepts/workloads/controllers/job.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/concepts/workloads/controllers/job.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* [zh]update content/zh/docs/concepts/workloads/controllers/job.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-24 03:49:36 -07:00
Kubernetes Prow Robot 353e867151 Merge pull request #33144 from my-git9/zookeeperyaml
[zh] Sync application/zookeeper/zookerper.yaml
2022-04-24 01:33:37 -07:00
Kubernetes Prow Robot e43e4f57cb Merge pull request #33147 from my-git9/security-apparmor.md
[zh] Update security/apparmor.md
2022-04-24 01:21:36 -07:00
Kubernetes Prow Robot 55499e4f55 Merge pull request #33109 from zhangxyjlu/steering-committee-results-2021
[zh]Add 2021-11-08-steering-committee-results-2021.md
2022-04-24 01:19:36 -07:00
Kubernetes Prow Robot e5d2145d17 Merge pull request #33146 from my-git9/ns-level-pss2
[zh] Update tutorials/security/ns-level-pss.md
2022-04-24 01:17:36 -07:00
xin.li a0fbfe2ae7 [zh] Update tutorials/security/ns-level-pss.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-24 16:09:34 +08:00
Sean Wei 649328ac2f Use JavaScript instead of Javascript 2022-04-24 11:54:22 +08:00
xin.li b5cc85ad69 [zh] Update security/apparmor.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-24 09:29:57 +08:00
zhangxiaoyang a1ff03e1e6 [zh]Add 2021-11-08-steering-committee-results-2021.md 2022-04-24 09:27:19 +08:00
Kubernetes Prow Robot e53215aaa8 Merge pull request #33148 from my-git9/stateful-application-zookeeper
[zh] Update zookeeper.md
2022-04-23 18:07:36 -07:00
Kubernetes Prow Robot b07b108e6e Merge pull request #33149 from kinzhi/kinzhi18
[zh]Sync english doc format
2022-04-23 18:05:36 -07:00
Kubernetes Prow Robot 23f066983f Merge pull request #33155 from kinzhi/kinzhi19
[zh]update content/zh/docs/concepts/services-networking/topology-aware-hints.md
2022-04-23 18:03:36 -07:00
Kubernetes Prow Robot 992eba2cef Merge pull request #33156 from kinzhi/kinzhi20
[zh]fix content/zh/docs/concepts/scheduling-eviction/pod-overhead.md
2022-04-23 17:05:36 -07:00
Kubernetes Prow Robot ad2133524f Merge pull request #33158 from kinzhi/kinzhi22
[zh]Fix format
2022-04-23 16:55:36 -07:00
Kubernetes Prow Robot 1bbf31c08d Merge pull request #33159 from Arhell/remove-space
[zh] remove whitespaces
2022-04-23 16:53:36 -07:00
Arhell c03e0ff944 [zh] remove whitespaces 2022-04-24 01:15:09 +03:00
wei.wang 15926508f3 [zh]Fix format 2022-04-24 03:30:33 +08:00
wei.wang 92d5b58e90 [zh]fix content/zh/docs/concepts/scheduling-eviction/pod-overhead.md 2022-04-24 01:50:14 +08:00
wei.wang ee9412445d [zh]update content/zh/docs/concepts/services-networking/topology-aware-hints.md 2022-04-24 01:41:24 +08:00
Kubernetes Prow Robot cbc2234938 Merge pull request #33079 from nonylene/patch-1
scheduling-eviction/pod-overhaed.md: Fix typo
2022-04-23 09:31:36 -07:00
nonylene 4759a9f652 scheduling-eviction/pod-overhaed.md: Fix a typo
Bustrable -> Burstable
2022-04-24 01:15:51 +09:00
xin.li 87772570f3 [zh] Update zookeeper.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 22:47:09 +08:00
wei.wang ff9e790f42 [zh]Sync english doc format 2022-04-23 22:42:52 +08:00
Kubernetes Prow Robot a56eb46c15 Merge pull request #33143 from my-git9/default-pod2
[zh] Sync examples/pods/security/seccomp/ga
2022-04-23 07:01:36 -07:00
Kubernetes Prow Robot d5d7911db9 Merge pull request #33142 from my-git9/memory-request-limit2
[zh] Sync examples/pods/resource/yaml
2022-04-23 06:55:36 -07:00
Kubernetes Prow Robot 97a798ea02 Merge pull request #33141 from my-git9/health-for-strangers2
[zh] Sync examples/priority-and-fairness/health-for-strangers.yaml
2022-04-23 06:51:36 -07:00
Kubernetes Prow Robot b4c8d6bbcc Merge pull request #33139 from kinzhi/kinzhi17
[zh]adjust the layout
2022-04-23 06:45:36 -07:00
Kubernetes Prow Robot 4a11c8522a Merge pull request #33137 from my-git9/StatefulSet-PVC-Auto-Deletion3
[zh] Update blog/2021-12-16-StatefulSet-PVC-Auto-Deletion.md
2022-04-23 06:43:36 -07:00
Kubernetes Prow Robot c21a98490c Merge pull request #33136 from my-git9/migrate-from-psp3
[zh] Update migrate-from-psp.md
2022-04-23 06:41:36 -07:00
xin.li efb56c01ba [zh] Sync application/zookeeper/zookerper.yaml
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 21:41:01 +08:00
xin.li c8e35e23f0 [zh] Sync examples/pods/security/seccomp/ga
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 21:35:41 +08:00
xin.li d239f341b2 [zh] Sync examples/pods/resource/yaml
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 21:31:24 +08:00
xin.li b86b43d273 [zh] Sync examples/priority-and-fairness/health-for-strangers.yaml
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 21:25:02 +08:00
Kubernetes Prow Robot ba5f32cc4c Merge pull request #33129 from my-git9/badlink1
[en] fix wrong link
2022-04-23 05:49:36 -07:00
Kubernetes Prow Robot 6a5bb3b725 Merge pull request #31976 from tengqm/zh-kubelet-cfg-v1beta1
[zh] Translate kubelet config v1beta1
2022-04-23 05:19:36 -07:00
wei.wang 0aca1901e3 [zh]adjust the layout 2022-04-23 19:00:43 +08:00
xin.li b31b7f86af [zh] Update blog/2021-12-16-StatefulSet-PVC-Auto-Deletion.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 18:44:16 +08:00
Kubernetes Prow Robot 287d581339 Merge pull request #33135 from Arhell/remove-space
[en] remove trailing whitespaces install-kubectl-windows.md
2022-04-23 03:41:36 -07:00
xin.li 7007e5049a [zh] Update migrate-from-psp.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 18:40:57 +08:00
Arhell 49114042bc [en] remove trailing whitespaces install-kubectl-windows.md 2022-04-23 13:08:45 +03:00
Kubernetes Prow Robot 5549336898 Merge pull request #33131 from my-git9/use-cascading-deletion2
[zh] fix the wrong link in use-cascading-deletion.md
2022-04-23 02:01:36 -07:00
xin.li f13a63baff [zh] fix the wrong link in use-cascading-deletion.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 14:37:17 +08:00
xin.li 7f624802ab [en] fix wrong link
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 14:33:25 +08:00
Kubernetes Prow Robot e5eeaba1eb Merge pull request #33127 from my-git9/statefulset-pvc-auto-delete
[en] fix wrong link
2022-04-22 22:29:36 -07:00
kinzhi c43e1ddb8f [zh]Update content/zh/docs/concepts/workloads/controllers/daemonset.md (#33120)
* [zh]Update content/zh/docs/concepts/workloads/controllers/daemonset.md

* Update content/zh/docs/concepts/workloads/controllers/daemonset.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/concepts/workloads/controllers/daemonset.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-22 21:51:36 -07:00
Kubernetes Prow Robot b96c88ae58 Merge pull request #33128 from my-git9/migrate-from-psp1
[en] fix wrong link
2022-04-22 21:49:35 -07:00
xin.li 1ab38bbaa1 [en] fix wrong link
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 11:33:52 +08:00
xin.li a27c23e081 [en] fix wrong link
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-23 11:13:02 +08:00
Qiming Teng e71768592e Tweak the Nodes page
Field names like `NodeReady`, `ConditionUnknown` etc are only meaningful
for developers, rather than users.
2022-04-23 10:56:34 +08:00
Kubernetes Prow Robot 285affba7e Merge pull request #33097 from MrErlison/wg-ptbr
Add content/pt-br/docs/reference/glossary/wg.md
2022-04-22 13:51:37 -07:00
Wang 4b85c7b058 [ja] Translate tasks/debug-application-cluster/debug-cluster into Japanese #30874 (#31087)
* done

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update debug-cluster.md

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Apply suggestions from code review

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update debug-cluster.md

* Update content/ja/docs/tasks/debug-application-cluster/debug-cluster.md

Co-authored-by: Ryota Yamada <ryota10069.tech5.jizi@gmail.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
Co-authored-by: Ryota Yamada <ryota10069.tech5.jizi@gmail.com>
2022-04-22 11:41:36 -07:00
Wang 6613b13b65 [ja] Translate tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you into Japanese (#31285)
* done

* change back

* done

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* fix

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: inductor(Kohei) <kela@inductor.me>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: inductor(Kohei) <kela@inductor.me>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: Ryota Yamada <ryota10069.tech5.jizi@gmail.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: Ryota Yamada <ryota10069.tech5.jizi@gmail.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

Co-authored-by: Ryota Yamada <ryota10069.tech5.jizi@gmail.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
Co-authored-by: inductor(Kohei) <kela@inductor.me>
Co-authored-by: Ryota Yamada <ryota10069.tech5.jizi@gmail.com>
2022-04-22 11:39:36 -07:00
Kubernetes Prow Robot 814ad64fe7 Merge pull request #33019 from Arhell/fix-code
[ja] fix a nit in the feature-state short code
2022-04-22 11:30:12 -07:00
Kubernetes Prow Robot 079f2592fc Merge pull request #32916 from tallclair/broken-links-ja
[ja] Clean up various broken links
2022-04-22 11:28:13 -07:00
Mr. Erlison 30f16e5fef Translate cross-SIG term 2022-04-22 13:54:57 -03:00
Kubernetes Prow Robot 919c6a07fd Merge pull request #33119 from MrErlison/api-group-ptbr
Add /pt-br/docs/reference/glossary/api-group.md
2022-04-22 06:04:12 -07:00
Mr. Erlison a626607539 Add /pt-br/docs/reference/glossary/api-group.md 2022-04-22 09:34:59 -03:00
Kubernetes Prow Robot 1613606a16 Merge pull request #32774 from miteshskj/daemonset-review
Remove stale information about pod selector.
2022-04-22 01:16:13 -07:00
kinzhi d63dbd782e [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md (#33068)
* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md

* [zh]update file content/zh/docs/reference/labels-annotations-taints/_index.md
2022-04-21 23:32:12 -07:00
kinzhi 359c7607e7 [zh]Update content/zh/docs/reference/access-authn-authz/rbac.md (#33108)
* [zh]Update content/zh/docs/reference/access-authn-authz/rbac.md

* [zh]Update content/zh/docs/reference/access-authn-authz/rbac.md
2022-04-21 22:16:12 -07:00
jpanda 04e30709f9 Fix hyperlink to CNCF on https://k8s.io/docs/home/ (#33038)
* [bugfix/fix-cncf-hyperlink-on-home] fix🐛: Explicitly set the margin-top property

* [bugfix/fix-cncf-hyperlink-on-home] fix🐛:  remove important

* [bugfix/fix-cncf-hyperlink-on-home] format🥚:  Add comments to indicate the role of css
2022-04-21 22:02:12 -07:00
Kubernetes Prow Robot 53803f0d06 Merge pull request #33047 from my-git9/token-review-v1
[zh] Update authentication-resouces/tokern-review-v1.md
2022-04-21 21:10:12 -07:00
xin.li f2c44002ff [zh] Update authentication-resouces/tokern-review-v1.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-22 11:24:25 +08:00
Kubernetes Prow Robot 0f6a9ee52f Merge pull request #33084 from my-git9/release-announcement
[zh] Update blog/2020-03-25-kubernetes-1.18-release-announcement.md
2022-04-21 19:56:12 -07:00
Kubernetes Prow Robot b42ec741cd Merge pull request #33083 from my-git9/Develop-A-Kubernetes-Controller
[zh] Update blog/2019-11-26-cloud-native-java-controller-sdk.md
2022-04-21 19:54:12 -07:00
Kubernetes Prow Robot 65b47f6325 Merge pull request #33085 from my-git9/kubernetes-1.17-release-announcement
[zh] Update blog/2019-12-09-kubernetes-release-announcement.md
2022-04-21 19:32:12 -07:00
Kubernetes Prow Robot 67984f7d7b Merge pull request #33104 from Arhell/upd-ver
[id] use for_k8s_version not for_kubernetes_version
2022-04-21 19:12:12 -07:00
Kubernetes Prow Robot 688010e123 Merge pull request #33087 from my-git9/code-of-conduct1
[zh] Update community/code-of-conduct.md
2022-04-21 19:10:12 -07:00
Mr. Erlison 5dc71848c3 Removed final line with this [-] 2022-04-21 19:34:57 -03:00
Arhell 83d77e1682 [id] use for_k8s_version not for_kubernetes_version 2022-04-22 01:04:09 +03:00
Kubernetes Prow Robot 7acae8a086 Merge pull request #33073 from jihoon-seo/220420_Update_api-reference_shortcode
Update `api-reference` shortcode
2022-04-21 15:00:12 -07:00
Kubernetes Prow Robot e602482da6 Merge pull request #33103 from cjcullen/patch-2
Update rbac.md
2022-04-21 14:52:13 -07:00
CJ Cullen a3638c4fde Update rbac.md
Fix description of magic service account group.
2022-04-21 14:07:32 -07:00
Mr. Erlison 63313c68dc Add content/pt-br/docs/reference/glossary/wg.md 2022-04-21 14:23:01 -03:00
Mr. Erlison 88403cfc77 Add content/pt-br/docs/reference/glossary/annotation.md 2022-04-21 13:27:28 -03:00
xin.li f0eb331689 [zh] Update community/code-of-conduct.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 23:12:59 +08:00
xin.li f8a88c5f38 [zh] Update blog/2019-12-09-kubernetes-release-announcement.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 22:42:19 +08:00
xin.li 5829407558 [zh] Update blog/2020-03-25-kubernetes-1.18-release-announcement.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 22:24:14 +08:00
xin.li f10a5e6a9e [zh] Update blog/2019-11-26-cloud-native-java-controller-sdk.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 22:20:46 +08:00
kinzhi 84184494fc [zh]update file content/zh/docs/tasks/network/customize-hosts-file-for-pods.md (#33042)
* [zh]update file content/zh/docs/tasks/network/customize-hosts-file-for-pods.md

* [zh]update file content/zh/docs/tasks/network/customize-hosts-file-for-pods.md

* [zh]update file content/zh/docs/tasks/network/customize-hosts-file-for-pods.md

* [zh]update file content/zh/docs/tasks/network/customize-hosts-file-for-pods.md

* Update content/zh/docs/tasks/network/customize-hosts-file-for-pods.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-21 07:10:58 -07:00
Kubernetes Prow Robot 99f28e6eb1 Merge pull request #33008 from my-git9/deprecation-policy2
[zh] Update deprecation-policy.md
2022-04-21 04:20:58 -07:00
Kubernetes Prow Robot 0ccbd6ebca Merge pull request #33080 from liuhanguang123/main
Update deployment.md
2022-04-21 02:34:58 -07:00
kinzhi 81a8d46bd3 [zh]update file content/zh/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md (#33043)
* [zh]update file content/zh/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

* [zh]update file content/zh/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

* [zh]update file content/zh/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md

* [zh]update file content/zh/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you.md
2022-04-21 02:32:59 -07:00
Kubernetes Prow Robot 245e9280f7 Merge pull request #33078 from liuhanguang123/patch-1
Update field-selectors.md
2022-04-21 02:28:58 -07:00
liuhanguang123 8d1bfee7c1 Update content/zh/docs/concepts/overview/working-with-objects/field-selectors.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-21 16:47:59 +08:00
liuhanguang123 ff612509b4 Update deployment.md
Fixed the difference between the Chinese and English versions
2022-04-21 16:45:12 +08:00
Arhell fd1d03cc5f [ja] fix a nit in the feature-state short code 2022-04-21 11:43:19 +03:00
liuhanguang123 48db2e4d1d Update field-selectors.md
Update the bracket on the right to become tilted
2022-04-21 14:40:30 +08:00
Kubernetes Prow Robot 9d74338c99 Merge pull request #33052 from kinzhi/kinzhi9
[zh]update file content/zh/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
2022-04-20 21:06:56 -07:00
Kubernetes Prow Robot 088c7fa34f Merge pull request #33074 from my-git9/daemonset2
[zh] Update /content/zh/docs/concepts/workloads/controllers/daemonset.md
2022-04-20 19:28:57 -07:00
Kubernetes Prow Robot ecd68d9852 Merge pull request #33057 from my-git9/kubelet-integration2
[zh] Sync kubeadm/kubelet-integration.md
2022-04-20 19:20:57 -07:00
Kubernetes Prow Robot 1fb1cba101 Merge pull request #33013 from my-git9/debug-pod-replication-controller2
[zh] Update debug-pod-replication-controller.md
2022-04-20 19:18:57 -07:00
Kubernetes Prow Robot 23af551365 Merge pull request #33060 from my-git9/2022-05-03-dockershim-historical-context
[zh] add blog/2022-05-03-dockershim-historical-context.md
2022-04-20 19:16:57 -07:00
xin.li 57b2d14c2a [zh] Update /content/zh/docs/concepts/workloads/controllers/daemonset.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 10:02:01 +08:00
xin.li 480edf2561 [zh] add blog/2022-05-03-dockershim-historical-context.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 09:30:49 +08:00
xin.li d931086b19 [zh] Sync kubeadm/kubelet-integration.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 09:26:55 +08:00
xin.li 2f27924d32 [zh] Update debug-pod-replication-controller.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-21 09:22:57 +08:00
Kubernetes Prow Robot 03cc1cbcd0 Merge pull request #33053 from kinzhi/kinzhi10
[zh]update file content/zh/docs/tasks/administer-cluster/kubeadm/adding-windows-nodes.md
2022-04-20 18:16:59 -07:00
Kubernetes Prow Robot ac425aee81 Merge pull request #33067 from kinzhi/kinzhi13
[zh]update file content/zh/docs/concepts/services-networking/ingress.md
2022-04-20 18:02:59 -07:00
Jihoon Seo c6b6e5acb6 Update api-reference shortcode 2022-04-21 10:02:26 +09:00
Kubernetes Prow Robot c1294b4c76 Merge pull request #33062 from my-git9/examplego
[zh] Sync examples_test.go
2022-04-20 18:00:58 -07:00
Kubernetes Prow Robot bb45e8a2ed Merge pull request #33010 from my-git9/ingress-minikube2
[zh] Update access-cluster.md
2022-04-20 17:58:59 -07:00
Kubernetes Prow Robot 46df8eb2a6 Merge pull request #33063 from my-git9/kubernetes-1-20-release-announcement
[zh] Update blog/kubernetes-1-20-release-announcement.md
2022-04-20 17:57:00 -07:00
Kubernetes Prow Robot d60eff2299 Merge pull request #33065 from kinzhi/kinzhi11
[zh]update file content/zh/docs/reference/access-authn-authz/abac.md
2022-04-20 17:55:00 -07:00
Kubernetes Prow Robot e6bd5b9395 Merge pull request #33066 from kinzhi/kinzhi12
[zh]update file content/zh/docs/reference/access-authn-authz/rbac.md
2022-04-20 17:52:59 -07:00
Kubernetes Prow Robot 82c1c11b64 Merge pull request #33071 from atoato88/use-feature-k8s-version
use for_k8s_version not for_kubernetes_version
2022-04-20 17:47:00 -07:00
Akihito INOH c4b703f11f use for_k8s_version not for_kubernetes_version
This commit use "for_k8s_version" property on feature-state short
code, not "for_kubernetes_version".
2022-04-21 06:43:44 +09:00
wei.wang 1e6e5ad6b6 [zh]update file content/zh/docs/concepts/services-networking/ingress.md 2022-04-21 01:32:46 +08:00
wei.wang 1e6c02e1cd [zh]update file content/zh/docs/reference/access-authn-authz/rbac.md 2022-04-21 01:25:21 +08:00
wei.wang ec3c51ecf7 [zh]update file content/zh/docs/reference/access-authn-authz/abac.md 2022-04-21 01:11:48 +08:00
Kubernetes Prow Robot c62c9e9c61 Merge pull request #32909 from Sea-n/deprecate-ext
Remove deprecated `extensions` API group in document
2022-04-20 08:57:43 -07:00
Humberto 62e61461d9 Update components.md 2022-04-20 11:22:52 -03:00
xin.li fd32dc1159 [zh] Update access-cluster.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-20 22:14:49 +08:00
xin.li 134c25a1d8 [zh] Update blog/kubernetes-1-20-release-announcement.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-20 22:12:09 +08:00
xin.li ca25763e5e [zh] Sync examples_test.go
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-20 21:53:05 +08:00
Kubernetes Prow Robot 7c09c7b4be Merge pull request #32997 from guresonur/patch-2
Update ingress.md
2022-04-20 04:31:40 -07:00
Priyanshu Ahlawat 320d290da5 Add Traffic Shaping Annotations (#32549)
* Update _index.md

* Update _index.md

* Update _index.md

* Update _index.md

* Update _index.md
2022-04-20 04:29:41 -07:00
wei.wang 63cf9b57c2 [zh]update file content/zh/docs/tasks/administer-cluster/kubeadm/adding-windows-nodes.md 2022-04-20 18:20:34 +08:00
wei.wang bd3eb7ad6f [zh]update file content/en/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md 2022-04-20 18:14:27 +08:00
Kubernetes Prow Robot 955ed016df Merge pull request #33044 from w4-jaesup/patch-1
[ko] fix assign-pod-node.md
2022-04-20 01:45:42 -07:00
Kubernetes Prow Robot bad34de21d Merge pull request #33045 from reylejano/revert-32941
Revert changes from PR 32941 that merged before 1.24 release
2022-04-20 01:39:40 -07:00
Kubernetes Prow Robot 2f3d505a7a Merge pull request #33037 from mengjiao-liu/add_blog_moving-on-from-dockershim
[zh]Add 2022-01-07-kubernetes-is-moving-on-from-dockershim.md
2022-04-19 22:43:40 -07:00
Shivam Sharma ac879ddbaa Hyperlink to support period update (#33007)
* Hyperlink to support period update

* Update _index.md
2022-04-19 21:21:41 -07:00
Mengjiao Liu 0050ad941d [zh]Add 2022-01-07-kubernetes-is-moving-on-from-dockershim.md 2022-04-20 11:20:03 +08:00
Kubernetes Prow Robot 02968fde21 Merge pull request #33035 from zaunist/access-cluster-service
[zh]: Rsync access-cluster-service.md
2022-04-19 15:45:43 -07:00
Rey Lejano 28cea36e93 revert changes from PR 32941 that merged before 1.24 release 2022-04-19 14:50:25 -07:00
Jaesup Kwak 42f4abba4a Update assign-pod-node.md 2022-04-20 01:42:23 +09:00
zaunist 3458b424e9 docs: Rsync access-cluster-service 2022-04-19 22:09:45 +08:00
Kat Cosgrove f23de579b3 adds historical context of the dockershim removal blog (#32697)
* adds historical context of the dockershim removal blog

* Update content/en/blog/_posts/2022-04-19-dockershim-historical-context.md

Co-authored-by: Rey Lejano <rlejano@gmail.com>

* Update content/en/blog/_posts/2022-04-19-dockershim-historical-context.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-04-19-dockershim-historical-context.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-04-19-dockershim-historical-context.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-04-19-dockershim-historical-context.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-04-19-dockershim-historical-context.md

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>

* Update content/en/blog/_posts/2022-04-19-dockershim-historical-context.md

Co-authored-by: Sergey Kanzhelev <S.Kanzhelev@live.com>

* clarity and grammar edits

* updates publication date and filename

Co-authored-by: Rey Lejano <rlejano@gmail.com>
Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>
Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>
Co-authored-by: Sergey Kanzhelev <S.Kanzhelev@live.com>
2022-04-19 06:39:28 -07:00
Kubernetes Prow Robot fea06301e4 Merge pull request #33028 from kinzhi/kinzhi3
[zh]update file content/zh/docs/tasks/administer-cluster/kubeadm/adding-windows-nodes.md
2022-04-19 05:11:16 -07:00
Kubernetes Prow Robot 4c8d6126f0 Merge pull request #33022 from kinzhi/main
[zh]update file content/zh/blog/_index.md
2022-04-19 05:09:17 -07:00
Kubernetes Prow Robot a88928a518 Merge pull request #33024 from AllenZMC/patch-1
[zh] fix spelling
2022-04-19 05:03:16 -07:00
Kubernetes Prow Robot f94ee9f972 Merge pull request #33025 from my-git9/install-kubeadm2
[zh] Sync tools/kubeadm/install-kubeadm.md
2022-04-19 05:01:16 -07:00
wei.wang 0e6d0b6bab [zh]update file content/zh/docs/tasks/administer-cluster/kubeadm/adding-windows-nodes.md 2022-04-19 19:21:17 +08:00
Kubernetes Prow Robot 65daf9ca54 Merge pull request #33020 from HirazawaUi/main
[zh]Fix the format of scheduling/config.md
2022-04-19 02:55:17 -07:00
xin.li 53522d88b1 [zh] Sync tools/kubeadm/install-kubeadm.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-19 17:13:39 +08:00
Zhongmin 1c4980445f fix spelling 2022-04-19 16:50:06 +08:00
Kubernetes Prow Robot 6708ea3c87 Merge pull request #32993 from CodyBuilder-dev/patch-1
[ko] Correct typo in object-management.md
2022-04-19 00:09:16 -07:00
wei.wang 6cd17b446d update file content/zh/blog/_index.md 2022-04-19 15:08:09 +08:00
HirazawaUi 208ffb99ac Fix the format of scheduling/config.md 2022-04-19 15:01:25 +08:00
syxunion 31431d3ccf translate content/en/docs/reference/kubernetes-api/common-parameters/common-parameters.md (#32949)
* Modify the translation

* Modify according to Suggestions

* Modify according to Suggestions
2022-04-18 23:09:16 -07:00
Kubernetes Prow Robot 3dda62aa82 Merge pull request #33016 from Babapool/dockershim-migration-msg
Reword dockershim migration recommendation
2022-04-18 20:39:17 -07:00
Kubernetes Prow Robot cb885f51c9 Merge pull request #33011 from howieyuen/images
[zh]Sync content/zh/docs/concepts/containers/images.md
2022-04-18 20:37:17 -07:00
Kubernetes Prow Robot f02b0ac91f Merge pull request #33015 from Icarus9913/patch-1
fix chinese translation mistake
2022-04-18 19:51:18 -07:00
Kubernetes Prow Robot 795cc5d74f Merge pull request #33014 from my-git9/determine-reason-pod-failure2
[zh] update determine-reason-pod-failure.md
2022-04-18 19:49:17 -07:00
Kubernetes Prow Robot b398ada880 Merge pull request #32951 from HirazawaUi/main
[zh] Update scheduling/config.md
2022-04-18 19:45:17 -07:00
howieyuen 0a667fcc2d [zh]Sync content/zh/docs/concepts/containers/images.md 2022-04-19 10:31:40 +08:00
Kubernetes Prow Robot 4ff6f32121 Merge pull request #33005 from mengjiao-liu/sync_static_pod
[zh]Sync static-pod file
2022-04-18 19:31:17 -07:00
Kubernetes Prow Robot 6e5451d666 Merge pull request #32471 from serewicz/patch-2
install-kubeadm: use nc instead of telnet
2022-04-18 19:17:18 -07:00
Kubernetes Prow Robot 6541860e63 Merge pull request #32941 from chrisnegus/dockershim-shortcode-pages
Add dockershim shortcode to appropriate pages
2022-04-18 17:17:50 -07:00
Christopher Negus fcdf66a1fd Deleted a blank line 2022-04-18 23:41:41 +00:00
Christopher Negus ebc817852f Add dockershim shortcode to other files 2022-04-18 23:41:41 +00:00
Kubernetes Prow Robot 22d86412bf Merge pull request #32826 from chrisnegus/dockershim-shortcode
Create dockershim shortcode
2022-04-18 16:09:50 -07:00
Christopher Negus ee36e095d9 Reworded dockershim message 2022-04-18 22:58:03 +00:00
Vitthal Sai 98d8be323f Reword dockershim migration recommendation 2022-04-18 23:19:58 +05:30
Christopher Negus 6d560379a8 Create dockershim shortcode 2022-04-18 17:13:23 +00:00
serewicz 5750981c00 Update content/en/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>
2022-04-18 11:25:13 -05:00
Icarus9913 80ad09f51b fix chinese translation mistake 2022-04-19 00:23:27 +08:00
xin.li 6f0de11cc3 [zh] Update debug-pod-replication-controller.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-18 23:26:55 +08:00
HirazawaUi 291e7ab873 Update scheduling/config.md 2022-04-18 23:17:57 +08:00
xin.li 6ce860aa89 [zh] Update deprecation-policy.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-18 21:54:44 +08:00
Kubernetes Prow Robot a8b1be1d5c Merge pull request #33012 from my-git9/declare-network-policy2
[zh] Update declare-network-policy.md
2022-04-18 06:36:41 -07:00
Kubernetes Prow Robot 60a36c7dcc Merge pull request #33009 from my-git9/Dual-stack
[zh] Update dual-stack-support.md
2022-04-18 06:26:41 -07:00
Mengjiao Liu bd0d8b79dd [zh]Sync static-pod file 2022-04-18 21:08:23 +08:00
xin.li 3a1ecd2138 [zh] Update declare-network-policy.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-18 20:58:30 +08:00
Kubernetes Prow Robot bee30a8eae Merge pull request #32995 from howieyuen/client-authentication-v1beta1
[zh] translate zh/docs/reference/config-api/client-authentication.v1beta1
2022-04-18 05:52:41 -07:00
xin.li aa0ca9fe41 [zh] Update dual-stack-support.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-18 20:45:35 +08:00
Kubernetes Prow Robot 2dffc165f4 Merge pull request #32974 from my-git9/kubeadm-reconfigure
[zh] translate kubeadm-reconfigure.md
2022-04-18 05:34:41 -07:00
howieyuen 36be4cb47a [zh] translate zh/docs/reference/config-api/client-authentication.v1beta1 2022-04-18 19:35:31 +08:00
Kubernetes Prow Robot 3470795b2a Merge pull request #33004 from zaunist/access-cluster-api
[zh]: Rsync access-cluster-api.md
2022-04-18 04:08:42 -07:00
Kubernetes Prow Robot c83b6390e2 Merge pull request #32964 from 0xff-dev/main
[zh] sync horizontal-pod-autoscale.md
2022-04-18 02:46:42 -07:00
0xff-dev d430cf1a34 [zh] sync horizontal-pod-autoscale.md 2022-04-18 17:35:32 +08:00
zaunist 53cec5e6d0 docs: Rsync access-cluster-api.md 2022-04-18 15:53:35 +08:00
Onur 50e01a032a Update content/en/docs/concepts/services-networking/ingress.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-18 09:28:49 +03:00
Kubernetes Prow Robot 0ea46664bf Merge pull request #32968 from my-git9/quality-service-pod1
[zh] Update quality-service-pod.md
2022-04-17 22:48:41 -07:00
xin.li b1cbb92dba [zh] Update quality-service-pod.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-18 13:27:27 +08:00
Kubernetes Prow Robot 89c91ff2c5 Merge pull request #32934 from sftim/20220414_fix_git_ownership_trust_concern
Work around git directory ownership change check
2022-04-17 21:24:41 -07:00
Kubernetes Prow Robot 13a928bef5 Merge pull request #32954 from Sea-n/fix-id
[id] Fix Markdown format
2022-04-17 19:44:41 -07:00
Kubernetes Prow Robot 1f2556375d Merge pull request #32996 from my-git9/network-policies2
[zh] Update network-policies.md
2022-04-17 18:46:42 -07:00
Kubernetes Prow Robot 93c301ad13 Merge pull request #32981 from my-git9/policy-resources
[zh] Sync policy-resources/_index.md
2022-04-17 18:44:41 -07:00
Qiming Teng 5d099dba12 [zh] Translate kubelet config v1beta1 2022-04-18 09:41:43 +08:00
xin.li 69984b9616 [zh] Update network-policies.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-18 09:11:23 +08:00
Kubernetes Prow Robot f490abd9b4 Merge pull request #32932 from TinySong/update-outdate-file
[zh] update outdate setup-konnectivity file
2022-04-17 17:54:41 -07:00
Onur 70c7785cdd Update ingress.md
'spec' is just another field that any Kubernetes object (Ingress here) needs.
2022-04-17 20:02:10 +03:00
song 9b4516d8fe [zh] update outdate setup-konnectivity file 2022-04-17 22:16:41 +08:00
Kubernetes Prow Robot 09b773966b Merge pull request #32955 from Sea-n/fix-fr
[fr] Fix Markdown format
2022-04-17 01:36:40 -07:00
CodyBuilder-dev 9a90377a14 Update object-management.md 2022-04-17 13:53:53 +09:00
xin.li d4fb60ae20 [zh] Sync policy-resources/_index.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-17 12:17:06 +08:00
Kubernetes Prow Robot 3920b5e71f Merge pull request #32813 from tengqm/networkpolicy-example
Move NetworkPolicy into examples
2022-04-16 13:57:10 -07:00
Kubernetes Prow Robot 19ad6cb714 Merge pull request #32966 from Arhell/fix-code
[id] fix a nit in the feature-state short code
2022-04-16 09:05:10 -07:00
Kubernetes Prow Robot f140406dec Merge pull request #32948 from Arhell/upd-value
[id] updated allowedTopologies values format
2022-04-16 09:03:10 -07:00
Kubernetes Prow Robot 78f30d22ee Merge pull request #32915 from tallclair/broken-links-it
[it] Clean up various broken links
2022-04-16 08:59:11 -07:00
Sean Wei 613bb080ff Remove deprecated extensions API group in document 2022-04-16 21:56:25 +08:00
Kubernetes Prow Robot 549a67b303 Merge pull request #32985 from my-git9/install-kubectl-linux2
[zh] update install-kubectl-linux.md
2022-04-16 06:51:10 -07:00
Kubernetes Prow Robot 41933c5f9e Merge pull request #32983 from my-git9/create-hostprocess-pod
[zh] Update  create-hostprocess-pod.md
2022-04-16 06:49:10 -07:00
Kubernetes Prow Robot 474addc07a Merge pull request #32982 from my-git9/workload-resources
[zh] add dir workload-resources'
2022-04-16 06:47:10 -07:00
Kubernetes Prow Robot 6cfe3f5c5b Merge pull request #32980 from my-git9/extend-resources2
[zh] add dir extend-resources
2022-04-16 06:45:10 -07:00
Kubernetes Prow Robot a466967f56 Merge pull request #32978 from my-git9/cluster-resources
[zh] Update cluster-resources/_index.md
2022-04-16 06:43:10 -07:00
Kubernetes Prow Robot af39584dae Merge pull request #32977 from my-git9/Authorization
[zh] Create dir authorization-resources
2022-04-16 06:41:10 -07:00
Kubernetes Prow Robot b1693de98c Merge pull request #32979 from my-git9/common-parameters
[zh] Sync config-and-storage-resources/_index.md
2022-04-16 06:37:10 -07:00
xin.li 8dcdc15b04 [zh] translate kubeadm-reconfigure.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 21:25:58 +08:00
Kubernetes Prow Robot 8ac6b0360c Merge pull request #32923 from jai/jai/add-app-labels-well-known
Register and properly document recommended workload labels
2022-04-16 04:35:11 -07:00
196Ikuchil 97295ed88f Improvement for en/docs/reference/glossary/api-eviction.md (#32959)
* fix:add description of PodDisruptionBudgets and hyperlink

* Update api-eviction.md
2022-04-16 04:33:10 -07:00
Kubernetes Prow Robot 6213b9368f Merge pull request #32963 from Sea-n/remove-space
Remove space in filename
2022-04-16 04:29:10 -07:00
Kubernetes Prow Robot b43ee14fba Merge pull request #32962 from Sea-n/change-filename
Rename non-ASCII filename
2022-04-16 04:27:10 -07:00
xin.li 72799df83f [zh] update install-kubectl-linux.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 18:13:36 +08:00
xin.li 3ad1ecf396 [zh] Update create-hostprocess-pod.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 18:09:54 +08:00
xin.li 4be6562f2c [zh] add dir workload-resources'
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 18:05:44 +08:00
xin.li 1225a7ce39 add dir extend-resources
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 17:57:27 +08:00
xin.li b4d5d8965b [zh] Update config-and-storage-resources/_index.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 17:54:46 +08:00
xin.li 1a440c7111 [zh] Create dir authorization-resources
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 17:50:45 +08:00
xin.li fc8b4f0dac [zh] Update cluster-resources/_index.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 17:47:16 +08:00
Kubernetes Prow Robot 26b33f3885 Merge pull request #32976 from my-git9/Authentication
[zh] Create dir authentication-resources
2022-04-16 02:47:10 -07:00
xin.li 2875b151b9 [zh] Create dir authentication-resources
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 17:44:36 +08:00
Kubernetes Prow Robot 4fbbfd7895 Merge pull request #32975 from my-git9/service-resources
[zh] add dir /reference/kubernetes-api/service-resources
2022-04-16 02:41:10 -07:00
xin.li 4d218f16c4 [zh] add dir /reference/kubernetes-api/service-resources
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 17:39:22 +08:00
Kubernetes Prow Robot 2e08644bf0 Merge pull request #32973 from my-git9/control-plane-flags2
[zh] Update control-plane-flags.md
2022-04-16 02:39:10 -07:00
xin.li ffc34de946 [zh] Update control-plane-flags.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 17:28:45 +08:00
Kubernetes Prow Robot 7962632a49 Merge pull request #32520 from howieyuen/ref_api_common_status
[zh]translate content/docs/reference/kubernetes-api/common-definition…
2022-04-16 02:21:10 -07:00
Kubernetes Prow Robot 3681ef47d0 Merge pull request #32972 from my-git9/contribute-upstream2
[zh]Update contribute-upstream.md
2022-04-16 01:53:10 -07:00
Kubernetes Prow Robot 56a5789efa Merge pull request #32971 from my-git9/pod-topology-spread-constraints2
[zh] Update pod-topology-spread-constraints.md
2022-04-16 01:51:12 -07:00
Kubernetes Prow Robot a2f35492eb Merge pull request #32969 from my-git9/runtime-class2
[zh] Update runtime-class.md
2022-04-16 01:49:12 -07:00
Kubernetes Prow Robot f5679b61ae Merge pull request #32970 from my-git9/dns-pod-service2
[zh] Update dns-pod-service.md
2022-04-16 01:47:12 -07:00
Kubernetes Prow Robot 255899ae35 Merge pull request #32917 from tallclair/broken-links-ko
[ko] Clean up various broken links
2022-04-16 01:43:12 -07:00
xin.li 2c95aad902 [zh]Update contribute-upstream.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 15:20:17 +08:00
xin.li 6b5c8a3291 [zh] Update pod-topology-spread-constraints.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 15:15:45 +08:00
lishuai-hw f4fd890221 translate this page into Chinese: https://kubernetes.io/blog/2022/01/… (#32953)
* translate this page into Chinese: https://kubernetes.io/blog/2022/01/10/meet-our-contributors-india-ep-01/

* translate this page into Chinese (add one space before/after English words): https://kubernetes.io/blog/2022/01/10/meet-our-contributors-india-ep-01/

* translate this page into Chinese (add one space before/after English words): https://kubernetes.io/blog/2022/01/10/meet-our-contributors-india-ep-01/
2022-04-16 00:11:10 -07:00
xin.li 2ec3334f6a [zh] Update dns-pod-service.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 15:10:02 +08:00
xin.li c808dd1e9e [zh] Update runtime-class.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-16 15:04:32 +08:00
Kubernetes Prow Robot ee11573cc1 Merge pull request #32961 from mengjiao-liu/sync_create_hostprocess_pod_zh
[zh]Sync pull-image-private-registry.md
2022-04-15 20:43:10 -07:00
Arhell a9b44a09c6 [id] fix a nit in the feature-state short code 2022-04-16 00:34:27 +03:00
Kubernetes Prow Robot e6ad2431e5 Merge pull request #32956 from Sea-n/fix-es
[es] Fix Markdown format
2022-04-15 08:57:10 -07:00
Mengjiao Liu d82f6d402f [zh]Sync pull-image-private-registry.md 2022-04-15 22:27:18 +08:00
Kubernetes Prow Robot ca5792e572 Merge pull request #32958 from Sea-n/fix-pt-br
[pt-br] Fix Markdown format
2022-04-15 06:11:10 -07:00
Sean Wei 73ecc2aacf Remove space in filename 2022-04-15 20:58:06 +08:00
Kubernetes Prow Robot dd54eb8e24 Merge pull request #32957 from Sea-n/fix-de
[de] Fix Markdown format
2022-04-15 05:53:10 -07:00
Sean Wei bcef1ba452 Rename non-ASCII filename 2022-04-15 20:47:49 +08:00
Kubernetes Prow Robot 3bbffadea1 Merge pull request #32907 from Sea-n/fix-zh
[zh] Fix Markdown format
2022-04-15 03:31:10 -07:00
Kubernetes Prow Robot b61c0d6963 Merge pull request #32899 from mengjiao-liu/add_blog_1_24_removals_and_deprecations_zh
[zh] Add 2022-04-07-Kubernetes-1-24-removals-and-deprecations.md
2022-04-15 03:07:10 -07:00
Kubernetes Prow Robot f37bd3849b Merge pull request #32947 from ydFu/update-addons
[zh] Sync cluster-administration pages for addons.md
2022-04-15 03:03:10 -07:00
Kubernetes Prow Robot 4d766bc2e4 Merge pull request #31383 from KobayashiD27/translate-concepts/services-networking/topology-aware-hints
[ja]Translate concepts/services networking/topology aware hints into Japanese
2022-04-15 02:49:10 -07:00
Kubernetes Prow Robot 376b12511f Merge pull request #31333 from jberkus/jalink
[ja] Fix link to dev@kubernetes mailing list
2022-04-15 02:43:10 -07:00
Kubernetes Prow Robot 94c9a3dd61 Merge pull request #32084 from 196Ikuchil/policies
[ja] Translate /docs/reference/scheduling/policies/ into Japanese
2022-04-15 02:41:10 -07:00
Sean Wei f8b15c9bea [zh] Fix Markdown format 2022-04-15 16:47:31 +08:00
Mengjiao Liu 4a7a35e06a [zh] Add 2022-04-07-Kubernetes-1-24-removals-and-deprecations.md 2022-04-15 16:25:51 +08:00
Kubernetes Prow Robot 0c7e131a11 Merge pull request #32865 from zaunist/kubelet-in-users
[zh] Rsync kubelet-in-userns.md
2022-04-15 01:17:10 -07:00
zaunist 3e54683ac7 docs: rsync kubelet-in-userns 2022-04-15 15:28:14 +08:00
ydFu 50615919a2 [zh] Sync cluster-administration pages for addons.md
* Sync with english version in 'Fix Contiv addon link.' (#32938)

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2022-04-15 15:16:28 +08:00
Arhell e8ad3bb411 [id] updated allowedTopologies values format 2022-04-15 09:45:02 +03:00
Kubernetes Prow Robot b3d6cddcc6 Merge pull request #32870 from Arhell/upd-link
[id] update proposal link to point to archive
2022-04-14 23:15:10 -07:00
Kubernetes Prow Robot 45747ba56e Merge pull request #32929 from mengjiao-liu/sync_kustomization_zh
[zh]Sync kustomization.md
2022-04-14 22:53:11 -07:00
Kubernetes Prow Robot a669fd860b Merge pull request #32928 from mengjiao-liu/sync_configure-pod-configmap_zh
[zh]Reflect the changed behaviour for multiple use of --from-env-file in ConfigMap creation
2022-04-14 22:51:10 -07:00
Kubernetes Prow Robot 5c57cce5d6 Merge pull request #32711 from astraw99/patch-4
Update quality-service-pod.md
2022-04-14 22:41:10 -07:00
Mengjiao Liu a7daeaa871 [zh]Sync kustomization.md 2022-04-15 10:20:32 +08:00
Kubernetes Prow Robot 9b7d904bc4 Merge pull request #32926 from mengjiao-liu/sync_debug_application_zh
[zh]Sync debug-application.md
2022-04-14 19:03:09 -07:00
Kubernetes Prow Robot 6fb52c5790 Merge pull request #32897 from Sea-n/main
[en] Fix Markdown formats
2022-04-14 18:17:10 -07:00
Kubernetes Prow Robot 44269ec404 Merge pull request #32898 from mengjiao-liu/fix_change_runtime_containerd_title_zh
[zh] Fix change-runtime-containerd.md title display error
2022-04-14 17:25:09 -07:00
Kubernetes Prow Robot df7785e4fe Merge pull request #32759 from AkihiroSuda/update-containerd-cri-link
runtime-class.md: update containerd/cri link
2022-04-14 17:23:10 -07:00
Kubernetes Prow Robot 8250200d0a Merge pull request #30507 from riita10069/riita10069-patch-1
[ja]Update `content/ja/docs/concepts/configuration/secret.md`
2022-04-14 11:25:35 -07:00
Kubernetes Prow Robot 57fc90807a Merge pull request #30161 from riita10069/feature/concepts/security/pod-security-standards
[ja]Update pod-security-standards.md
2022-04-14 11:23:36 -07:00
Kubernetes Prow Robot ca50f67c88 Merge pull request #32083 from 196Ikuchil/reference_scheduling_config
[ja] Translate reference/scheduling/config/ & reference/glossary/replica-set.md into Japanese
2022-04-14 11:21:35 -07:00
Kubernetes Prow Robot 0de3784c77 Merge pull request #31935 from 196Ikuchil/translate_resource_bin_packing
[ja] Translate concepts/scheduling-eviction/resource-bin-packing/ into Japanese
2022-04-14 11:17:35 -07:00
Kubernetes Prow Robot c4d186d68c Merge pull request #32872 from mengjiao-liu/sync_mysql_cm_ja
[ja]Sync mysql-configmap.yaml
2022-04-14 11:15:35 -07:00
Kubernetes Prow Robot 0fc468096c Merge pull request #32678 from 196Ikuchil/fix_kube_scheduler
[ja] Update ja/docs/concepts/scheduling-eviction/kube-scheduler.md to fix the weight and some links
2022-04-14 11:13:35 -07:00
Kubernetes Prow Robot 55b4635e9d Merge pull request #30157 from riita10069/feature/concepts/architecture/nodes
[ja]Update `content/ja/docs/concepts/architecture/nodes.md`
2022-04-14 11:11:36 -07:00
Kubernetes Prow Robot 6e87cbe551 Merge pull request #32906 from sftim/20220413_update_docsy
Update Docsy to v0.2.0
2022-04-14 10:56:48 -07:00
Kubernetes Prow Robot 165fcc818b Merge pull request #32938 from tallclair/contivvpp
Fix Contiv addon link.
2022-04-14 10:14:47 -07:00
Tim Allclair 2dbbadd7d7 Fix contiv link 2022-04-14 09:49:19 -07:00
Tim Allclair 33d6f7a697 Revert "Delete broken link (contiv.io)"
This reverts commit b0e4e7a03c.
2022-04-14 09:47:26 -07:00
Tim Bannister edb9f05b84 Work around git directory ownership change check
Add a mitigation for the extra checks that Git added in response to
CVE-2022-24765.
2022-04-14 17:12:53 +01:00
Mengjiao Liu 4f70538d4f [zh] Fix change-runtime-containerd.md title display error 2022-04-14 21:04:03 +08:00
Mengjiao Liu 32975b8bda [zh]Reflect the changed behaviour for multiple use of --from-env-file in ConfigMap creation 2022-04-14 20:18:55 +08:00
Kubernetes Prow Robot 108434f8b1 Merge pull request #32925 from mengjiao-liu/synx_change_runtime_containerd_zh
[zh]Sync debug-running-pod.md
2022-04-14 03:56:45 -07:00
Mengjiao Liu 5588e0ce24 [zh]Sync debug-application.md 2022-04-14 18:43:20 +08:00
Mengjiao Liu 919dd1f4a8 [zh]Sync debug-running-pod.md 2022-04-14 18:21:52 +08:00
Kubernetes Prow Robot 9e3fa7be50 Merge pull request #32912 from tallclair/broken-links-de
[de] Clean up various broken links
2022-04-14 01:02:46 -07:00
Jai Govindani 795672d928 feat(labels-annotations-taints): Add recommended labels 2022-04-14 09:24:21 +07:00
Mitesh Jain fbd099a209 Adding more information to Installing kubeadm step. (#32884)
* Adding more information to Installing kubeadm step.

* Adding more information to installing kubeadm step.

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>

* Remove unnecessary quotes.

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>
2022-04-13 17:54:46 -07:00
Kubernetes Prow Robot 58bf5a37da Merge pull request #32821 from howieyuen/object-meta
[zh]translate content/zh/docs/reference/kubernetes-api/common-definitions/object-meta.md into Chinese
2022-04-13 17:20:47 -07:00
Tim Allclair 00a6dc0c10 [ru] Clean up various broken links 2022-04-13 17:09:02 -07:00
Tim Allclair 0f087d5d7f [ko] Clean up various broken links 2022-04-13 17:06:02 -07:00
Tim Allclair af059477fb [ja] Clean up various broken links 2022-04-13 17:03:39 -07:00
Tim Allclair 5da572c915 [it] Clean up various broken links 2022-04-13 17:01:15 -07:00
Tim Allclair ac9368c9ba [de] Clean up various broken links 2022-04-13 16:53:01 -07:00
Kubernetes Prow Robot d9c3c04087 Merge pull request #32908 from Sea-n/fix-it
[it] Fix Markdown format
2022-04-13 14:26:46 -07:00
Sean Wei a1741bcee9 [de] Fix Markdown format 2022-04-14 01:43:08 +08:00
Sean Wei 872f2eecab [pt-br] Fix Markdown format 2022-04-14 01:42:34 +08:00
Sean Wei e2375cc164 [es] Fix Markdown format 2022-04-14 01:42:27 +08:00
Sean Wei 4d06efb2b8 [it] Fix Markdown format 2022-04-14 01:41:45 +08:00
Sean Wei 7c221a3688 [fr] Fix Markdown format 2022-04-14 01:41:28 +08:00
Sean Wei 56dc4a0998 [id] Fix Markdown format 2022-04-14 01:40:10 +08:00
Sean Wei 01c3c53b7d [en] Fix Markdown format 2022-04-14 01:33:53 +08:00
Tim Bannister e88e05dbb7 Update Docsy to v0.2.0 2022-04-13 17:48:00 +01:00
Kubernetes Prow Robot c6472cbea3 Merge pull request #32132 from shannonxtreme/dockershim-am-i-on-dockerhsim
Add info about finding the runtime endpoint
2022-04-13 09:32:46 -07:00
Shannon Kularathna d3ad42f669 Add info about finding the runtime endpoint 2022-04-13 15:36:55 +00:00
Kubernetes Prow Robot 3fa88512a6 Merge pull request #32892 from my-git9/replicationcontroller1
[zh] Update replicationcontroller.md
2022-04-13 06:54:46 -07:00
howieyuen 8fe863faf8 [zh]translate content/zh/docs/reference/kubernetes-api/common-definitions/object-meta.md into Chinese 2022-04-13 17:31:30 +08:00
xin.li 0c6d37d1cf [zh] Update replicationcontroller.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-13 15:56:36 +08:00
Kubernetes Prow Robot 0d171a1c23 Merge pull request #32891 from mengjiao-liu/fix_missing_links_zh
[zh]Fix missing links
2022-04-12 20:42:48 -07:00
done b86f126263 [ja] Translate concepts/cluster-administration/logging into Japanese (#31808)
* add ja/concepts/cluster-administration/logging

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix typo

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix typo, word

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix typo

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix branch name

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix link lang

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

fix `ポッド` -> `Pod`

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* remove reviwers block

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

* Update content/ja/docs/concepts/cluster-administration/logging.md

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>

Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-12 20:04:46 -07:00
Mengjiao Liu 758c357119 [zh]Fix missing links 2022-04-13 10:47:17 +08:00
Kubernetes Prow Robot 6283010d87 Merge pull request #32147 from tengqm/zh-feature-gates
[zh] Resync feature gates
2022-04-12 18:52:46 -07:00
Chris Short a582a21cf0 Mention Detector for Docker Socket in dockershim removal FAQ (#32685)
* Update 2022-02-17-updated-dockershim-faq.md

Adding the new Detector for Docker Socket plugin to the FAQ.

The tool will help folks find Dockershim usage in files on disk as well as running clusters.

* Apply suggestions from code review

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update 2022-02-17-updated-dockershim-faq.md

Adding period

* Update content/en/blog/_posts/2022-02-17-updated-dockershim-faq.md

Co-authored-by: Rey Lejano <rlejano@gmail.com>

* Update content/en/blog/_posts/2022-02-17-updated-dockershim-faq.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>
Co-authored-by: Rey Lejano <rlejano@gmail.com>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-04-12 15:42:46 -07:00
Arhell 2a15957d13 [id] update proposal link to point to archive 2022-04-13 00:22:05 +03:00
Kubernetes Prow Robot 2ca30c11c8 Merge pull request #30840 from sftim/20211209_highlight_dockershim_deprecation_discussion_issue
Highlight discussion issue for dockershim deprecation
2022-04-12 12:52:46 -07:00
Kubernetes Prow Robot 7a44e32fb9 Merge pull request #32805 from chrisnegus/dockershim-banner
Add dockershim removal banner
2022-04-12 12:38:46 -07:00
Christopher Negus de066e6a71 Responded to review comments 2022-04-12 18:04:09 +00:00
Kubernetes Prow Robot b69b3d76cb Merge pull request #32098 from Babapool/pr-shadow-wrangler-docs
Add documentation for PR Wrangler Shadow program
2022-04-12 10:33:24 -07:00
Tim Bannister 05e987a47b Highlight discussion issue for dockershim deprecation
- Link to k/kubernetes issue 106917
  (various places)
- Related rewording to make that extra link work in context

and also:
- Replace alias for dockershim FAQ with a Netlify redirect

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-04-12 18:02:26 +01:00
Kubernetes Prow Robot 89cf5eb7ce Merge pull request #32738 from sftim/20220401_update_container_runtimes_dockershim_removal
Revise “Container runtimes” page in light of dockershim removal
2022-04-12 07:55:23 -07:00
Kubernetes Prow Robot 383fd26f21 Merge pull request #32761 from sftim/20220405_update_kubelet_container_runtime_detection_dockershim
Update kubeadm CRI detection docs in light of dockershim deprecation
2022-04-12 07:19:23 -07:00
Qiming Teng 479a599438 [zh] Resync feature gates 2022-04-12 19:07:32 +08:00
Kubernetes Prow Robot 9cf4b3d116 Merge pull request #32874 from mengjiao-liu/fix_missing_links
Fix missing links
2022-04-12 04:03:24 -07:00
Kubernetes Prow Robot 2c8a25cb2f Merge pull request #32871 from mengjiao-liu/sync_configmap_yaml_zh
[zh] Sync mysql-configmap.yaml
2022-04-12 04:01:24 -07:00
Mengjiao Liu 7e0a2162d7 Fix missing links 2022-04-12 16:46:38 +08:00
Mengjiao Liu 224b80dbc4 [ja]Sync mysql-configmap.yaml 2022-04-12 15:08:27 +08:00
Mengjiao Liu 70cabe4a5b [zh] Sync mysql-configmap.yaml 2022-04-12 14:57:13 +08:00
Kubernetes Prow Robot bc8c561815 Merge pull request #32842 from tengqm/zh-resync-assign-pod
[zh] Resync assign pod to node
2022-04-11 21:49:22 -07:00
Kubernetes Prow Robot e1927a684a Merge pull request #32868 from mengjiao-liu/fix-mysql-conf
Fix mysql-configmap.yaml  error
2022-04-11 21:41:22 -07:00
Mengjiao Liu 812dafd7ef Fix mysql-configmap.yaml error 2022-04-12 12:05:40 +08:00
Qiming Teng 6a375baa5e [zh] Resync assign pod to node
The whole page was rewritten. This is a full resync.
2022-04-12 10:32:41 +08:00
Ldsdsy 71b06a9973 translate 2021-09-27-SIG-Node-Spotlight (#32847)
translate 2021-09-27-SIG-Node-Spotlight

translate 2021-09-27-SIG-Node-Spotlight
2022-04-11 19:19:21 -07:00
Kubernetes Prow Robot e4d521d1cf Merge pull request #32846 from tengqm/zh-resync-deployment
[zh] Resync deployment page
2022-04-11 19:15:21 -07:00
Kubernetes Prow Robot 52fc7e7db2 Merge pull request #32845 from tengqm/zh-resync-nodes
[zh] Resync nodes page
2022-04-11 19:09:21 -07:00
Kubernetes Prow Robot 6841e420c6 Merge pull request #32819 from mengjiao-liu/add_pv_provisioner_link_zh
[zh]Synchronize default-storage-class-prereqs.md files and improve translations
2022-04-11 18:23:22 -07:00
Kubernetes Prow Robot e45bfb5027 Merge pull request #32860 from miteshskj/replicationctrl-review
Adding link for client library to client-libraries page.
2022-04-11 18:05:22 -07:00
Kubernetes Prow Robot a63179c3c1 Merge pull request #32861 from miteshskj/dnspodservice-review
Remove stale information about pod dnsConfig.
2022-04-11 18:01:22 -07:00
Mitesh Jain bcc87b7c34 Remove stale information about pod dnsConfig. 2022-04-11 20:58:24 +05:30
Mitesh Jain a21e006ebe Adding link for client library to client-libraries page. 2022-04-11 20:47:44 +05:30
Mengjiao Liu 82e8574fc9 [zh]Synchronize default-storage-class-prereqs.md files and improve translations 2022-04-11 21:53:18 +08:00
Kubernetes Prow Robot 80e2e7d547 Merge pull request #32810 from 0xff-dev/main
[zh] sync resource-metrics-pipeline.md
2022-04-11 06:48:06 -07:00
Kubernetes Prow Robot 6e79a96731 Merge pull request #32843 from Arhell/fix-path
[ja] fix wrong path
2022-04-11 06:22:06 -07:00
0xff-dev 5b50040c54 [zh] sync resource-metrics-pipeline.md 2022-04-11 20:30:42 +08:00
Kubernetes Prow Robot bfa1c7fc24 Merge pull request #32856 from mengjiao-liu/update_pv_link
Update links in file default-storage-class-prereqs.md to avoid using targets that are redirected.
2022-04-11 03:16:06 -07:00
Kubernetes Prow Robot 0c51fdf5c9 Merge pull request #32853 from Arhell/update-conf
[zh] update scheduler configuration sample version
2022-04-11 03:02:07 -07:00
Mengjiao Liu 164bdfa5a1 Update links in file default-storage-class-prereqs.md to avoid using targets that are redirected. 2022-04-11 17:50:08 +08:00
Arhell 4fdd497988 [zh] update scheduler configuration sample version 2022-04-11 11:19:09 +03:00
Wang feebdc06d0 [ja] Translate tasks/administer-cluster/migrating-from-dockershim into Japanese (#31322)
* new pr

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/_index.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-10 23:24:05 -07:00
Wang eeaee1f058 [ja] Translate tasks/administer-cluster/kubeadm/configure-cgroup-driver into Japanese (#31222)
* done

* self review

* fix

* Update content/ja/docs/tasks/administer-cluster/kubeadm/configure-cgroup-driver.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/kubeadm/configure-cgroup-driver.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-10 23:22:06 -07:00
Wang d62122cecb [ja] Translate tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents into Japanese (#31304)
* done

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-10 23:16:06 -07:00
Qiming Teng e0302f46f2 [zh] Resync nodes page 2022-04-11 14:11:00 +08:00
Kubernetes Prow Robot 9cf7661cd7 Merge pull request #32852 from mengjiao-liu/fix-garbage-collection-link
[zh] Fix wrong link in garbage-collection file
2022-04-10 20:34:06 -07:00
Kubernetes Prow Robot ad23315489 Merge pull request #32850 from my-git9/addons1
[zh] Update addons.md
2022-04-10 20:26:05 -07:00
Kubernetes Prow Robot 4a9697803c Merge pull request #32841 from tengqm/zh-rm-psp
[zh] Remove PSP
2022-04-10 20:16:05 -07:00
Mengjiao Liu 004ee5e793 [zh] Fix wrong link in garbage-collection file 2022-04-11 11:08:21 +08:00
xin.li d1fb823abc [zh] Update addons.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-11 09:26:36 +08:00
Kubernetes Prow Robot ab44da16f1 Merge pull request #32836 from 08thse/patch-1
Fix typo in create-hostprocess-pod.md
2022-04-10 17:06:05 -07:00
Qiming Teng c44f50decf [zh] Resync deployment page 2022-04-10 20:11:46 +08:00
Arhell 0bb7611b6d [ja] fix wrong path 2022-04-10 09:26:33 +03:00
Qiming Teng 5a4e1e3254 [zh] Remove PSP
The upstream English page is removed.
2022-04-10 09:18:37 +08:00
Kubernetes Prow Robot 1365e326d4 Merge pull request #32834 from mrk-andreev/patch-1
Remove link to domana.io
2022-04-09 18:16:04 -07:00
sou 4764a50fee Update create-hostprocess-pod.md
Fix typo (Window -> Windows)
2022-04-09 23:52:46 +09:00
Mark Andreev 27ec191771 Remove link to domana.io
The domain name Romana.io is for sale. I suggest to remove this invalid ref.
2022-04-09 13:13:20 +04:00
Kubernetes Prow Robot 872f57ab95 Merge pull request #32234 from tengqm/zh-probes
[zh] Resync configure probes
2022-04-09 00:06:04 -07:00
Kubernetes Prow Robot a90c43ad3b Merge pull request #32809 from tengqm/zh-resync-securing-a-cluster
[zh] Rersync securing a cluster
2022-04-08 21:58:06 -07:00
Kubernetes Prow Robot fd9f11b32c Merge pull request #32703 from tengqm/fix-32702
[zh] Fix cassandra tutorial translation
2022-04-08 21:56:05 -07:00
Qiming Teng f922ccf273 [zh] Resync configure probes 2022-04-09 11:55:09 +08:00
Kubernetes Prow Robot f7ca4fd0a9 Merge pull request #32719 from zaunist/docs/concepts/services-networking
[zh]: Resync network-policies.md
2022-04-08 20:52:04 -07:00
Kubernetes Prow Robot 74b148081f Merge pull request #32793 from TheSamDickey/patch-1
Update ingress-v1 rules.http.paths.pathType values
2022-04-08 16:36:04 -07:00
Kubernetes Prow Robot 9169cc8ebc Merge pull request #32791 from jihoon-seo/220407_Replace_Go_Doc_URL_with_pkg.go.dev
Replace Go Doc URL with `pkg.go.dev`
2022-04-08 16:06:04 -07:00
阿杰鲁 85ad3461af docs: Resync network-policies.md 2022-04-09 01:20:15 +08:00
Christopher Negus 1fba7dcc8a Fixed link 2022-04-08 11:18:14 +00:00
Kubernetes Prow Robot 2ef5c665e8 Merge pull request #32816 from skeetwu/patch-1
[zh] Enhance format in rbac.md
2022-04-08 04:00:42 -07:00
Kubernetes Prow Robot 259fd8fe69 Merge pull request #32815 from mengjiao-liu/sync-tail-zh
[zh]Added retry option to tail
2022-04-08 03:58:42 -07:00
Kubernetes Prow Robot 12e12f8f05 Merge pull request #32817 from sarangjo/patch-1
Nit: grammar fix on install-kubectl-linux.md
2022-04-08 03:46:42 -07:00
Kubernetes Prow Robot 75ce0b8cfb Merge pull request #32814 from ktsakalozos/patch-1
Fix minor typo in certificates.md
2022-04-08 03:44:42 -07:00
Kubernetes Prow Robot 3b19dbf22f Merge pull request #32764 from neolit123/1.24-add-steps-for-reconf
kubeadm: add task page for cluster reconf
2022-04-08 03:28:42 -07:00
Sarang Joshi b3e75c52a6 Nit: grammar fix on install-kubectl-linux.md 2022-04-08 15:19:53 +05:30
Skeet WU 40b3832fe0 [zh] Enhance format in rbac.md 2022-04-08 17:36:50 +08:00
Mengjiao Liu ab76ffa2d4 [zh]Added retry option to tail 2022-04-08 17:32:13 +08:00
Kubernetes Prow Robot f764ec7338 Merge pull request #32800 from my-git9/localization1
[zh]UPdate localization.md
2022-04-08 02:18:42 -07:00
Konstantinos Tsakalozos eb53819201 Fix minor typo in certificates.md 2022-04-08 12:08:55 +03:00
xin.li 528692cbef [zh]UPdate localization.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-08 16:51:01 +08:00
Kubernetes Prow Robot e408a389b3 Merge pull request #32757 from iamNoah1/main
Revise page “Contributing to the Upstream Kubernetes Code”
2022-04-08 01:34:41 -07:00
Kubernetes Prow Robot 3b27c941f1 Merge pull request #32811 from Arhell/fix-path
[fr] fix wrong path
2022-04-08 01:24:42 -07:00
Qiming Teng b51b1d6b1d Move NetworkPolicy into examples 2022-04-08 16:00:56 +08:00
Arhell 1eb33cde88 [fr] fix wrong path 2022-04-08 10:41:58 +03:00
Mads Jensen eefc776e29 Fix typos in Markdown links. (#32802)
* Fix typos in Markdown links.

* Test

Co-authored-by: Mads Jensen <atombrella@users.noreply.github.com>
2022-04-08 00:16:41 -07:00
Qiming Teng 6b25f92384 [zh] Rersync securing a cluster
This PR also fixes an English link in the admission controllers page,
which doesn't deserve a separate PR.
2022-04-08 10:49:23 +08:00
Lubomir I. Ivanov 931581eb88 kubeadm: add task page for cluster reconf
The new task page outlines steps for reconfiguring
a kubeadm cluster and persisting reconfiguration.

Link the new page from the existing guides for
"customizing components", "creating a cluster",
and "kubeadm upgrade".

Co-authored-by: Paco Xu <paco.xu@daocloud.io>
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-08 01:57:42 +03:00
Christopher Negus 7365b45a2d Added PR and changed expiration date 2022-04-07 21:36:40 +00:00
Christopher Negus f5f099c71d Changed the wording 2022-04-07 21:08:40 +00:00
Christopher Negus 8bdb53b2ef Create dockershim banner 2022-04-07 21:02:25 +00:00
Kubernetes Prow Robot d8dfd81d0c Merge pull request #32786 from reylejano/update-removal-blog
Follow-up PR to 1.24 Removals and Deprecations blog
2022-04-07 08:41:58 -07:00
Kubernetes Prow Robot 3b5f31e6de Merge pull request #32797 from Arhell/update-link
[ja] update networking model link
2022-04-07 07:39:57 -07:00
Kubernetes Prow Robot 220720a2b8 Merge pull request #32799 from guresonur/patch-2
Update service.md
2022-04-07 02:05:57 -07:00
Kubernetes Prow Robot 3aef33c651 Merge pull request #32259 from tengqm/fix-links-3
Fix nits in the change runtime containerd page
2022-04-07 02:03:57 -07:00
Kubernetes Prow Robot ed8d57455a Merge pull request #32190 from tengqm/fix-nodelocaldns
Reformat the node local DNS cache page
2022-04-07 01:39:57 -07:00
Onur e42c5e6c86 Update service.md 2022-04-07 11:28:58 +03:00
Kubernetes Prow Robot 6cffdff8e6 Merge pull request #32782 from reylejano/ko-broken-link
[ko] Remove broken link in Addons page
2022-04-07 01:09:56 -07:00
Arhell 69fd8c46ef [ja] update networking model link 2022-04-07 10:15:03 +03:00
Kubernetes Prow Robot c38941a3b1 Merge pull request #32789 from kubernetes/dev-1.23-ko.2
[ko] 2nd Korean localization work for v1.23
2022-04-06 23:53:56 -07:00
Kubernetes Prow Robot a6aee0c410 Merge pull request #32639 from tengqm/zh-flowcontrol
[zh] Resync flow-control page
2022-04-06 23:01:56 -07:00
Kubernetes Prow Robot 715761bd95 Merge pull request #32636 from tengqm/zh-resync-overview
[zh] Resync pages under overview
2022-04-06 22:59:56 -07:00
TheSamDickey 1be2b6e05c Update ingress-v1.md
While reading through the documentation, I noticed weird asterisk characters that seemed like they should be bullet points.  I kept reading and saw the formatting for `loadBalancer.ingress.ports.protocol`.  I liked how it organized the values into an easy to read list.

This proposed change formats the possible values for `rules.http.paths.pathType` to be a bullet point list, in (imo) a format that is easier to read.
2022-04-06 23:33:52 -05:00
Kubernetes Prow Robot f481a2b3ca Merge pull request #32788 from my-git9/replicaset2
[zh] Update replicaset.md
2022-04-06 19:41:56 -07:00
Jihoon Seo b16e2bc7f4 Replace Go Doc URL with pkg.go.dev 2022-04-07 11:22:38 +09:00
xin.li fac8de5456 [zh] Update replicaset.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-07 09:28:44 +08:00
Kubernetes Prow Robot 7da9d0d276 Merge pull request #31880 from jihoon-seo/220224_Outdated_M60
[ko] Update outdated files in `dev-1.23-ko.2` (M60-M73)
2022-04-06 17:59:56 -07:00
Kubernetes Prow Robot a6c1cf30c4 Merge pull request #31793 from jihoon-seo/220218_Outdated_M50-M58
[ko] Update outdated files in `dev-1.23-ko.2` (M50-M59)
2022-04-06 17:57:56 -07:00
Rey Lejano 53d2c177d6 followup PR to 1-24 removals and deprecations blog 2022-04-06 17:04:12 -07:00
Mickey Boxell f71cba23be Add Kubernetes 1.24 Removals and Deprecations blog post (#31767)
* Kubernetes 1.24 removals and deprecations blog

* Rename 2022-03-31-Kubernetes-1-24-deprecations-and-removals to 2022-03-31-Kubernetes-1-24-deprecations-and-removals.md

* Update 2022-03-31-Kubernetes-1-24-deprecations-and-removals.md

* Rename 2022-03-31-Kubernetes-1-24-deprecations-and-removals.md to 2022-04-07-Kubernetes-1-24-removals-and-deprecations.md

File rename
2022-04-06 14:50:25 -07:00
Tim Bannister 9c8227a521 Update kubeadm CRI detection docs
Update kubeadm CRI detection docs in light of dockershim deprecation.

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>
2022-04-06 22:14:49 +01:00
Rey Lejano 59b9738f58 update ko addons page to remove broken link 2022-04-06 14:03:56 -07:00
Kubernetes Prow Robot 31076af0d7 Merge pull request #32775 from Arhell/add-proxy
[ja] adding kube-proxy & update list
2022-04-06 07:10:55 -07:00
Akihiro Suda 8c48fa656f runtime-class.md: update containerd/cri link
The `containerd/cri` repo was merged into the `containerd/containerd` repo.
The `containerd/cri` repo is now archived.

Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
2022-04-06 17:38:50 +09:00
Arhell 17f000b4f1 [ja] adding kube-proxy & update list 2022-04-06 11:07:46 +03:00
Mitesh Jain 1eca303e91 Remove stale information about pod selector. 2022-04-06 11:07:24 +05:30
Kubernetes Prow Robot b0a0544579 Merge pull request #32771 from mrunalp/pod_priority_shutdown_beta
Update docs for Pod Priority Based Node Graceful Shutdown beta
2022-04-05 21:54:57 -07:00
Mrunal Patel bf90a22aaf Update docs for Pod Priority Based Node Graceful Shutdown beta
Signed-off-by: Mrunal Patel <mrunalp@gmail.com>
2022-04-05 18:17:52 -07:00
Kubernetes Prow Robot 275bb93aa6 Merge pull request #32763 from miteshskj/replicaset-review
Remove stale information about apiVersion.
2022-04-05 18:06:55 -07:00
Kubernetes Prow Robot d442f4c89b Merge pull request #32616 from 196Ikuchil/trans-controlling-access
[ja] Translate concepts/security/controlling-access/ into Japanese
2022-04-05 17:34:55 -07:00
Kubernetes Prow Robot cdf578eb69 Merge pull request #32766 from miteshskj/statefulset-review
Remove stale information about unsupported versions.
2022-04-05 17:28:56 -07:00
Priyanshu Ahlawat 508f111b60 Update resource-metrics-pipeline.md (#32467)
* Update resource-metrics-pipeline.md

* Update resource-metrics-pipeline.md

* Update content/en/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-04-05 17:18:56 -07:00
Mitesh Jain 7c58a81b89 Remove stale information about unsupported versions. 2022-04-06 01:48:25 +05:30
Mitesh Jain 1a5fe3ccbb Remove stale information about apiVersion. 2022-04-06 00:49:09 +05:30
Vitthal Sai 4a05cab07e Adds documentation for PR Wrangler Shadow program 2022-04-06 00:10:50 +05:30
Mitesh Jain f218c25778 Remove stale information about apiVersion. 2022-04-05 21:56:52 +05:30
196Ikuchil e80f838699 Update content/ja/docs/concepts/security/controlling-access.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-04-05 22:56:43 +09:00
196Ikuchil f741c87d1e Update content/ja/docs/concepts/security/controlling-access.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-04-05 22:56:34 +09:00
196Ikuchil c649f235f8 Update content/ja/docs/concepts/security/controlling-access.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-04-05 22:56:23 +09:00
Kubernetes Prow Robot 3cadb66eb8 Merge pull request #32704 from miteshskj/fix-32689
Add information about InTreePluginAzureFileUnregister and InTreePlugi…
2022-04-05 05:41:36 -07:00
Qiming Teng 4242d54768 [zh] Resync flow-control page 2022-04-05 20:40:02 +08:00
Qiming Teng 3a20474c11 [zh] Resync pages under overview 2022-04-05 20:38:12 +08:00
Qiming Teng 63e7cf796b [zh] Fix cassandra tutorial translation 2022-04-05 20:36:36 +08:00
Noah Ispas (iamNoah1) c231ba5be3 add necessary tools, correct git output example 2022-04-05 10:15:15 +02:00
Kubernetes Prow Robot 3bf1df5a12 Merge pull request #32692 from pipo02mix/patch-1
Update pod-topology-spread-constraints adding the missing scheduler name
2022-04-04 23:41:36 -07:00
Kubernetes Prow Robot 883ee38fe2 Merge pull request #32168 from jihoon-seo/220310_Translate_ns-level-pss
[ko] Translate 'cluster-level-pss' & 'ns-level-pss'
2022-04-04 22:13:36 -07:00
Jihoon Seo d5e79985bb [ko] Translate 'cluster-level-pss', 'ns-level-pss' 2022-04-05 13:53:23 +09:00
Jihoon Seo 2c535e2680 [ko] Update outdated files in dev-1.23-ko.2 M60-73 2022-04-05 13:21:01 +09:00
Jihoon Seo 3c29f68586 [ko] Update outdated files in dev-1.23-ko.2 M50-59 2022-04-05 13:18:39 +09:00
Kubernetes Prow Robot 59d7fde1ca Merge pull request #32723 from sohan-lh/patch-1
Update horizontal-pod-autoscale-walkthrough.md
2022-04-04 16:51:35 -07:00
Kubernetes Prow Robot a4bd36fbe8 Merge pull request #32755 from guettli/patch-4
PodSecurityPolicy is deprecated (glossary)
2022-04-04 16:31:36 -07:00
Thomas Güttler 7ce04aeb14 PodSecurityPolicy is deprecated (glossary) 2022-04-04 21:15:26 +02:00
Kubernetes Prow Robot 44ed64e205 Merge pull request #32751 from seokho-son/l10ng
Update l10n guide to use both native and English names in config.toml
2022-04-04 11:40:11 -07:00
Kubernetes Prow Robot 132fece161 Merge pull request #32652 from tidusete/patch-1
Missunderstood pods/pod-with-node-affinity.yaml
2022-04-04 09:56:10 -07:00
Seokho Son 3f70b2fca7 Update description for languageName 2022-04-05 00:47:45 +09:00
Kubernetes Prow Robot 016148039b Merge pull request #32712 from Arhell/remove-link
[id] remove link
2022-04-04 08:32:11 -07:00
Kubernetes Prow Robot 72f115fbbd Merge pull request #32731 from Arhell/fix-command
[ja] simplify commands
2022-04-04 08:06:11 -07:00
Kubernetes Prow Robot 463a88191c Merge pull request #32593 from tengqm/server-side-field-alpha
Add ServerSideFieldValidation feature
2022-04-04 07:34:12 -07:00
Seokho Son 258b71ae01 Update l10n guide to use both native and English names 2022-04-04 23:25:00 +09:00
Kubernetes Prow Robot 503e0cf1c9 Merge pull request #32748 from my-git9/kubeadm-reset
[zh]Update kubeadm-reset.md
2022-04-04 05:44:10 -07:00
196Ikuchil 4d8a3381e5 fix:ja documentation 2022-04-04 21:27:33 +09:00
196Ikuchil 98f2561376 fix:add auditing section 2022-04-04 21:25:03 +09:00
196Ikuchil 31b82a7bd9 Update content/ja/docs/concepts/security/controlling-access.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-04-04 21:16:02 +09:00
196Ikuchil 2bee59baf6 Update content/ja/docs/concepts/security/controlling-access.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-04-04 21:16:02 +09:00
196Ikuchil bffd0b822a Update content/ja/docs/concepts/security/controlling-access.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-04-04 21:16:02 +09:00
196Ikuchil 1e1ab08a43 fix:delete localized image 2022-04-04 21:16:02 +09:00
196Ikuchil a3d98f8ed8 fix:change 制御 to コントロール 2022-04-04 21:16:02 +09:00
196Ikuchil b22c87c411 fix:change admission control to アドミッションコントロール 2022-04-04 21:16:02 +09:00
196Ikuchil 9fa798cd48 add:localize diagram 2022-04-04 21:16:02 +09:00
196Ikuchil b86b858735 fix:change がある to があります 2022-04-04 21:16:02 +09:00
196Ikuchil 5323c317e8 add:translate concepts/security/controlling-access.md 2022-04-04 21:16:02 +09:00
xin.li 8a485f11e3 [zh]Update kubeadm-reset.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-04 18:59:16 +08:00
Kubernetes Prow Robot 5b507dfee8 Merge pull request #32749 from koushik-ms/patch-1
Manage TLS Certificates in a Cluster: Fix typo in template for glossary reference
2022-04-04 03:32:10 -07:00
Kubernetes Prow Robot e6c526b79d Merge pull request #32747 from my-git9/kubeadm-init-phase
[zh] Update kubeadm-init-phase.md
2022-04-04 03:30:10 -07:00
Kubernetes Prow Robot b74c283100 Merge pull request #32746 from my-git9/admission-controller
[zh] Update admission-controllers.md
2022-04-04 03:28:10 -07:00
Kubernetes Prow Robot a7ee8ae3bf Merge pull request #32739 from kylezhang/main
fixed typo.
2022-04-04 03:26:11 -07:00
Kubernetes Prow Robot 397655e8d3 Merge pull request #32745 from my-git9/authorization2
[zh] Update authorization.md
2022-04-04 03:24:10 -07:00
Kubernetes Prow Robot bf770beb28 Merge pull request #32744 from my-git9/pod-lifecycle
[zh]Update pod-lifecycle.md
2022-04-04 02:54:12 -07:00
koushik-ms 9b9e56f5de fix typo in template for glossary reference
Link to glossary term "ConfigMap" didn't render correctly due to
a missing "{" at the beginning of template. This commit fixes it.
2022-04-04 11:53:55 +02:00
Kubernetes Prow Robot 51354ee826 Merge pull request #32733 from my-git9/pod-overhead1
[zh] Update pod-overhead.md
2022-04-04 02:46:10 -07:00
Yu.Baizhong 77de2d6714 docs: sync ephermeral-volumes.md (#32716) 2022-04-04 02:44:10 -07:00
xin.li ca7e5dac3b [zh] Update kubeadm-init-phase.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-04 17:19:28 +08:00
xin.li e7f92e51d4 [zh] Update admission-controllers.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-04 17:08:15 +08:00
xin.li 48b5e2b898 [zh] Update authorization.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-04 16:56:51 +08:00
xin.li 0844572daf [zh]Update pod-lifecycle.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-04 16:53:11 +08:00
Kubernetes Prow Robot b3b7a184e0 Merge pull request #32698 from Arhell/add-link
[ja] add Kopf framework to list
2022-04-03 18:56:10 -07:00
Kubernetes Prow Robot 134bcbe014 Merge pull request #32741 from ankita-shirodkar/patch-3
Updating Kubernetes Overview page
2022-04-03 18:04:10 -07:00
Ankita Shirodkar 043121abdf Updating Kubernetes Overview page
In alignment with the CNCF Style Guide, proposing a change from open-source to open source.
2022-04-04 01:15:48 +05:30
Tim Bannister ba81191440 Fix typo
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-04-03 19:24:23 +01:00
xin.li f1590c4ff4 [zh] Update pod-overhead.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-03 21:50:22 +08:00
kyle 6a7812967e fixed typo. 2022-04-03 20:49:49 +08:00
Tim Bannister afe13e859a (Further) update Container Runtmes to prepare for dockershim removal 2022-04-03 12:31:25 +01:00
Kubernetes Prow Robot 7f784112cd Merge pull request #32736 from 0xff-dev/main
[zh] update run-replicated-stateful-application.md
2022-04-03 03:42:11 -07:00
Kubernetes Prow Robot ce94db14bf Merge pull request #32735 from my-git9/ingress
[zh] Update volumes.md
2022-04-03 03:40:09 -07:00
0xff-dev e10ed9ee49 [zh] update run-replicated-stateful-application.md 2022-04-03 17:57:50 +08:00
xin.li 6b9727e6eb [zh] Update volumes.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-03 16:33:14 +08:00
Kubernetes Prow Robot fe8b412ee1 Merge pull request #31063 from KobayashiD27/translate-docs/architecture/gc
[ja] Translate docs/concepts/architecture/garbage-collection into Japanese
2022-04-02 20:14:09 -07:00
Kubernetes Prow Robot 31e231de62 Merge pull request #32729 from my-git9/ephemeral-volumes
[zh]Update ephemeral-volumes.md
2022-04-02 16:24:09 -07:00
Arhell fe3ef9d9bf [ja] simplify commands 2022-04-03 00:51:32 +03:00
xin.li 54c1b88505 [zh]Update ephemeral-volumes.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-02 21:26:26 +08:00
Kubernetes Prow Robot 09f753c4c1 Merge pull request #32730 from my-git9/safely-drain-node
[zh]Update safely-drain-node.md
2022-04-02 05:26:09 -07:00
Kubernetes Prow Robot 235220a095 Merge pull request #32727 from my-git9/resever-compute-resources
[zh] Update resever-compute-resources.md
2022-04-02 05:12:09 -07:00
Kubernetes Prow Robot 03345eba34 Merge pull request #32725 from my-git9/configmap1
[zh]Update configmap
2022-04-02 05:10:09 -07:00
Kubernetes Prow Robot 8504801db7 Merge pull request #32714 from zaunist/docs/concepts/controlling-access
[zh]: Resync controlling-access.md
2022-04-02 05:08:09 -07:00
xin.li c8bb212381 [zh]Update safely-drain-node.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-02 20:01:36 +08:00
xin.li d0496c7c7b [zh] Update resever-compute-resources.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-02 19:41:42 +08:00
xin.li 0e2c67d5d0 [zh]Update configmap
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-02 19:06:09 +08:00
Sohan Kr Choudhary 3a3961a87d Update horizontal-pod-autoscale-walkthrough.md
Fix missing closing parentheses
2022-04-02 16:22:29 +05:30
阿杰鲁 495e22ec49 docs: Resync controlling-access.md 2022-04-02 17:58:45 +08:00
Kubernetes Prow Robot d4a878d2d7 Merge pull request #32706 from my-git9/pod-security-standards
[zh]Update PodSecurityPolicy address in dir security
2022-04-02 02:06:09 -07:00
Kubernetes Prow Robot 5f3c97667a Merge pull request #32707 from zaunist/docs/concepts_configmap.md
[zh]: Resync concepts/configmap.md
2022-04-02 02:02:09 -07:00
Kubernetes Prow Robot cb3050ce32 Merge pull request #32710 from zaunist/docs/concepts_kubeconfig
[zh]: Resync organizs-cluster-access-kubeconfig.md
2022-04-02 02:00:09 -07:00
xin.li 004510c057 Update PodSecurityPolicy address in dir security
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-02 16:21:41 +08:00
阿杰鲁 8ab6120d12 docs: Resync configmap.md 2022-04-02 14:29:54 +08:00
Arhell b4803b77ce [id] remove link 2022-04-02 09:27:17 +03:00
阿杰鲁 ea3b2874a2 docs: Resync kubeconfig docs 2022-04-02 14:21:20 +08:00
Cheng Wang 82456a84de Update quality-service-pod.md
Update `Burstable` conditions
2022-04-02 13:09:56 +08:00
Kubernetes Prow Robot bd609bacb6 Merge pull request #32709 from my-git9/security-contex
[zh] Update  security-context.md
2022-04-01 21:36:10 -07:00
xin.li c448a308cd [zh] Update security-context.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-02 11:41:54 +08:00
Kubernetes Prow Robot 2a8ac31e2a Merge pull request #32218 from tengqm/zh-leader-mig
[zh] Tweak controller manager leader migration
2022-04-01 20:30:09 -07:00
Mitesh Jain cea33bb349 Add information about InTreePluginAzureFileUnregister and InTreePluginAzureDiskUnregister. 2022-04-01 19:30:20 +05:30
Kubernetes Prow Robot ea0d0327c9 Merge pull request #32618 from Tellz777/typos
[ru] Make some small fixes
2022-04-01 05:52:46 -07:00
Kubernetes Prow Robot 5018ca2d10 Merge pull request #32701 from mengjiao-liu/fix-finalizers
[zh]Fix translation of finalizers.md
2022-04-01 05:14:45 -07:00
Qiming Teng 1456dc3fdb [zh] Tweak controller manager leader migration
The existing translation has some nits to be fixed.
2022-04-01 20:11:07 +08:00
Mengjiao Liu be05380bf2 [zh]Fix translation of finalizers.md 2022-04-01 19:50:18 +08:00
Kubernetes Prow Robot f446e318ff Merge pull request #32635 from tengqm/zh-resync-working-with-objs
[zh] Resync pages under working-with-objects
2022-04-01 04:32:48 -07:00
Kubernetes Prow Robot 8f3d4134f1 Merge pull request #32640 from tengqm/zh-logs
[zh] Resync system-logs
2022-04-01 04:20:47 -07:00
Kubernetes Prow Robot abd287207f Merge pull request #32699 from my-git9/pod-security-admission1
[zh] Update pod-security-admission.md
2022-04-01 04:06:48 -07:00
xin.li 07a430e1aa [zh] Update pod-security-admission.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-04-01 17:48:41 +08:00
Kubernetes Prow Robot a3cc62677a Merge pull request #32095 from tengqm/zh-i18n-feature
[zh] Translate 'feature_state' string data
2022-04-01 01:40:46 -07:00
Kubernetes Prow Robot 701d0f82d5 Merge pull request #32682 from mengjiao-liu/add-sig-docs-zh-owners
Add mengjiao-liu to sig-doc-zh-owners
2022-04-01 01:14:46 -07:00
Mengjiao Liu 3e34a71a57 Add mengjiao-liu to sig-doc-zh-owners. 2022-04-01 15:52:43 +08:00
Kobayashi Daisuke caf4fd1c62 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-01 15:40:41 +09:00
Kobayashi Daisuke 27456336a4 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-01 15:40:35 +09:00
Kobayashi Daisuke 4e5265c6a6 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-01 15:40:28 +09:00
Kobayashi Daisuke 3d73628432 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-01 15:40:13 +09:00
Fernando Ripoll 8a58d35c10 Update pod-topology-spread-constraints.md 2022-04-01 07:57:04 +02:00
Arhell aff60f44b4 [ja] add Kopf framework to list 2022-04-01 08:52:11 +03:00
Tim Rosenblatt f16c446d0a Explain Service without selector is for non-Pod backends (#32602)
* Minor edit for clarity

The previous phrasing didn't emphasize the point that the reason you define a Service with no selectors is to point to a backend that's not a Pod, and the emphasis on the external nature of the backend

* Add note that Services w/o selectors, but +Endpoints is the technique to use for abstracting external backends

Co-authored-by: Rey Lejano <rlejano@gmail.com>

Co-authored-by: Rey Lejano <rlejano@gmail.com>
2022-03-31 22:40:37 -07:00
Kubernetes Prow Robot 74c12d3bca Merge pull request #32643 from j9t/patch-1
docs: correct capitalization, add hyphenation, remove double spaces
2022-03-31 22:38:37 -07:00
Kobayashi Daisuke 020a6aa13a Update content/ja/docs/concepts/services-networking/topology-aware-hints.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-01 14:36:55 +09:00
Kobayashi Daisuke a86a5c6511 Update content/ja/docs/concepts/services-networking/topology-aware-hints.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-04-01 14:36:48 +09:00
Kubernetes Prow Robot 23cc4de865 Merge pull request #32690 from rkatti/patch-1
Added retry option to tail
2022-03-31 22:34:39 -07:00
KobayashiD27 bbe4711b75 fix links and translations 2022-04-01 13:50:36 +09:00
Kubernetes Prow Robot 94999c0031 Merge pull request #32233 from tengqm/zh-cfg-sa
[zh] Resync configure service account
2022-03-31 20:46:37 -07:00
Kobayashi Daisuke bdca2ccb0c Update garbage-collection.md 2022-04-01 12:42:20 +09:00
Kubernetes Prow Robot e94ce37cc2 Merge pull request #32671 from zaunist/docs/concepts
[zh] Resync device-plugins
2022-03-31 17:40:38 -07:00
Kubernetes Prow Robot b53955eed4 Merge pull request #32628 from waynerv/patch-3
Update pod-security-admission.md
2022-03-31 14:43:07 -07:00
Kubernetes Prow Robot 27684b7e90 Merge pull request #32565 from vaibhav2107/sec-context
Update the doc regarding outdated info in the link
2022-03-31 14:41:05 -07:00
Fernando Ripoll eb33931ae3 Update pod-topology-spread-constraints.md 2022-03-31 22:30:06 +02:00
Raghu Katti 1c418bddd2 Added retry option to tail
If the logs get rotated the above tail would fail. -F ensures that it is logrotate proof.
2022-03-31 13:08:23 -04:00
Kubernetes Prow Robot ba8e9f14ae Merge pull request #32686 from reylejano/fix-link-blog
Fix link on blog
2022-03-31 09:23:02 -07:00
Kubernetes Prow Robot 9cfd2a51c5 Merge pull request #32674 from tengqm/fix-32292
[zh] Fix a link issue on the logging page
2022-03-31 08:57:00 -07:00
Rey Lejano dc3425b79c fix link on blog 2022-03-31 08:55:14 -07:00
阿杰鲁 fd9b3076be docs: sync Chinese translation
docs: fix review

fix: review
2022-03-31 21:38:51 +08:00
Qiming Teng ea26b67f98 [zh] Resync configure service account 2022-03-31 21:16:07 +08:00
Qiming Teng 9fd0199a20 [zh] Resync system-logs 2022-03-31 20:29:40 +08:00
Kubernetes Prow Robot 285dd5711a Merge pull request #32679 from my-git9/patch-4
[zh] Update pod-topology-spread-constraints.md
2022-03-31 05:27:01 -07:00
Kubernetes Prow Robot b6e3a1f78b Merge pull request #32680 from my-git9/extend-kubernetes_index
Extend kubernetes index
2022-03-31 05:25:01 -07:00
196Ikuchil db65b54571 fix:weight & some links 2022-03-31 21:21:43 +09:00
xin.li 99bf6b71cd --amend
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-31 19:48:06 +08:00
xin.li 5618f29eb8 [zh] Update extend-kubernetes/_index.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-31 19:44:19 +08:00
my-git9 421eb9a5cb Update pod-topology-spread-constraints.md 2022-03-31 19:37:15 +08:00
my-git9 f3c202fca2 [zh] Update pod-topology-spread-constraints.md
Correct wrong syntax
2022-03-31 18:17:11 +08:00
Qiming Teng 4e05e9ff5b [zh] Fix a link issue on the logging page 2022-03-31 14:19:45 +08:00
Kubernetes Prow Robot 70dbc89f33 Merge pull request #32283 from PriyanshuAhlawat/adding_auditing
Update controlling-access.md issue-32224
2022-03-30 20:44:59 -07:00
Kubernetes Prow Robot 9d902a23e8 Merge pull request #32004 from jihoon-seo/220302_Translate_ephemeral-volumes
[ko] Translate 'Ephemeral Volumes'
2022-03-30 20:11:00 -07:00
Kubernetes Prow Robot ffa959f7f4 Merge pull request #31761 from jihoon-seo/220216_Outdated_M25-M39
[ko] Update outdated files in `dev-1.23-ko.2` (M25-M39)
2022-03-30 20:07:00 -07:00
Priyanshu Ahlawat e62d2f7302 Update content/en/docs/concepts/security/controlling-access.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-03-31 08:30:44 +05:30
Kubernetes Prow Robot beb21b60c2 Merge pull request #32641 from twilight0620/blog1
[zh] Translate blog Securing-Admission-Controllers-2022.1.19
2022-03-30 19:17:00 -07:00
Kobayashi Daisuke 184e0f7fb3 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:05:41 +09:00
Kobayashi Daisuke e48418a83a Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:05:36 +09:00
Kobayashi Daisuke cabd7e09c4 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:05:30 +09:00
Kobayashi Daisuke 13b70f272b Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:05:16 +09:00
Kobayashi Daisuke 12ca7076fe Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:05:03 +09:00
Kobayashi Daisuke 1af7a3a9ca Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:04:52 +09:00
Kobayashi Daisuke 657bb6d5f1 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:04:40 +09:00
Kobayashi Daisuke bbddf8c0f2 Update content/ja/docs/concepts/architecture/garbage-collection.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-31 11:04:33 +09:00
twilight0620 25c9403bf3 [zh] comments modify 2022-03-31 09:59:04 +08:00
Kubernetes Prow Robot e6d999c311 Merge pull request #32122 from Shubham82/update_Feature_state_NamespaceDefaultLabelName
Improvement: Updated FEATURE STATE of NamespaceDefaultLabelName.
2022-03-30 18:41:00 -07:00
Kubernetes Prow Robot 59baf2fff2 Merge pull request #32661 from guettli/patch-5
typo: "the" --> "then"
2022-03-30 17:43:00 -07:00
Kubernetes Prow Robot 226abdf52d Merge pull request #32666 from sftim/20220330_fixup_cri-dockerd_task
Fixup incorrect systemctl command
2022-03-30 14:53:57 -07:00
Kubernetes Prow Robot 2258bc2308 Merge pull request #32637 from guettli/patch-4
Link to Guaranteed pods
2022-03-30 14:51:57 -07:00
Tim Bannister 3cb2b0cb14 Fixup incorrect systemctl command
The subcommand for restart is "restart"
2022-03-30 22:26:12 +01:00
Kubernetes Prow Robot 994f5c5a48 Merge pull request #32131 from shannonxtreme/dockershim-migrate-dockerd
Add content for migrating to cri-dockerd
2022-03-30 14:09:57 -07:00
Thomas Güttler 8df0736acb typo: "the" --> "then"
fixed typo
2022-03-30 21:03:48 +02:00
Thomas Güttler 998d762331 S/'Guaranteed'/Guaranteed 2022-03-30 20:52:00 +02:00
Thomas Güttler 16ae848701 Link to 'Guaranteed' pods.
related to #32619
2022-03-30 20:52:00 +02:00
Kubernetes Prow Robot e047c71b9b Merge pull request #31276 from sftim/20220110_move_pod_security_policy
Move PSP into Security concepts section
2022-03-30 11:46:20 -07:00
Kubernetes Prow Robot 8134e9ca3e Merge pull request #32307 from PriyanshuAhlawat/version_skew_doc
create-cluster-kubeadm: update the version skew policy
2022-03-30 09:42:25 -07:00
Kubernetes Prow Robot b356cda5ea Merge pull request #32651 from miteshskj/pod-topology-review
Remove stale note about EvenPodsSpread
2022-03-30 09:36:25 -07:00
Priyanshu Ahlawat 1f25824e05 Update content/en/docs/setup/production-environment/tools/kubeadm/create-cluster-kubeadm.md
Co-authored-by: Stefan Büringer <4662360+sbueringer@users.noreply.github.com>
2022-03-30 22:01:29 +05:30
Tim Bannister 672813f3e7 Move PSP into Security concepts section
The logical navigation definitely works better if Pod Security admission
and PodSecurityPolicy are pages in the same section. Make It So.

Co-authored-by: Rey Lejano <rlejano@gmail.com>
2022-03-30 17:30:35 +01:00
tidusete 64da6792e9 Missunderstood pods/pod-with-node-affinity.yaml
Either we correct the code from pods/pod-with-node-affinity.yaml to match the description about the rules that apply or we correct the description in order to match the pods/pod-with-node-affinity.yaml
2022-03-30 18:01:59 +02:00
Mitesh Jain f0e4a10636 Remove note for unsupported version. 2022-03-30 21:24:51 +05:30
Kubernetes Prow Robot 7523b0f253 Merge pull request #31745 from KoditkarVedant/update-hyperlinks-to-point-to-main-branch-ja-local
[ja] Update hyperlinks to point to main branch
2022-03-30 08:06:25 -07:00
Kubernetes Prow Robot 7512a26e91 Merge pull request #32647 from jpc/patch-1
Added a link to the SocketCAN device plugin
2022-03-30 07:52:26 -07:00
Wang ea3bdee54f add index.md (#31362) 2022-03-30 07:48:25 -07:00
Kubernetes Prow Robot c4da96a605 Merge pull request #32581 from 196Ikuchil/Pod-Security-Admission
[ja] Translate concepts/security/pod-security-admission/ into Japanese
2022-03-30 07:30:26 -07:00
Kubernetes Prow Robot 3a486bf1ba Merge pull request #32649 from ggallon/patch-1
[fr] Incorrect spaces in paragraph to deploy-intro tutorial page
2022-03-30 06:06:25 -07:00
Gwenaël Gallon dd5fd20fb0 Merge branch 'kubernetes:main' into patch-1 2022-03-30 14:30:40 +02:00
Jakub Piotr Cłapa 26716d7326 Added a link to the SocketCAN device plugin 2022-03-30 13:18:11 +02:00
Kubernetes Prow Robot 4fe8c26186 Merge pull request #32574 from luolanzone/fix-typo
[zh]Remove extra double quotation mark
2022-03-30 04:00:27 -07:00
196Ikuchil 3bc2141575 fix:_exemptions_ 2022-03-30 18:52:22 +09:00
twilight0620 f8c9721c52 [zh] comments modify 2022-03-30 17:51:19 +08:00
196Ikuchil 1df046ce08 fix:typo 2022-03-30 18:46:32 +09:00
196Ikuchil fce303bf3b fix:pluralization 2022-03-30 18:46:15 +09:00
Kubernetes Prow Robot b8bdb15985 Merge pull request #32627 from liutaot/patch-3
Update custom-resources.md
2022-03-30 02:40:25 -07:00
196Ikuchil c112afaba2 fix:heading 2022-03-30 18:39:34 +09:00
Yu.Bozhong 0561eaa17a [zh] Resync kubectl-convert-overview (#32642)
* docs: update translation

* Update content/zh/docs/tasks/tools/included/kubectl-convert-overview.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-03-30 02:18:25 -07:00
liutao f90ea705c9 Update custom-resources.md 2022-03-30 17:07:56 +08:00
Jens Oliver Meiert 67c726ef45 docs: correct capitalization, add hyphenation, remove double spaces 2022-03-30 10:51:47 +02:00
Kubernetes Prow Robot 264701a019 Merge pull request #32440 from sarazqy/main
[zh] Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese
2022-03-30 01:36:26 -07:00
twilight0620 c33389c974 [zh] Translate blog Securing-Admission-Controllers-2022.1.19 2022-03-30 16:26:59 +08:00
Qiming Teng 5d231f1774 Add ServerSideFieldValidation feature gate
It turns out the feature was not documented for 1.23.
2022-03-30 16:09:06 +08:00
zqy 44ec983b19 Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese
Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese

Translate /blog/2022/02/16/sig-node-ci-subproject-celebrates/ page into Chinese
2022-03-30 14:19:41 +08:00
Qiming Teng 6f7ee0ca7d [zh] Resync pages under working-with-objects 2022-03-30 14:07:05 +08:00
Kubernetes Prow Robot 9b9ac3a458 Merge pull request #32609 from my-git9/pod-configmap-env-var-valueFrom
[zh]Pod configmap env var value from
2022-03-29 22:34:27 -07:00
Kubernetes Prow Robot c0eef74a22 Merge pull request #32633 from my-git9/kubelet-tls-bootstrapping
[zh] Update kubelet-tls-bootstrapping.md
2022-03-29 21:52:26 -07:00
Kubernetes Prow Robot e7a52eb75a Merge pull request #32632 from my-git9/authentication-0
[zh] Update authentication.md
2022-03-29 21:50:27 -07:00
Kubernetes Prow Robot a5f3becde3 Merge pull request #32629 from my-git9/garbage-collection
[zh] Update garbage-collection
2022-03-29 21:48:27 -07:00
Kubernetes Prow Robot ed79e82359 Merge pull request #32631 from my-git9/projected-volumes
[zh] Update projected-volumes.md
2022-03-29 21:42:24 -07:00
Kubernetes Prow Robot 14cbd8b2f5 Merge pull request #32630 from my-git9/manage-resources-containers
[zh]Update manage-resources-containers.md
2022-03-29 21:40:24 -07:00
xin.li b25f4761a8 [zh] Update kubelet-tls-bootstrapping.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-30 12:26:31 +08:00
xin.li 1905b25b89 [zh] Update authentication.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-30 12:24:19 +08:00
xin.li 74449d1459 [zh] Update projected-volumes.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-30 12:15:19 +08:00
xin.li 8966e293a0 [zh]Update manage-resources-containers.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-30 11:29:57 +08:00
Kubernetes Prow Robot d784e24c88 Merge pull request #32612 from my-git9/baseline-psp
[zh] Update restricted-psp.yaml
2022-03-29 19:32:25 -07:00
xin.li 7f782da3b7 [zh] Update garbage-collection
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-30 10:20:55 +08:00
Waynerv adde98e681 Update pod-security-admission.md
No need to use the ssh protocol to access a public repository
2022-03-30 10:13:53 +08:00
xin.li 7b7b8d2d5c [zh] Update restricted-psp.yaml
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-30 10:09:59 +08:00
Kubernetes Prow Robot 9b411cb71d Merge pull request #32620 from chuckha/volume-typo
Removes a space that breaks a markdown link
2022-03-29 14:40:06 -07:00
Chuck Ha e611a04e6d Removes a space that breaks a markdown link
Signed-off-by: Chuck Ha <chuckh@twitter.com>
2022-03-29 12:56:15 -07:00
Kubernetes Prow Robot 2457eac448 Merge pull request #32584 from CharlesCZ/patch-1
fix typo
2022-03-29 10:36:55 -07:00
Cezary Czekalski 5650e76c45 Fix typo 2022-03-29 19:27:32 +02:00
Ilya Z 1e64ac5da9 ru_small_fixes 2022-03-29 21:10:06 +04:00
Kubernetes Prow Robot 7dc9feccef Merge pull request #32383 from edithturn/add-storage-limits
[es] Add content/es/docs/concepts/storage/storage-limits.md
2022-03-29 09:54:56 -07:00
Mitesh Jain 7580383a7d Reflect the changed behaviour for multiple use of --from-env-file in ConfigMap creation (#32603)
* Fix 32392 - Reflect the changed behaviour for multiple from-env-file in configmap creation.

* Update content/en/docs/tasks/configure-pod-container/configure-pod-configmap.md

updated suggestions.

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-03-29 06:48:46 -07:00
Kubernetes Prow Robot 4edd7fa89e Merge pull request #32614 from my-git9/zookeeper-pod-disruption-budget-minavailable
[zh] Update zookeeper-pod-disruption-budget-minavailable.yaml
2022-03-29 05:48:47 -07:00
Kubernetes Prow Robot e9b915be99 Merge pull request #32613 from my-git9/baseline-psp1
[zh] Update baseline-psp.yaml
2022-03-29 05:44:47 -07:00
xin.li cde6f321b2 [zh] Update zookeeper-pod-disruption-budget-minavailable.yaml
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 19:56:50 +08:00
Kubernetes Prow Robot 85f4570807 Merge pull request #32610 from my-git9/zookeeper-pod-disruption-budget-maxunavailable
[zh] Update zookeeper-pod-disruption-budget-maxunavailable.yaml
2022-03-29 04:56:46 -07:00
xin.li 6ef4d46143 [zh] Update baseline-psp.yaml
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 19:54:49 +08:00
xin.li ee0d8a0b27 [zh] Update zookeeper-pod-disruption-budget-maxunavailable.yaml
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 19:29:43 +08:00
my-git9 fb58df71c6 Merge branch 'kubernetes:main' into pod-configmap-env-var-valueFrom 2022-03-29 19:02:58 +08:00
xin.li 41336b8c06 [zh] Update pod-configmap-env-var-valueFrom.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 19:01:46 +08:00
Kubernetes Prow Robot bfca5b112f Merge pull request #32605 from my-git9/cluster-intro.md
[zh]Update  cluster-intro.md
2022-03-29 04:00:47 -07:00
Kubernetes Prow Robot 5fe595f833 Merge pull request #32607 from my-git9/cluster-level-pss
[zh] Update cluster-level-pass.md
2022-03-29 03:58:47 -07:00
Kubernetes Prow Robot 573f11d412 Merge pull request #32608 from my-git9/pod-configmap-env-var-valueFrom
[zh] Update pod-configmap-env-var-valueFrom.md
2022-03-29 03:54:47 -07:00
xin.li df4728f9cd [zh] Update pod-configmap-env-var-valueFrom.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 18:30:34 +08:00
xin.li 200f5f5e4c [zh] Update cluster-level-pass.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 17:52:33 +08:00
196Ikuchil 138c15205d fix:change Podセキュリティのアドミッション to Podのセキュリティアドミッション 2022-03-29 18:51:24 +09:00
196Ikuchil 2cdd9e9db4 Update content/ja/docs/reference/scheduling/policies.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-03-29 18:28:12 +09:00
196Ikuchil f1ae421043 Update content/ja/docs/reference/scheduling/policies.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-03-29 18:28:06 +09:00
196Ikuchil 550bfd5391 Update content/ja/docs/reference/scheduling/policies.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-03-29 18:28:00 +09:00
Kubernetes Prow Robot 9e9e65bf93 Merge pull request #32586 from Tellz777/small-fix
[ru] Fix typos
2022-03-29 00:48:47 -07:00
xin.li 62c4ddc8f6 [zh]Update cluster-intro.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 15:35:59 +08:00
Kubernetes Prow Robot 0ec1eef9d6 Merge pull request #32559 from tengqm/zh-resync-secret
[zh] Resync secret
2022-03-29 00:17:11 -07:00
Kubernetes Prow Robot 18db072a0e Merge pull request #32601 from my-git9/create-cluster_index.md
[zh] update create-cluster_index.md
2022-03-29 00:09:11 -07:00
xin.li 047966418e [zh] update create-cluster_index.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 14:19:16 +08:00
Kubernetes Prow Robot ae9e22bd71 Merge pull request #32600 from my-git9/optional-kubectl-configs-zsh
[zh] Update optional-kubectl-configs-zsh.md
2022-03-28 22:41:11 -07:00
Kubernetes Prow Robot 770e97a203 Merge pull request #31881 from jihoon-seo/220224_Outdated_M74
[ko] Update outdated files in `dev-1.23-ko.2` (M74-M85)
2022-03-28 22:15:11 -07:00
xin.li 849eed7d0a [zh] Update optional-kubectl-configs-zsh.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-29 12:26:07 +08:00
Qiming Teng dd29e003dd [zh] Resync secret 2022-03-29 09:32:11 +08:00
Kubernetes Prow Robot 6795e63579 Merge pull request #32591 from sftim/20220328_fix_dockershim_alias
Remove incorrect /dockershim alias
2022-03-28 16:11:41 -07:00
Tim Bannister fb3db4db2b Remove incorrect /dockershim alias
This fixes up a previous, inadvertent mistake where the alias was
retained during localization.
2022-03-28 23:47:19 +01:00
Kubernetes Prow Robot e1b941a1da Merge pull request #32590 from sftim/2022-328_fix_dockershim_alias
Remove incorrect /dockershim alias
2022-03-28 15:41:42 -07:00
Kubernetes Prow Robot 1336c6461f Merge pull request #32150 from tengqm/tune-feature-gates
Tune the feature gates page
2022-03-28 15:31:41 -07:00
Tim Bannister 5ff402c477 Remove incorrect /dockershim alias
This fixes up a previous, inadvertent mistake where the alias was
retained during localization.
2022-03-28 23:08:25 +01:00
Kubernetes Prow Robot db02b0c3f1 Merge pull request #32575 from miteshskj/tls-bootstrap-token
Remove bootstrap token being in beta state in kubelet-tls-bootstrappi…
2022-03-28 14:45:43 -07:00
Kubernetes Prow Robot 8f3fcc0542 Merge pull request #32576 from bobcode99/patch-1
Update horizontal-pod-autoscale.md
2022-03-28 14:27:42 -07:00
Ilya Z abab541c57 small_fix 2022-03-28 23:40:05 +04:00
Kubernetes Prow Robot 1cc768a796 Merge pull request #32578 from miteshskj/brokenlink-gc-csr
Fix broken link for stale CSR clean up in garbage-collection.md
2022-03-28 11:15:30 -07:00
Kubernetes Prow Robot 4f3244804c Merge pull request #32557 from bngsudheer/patch-1
Minor text edit to correct the grammar and presentation
2022-03-28 10:09:32 -07:00
196Ikuchil 273271bbef add:translate concepts/security/pod-security-admission.md 2022-03-29 01:02:17 +09:00
Mitesh Jain a76cc64203 Fix broken link for stale CSR clean up in garbage-collection.md 2022-03-28 20:53:39 +05:30
Bob 5183202a3b Update horizontal-pod-autoscale.md
Update HPA V2, custom.metrics.k8s.io, external.metrics.k8s.io design proposals to archive github link.
2022-03-28 22:36:36 +08:00
Mitesh Jain d21c4302bc Remove bootstrap token being in beta state in kubelet-tls-bootstrapping.md 2022-03-28 19:17:39 +05:30
Lan Luo a4196f77f5 Fix extra double quotation mark
Signed-off-by: Lan Luo <luolanzone@gmail.com>
2022-03-28 21:17:12 +08:00
196Ikuchil a3ab2f3412 fix:parameter name 2022-03-28 22:09:56 +09:00
Kubernetes Prow Robot df12f23ec4 Merge pull request #32519 from howieyuen/ref_api_common_resource_field_selector
[zh]translate content/docs/reference/kubernetes-api/common-definition…
2022-03-28 05:55:23 -07:00
howieyuen 1698664aed [zh]translate content/docs/reference/kubernetes-api/common-definitions/resource-field-selector.md into Chinese 2022-03-28 20:18:39 +08:00
Kubernetes Prow Robot 47df22358a Merge pull request #32571 from my-git9/install-kubectl
[zh] Update install-kubectl-windows.md
2022-03-28 04:21:24 -07:00
Kubernetes Prow Robot faffa177ea Merge pull request #32518 from howieyuen/ref_api_common_quantity
[zh]translate content/docs/reference/kubernetes-api/common-definition…
2022-03-28 04:13:23 -07:00
Kubernetes Prow Robot c1b2b7cb19 Merge pull request #32521 from zhangxyjlu/dual_stack_networking_ga
[zh]Add 2021-12-08-dual-stack-networking-ga.md
2022-03-28 03:35:23 -07:00
howieyuen b765f0fee6 [zh]translate content/docs/reference/kubernetes-api/common-definitions/quantity.md into Chinese 2022-03-28 18:33:37 +08:00
Kubernetes Prow Robot e943d03de6 Merge pull request #31724 from Arhell/audit-upd
[ja] update audit.md
2022-03-28 03:33:23 -07:00
Kubernetes Prow Robot d02938ed6d Merge pull request #32476 from jihoon-seo/220325_Update_links_2
[ko] Update links in `dev-1.23-ko.2`
2022-03-28 02:37:23 -07:00
Kubernetes Prow Robot c66d4a34cc Merge pull request #32522 from zhangxyjlu/meet_our_contributors
[zh]Add 2022-03-15-meet-our-contributors-APAC-AU-NZ-region-01.md
2022-03-28 02:01:22 -07:00
xin.li 03926364b5 [zh] Update install-kubectl-windows.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-28 16:29:17 +08:00
Kubernetes Prow Robot 9c7f14d19f Merge pull request #32556 from Tellz777/minor_changes
kubectl_docs_fixes
2022-03-28 00:17:22 -07:00
Kubernetes Prow Robot 15803d6273 Merge pull request #32555 from Tellz777/cheatsheet
cheatsheet_fixes
2022-03-28 00:15:22 -07:00
Kubernetes Prow Robot d1440af53c Merge pull request #32551 from Tellz777/advanced_md
advanced_guide_edited
2022-03-28 00:13:22 -07:00
Kubernetes Prow Robot 9e1840fe3c Merge pull request #32550 from Tellz777/content-guide
Edited content-guide.
2022-03-28 00:11:22 -07:00
Kubernetes Prow Robot f5bc7d5df0 Merge pull request #32548 from Tellz777/kube_api
kube_api_typos
2022-03-28 00:09:22 -07:00
Kubernetes Prow Robot 454a196424 Merge pull request #32547 from Tellz777/addons_typos
Addons_doc_typos
2022-03-28 00:07:23 -07:00
zhangxiaoyang 99b0fce444 [zh]Add 2021-12-08-dual-stack-networking-ga.md 2022-03-28 15:04:40 +08:00
Kubernetes Prow Robot 597a3c0d5a Merge pull request #32546 from Tellz777/index_typos
cluster_admin_typos
2022-03-27 23:59:22 -07:00
Kubernetes Prow Robot 6d0094f72f Merge pull request #32545 from Tellz777/nodes_doc
fix_some_typos
2022-03-27 23:57:22 -07:00
Kubernetes Prow Robot e4d73f3e89 Merge pull request #32544 from Tellz777/gc_typos
gc_typos
2022-03-27 23:55:22 -07:00
Kubernetes Prow Robot 49af2ea5ff Merge pull request #32540 from Tellz777/cloud-controller
fix_cloud_controller
2022-03-27 23:53:23 -07:00
Kubernetes Prow Robot 484aeddb4b Merge pull request #32537 from Tellz777/translated_quote
translated_quote
2022-03-27 23:51:21 -07:00
Kubernetes Prow Robot fd9d199c68 Merge pull request #32538 from Tellz777/architecture_translate
arch_concept
2022-03-27 23:49:21 -07:00
Kubernetes Prow Robot e39b3e6d31 Merge pull request #32558 from tengqm/zh-resync-topology
[zh] Resync pod topology spread constraints page
2022-03-27 23:01:22 -07:00
zhangxiaoyang 8260ee0f42 [zh]Add 2022-03-15-meet-our-contributors-APAC-AU-NZ-region-01.md 2022-03-28 11:28:53 +08:00
Kubernetes Prow Robot 8b783129d3 Merge pull request #31912 from tengqm/zh-diagram-guide
[zh] Translate diagram guide page
2022-03-27 20:07:21 -07:00
Kubernetes Prow Robot 3e2e616983 Merge pull request #32562 from my-git9/access-api-from-pod
[zh] Update configure-pdb.md
2022-03-27 17:45:21 -07:00
Kubernetes Prow Robot b1f9801f16 Merge pull request #32560 from my-git9/update-daemon-set
[zh] Update update-daemon-set.md
2022-03-27 17:43:21 -07:00
Kubernetes Prow Robot a9273c9e20 Merge pull request #32561 from my-git9/update-api-object-kubectl-patch
[zh] Update update-api-object-kubectl-patch.md
2022-03-27 17:41:21 -07:00
Vaibhav fa8872f70f Update the doc regarding out of date link 2022-03-28 01:07:38 +05:30
xin.li 1e3943a6b1 [zh] Update configure-pdb.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-27 21:07:25 +08:00
xin.li 10ff885b1c [zh] Update update-api-object-kubectl-patch.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-27 21:02:03 +08:00
xin.li 27ba7df7b2 [zh] Update update-daemon-set.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-27 20:58:47 +08:00
Kubernetes Prow Robot b1438b718a Merge pull request #32553 from miteshskj/broken-link-labels
Fix broken link for attach labels in assign-pod-node.md
2022-03-27 05:43:21 -07:00
Qiming Teng f01be79f66 [zh] Resync pod topology spread constraints page 2022-03-27 19:43:59 +08:00
Kubernetes Prow Robot bda7bfab02 Merge pull request #32539 from shaggyyy2002/langugae
Incorrect or out of date script localization in init 容器 concept
2022-03-27 04:13:21 -07:00
Kubernetes Prow Robot 486cdc3f1e Merge pull request #32528 from my-git9/source-ip
[zh] Update source-ip.md
2022-03-27 04:07:21 -07:00
Kubernetes Prow Robot 5a98854672 Merge pull request #32527 from my-git9/install-kubectl-macos
[zh] Update install-kubectl-macos.md
2022-03-27 04:05:21 -07:00
Kubernetes Prow Robot 7c36d57a14 Merge pull request #32526 from my-git9/install-kubectl-linux
[zh] Update install-kubectl-linux.md
2022-03-27 04:03:20 -07:00
Kubernetes Prow Robot 7da2d15264 Merge pull request #32554 from my-git9/example-busybox
[zh] modify busybox to busybox:1.28 in dir examples
2022-03-27 04:01:21 -07:00
Kubernetes Prow Robot a5513faded Merge pull request #32524 from my-git9/parallel-processing-expansion
[zh] update parallel-processing-expansion.md
2022-03-27 03:59:21 -07:00
Sudheer Satyanarayana 81881f8d84 minor text edit
`Pay attention to the case of suffixes` seems better than `Take care about case for suffixes`
2022-03-27 16:01:25 +05:30
Ilya Z 482bfee980 kubectl_docs_fixes 2022-03-27 12:47:02 +04:00
Ilya Z 9a49299b4f cheatsheet_fixes 2022-03-27 12:20:37 +04:00
xin.li ed2ded76e3 [zh] modify busybox to busybox:1.28 in dir examples
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-27 15:22:18 +08:00
Mitesh Jain bf59d01af7 Fix broken link for attach labels in assign-pod-node.md 2022-03-27 12:26:44 +05:30
Edith Puclla 280104545a Update content/es/docs/concepts/storage/storage-limits.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-03-26 17:41:43 -05:00
Edith Puclla 01a210abdf Update content/es/docs/concepts/storage/storage-limits.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-03-26 17:41:19 -05:00
Edith Puclla b12f7e1ad3 Update content/es/docs/concepts/storage/storage-limits.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-03-26 17:39:03 -05:00
Edith Puclla 6c24e33f92 Update content/es/docs/concepts/storage/storage-limits.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-03-26 17:38:43 -05:00
Edith Puclla ecaffa667b Update content/es/docs/concepts/storage/storage-limits.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-03-26 17:38:28 -05:00
Edith Puclla 5bb9befe1c Update content/es/docs/concepts/storage/storage-limits.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-03-26 17:37:45 -05:00
Ilya Z 9f0afaf0c3 advanced_guide_edited 2022-03-27 01:41:03 +04:00
Ilya Z 6319b586d6 content-guide_fix 2022-03-27 01:03:40 +04:00
Kubernetes Prow Robot b68cfbd60a Merge pull request #32485 from tengqm/fix-ip-masq-agent
Fix the ip-masq-agent page
2022-03-26 13:21:21 -07:00
Ilya Z 6525c0cab5 kube_api_typos 2022-03-26 23:55:11 +04:00
Ilya Z 026b8773ff addons_typos 2022-03-26 23:40:25 +04:00
Ilya Z 0c259797db cluster_admin_typos 2022-03-26 23:18:08 +04:00
Kubernetes Prow Robot e58fca00fe Merge pull request #32543 from Tellz777/controller_md
fix_some_typos
2022-03-26 12:07:20 -07:00
Ilya Z 232c79f4e4 fix_some_typos 2022-03-26 23:03:46 +04:00
Ilya Z 510bd76dd7 gc_typos 2022-03-26 22:49:23 +04:00
Kubernetes Prow Robot 94c8a0b1b7 Merge pull request #32542 from Tellz777/control_plane
small_changes_to_docs
2022-03-26 11:47:21 -07:00
Ilya Z 48dc63e27f fix_some_typos 2022-03-26 22:37:48 +04:00
Ilya Z b761dd5cb2 small_changes_to_docs 2022-03-26 22:15:05 +04:00
Ilya Z a664033f69 fix_misspellings 2022-03-26 20:54:01 +04:00
shaggyyy2002 12d8e01ce9 Incorrect or out of date script localization in init 容器 concept #32466 2022-03-26 21:46:19 +05:30
Ilya Z 2139601101 arch_concept 2022-03-26 20:14:01 +04:00
Ilya Z accbd5ef66 translated_quote 2022-03-26 19:45:18 +04:00
Kubernetes Prow Robot 344f7c6d0b Merge pull request #32536 from Tellz777/fix-typo
fix_little_typo
2022-03-26 08:19:20 -07:00
Ilya Z b33b54b447 fix_little_typo 2022-03-26 19:04:14 +04:00
xin.li feb1cbed51 [zh] Update source-ip.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-26 22:50:18 +08:00
xin.li 6c4a40eff3 [zh] Update install-kubectl-macos.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-26 22:47:46 +08:00
xin.li c6c9ab547a [zh] Update install-kubectl-linux.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-26 22:40:05 +08:00
xin.li 26e080cc1f [zh] update parallel-processing-expansion.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-26 22:23:09 +08:00
Qiming Teng fc144300d6 [zh] Translate diagram guide 2022-03-26 21:42:21 +08:00
Kubernetes Prow Robot 47251f7dfc Merge pull request #32514 from reylejano/update-docs-owners
Update website owners aliases
2022-03-26 04:31:22 -07:00
Kubernetes Prow Robot ee6bd562c0 Merge pull request #31444 from tengqm/zh-configmap
[zh] Resync the configmap page
2022-03-26 02:13:21 -07:00
Kubernetes Prow Robot f6984542a0 Merge pull request #32087 from tengqm/zh-extend-index
[zh] Optimize k8s extension index page
2022-03-26 02:11:21 -07:00
Kubernetes Prow Robot b8920e5b08 Merge pull request #32498 from my-git9/enforce-standards-admission-controller
[zh] Update enforce-standards-admission-controller.md
2022-03-26 02:09:21 -07:00
Kubernetes Prow Robot 75c8a15234 Merge pull request #32517 from howieyuen/ref_api_common_patch
[zh]translate content/docs/reference/kubernetes-api/common-definition…
2022-03-26 00:49:20 -07:00
Kubernetes Prow Robot 77949e7382 Merge pull request #32516 from my-git9/troubleshooting
[zh] Update trobleshooting.md
2022-03-26 00:47:21 -07:00
Kubernetes Prow Robot 9f42eecb60 Merge pull request #32507 from my-git9/translate-compose-kubernetes.md
[zh] Update install-kubectl-macos.md
2022-03-26 00:45:20 -07:00
zhangxyjlu dd54580d17 [zh]Add 2021-12-16-StatefulSet-PVC-Auto-Deletion.md (#32492)
* [zh]Add 2021-12-16-StatefulSet-PVC-Auto-Deletion.md

* [zh]Add 2021-12-16-StatefulSet-PVC-Auto-Deletion.md

* [zh]Add 2021-12-16-StatefulSet-PVC-Auto-Deletion.md

* [zh]Add 2021-12-16-StatefulSet-PVC-Auto-Deletion.md
2022-03-26 00:43:20 -07:00
Kubernetes Prow Robot ed50e1bd6f Merge pull request #32236 from tengqm/zh-config-cfgmap
[zh] Update configure pod configmap
2022-03-26 00:41:20 -07:00
Kubernetes Prow Robot 2d3fc12c7b Merge pull request #32205 from tengqm/zh-coredns
[zh] Update coredns page
2022-03-26 00:39:21 -07:00
Kubernetes Prow Robot 46ff8f8922 Merge pull request #32097 from tengqm/zh-fix-networkpolicy
[zh] Fix translation of network policy index page
2022-03-26 00:37:21 -07:00
howieyuen 43efe8258a [zh]translate content/docs/reference/kubernetes-api/common-definitions/status.md into Chinese 2022-03-26 15:31:54 +08:00
howieyuen d6beaff60f [zh]translate content/docs/reference/kubernetes-api/common-definitions/patch.md into Chinese 2022-03-26 13:54:29 +08:00
xin.li d284aca7a4 [zh] Update trobleshooting.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-26 12:37:27 +08:00
Rey Lejano 4576b07883 update owners aliases 2022-03-25 18:24:50 -07:00
Kubernetes Prow Robot a98b05f558 Merge pull request #32506 from my-git9/readme
[zh] Update cncf-code-of-conduct/readme
2022-03-25 17:59:58 -07:00
Manish Kumar 8f8d9b215e Register and document some authz-related audit annotations (#32200)
* Registered audit annotation

* Update content/en/docs/reference/labels-annotations-taints/audit-annotations.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* fix.

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-03-25 17:25:58 -07:00
Subhasmita Swain 09f8637c05 sample outputs created working with Kubernetes v1.24 without docker (#31454)
* sample outputs created without docker working with kubernetes v1.24

* updated

* cleaned and updated

* sample outputs created without docker working with kubernetes v1.24

* updated

* cleaned and updated
2022-03-25 17:17:58 -07:00
Kubernetes Prow Robot 7de1f240a5 Merge pull request #31964 from jihoon-seo/220228_Translate_topology-aware-hints
[ko] Translate 'Topology Aware Hints'
2022-03-25 17:11:58 -07:00
Kubernetes Prow Robot 185512f752 Merge pull request #32000 from Kartik494/podsecuritypolicies
Added Pod security deprecation note
2022-03-25 15:47:58 -07:00
Kubernetes Prow Robot 39fd63ba12 Merge pull request #31989 from guettli/31930__fix_busybox_image_1.28
fix busybox image to version 1.28
2022-03-25 15:45:59 -07:00
Kubernetes Prow Robot 689417422e Merge pull request #32012 from bwolmarans/patch-1
--all-namespaces shorthand
2022-03-25 15:41:58 -07:00
Meha Bhalodiya a3660a0d76 feat: documenting serviceAccountToken volume type (#31329)
* feat: documenting serviceAccountToken volume type

* serviceAccountToken: correct few terms

* Update volumes.md

* Migrate to projected-volumes

* Update projected-volumes.md

* Remove serviceAccountToken from volume type

* Update projected-volumes.md

* Change heading's fragment identifier
2022-03-25 15:31:58 -07:00
Kubernetes Prow Robot 388a12af54 Merge pull request #28934 from atoato88/add-review-url-script
Add script for list URLs updated by target PR
2022-03-25 14:07:00 -07:00
Kubernetes Prow Robot 1dec188e52 Merge pull request #32501 from guresonur/patch-1
Update service.md
2022-03-25 13:41:58 -07:00
Kubernetes Prow Robot a55bc5584e Merge pull request #32486 from tengqm/leadership-migration-state
Fix feature state for ControllerLeaderMigration
2022-03-25 13:39:59 -07:00
Kubernetes Prow Robot 70bb3ee178 Merge pull request #32472 from lukashass/kubectl-install-sh
Use cat instead of shell built-in to read checksum
2022-03-25 13:27:58 -07:00
Kubernetes Prow Robot b91979ef89 Merge pull request #32494 from tengqm/remove-dup-content
Remove duplicated contents for accessing the API server
2022-03-25 13:19:59 -07:00
Kubernetes Prow Robot cafc3455a0 Merge pull request #32503 from my-git9/ingress-controllers
[zh] Update ingress-controllers
2022-03-25 09:23:58 -07:00
Shannon Kularathna 180fa82d9c Add draft content for migrating to dockerd 2022-03-25 15:19:17 +00:00
xin.li 5af719eac8 [zh] Update install-kubectl-macos.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-25 22:58:58 +08:00
xin.li bbe16c5e26 [zh] Update cncf-code-of-conduct/readme
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-25 22:43:30 +08:00
Kubernetes Prow Robot 27573dada6 Merge pull request #32502 from my-git9/daemonsetd
[zh] Update daemonset.md
2022-03-25 07:17:58 -07:00
xin.li 423e1ecc28 [zh] Update ingress-controllers
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-25 21:32:56 +08:00
xin.li d5fccd7c46 [zh] Update daemonset.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-25 21:28:57 +08:00
Onur fe86ff7ae8 Update service.md
http-web-service as a name for port is failing as it has more than 15 characters, hence the change to http-web-svc
2022-03-25 16:07:49 +03:00
Kubernetes Prow Robot c883ec32af Merge pull request #32468 from PriyanshuAhlawat/kube_proxy
Mark user-space kube-proxy as deprecated
2022-03-25 06:03:58 -07:00
Kubernetes Prow Robot 25767f9900 Merge pull request #32497 from my-git9/assign-memory-resource
[zh] Update assign-memory-resource.md
2022-03-25 05:59:58 -07:00
xin.li 035f0f493f [zh] Update enforce-standards-admission-controller.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-25 20:33:06 +08:00
xin.li 8a47855a77 [zh] Update assign-memory-resource.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-25 20:11:13 +08:00
PriyanshuAhlawat 70574cfdb0 Update service.md 2022-03-25 16:25:55 +05:30
Qiming Teng 58a00cfb36 Remove duplicated contents for accessing the API server
The topic of accessing the API server can be found in two places. This
is not good.
2022-03-25 18:48:27 +08:00
Gwenaël Gallon 28ae4d7809 [fr] fix spaces 2022-03-25 10:31:42 +01:00
Kubernetes Prow Robot 24aeb48d8a Merge pull request #32355 from yyyoungha/patch-2
[ko] Update incorrect expression dev-1.23-ko.2
2022-03-25 02:23:50 -07:00
Young Ha 66b414f0e2 [ko] Update incorrect expression in dev-1.23-ko.2
MaxUnavailable is calculated using the Ceil() function and MaxSurge using Floor() function.
2022-03-25 18:16:37 +09:00
Kubernetes Prow Robot 5328fdf797 Merge pull request #32489 from Arhell/zh-sync
[zh] sync storage-classes.md
2022-03-25 01:23:51 -07:00
Arhell 876a1d570c [zh] sync storage-classes.md 2022-03-25 09:59:41 +02:00
Kubernetes Prow Robot 8c2df852be Merge pull request #32161 from tengqm/zh-secure-cluster
[zh] Rework securing cluster page
2022-03-25 00:03:50 -07:00
Qiming Teng 2330573219 Merge branch 'main' into zh-secure-cluster 2022-03-25 14:41:11 +08:00
Jihoon Seo fcd5db6f41 [ko] Translate 'Topology Aware Hints' 2022-03-25 15:37:13 +09:00
Kubernetes Prow Robot 7720ef4bb8 Merge pull request #32182 from mattcary/patch-1
Update external provisioner specification reference in storage-classes.md
2022-03-24 23:25:50 -07:00
Kubernetes Prow Robot f5e8071030 Merge pull request #30588 from dialogbox/patch-2
Update certificates.md
2022-03-24 23:23:50 -07:00
Qiming Teng cfc613135f Fix feature state for ControllerLeaderMigration
The feature has been promoted to Beta in 1.22, according to
content/en/docs/tasks/administer-cluster/controller-manager-leader-migration.md
and upstream source.
2022-03-25 14:12:41 +08:00
Qiming Teng 3b21d5bc69 Fix the ip-masq-agent page 2022-03-25 14:02:40 +08:00
Kubernetes Prow Robot 3013adb039 Merge pull request #32015 from damyl4sure/patch-1
updated allowedTopologies values format
2022-03-24 22:51:50 -07:00
Kubernetes Prow Robot bfdb4647bd Merge pull request #31789 from Mikhail2048/patch-1
Add example of Service targetPort binding by name
2022-03-24 22:45:50 -07:00
Kubernetes Prow Robot 06b8c6c172 Merge pull request #28561 from jihoon-seo/210622_vi_Remove_exec_permission_on_markdown_files
[vi] Remove exec permission on markdown files
2022-03-24 22:43:50 -07:00
Kubernetes Prow Robot 587ddaf696 Merge pull request #31698 from jihoon-seo/220211_Outdated_M18-M24
[ko] Update outdated files in `dev-1.23-ko.2` (M18-M24)
2022-03-24 21:59:51 -07:00
Kubernetes Prow Robot 582a6a793b Merge pull request #32475 from jihoon-seo/220325_Update_links
[ko] Remove deprecated 'kubelet-garbage-collection' page
2022-03-24 21:53:50 -07:00
Kubernetes Prow Robot 0d37b034e7 Merge pull request #32464 from wansir/main
[zh] Fix typo in securing-a-cluster.md
2022-03-24 19:21:51 -07:00
Kubernetes Prow Robot 4351187bc4 Merge pull request #32463 from Gsealy/patch-1
Fix typo CRS → CSR
2022-03-24 19:09:50 -07:00
Jihoon Seo 80fe41b86d [ko] Remove deprecated 'kubelet-garbage-collection' page 2022-03-25 10:47:54 +09:00
Jihoon Seo 9e6b2ef46a [ko] Update links in dev-1.23-ko.2 2022-03-25 10:37:49 +09:00
Kubernetes Prow Robot 20a36d1f14 Merge pull request #32474 from tengqm/fix-feature-state
Fix a nit in the feature-state short code
2022-03-24 18:05:50 -07:00
Qiming Teng d65e53644c Fix a nit in the feature-state short code 2022-03-25 08:39:55 +08:00
Kubernetes Prow Robot e7af510fde Merge pull request #31658 from sftim/20220207_revise_community_page_and_styles
Revise community page and styles
2022-03-24 17:19:50 -07:00
Lukas Hass 3980c42945 Use cat instead of shell built-in to read checksum 2022-03-24 19:58:00 +01:00
Brett Wolmarans 2d69c47782 Update content/en/docs/reference/kubectl/cheatsheet.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-03-24 10:29:42 -07:00
serewicz ad2921225b Update install-kubeadm.md
Telnet is a command that really should not be used, as there is too great a chance it could be misused. NetCat, nc, is a better and newer tool for testing single open ports.
2022-03-24 09:58:58 -05:00
PriyanshuAhlawat 49436e3dcb Update service.md 2022-03-24 17:56:10 +05:30
hongming b501d626a1 [zh] Fix typo in securing-a-cluster.md 2022-03-24 16:34:52 +08:00
Kubernetes Prow Robot dc947abf0a Merge pull request #32457 from Arhell/ru-typo
[ru] fix typo
2022-03-23 23:30:41 -07:00
Kubernetes Prow Robot 92333db41f Merge pull request #32438 from wellshs/patch-2
edit horizontal-pod-autoscale korean description
2022-03-23 21:20:41 -07:00
Kubernetes Prow Robot 5175726aa6 Merge pull request #32461 from my-git9/sysctl-cluster
[zh] Update sysctl-cluster.md
2022-03-23 20:48:41 -07:00
Kubernetes Prow Robot ba8ef207f7 Merge pull request #32462 from my-git9/safely-drain-node
[zh] Update safely-drain-node
2022-03-23 20:36:41 -07:00
Gsealy dfc52b96eb typo CRS -> CSR 2022-03-24 11:28:50 +08:00
Kubernetes Prow Robot b9d4734630 Merge pull request #32459 from 0xff-dev/main
[zh] delete pod overhead title
2022-03-23 20:26:41 -07:00
Kubernetes Prow Robot 771e57059b Merge pull request #32458 from my-git9/reserve-compute-resources
[zh] Update reserve-compute-resources.md
2022-03-23 20:24:41 -07:00
Kubernetes Prow Robot 71b9d081cf Merge pull request #32447 from xuezhixin/main
Translate ObjectReference #32433
2022-03-23 20:18:41 -07:00
Gerzone 94970599cc Translate ObjectReference #32433 2022-03-24 10:53:57 +08:00
xin.li b555410155 [zh] Update safely-drain-node
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-24 10:19:09 +08:00
xin.li bdfc1b64e6 [zh] Update sysctl-cluster.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-24 09:53:43 +08:00
xin.li eb20f3a34d [zh] Update reserve-compute-resources.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-24 09:47:04 +08:00
0xff-dev 49c3eda945 [zh] delete pod overhead title 2022-03-24 09:46:40 +08:00
shixiuguo d1ea334a70 Translate docs/reference/kubernetes-api/common-definitions/node-selector-requirement.md into Chinese (#32038)
* Translate node-selector-requirement.md into Chinese

* Modify as suggested

* Modify according to the review results

* 删除文档中注释的部分

* Translate node-selector-requirement.md into Chinese

Modify according to the review results
2022-03-23 17:46:41 -07:00
zhangxyjlu 1eae49aec8 [zh] Add 2022-02-17-updated-dockershim-faq.md (#32342)
* [zh] Add 2022-02-17-updated-dockershim-faq.md #32270

* [zh] Add 2022-02-17-updated-dockershim-faq.md

* [zh] Add 2022-02-17-updated-dockershim-faq.md

* [zh] Add 2022-02-17-updated-dockershim-faq.md
2022-03-23 17:44:41 -07:00
Kubernetes Prow Robot 7a1cc8a4ff Merge pull request #32445 from my-git9/kops
[zh] Update kops.md
2022-03-23 17:18:40 -07:00
Kubernetes Prow Robot 766e3ef829 Merge pull request #32454 from natalisucks/co-chair-todos
Add natalisucks to docs reviewers and approvers of English language content
2022-03-23 16:46:48 -07:00
Kubernetes Prow Robot f81bf804fb Merge pull request #32145 from afoster/remove-more-kompose-up-down
Remove kompose up and down command doc
2022-03-23 16:44:49 -07:00
Kubernetes Prow Robot 6d3e04c327 Merge pull request #32051 from zr-msft/patch-1
Update link to Azure Gateway Ingress Controller
2022-03-23 16:42:48 -07:00
Kat Cosgrove fb744abdd1 adds 1.24 cluster dockershim removal ready blog (#32303)
* adds 1.24 cluster dockershim removal ready blog

* small rephrasings

* Update content/en/blog/_posts/2022-03-31-ready-for-dockershim-removal.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-03-31-ready-for-dockershim-removal.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-03-31-ready-for-dockershim-removal.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-03-31-ready-for-dockershim-removal.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* Update content/en/blog/_posts/2022-03-31-ready-for-dockershim-removal.md

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>

* small rephrasings and link adds

Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>
2022-03-23 15:31:18 -07:00
Arhell f128a0db14 [ru] fix typo 2022-03-24 00:16:26 +02:00
Natali Vlatko bdf2e6ee97 Add natalisucks to reviewers/approvers of English language content 2022-03-23 19:30:36 +01:00
Kubernetes Prow Robot f397e3ca11 Merge pull request #32380 from jeremypuchta/patch-1
Remove trailing whitespaces from cli commands
2022-03-23 08:50:08 -07:00
xin.li 2a2ab57c82 [zh] Update kops.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-23 21:11:18 +08:00
Kubernetes Prow Robot 2326454c84 Merge pull request #32441 from my-git9/cronjob
[zh] Update cron-jobs and delete repeat context
2022-03-23 03:40:01 -07:00
Kubernetes Prow Robot 2d77b8e021 Merge pull request #32346 from my-git9/my-demo-branch318-1
[zh] Delete kube-scheduler-config.v1beta1.md
2022-03-23 03:22:00 -07:00
xin.li bd6b45c449 [zh] Update cron-jobs and delete repeat context
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-23 18:15:37 +08:00
Kubernetes Prow Robot 39cab7a2d3 Merge pull request #32439 from my-git9/namespace-1
[zh] Update namespace.md
2022-03-23 03:14:01 -07:00
Kubernetes Prow Robot 57c72378e7 Merge pull request #32437 from jihoon-seo/220323_Fix_rendering_of_label-selector_page
[zh] Fix rendering of 'label-selector' page
2022-03-23 03:12:00 -07:00
syxunion 62149d055f Translate object-field-selector to chinese (#32432)
* chinese page object-field-selector

* Modify according to comments
2022-03-23 03:10:00 -07:00
paul.zhang f5ec6b03db [zh] Translate docs/reference/labels-annotations-taints to Chinese (#32255)
* Translate docs/reference/labels-annotations-taints to zh language #32244

* Translate docs/reference/labels-annotations-taints to zh language #32244

* Translate docs/reference/labels-annotations-taints to zh language #32244

* Translate docs/reference/labels-annotations-taints to zh language #32244

* Translate docs/reference/labels-annotations-taints to zh language #32244
2022-03-23 02:47:59 -07:00
xin.li f4ddeb7247 [zh] Update namespace.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-23 16:22:46 +08:00
Kubernetes Prow Robot b2097006f0 Merge pull request #29385 from shannonxtreme/assign-pods-nodes
Refactor Assigning Pods to Nodes
2022-03-23 01:01:59 -07:00
Kubernetes Prow Robot 0f274554a4 Merge pull request #32416 from my-git9/namespace-en
[en] Modify short_description about namespace
2022-03-23 00:54:00 -07:00
Hyunsuk Shin 3acb359995 오타 수정 2022-03-23 16:53:06 +09:00
Jihoon Seo 72b2603b93 [zh] Fix rendering of 'label-selector' page 2022-03-23 16:50:57 +09:00
Kubernetes Prow Robot 4b07eb7c5d Merge pull request #32188 from tengqm/zh-fix-nodelocaldns
[zh] Resync node local DNS page
2022-03-22 20:31:59 -07:00
Qiming Teng dcd6f99724 [zh] Rework securing cluster page
This page was translated poorly. Many texts were not properly translated.
2022-03-23 11:29:14 +08:00
Kubernetes Prow Robot 4ea72404aa Merge pull request #31866 from guettli/patch-2
Added "OR sun,mon,tue,wed,thu,fri,sat" to CronJob
2022-03-22 20:19:59 -07:00
twilight0620 3147d5cea6 [zh] Translate 'label-selector' into Chinese (#32202)
* Translate label-selector into Chinese

* [zh] Translate label-selector into Chinese
2022-03-22 20:05:59 -07:00
Kubernetes Prow Robot 1205400772 Merge pull request #31942 from tengqm/zh-apicfg-v1alpha1
[zh] Translate API server config v1alpha1 reference
2022-03-22 20:03:59 -07:00
Kubernetes Prow Robot 0afc2048fe Merge pull request #31951 from tengqm/zh-kubelet-cfg-v1alpha1
[zh] Translate kubelet config v1alpha1 reference
2022-03-22 20:01:59 -07:00
twilight0620 d62ce868ad [zh] Translate delete-options page into Chinese (#32274)
* [zh] Translate delete-options page into Chinese

* [zh] review comment modify
2022-03-22 19:57:58 -07:00
twilight0620 cb4183dfb0 [zh] Resynchronize Chinese content about policies (#32272)
* [zh] chinese content is different from english content about policies.

* [zh] review comment modify

* [zh] review comment modify
2022-03-22 19:55:59 -07:00
Kubernetes Prow Robot 3a9f0ee800 Merge pull request #32301 from sshukun/update-networking-concepts
[zh] Update connect-applications-service.md
2022-03-22 19:53:59 -07:00
xin.li 3355f284cf [zh] Modify short_description about namespace
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-23 09:57:40 +08:00
Kubernetes Prow Robot b901a31585 Merge pull request #32398 from guettli/patch-3
align second yaml snippet to the first one
2022-03-22 18:29:58 -07:00
Priyanshu Ahlawat 451eb18dcf Update kubelet-integration.md (#32228)
* Update kubelet-integration.md

* Update kubelet-integration.md
2022-03-22 18:07:59 -07:00
Kubernetes Prow Robot 8b8f672ccc Merge pull request #32415 from my-git9/labels-annotations-taints
[zh] Update labels-annotations-taints/_index.md
2022-03-22 17:35:58 -07:00
Kubernetes Prow Robot 08a71e0378 Merge pull request #32321 from guilhem/patch-1
fix: YAML indentation and highlighting
2022-03-22 15:29:58 -07:00
Kubernetes Prow Robot e5b1a0b336 Merge pull request #32348 from PriyanshuAhlawat/linkUpdate_Daemonset
Update update-daemon-set.md issue-32287
2022-03-22 15:21:59 -07:00
Kubernetes Prow Robot 6a47224fe0 Merge pull request #32258 from tengqm/fix-links-2
Fix links in the change PV reclaim policy page
2022-03-22 15:19:58 -07:00
Kubernetes Prow Robot 6c01b03762 Merge pull request #32257 from tengqm/fix-links-1
Fix links in resource metrics pipeline page
2022-03-22 15:17:58 -07:00
Kubernetes Prow Robot 7450be3fcf Merge pull request #32191 from tengqm/update-kubeadm-cfg
Update kubeadm config API v1beta3
2022-03-22 15:15:58 -07:00
Kubernetes Prow Robot 7352c425f7 Merge pull request #32185 from jihoon-seo/220311_nit_kubectl-convert
nit: `kubectl` → `kubectl-convert`
2022-03-22 15:13:59 -07:00
Kirill Roskolii 7add16b378 Add proxy-url example to kubectl documentation (#32245)
* Add proxy-url example

* Fix typo

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-03-22 14:13:58 -07:00
Kubernetes Prow Robot 78d080991a Merge pull request #31895 from a-mccarthy/fixes-30951
Remove Docker references in image concept page
2022-03-22 08:07:44 -07:00
Abigail McCarthy bde860ddcd Update content/en/docs/concepts/containers/images.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-03-22 10:25:23 -04:00
Kubernetes Prow Robot 8aa6163787 Merge pull request #32413 from tengqm/topology-aware-hints
Clarify topology aware hints needs explicit enabling
2022-03-22 07:23:44 -07:00
xin.li dea3143e8f [zh] Update labels-annotations-taints/_index.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-22 22:11:12 +08:00
196Ikuchil 019bc61951 fix:remove line feeds in text 2022-03-22 20:27:30 +09:00
Kubernetes Prow Robot dd0f214e66 Merge pull request #32414 from my-git9/jsonpath
[zh] Update jsonpath
2022-03-22 04:13:43 -07:00
Kubernetes Prow Robot 0e807ccb33 Merge pull request #32412 from my-git9/labels-annotations
[zh] Update audit-annotions.md
2022-03-22 04:12:45 -07:00
196Ikuchil 2f438dd510 Update content/ja/docs/reference/scheduling/config.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-22 20:12:21 +09:00
196Ikuchil 3ab3a17d48 Update content/ja/docs/reference/scheduling/config.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-22 20:12:13 +09:00
196Ikuchil 32852dca8b Update content/ja/docs/reference/scheduling/config.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-22 20:12:02 +09:00
196Ikuchil 87733b3a57 Update content/ja/docs/reference/scheduling/config.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-03-22 20:11:17 +09:00
196Ikuchil d8e4686ab7 Update content/ja/docs/reference/scheduling/config.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-03-22 20:11:06 +09:00
196Ikuchil e853954a19 Update content/ja/docs/reference/scheduling/config.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-03-22 20:10:35 +09:00
196Ikuchil c7b87d9143 Update content/ja/docs/reference/scheduling/policies.md
Co-authored-by: Toshiaki Inukai <82919057+t-inu@users.noreply.github.com>
2022-03-22 20:08:51 +09:00
196Ikuchil e9f7ba6b93 fix:最も要求が多い場合か最も要求が少ない 2022-03-22 20:07:56 +09:00
Qiming Teng 09ae2ba0f6 Clarify topology aware hints needs explicit enabling 2022-03-22 19:06:18 +08:00
196Ikuchil f99e18c781 fix:utilization and score 2022-03-22 20:05:52 +09:00
196Ikuchil a380843143 Update content/ja/docs/concepts/scheduling-eviction/resource-bin-packing.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-22 19:58:33 +09:00
xin.li 941151f362 [zh] Update jsonpath
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-22 18:28:05 +08:00
xin.li 64fcfda8f1 [zh] Update audit-annotions.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-22 18:22:05 +08:00
Arhell 61849547f2 [ja] update audit.md 2022-03-22 10:38:22 +02:00
Kubernetes Prow Robot f52a12a77b Merge pull request #32384 from my-git9/kubectl
[zh] Update kubectl.md
2022-03-21 23:39:43 -07:00
xin.li f1ae390104 [zh] Update kubectl.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-22 14:25:16 +08:00
Kubernetes Prow Robot 6221ad52ce Merge pull request #32387 from my-git9/pod-disruption-budget
[zh] Update pod-disruption-budget
2022-03-21 21:11:43 -07:00
Kubernetes Prow Robot 86771edf32 Merge pull request #32376 from sshukun/update-references-labels-annotations-taints
[zh] Update labels-annotations-taints related reference pages
2022-03-21 19:39:43 -07:00
liuzhilin12 4651a6e810 Translate en/docs/reference/kubernetes-api/common-definitions/typed-local-object-reference.md (#32271)
* Translate Reference/glossary/pod-disruption

* translate reference/glossary/pod-disruption page

* Translate Reference/glossary/pod-disruption

* Translate Reference/glossary/pod-disruption

* Translate Reference/glossary/pod-disruption

* translate en/docs/reference/kubernetes-api/common-definitions/typed-local-object-reference.md

* Delete pod-disruption.md

* Translate en/docs/reference/kubernetes-api/common-definitions/typed-local-object-reference.md

* Translate en/docs/reference/kubernetes-api/common-definitions/typed-local-object-reference.md

* Translate en/docs/reference/kubernetes-api/common-definitions/typed-local-object-reference.md
2022-03-21 19:37:44 -07:00
twilight0620 e1bd7e5e93 [zh] Translate common-definitions/list-meta page into Chinese (#32312)
[zh] modify review comments

[zh] modify comments
2022-03-21 19:23:44 -07:00
Kubernetes Prow Robot d26391d08a Merge pull request #32385 from my-git9/namespace
[zh] Update namespace
2022-03-21 19:09:44 -07:00
Kubernetes Prow Robot 05f3d252fd Merge pull request #32391 from my-git9/security
[zh] Update security
2022-03-21 18:49:44 -07:00
xin.li bdb898ba52 [zh] Update security
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-22 09:37:24 +08:00
Kubernetes Prow Robot 7df0203da8 Merge pull request #32397 from marcelomansur/dockershim-faq-pt-br
[pt-br] Include dockershim-faq translation
2022-03-21 17:52:13 -07:00
Marcelo Dellacroce Mansur 35bdfad7af docs(pt-br): typo correction 2022-03-21 21:16:53 -03:00
Kubernetes Prow Robot ca6c16b49c Merge pull request #32359 from Arhell/fix-download-link
[ja] fix download link
2022-03-21 15:58:47 -07:00
Thomas Güttler 2176c33e62 second yaml snippet was not alligned to first one
This snippet had less indentation then the previous.

Now the second path is aligned to the second path
2022-03-21 21:15:38 +01:00
Marcelo Dellacroce Mansur a578683f13 docs(pt-br): translate dockershim removal faq to pt-br 2022-03-21 17:01:52 -03:00
Kubernetes Prow Robot a20d85c1ea Merge pull request #32394 from cpanato/update-patchesa
update patch calendar for April cycle
2022-03-21 09:57:19 -07:00
cpanato 2543983f4e update patch calendar for April cycle
Signed-off-by: cpanato <ctadeu@gmail.com>
2022-03-21 16:59:56 +01:00
Kubernetes Prow Robot 6d22e08903 Merge pull request #32309 from Arhell/ja-remove-link
[ja] remove addon
2022-03-21 06:17:20 -07:00
Kubernetes Prow Robot 751d858d5d Merge pull request #31923 from Arhell/conf
[ja] Configure multiple schedulers: switch to the secure ports
2022-03-21 06:15:21 -07:00
Kubernetes Prow Robot bdf7852856 Merge pull request #31689 from Arhell/certificate
[ja] kube-etcd certificate requires additional SAN's
2022-03-21 06:13:22 -07:00
Kubernetes Prow Robot 538510d546 Merge pull request #31928 from 196Ikuchil/trans_pod_overhead
[ja] Translate concepts/scheduling-eviction/pod-overhead/ into Japanese
2022-03-21 06:09:21 -07:00
Kubernetes Prow Robot be227b335a Merge pull request #31913 from 196Ikuchil/add_scheduling_framework
[ja] Translate concepts/scheduling-eviction/scheduling-framework/ into Japanese
2022-03-21 05:57:20 -07:00
Jihoon Seo cc8e3c5897 [ko] Translate 'Ephemeral Volumes' 2022-03-21 18:26:08 +09:00
Jihoon Seo 6378609cd7 [ko] Update outdated files in dev-1.23-ko.2 M74-85 2022-03-21 18:21:13 +09:00
Kubernetes Prow Robot 02e2d9069c Merge pull request #32386 from twilight0620/zhCommonDefinitions3
[zh] Translate common-definitions/local-object-reference page into Chinese
2022-03-21 01:47:09 -07:00
Kubernetes Prow Robot 1f3784894e Merge pull request #32379 from kot-pilot/patch-1
[ru] Fix nits in what is kubernetes page
2022-03-21 01:19:08 -07:00
Kubernetes Prow Robot b3ccd2c374 Merge pull request #32232 from Arhell/remove-addon
[ru] remove addon
2022-03-21 01:17:08 -07:00
Kubernetes Prow Robot b418ab558c Merge pull request #32165 from mengjiao-liu/update_kubectl_link_zh
[zh]Move kubectl overview to be section index
2022-03-21 01:07:08 -07:00
Kubernetes Prow Robot 8ec72e09a9 Merge pull request #32375 from my-git9/secret
[zh] Update secret.md
2022-03-21 00:39:10 -07:00
Kubernetes Prow Robot 34cfe194f1 Merge pull request #32372 from sshukun/update-ingress
[zh] Update ingress.md and ingress-controllers.md
2022-03-21 00:21:08 -07:00
xin.li ded133d876 [zh] Update pod-disruption-budget
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-21 15:14:27 +08:00
xin.li 88f20c03b5 [zh] Update namespace
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-21 14:55:17 +08:00
twilight0620 00bac02733 [zh] modify comments 2022-03-21 14:41:28 +08:00
Jihoon Seo ce19161d60 [ko] Update outdated files in dev-1.23-ko.2 M25-39 2022-03-21 15:02:09 +09:00
Jihoon Seo 13e4d2d37e [ko] Update outdated files in dev-1.23-ko.2 M18-24 2022-03-21 14:48:19 +09:00
twilight0620 fd05c1ed05 [zh] Translate local-object-reference page into Chinese 2022-03-21 10:56:58 +08:00
twilight0620 619a334b01 [zh] Translate local-object-reference page into Chinese 2022-03-21 10:55:31 +08:00
edithturn 131f3b2b46 fix minor typo errors 2022-03-20 21:01:32 -05:00
edithturn 0ffcc66120 add storage limits documentation 2022-03-20 20:33:55 -05:00
Kubernetes Prow Robot d0d158a0e3 Merge pull request #32319 from my-git9/my_demo_branch
[zh] Update kubelet.md
2022-03-20 18:31:08 -07:00
xin.li 9c0f836038 [zh] Update secret.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-21 09:29:49 +08:00
Kubernetes Prow Robot fe04fb8929 Merge pull request #32377 from sshukun/add-deprecated
Add deprecated description to the subtitle
2022-03-20 11:37:08 -07:00
Song Shukun c67ac232ed [zh] Update labels-annotations-taints related reference pages 2022-03-21 01:59:01 +09:00
Jeremy Puchta 00f74d9ae4 Remove trailing whitespaces from cli commands 2022-03-20 16:36:50 +01:00
kot-pilot cae9057d14 Fix small typo 2022-03-20 16:52:31 +03:00
Kubernetes Prow Robot 0b01c92d58 Merge pull request #32371 from sshukun/fix-ingress-nit
Fix nit in ingress.md
2022-03-20 04:49:08 -07:00
Song Shukun 66132def66 Add deprecated description to the subtitle 2022-03-20 19:55:57 +09:00
Song Shukun 4de33db604 [zh] Update ingress.md and ingress-controllers.md 2022-03-20 14:21:20 +09:00
Song Shukun 054e0d5db9 Fix nit in ingress.md 2022-03-20 01:19:39 +09:00
Nir Rosenthal 76e78444ef per https://github.com/kubernetes/website/pull/32326#discussion_r830493057 2022-03-19 17:39:59 +02:00
Kubernetes Prow Robot f2ccff3305 Merge pull request #32369 from my-git9/preemption
[zh] Update preemption.md
2022-03-19 04:09:08 -07:00
xin.li 1c9a57c300 [zh] Update preemption.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-19 18:43:05 +08:00
Kubernetes Prow Robot 22107ff43a Merge pull request #32297 from aeomhs/patch-1
[mistranslated] maxUnavailable rounds down, maxSurge rounds up.
2022-03-19 02:49:08 -07:00
Kubernetes Prow Robot a98769a0b6 Merge pull request #32365 from my-git9/my-demo-branch318
[zh] Update finalizer.md
2022-03-18 23:19:08 -07:00
Kubernetes Prow Robot d2f0f22b4e Merge pull request #32362 from my-git9/container-runtime
[zh]Update container-runtime.md
2022-03-18 23:17:08 -07:00
Kubernetes Prow Robot 7847f4e27c Merge pull request #32364 from my-git9/extensions
[zh] Update extensions.md
2022-03-18 23:15:09 -07:00
HYUNSIK AEOM 21e2046efb [ko] fix a mistranslated; maxUnavailable rounds down, maxSurge rounds up.
has been mistranslated. 🥺
rounding down is '내림' in Korean.
rounding up is '올림' in Korean.

If calculate '반올림' when desired replica 1, both maxUnavailable and maxSurge should be 0.
In English documentation, there was written explicitly 'rounding down', 'rounding up'.
Also in code, explicitly using 'Math.Ceil' and 'Math.floor'.

- Related codes
    + [deployment_util.go > maxSurge](https://github.com/kubernetes/kubernetes/blob/7152825c0695d62fe06b47cc3e1699095290d73f/pkg/controller/deployment/util/deployment_util.go#L456)
    + [deployment_util.go > ResolveFenceposts](https://github.com/kubernetes/kubernetes/blob/7152825c0695d62fe06b47cc3e1699095290d73f/pkg/controller/deployment/util/deployment_util.go#L849)
    + [util/instr.go > GetScaledValueFromIntOrPercent](https://github.com/kubernetes/kubernetes/blob/7152825c0695d62fe06b47cc3e1699095290d73f/staging/src/k8s.io/apimachinery/pkg/util/intstr/intstr.go#L146)

- Korean dictionary
    + [올림: rounding up](https://krdict.korean.go.kr/m/eng/searchResultView?wordMatchFlag=N&currentPage=1&mainSearchWord=%EC%98%AC%EB%A6%BC&sort=&searchType=W&proverbType=&exaType=&ParaWordNo=68195&font_size=12&nationCode=6&nation=eng&viewType=A)
    + [반올림: rounding off](https://krdict.korean.go.kr/m/eng/searchResultView?wordMatchFlag=N&currentPage=1&mainSearchWord=%EB%B0%98%EC%98%AC%EB%A6%BC&sort=&searchType=W&proverbType=&exaType=&ParaWordNo=57172&font_size=12&nationCode=6&nation=eng&viewType=A)
2022-03-19 14:53:53 +09:00
Kubernetes Prow Robot d63f8cf644 Merge pull request #32353 from Dirc/main
fixed order for resources: requests and limits
2022-03-18 21:53:11 -07:00
xin.li 8ef1940c0c [zh]Update container-runtime.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-19 12:35:07 +08:00
xin.li d68afd6128 [zh] Update extensions.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-19 12:32:24 +08:00
xin.li 97c6dc0cda [zh] Update finalizer.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-19 12:30:12 +08:00
Kubernetes Prow Robot db5390a2ce Merge pull request #32368 from my-git9/patch-3
[zh] Update kube-scheduler.md
2022-03-18 20:57:11 -07:00
Kubernetes Prow Robot c026dde324 Merge pull request #32367 from my-git9/patch-2
[zh] Update quantity.md
2022-03-18 20:53:08 -07:00
Kubernetes Prow Robot aeceb04c7f Merge pull request #32366 from my-git9/patch-1
[zh] Update flexvolume
2022-03-18 20:51:08 -07:00
my-git9 bca1129752 [zh] Update kube-scheduler.md
Update kube-scheduler.md
2022-03-19 11:09:57 +08:00
my-git9 9ae8358e7e [zh] Update quantity.md 2022-03-19 11:07:08 +08:00
my-git9 50e75e660f [zh] Update flexvolume
[zh] Update flexvolume
2022-03-19 11:02:47 +08:00
Kubernetes Prow Robot eda7edee82 Merge pull request #32276 from bart0sh/PR0005-update-Intel-plugins
update list of Intel device plugins
2022-03-18 17:45:27 -07:00
Arhell c8019f35d5 [ja] fix download link 2022-03-19 00:23:12 +02:00
dirc 56067a41c8 fixed order for resources: requests and limits 2022-03-18 16:35:44 +01:00
Ed Bartosh 2c6dcdde24 update list of Intel device plugins 2022-03-18 15:00:46 +02:00
Kubernetes Prow Robot 7e2afa9bbf Merge pull request #31924 from anencore94/ko_update_garbage_collection
[ko] update garbage collection
2022-03-18 05:47:16 -07:00
Kubernetes Prow Robot 662682a6fa Merge pull request #31697 from jihoon-seo/220211_Outdated_M9-M17
[ko] Update outdated files in `dev-1.23-ko.2` (M9-M17)
2022-03-18 05:13:16 -07:00
Kubernetes Prow Robot 2acb136fe4 Merge pull request #31695 from jihoon-seo/220211_Outdated_M1-M8
[ko] Update outdated files in `dev-1.23-ko.2` (M1-M8)
2022-03-18 05:07:16 -07:00
PriyanshuAhlawat 2f72e09add Update update-daemon-set.md 2022-03-18 17:04:39 +05:30
Kubernetes Prow Robot 078c5bb013 Merge pull request #32343 from aaerrolla/main
Fix directory to make and put kubectl in
2022-03-18 03:01:15 -07:00
Kubernetes Prow Robot edfb9d20a5 Merge pull request #32347 from my-git9/my-demo-branch318
[zh] Delete kube-scheduler-policy-config.v1.md
2022-03-18 02:55:16 -07:00
xin.li ad69ff3f6d [zh] Delete kube-scheduler-policy-config.v1.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-18 17:30:14 +08:00
xin.li 0e4113ad51 [zh] Delete kube-scheduler-config.v1beta1.md 2022-03-18 17:22:00 +08:00
Anjan 1d7ee57cbd there is no need to create a kubernetes directory under ~/.local/bin 2022-03-18 12:30:16 +05:30
Kubernetes Prow Robot abc15daff2 Merge pull request #32336 from my-git9/my-demo-branch318-1
[zh Update apiserver-webhookadmission.v1.md]
2022-03-17 23:11:15 -07:00
Kubernetes Prow Robot 84dc73d556 Merge pull request #32329 from my-git9/my-demo-branch318
[zh] Update apiserver-config.v1.md
2022-03-17 23:09:16 -07:00
xin.li 8a7b2e5246 [zh Update apiserver-webhookadmission.v1.md]
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-18 13:01:05 +08:00
Kubernetes Prow Robot d50adeaa6f Merge pull request #32330 from rkazak/patch-1
Fix typo
2022-03-17 21:35:16 -07:00
Rohinton Kazak 1d1f3edd65 Update cheatsheet.md
typo ?
2022-03-17 19:30:49 -07:00
xin.li 430588612f [zh] Update apiserver-config.v1.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-18 10:04:29 +08:00
Nir Rosenthal 3f0f56f0f2 Changing note about limits without requests
this is true for all limits (not only CPU and memory but also ephemeral storage)

https://github.com/kubernetes/kubernetes/blob/4d08582d1fa21e1f5887e73380001ac827371553/pkg/apis/core/v1/defaults.go#L159
2022-03-18 00:06:10 +02:00
Brenda Santos b3dfe51819 [pt-br] Adding resouces quotas page translation (#32209)
* [pt-br]Adding range limits page translation

* [pt-br] making suggested adjustments

* [pt-br] updating yaml lines

* [pt-br] Adding resource quotas page translation

* Updating translations with suggestions

* Adding archive

* Applying suggestion

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>

* Adjusting terms

* Adjusting terms

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-03-17 13:38:42 -07:00
Kubernetes Prow Robot 86db461dd1 Merge pull request #31910 from Kartik494/mount_description
registered mount-options annotation
2022-03-17 08:29:21 -07:00
Guilhem Lettron a0cdf50ac6 fix: YAML indentation and highlighting 2022-03-17 16:01:40 +01:00
xin.li 79bfc1746e [zh] Update kubelet.md
Signed-off-by: xin.li <xin.li@daocloud.io>
2022-03-17 20:54:18 +08:00
Kubernetes Prow Robot fc92346868 Merge pull request #32318 from my-git9/my_demo_branch
[zh] Update kubelet-tls-bootstrapping.md
2022-03-17 03:37:20 -07:00
xin.li 87f67c8a72 [zh] Update kubelet-tls-bootstrapping.md 2022-03-17 18:08:49 +08:00
Kubernetes Prow Robot faf69fcb38 Merge pull request #32219 from tengqm/zh-dev-ccm
[zh] Tweak translation of CCM development page
2022-03-16 23:49:19 -07:00
Kubernetes Prow Robot 2fa8089d67 Merge pull request #32313 from my-git9/my_demo_branch
[zh] Update admission-controllers
2022-03-16 23:29:19 -07:00
xin.li bb96f70513 [zh] Update admission-controllers.md 2022-03-17 12:39:34 +08:00
Song Shukun 5bffffb3cb [zh] Update connect-applications-service.md 2022-03-17 11:03:22 +09:00
Kubernetes Prow Robot 6f09418507 Merge pull request #32310 from thockin/master
Clarify ConfigMap value type
2022-03-16 17:17:18 -07:00
Kubernetes Prow Robot ea6bbbda6f Merge pull request #32044 from alghe-global/fix/concepts/workloads/pods/pod-lifecycle/preStop-hook-wording
Reword preStop hook usage regarding container's Terminated state
2022-03-16 15:58:09 -07:00
Tim Hockin 01ab111c89 Clarify ConfigMap value type 2022-03-16 15:49:39 -07:00
Arhell 605f4c7aa8 [ja] remove addon 2022-03-17 00:46:51 +02:00
PriyanshuAhlawat 3d78bd31df Update create-cluster-kubeadm.md 2022-03-17 02:21:16 +05:30
Kubernetes Prow Robot 4865cc632f Merge pull request #32109 from RinkiyaKeDad/nca_readme
documenting the new contributor ambassador role
2022-03-16 08:57:17 -07:00
196Ikuchil 5f47ac7965 Update config.md 2022-03-16 23:32:27 +09:00
196Ikuchil 2a638d61c2 Update replica-set.md 2022-03-16 23:21:01 +09:00
PriyanshuAhlawat c7952b2c3e Update controlling-access.md 2022-03-16 19:16:46 +05:30
my-git9 8f2cf33da0 [zh] Update authentication.md (#32291)
* [zh] Update authentication.md

Update authentication.md
Sign off  xin.li<xin.li@daocloud.io>

* Update authentication.md
2022-03-16 04:23:49 -07:00
my-git9 94e02386e6 [zh] Update node.md (#32286)
* [zh] Update node.md

[zh] Update node.md
Sign off xin.li<xin.li@daocloud.io>

* Update node.md

* Update node.md
2022-03-16 02:57:49 -07:00
Kubernetes Prow Robot 0b479f7ac8 Merge pull request #32281 from sshukun/concepts-storage
[zh] Update storage pages in concepts
2022-03-16 02:55:51 -07:00
Arsh Sharma 6bdd2518ba adding nca details
Signed-off-by: Arsh Sharma <arshsharma461@gmail.com>
2022-03-16 15:10:03 +05:30
196Ikuchil 37c8b664cb Update content/ja/docs/concepts/scheduling-eviction/scheduling-framework.md
Co-authored-by: Kei Ak <kakts.git@gmail.com>
2022-03-16 18:36:32 +09:00
196Ikuchil f1fd1a5eeb Update content/ja/docs/concepts/scheduling-eviction/scheduling-framework.md 2022-03-16 18:36:13 +09:00
my-git9 1601127d9e [zh] Update bootstrap-tokens.md (#32289)
* [zh] Update bootstrap-tokens.md

Update bootstrap-tokens.md
Sign off xin.li <xin.li@daocloud.io>

* Update bootstrap-tokens.md
2022-03-16 02:35:49 -07:00
196Ikuchil 30de7d9174 fix:replace ため to ので 2022-03-16 18:20:45 +09:00
196Ikuchil b602aac06f fix:replace コンテナー to コンテナ 2022-03-16 18:15:52 +09:00
Kubernetes Prow Robot cee9f23c32 Merge pull request #32223 from tengqm/mv-access-svc
Migrate access cluster service page
2022-03-16 02:11:50 -07:00
Qiming Teng cce96ae367 Migrate access cluster service page
The acess-cluster-service page, has nothing to do with administering a cluster.
A better home for this page should be the `/docs/tasks/access-application-cluster` subdirectory instead.
2022-03-16 16:45:10 +08:00
Qiming Teng 2d0d647d0b [zh] Update configure pod configmap
This PR resyncs the configure-pod-configmap page, and translates the comments in the reference example YAML files.
2022-03-16 16:33:40 +08:00
Kubernetes Prow Robot 46094a247b Merge pull request #32278 from Debanitrkl/apac_blog_1
Added the MoC APAC blog post
2022-03-16 01:25:51 -07:00
Tim Bannister 6367e2c24a Fix blog article emoji 2022-03-16 08:17:50 +00:00
Song Shukun 89baadb676 [zh] Update volumes.md 2022-03-16 15:07:17 +09:00
Kubernetes Prow Robot 8200a77869 Merge pull request #32277 from my-git9/patch-63
[zh] Update webhook.md
2022-03-15 19:25:48 -07:00
Kubernetes Prow Robot 8afea7079b Merge pull request #32140 from tengqm/zh-fix-tutorials-idx
[zh] Resync tutorials index
2022-03-15 18:53:48 -07:00
my-git9 c82f93197a Update webhook.md 2022-03-16 09:48:02 +08:00
Kubernetes Prow Robot 58c2cd247f Merge pull request #32050 from marckhouzam/fix/zshNoAlias
No need for special handling for zsh aliases
2022-03-15 17:29:48 -07:00
Kubernetes Prow Robot a937a0fd34 Merge pull request #32279 from PriyanshuAhlawat/link_update
Update _index.md issue-32273
2022-03-15 17:23:49 -07:00
Song Shukun a3c05f3128 [zh] Remove line feed between two Chinese characters in volumes.md 2022-03-16 07:15:45 +09:00
PriyanshuAhlawat 7e54b18dd4 Update controlling-access.md 2022-03-16 01:31:54 +05:30
Song Shukun 23e5c44cf9 [zh] Update storage pages in concepts 2022-03-16 02:46:20 +09:00
Kubernetes Prow Robot 636cff2b55 Merge pull request #32100 from stormqueen1990/arm64
feat: arm64-compatible Dockerfile for local development
2022-03-15 10:08:10 -07:00
PriyanshuAhlawat e920c416f7 Update _index.md 2022-03-15 22:18:26 +05:30
Wang bf89f9c5b7 [ja] Translate tasks/administer-cluster/securing-a-cluster into Japanese (#30812)
* done

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update securing-a-cluster.md

* Pod is k8s resource name

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* fix links to point ja

* fix links

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/securing-a-cluster.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-03-15 08:38:10 -07:00
Debanitrkl ba3aa849d6 Added the MoC APAC blog post 2022-03-15 19:25:29 +05:30
Kubernetes Prow Robot aa7dbffadd Merge pull request #32227 from 0xff-dev/main
[zh] update assign-pod-node.md doc
2022-03-15 05:54:11 -07:00
Kubernetes Prow Robot 701d42cc72 Merge pull request #32253 from my-git9/patch-61
[zh] Update advanced.md
2022-03-15 05:50:11 -07:00
my-git9 2bd4fcdf8a [zh] Update webhook.md
Sign off xin.li<xin.li@daocloud.io>
2022-03-15 18:50:27 +08:00
Kubernetes Prow Robot 672ab40f1a Merge pull request #32260 from tengqm/fix-links-4
Fix links in the nodes page
2022-03-15 02:20:12 -07:00
Kubernetes Prow Robot bef043a0fd Merge pull request #32262 from my-git9/patch-62
[zh] Update localization.md
2022-03-15 01:16:12 -07:00
Kubernetes Prow Robot fad8776a92 Merge pull request #32268 from mk46/PSS
Update enforce-standards-admission-controller.md
2022-03-15 01:14:12 -07:00
my-git9 463d51e2ea Update localization.md 2022-03-15 15:17:22 +08:00
my-git9 39d82717f0 Update localization.md 2022-03-15 15:16:18 +08:00
Kubernetes Prow Robot 2a0e2ed152 Merge pull request #30984 from sftim/20211215_revise_secret_concept
Tidy & reword Secret concept
2022-03-14 14:17:00 -07:00
Manish Kumar 018b3bcbf6 Update enforce-standards-admission-controller.md 2022-03-15 01:04:36 +05:30
Kubernetes Prow Robot 09d30e10d4 Merge pull request #32261 from mk46/update_cloud_provider
Update deprecation message for kubelet's flag.
2022-03-14 11:37:15 -07:00
Rey Lejano 2fdcf73c42 Update content/en/docs/reference/command-line-tools-reference/kubelet.md 2022-03-14 11:27:21 -07:00
my-git9 818be3f912 [zh] Update localization.md
Sign off xin.li<xin.li@daocloud.io>
2022-03-14 22:23:02 +08:00
Manish Kumar 7181361798 updated for --dynamic-config-dir 2022-03-14 18:29:38 +05:30
Qiming Teng e3bace5282 Adjust wrapping of long lines 2022-03-14 20:49:36 +08:00
Manish Kumar 005e3fd4cf Update deprecation message for kubelet's flag. 2022-03-14 18:18:31 +05:30
Qiming Teng a11ecef6f1 Wrap long lines and fix a few nits in the text 2022-03-14 20:36:51 +08:00
Qiming Teng 06f35a55d5 Fix link to use relative path 2022-03-14 20:29:23 +08:00
Qiming Teng e9a8cc6eda Reformat the indentation of lists and sample outputs 2022-03-14 20:22:22 +08:00
Qiming Teng f1575f40c2 Fix link in change PV reclaim policy page 2022-03-14 20:20:04 +08:00
Qiming Teng 88d8ec551c Wrap long lines for ease of change tracking 2022-03-14 20:15:54 +08:00
Qiming Teng 66a07b0bae Fix links in resource metrics pipeline page 2022-03-14 20:06:29 +08:00
Kubernetes Prow Robot baa5fce2e9 Merge pull request #32256 from NoppadolXOM/patch-1
Fix a link in cluster-level-pss.md
2022-03-14 05:02:20 -07:00
Noppadol ba8ab6238b Fix link in cluster-level-pss.md
Missing a "/" for the link to [Pod Security Standards]
2022-03-14 17:58:26 +07:00
Kubernetes Prow Robot 2b113b77db Merge pull request #32252 from my-git9/patch-60
[zh] Update install-kubectl-windows.md
2022-03-14 02:12:21 -07:00
Kubernetes Prow Robot 7d5e4cc082 Merge pull request #32026 from tengqm/zh-container-res
[zh] Resync managing resource for containers
2022-03-14 00:54:21 -07:00
my-git9 673efc65bd [zh] Update advanced.md
Sign off xin.li <xin.li@daocloud.io>
2022-03-14 14:16:27 +08:00
my-git9 bab1974cab Update install-kubectl-windows.md 2022-03-14 14:13:19 +08:00
my-git9 7e744a6abb [zh] Update install-kubectl-windows.md
Sign off xin.li <xin.li@daocloud.io>
2022-03-14 13:20:22 +08:00
Kubernetes Prow Robot 991f671a02 Merge pull request #30721 from mlbiam/master
making wording clearer on extra in impersonation
2022-03-13 21:02:19 -07:00
Kubernetes Prow Robot c9debdcacb Merge pull request #28954 from swiftslee/main
update some typo produced by scripts/verify-spelling.sh
2022-03-13 21:00:19 -07:00
Kubernetes Prow Robot b35813abf6 Merge pull request #31831 from PriyanshuAhlawat/update
Updated the default backend for ingress controller issue-31465
2022-03-13 20:48:20 -07:00
Kubernetes Prow Robot fc0e066ce3 Merge pull request #32241 from tengqm/tweak-downwardapi-vol
Tweak the downward API volume task page
2022-03-13 20:44:19 -07:00
Kubernetes Prow Robot e05ea36d5d Merge pull request #32220 from millerdrew/patch-1
minor wording fix
2022-03-13 17:14:20 -07:00
Qiming Teng 6149835647 Tweak the downward API volume task page
This PR drops some outdated information about very old Kubernetes versions.
The last section is improved so that readers get a better idea why those pointers are provided.
2022-03-14 08:10:07 +08:00
Kubernetes Prow Robot b0beb9abbd Merge pull request #32240 from my-git9/patch-58
[zh] Update update-api-object-kubectl-patch.md
2022-03-13 01:28:19 -08:00
my-git9 431c32f09a [zh] Update update-daemon-set.md (#32235)
* [zh] Update update-daemon-set.md

sign off xin.li<xin.li@daocloud.io>

* [zh] Update update-daemon-set.md
2022-03-13 01:26:20 -08:00
my-git9 8935aebc6b [zh] Update update-api-object-kubectl-patch.md
sign off xin.li<xin.li@daocloud.io>
2022-03-13 16:01:22 +08:00
0xff-dev 357efebb9b [zh] update assign-pod-node.md doc 2022-03-13 08:44:43 +08:00
Kubernetes Prow Robot be818626f6 Merge pull request #32226 from my-git9/patch-56
[zh] Update parallel-processing-expansion.md
2022-03-12 16:36:22 -08:00
Kubernetes Prow Robot e0ad552e81 Merge pull request #32225 from my-git9/patch-55
[zh] Update define-command-argument-container.md
2022-03-12 16:34:24 -08:00
Arhell d368057eb7 [ru] remove addon 2022-03-13 00:58:16 +02:00
my-git9 87666401b2 [zh] Update parallel-processing-expansion.md
Update parallel-processing-expansion.md
2022-03-12 22:35:13 +08:00
my-git9 f50abc18fd [zh] Update define-command-argument-container.md
Sign off xin.li <xin.li@daocloud.io>
2022-03-12 22:32:19 +08:00
Qiming Teng 0e5285419c [zh] Resync managing resource for containers
This is an annoying change and it is a waste of life. It costed me 4
hours to complete this resync.
2022-03-12 18:08:05 +08:00
Qiming Teng 07fb0c1a6d [zh] Translate API server config v1alpha1 reference 2022-03-12 18:05:17 +08:00
Amit Sharma a60e9203e0 Update exec-liveness.yaml 2022-03-12 14:42:48 +05:30
Amit Sharma ef297288fa Updated configure-liveness-readiness-startup-probes.md
We don't need to pass -r flag with rm command to delete a file.
2022-03-12 14:13:06 +05:30
Qiming Teng 8ef08a4718 [zh] Tweak translation of CCM development page
The glossary shortcode is annoying. Sometimes it generates weird
sentence structures for Chinese.
2022-03-12 16:25:20 +08:00
Drew Miller 6b21f286df minor wording fix 2022-03-12 01:22:10 -05:00
Kubernetes Prow Robot 3a46ff7cc5 Merge pull request #32216 from my-git9/patch-53
[zh] Update memory-manager.md
2022-03-11 21:42:23 -08:00
my-git9 a3887bff6f [zh] Update _index.md (#32213)
* [zh] Update _index.md

Sign of xin.li <xin.li@daocloud.io>

* Update _index.md

* [zh] Update _index.md
2022-03-11 21:40:23 -08:00
my-git9 642ae56bc0 [zh] Update access-cluster-services.md (#32199)
* [zh] Update access-cluster-services.md

[zh] Update access-cluster-services.md

* Update access-cluster-services.md
2022-03-11 21:38:23 -08:00
my-git9 615e48d2a2 [zh] Update configure-upgrade-etcd.md (#32198)
* [zh] Update configure-upgrade-etcd.md

Update configure-upgrade-etcd.md

* Update configure-upgrade-etcd.md
2022-03-11 21:36:23 -08:00
my-git9 1a0a6eba1a [zh] Update access-cluster.md (#32178)
* [zh] Update access-cluster.md

[zh] Update access-cluster.md

* Update access-cluster.md

* Update access-cluster.md
2022-03-11 21:34:24 -08:00
Kubernetes Prow Robot 74c9374435 Merge pull request #32157 from tallclair/apparmor
Make the AppArmor docs more runtime agnostic
2022-03-11 21:32:23 -08:00
Kubernetes Prow Robot 9c17333aec Merge pull request #32211 from my-git9/patch-51
[zh] Update adding-windows-nodes.md
2022-03-11 21:30:23 -08:00
Kubernetes Prow Robot 3b3574ce16 Merge pull request #32217 from my-git9/patch-54
[zh] Update create-hostprocess-pod.md
2022-03-11 21:28:23 -08:00
Kubernetes Prow Robot dccc9cd077 Merge pull request #32206 from dghg/fixtypo
[ko] fix typo in get-shell-running-container page
2022-03-11 20:54:23 -08:00
my-git9 241b949955 [zh] Update create-hostprocess-pod.md
Update create-hostprocess-pod.md
2022-03-12 09:55:55 +08:00
my-git9 6261a4cf08 [zh] Update memory-manager.md
[zh] Update memory-manager.md
2022-03-12 09:43:36 +08:00
my-git9 c86c25938e [zh] Update adding-windows-nodes.md
[zh] Update adding-windows-nodes.md
Sign off <xin.li@daocloud.io>
2022-03-11 23:18:30 +08:00
Donghyeong Kang 37e282aaae FIX: typo in get-shell-running-container.md 2022-03-11 21:34:05 +09:00
Qiming Teng da8b6d730f [zh] Update coredns page 2022-03-11 19:55:17 +08:00
Kubernetes Prow Robot 1159c42559 Merge pull request #32204 from PriyanshuAhlawat/zh_certificates_signing
Update certificate-signing-requests.md
2022-03-11 03:01:07 -08:00
PriyanshuAhlawat 3a284db9b1 Update certificate-signing-requests.md 2022-03-11 16:04:32 +05:30
Qiming Teng c0a604710d [zh] Resync node local DNS page 2022-03-11 18:12:12 +08:00
Jaeyeon Kim cb2e99ecb6 reflect reviews 2022-03-11 18:22:31 +09:00
Jaeyeon Kim 94e766e920 Update content/ko/docs/reference/glossary/garbage-collection.md
Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-03-11 18:16:21 +09:00
Jaeyeon Kim a28df2ffcb Update content/ko/docs/reference/glossary/garbage-collection.md
Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-03-11 18:13:25 +09:00
Kubernetes Prow Robot 2ae2ad088b Merge pull request #32166 from mengjiao-liu/update_addons_zh
[zh]Delete broken link (contiv.io)
2022-03-10 22:05:06 -08:00
Qiming Teng e6f416bd2f Update kubeadm config API v1beta3 2022-03-11 12:09:23 +08:00
Kubernetes Prow Robot 874d24e2ce Merge pull request #32189 from mengjiao-liu/sync_for_approvers_zh
[zh]  Resync Reviewing for approvers and reviewers page
2022-03-10 19:37:09 -08:00
DGBStarSky 14e40d9412 Corrected a wrong word (#32169) 2022-03-10 19:25:10 -08:00
Qiming Teng 29f5e89770 Reformat the node local DNS cache page 2022-03-11 11:15:47 +08:00
Mengjiao Liu 3cb033a07d [zh] Resync Reviewing for approvers and reviewers page 2022-03-11 11:09:47 +08:00
Jihoon Seo 06aa7edaff nit: kubectl -> kubectl-convert 2022-03-11 10:42:58 +09:00
Matt Cary 35e901cdbf Update storage-classes.md
The link to the external provisioner specification had gone stale, it now lives in design-proposals-archive.
2022-03-10 09:47:42 -08:00
Kubernetes Prow Robot 305774af6b Merge pull request #32160 from zacharysarah/back-in-the-saddle
Add zacharysarah to approvers/reviewers for English language content
2022-03-10 09:15:36 -08:00
Abigail McCarthy 5c6cbc1347 Remove Docker references in image concept page
updates from code review

Apply suggestions from code review

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-03-10 10:52:47 -05:00
Arsh Sharma 9b662050e4 adding link to the nca docs
Signed-off-by: Arsh Sharma <arshsharma461@gmail.com>
2022-03-10 18:28:48 +05:30
Kubernetes Prow Robot addeb2f989 Merge pull request #32173 from hughxia/patch-2
[zh] Update ephemeral-volumes.md
2022-03-10 04:27:35 -08:00
hughXia ed163c2923 [zh] Update ephemeral-volumes.md 2022-03-10 19:56:48 +08:00
Kubernetes Prow Robot 65fc05e532 Merge pull request #32171 from mengjiao-liu/fix_lcoalization_zh
[zh]Uniform format for `capabilities` term
2022-03-10 02:51:35 -08:00
Mengjiao Liu f3de6df4e3 [zh]Uniform format for capabilities term 2022-03-10 18:26:59 +08:00
Mengjiao Liu c03cce9c26 [zh]Delete broken link (contiv.io) 2022-03-10 15:37:00 +08:00
Mengjiao Liu 27d8471d3c [zh]Move kubectl overview to be section index 2022-03-10 15:28:08 +08:00
my-git9 1ab5c0c58d [zh] Update content/zh/docs/reference/_index.md (#32144)
* Update _index.md

Update content/zh/docs/reference/_index.md

Signed-off-by:  <xin.li@daocloud.io>

* Update _index.md
2022-03-09 19:49:35 -08:00
zacharysarah 1fe3affe63 Add zacharysarah to docs approvers and reviewers for English language content 2022-03-09 19:38:39 -08:00
my-git9 c05c352952 [zh] update learning environment index (#32151)
* Update _index.md

Update setup/learning-environment/_index.md

* Update _index.md

* Update _index.md
2022-03-09 18:53:35 -08:00
Jihoon Seo 7ea395ab2f Reflect review suggestions 2022-03-10 10:54:09 +09:00
Kubernetes Prow Robot 9beadbad20 Merge pull request #32154 from 0xff-dev/main
[zh] update automated-tasks-with-cron-jobs doc
2022-03-09 16:51:36 -08:00
my-git9 9017f40969 Update replicationcontroller.md (#32060)
* Update replicationcontroller.md

Synchronize English documentation about replicationcontroller

* Update replicationcontroller.md

Adjustment format

* Update replicationcontroller.md

I rechecked the changes and translated,thanks for reviews

* Update replicationcontroller.md

* Update replicationcontroller.md

Modified as suggested

* Update replicationcontroller.md
2022-03-09 16:49:35 -08:00
my-git9 91b36ec307 [zh] Update ttlafterfinished.md (#32073)
* Update ttlafterfinished.md

Sync en doc about Automatic Clean-up for Finished Jobs

* Update ttlafterfinished.md

Adjust as suggested
2022-03-09 16:47:35 -08:00
Kubernetes Prow Robot d9457d4305 Merge pull request #32158 from Arhell/rev
[zh] update reviewers from SIG-UI
2022-03-09 16:42:03 -08:00
Kubernetes Prow Robot 87b49e2971 Merge pull request #32159 from my-git9/patch-46
Update source-ip.md
2022-03-09 16:38:02 -08:00
my-git9 af331bb4cb Update source-ip.md
update content/zh/docs/tutorials/services/source-ip.md
2022-03-10 08:04:36 +08:00
Tim Allclair 82a1d9c704 Make the AppArmor docs more runtime agnostic 2022-03-09 15:10:15 -08:00
Arhell e100915fa7 [zh] update reviewers from SIG-UI 2022-03-10 00:46:49 +02:00
Kubernetes Prow Robot 782d8bc2c9 Merge pull request #32126 from tengqm/update-coredns
Improve coredns page
2022-03-09 08:40:13 -08:00
Kubernetes Prow Robot ff093d8edb Merge pull request #32146 from sftim/20220309_update_article_CVE-2019-5736
Update CVE-2019-5736 article
2022-03-09 08:00:14 -08:00
Kubernetes Prow Robot 7db6cd4e7f Merge pull request #32149 from sftim/20220309_fix_brendan_burns_race_article
Fix article “Faster than a speeding latte”
2022-03-09 07:20:13 -08:00
0xff-dev bd5299b444 [zh] update automated-tasks-with-cron-jobs doc 2022-03-09 23:18:53 +08:00
kartik494 d2cfe9fc77 registered mount-options annotation 2022-03-09 20:22:20 +05:30
Qiming Teng deab75fbb4 [zh] Resync tutorials index 2022-03-09 21:49:46 +08:00
Qiming Teng 15f643e5e8 Improve coredns page
This PR refactors the coredns page by removing some outdated statements.
2022-03-09 21:31:10 +08:00
Qiming Teng 461a09332b [zh] Tune the feature gates page
Reformat some line wraps, reorder some items in the description and
fix a version missing in table 1.
2022-03-09 21:28:09 +08:00
Mauren Berti 7a8d695f11 Convert to multi-stage Dockerfile.
- Remove architecture-specific Dockerfile and Makefile target.
- Convert Dockerfile to a multi-stage build, keeping only what is needed to run.
2022-03-09 08:05:56 -05:00
Tim Bannister 4c1404387b Fix article “Faster than a speeding latte” 2022-03-09 12:48:59 +00:00
Kubernetes Prow Robot b2a3b33c94 Merge pull request #32067 from omBratteng/patch-1
Update the links to Gateway API
2022-03-09 04:18:12 -08:00
Tim Bannister 5fe8d4f2a1 Update CVE-2019-5736 article
- Add authors
- Tidy formatting

NOT marking this article as evergreen because it mentions
PodSecurityPolicy.
2022-03-09 12:13:02 +00:00
Andrew Foster 77123a0e91 Remove kompose up and down command doc 2022-03-09 22:55:23 +11:00
Kubernetes Prow Robot c3607e80b9 Merge pull request #32141 from tengqm/zh-securitycontext
[zh] Resync security context page
2022-03-09 01:52:12 -08:00
Kubernetes Prow Robot 82b7401a77 Merge pull request #32094 from tengqm/zh-fix-dockershim-check
[zh] Tweak translation of dockershim check
2022-03-09 01:50:12 -08:00
Kubernetes Prow Robot f86897f035 Merge pull request #32138 from tengqm/zh-fix-psp-page
[zh] Fix the PSP page
2022-03-09 01:26:12 -08:00
Qiming Teng 1d0febbda5 [zh] Resync security context page 2022-03-09 13:50:48 +08:00
Kubernetes Prow Robot d3c2231a8e Merge pull request #32137 from my-git9/patch-40
update hello-minikube.md
2022-03-08 20:40:20 -08:00
Qiming Teng 969ea52614 [zh] Fix the PSP page 2022-03-09 12:14:57 +08:00
my-git9 71ae0c852d Update hello-minikube.md
Update hello-minikube.md
2022-03-09 11:18:18 +08:00
my-git9 b5220deaa6 Sync doc about docsHome (#32120)
* Sync doc about docsHome

Signed-off-by: xin.li <xin.li@daocloud.io>

* Update kubectl-cmds.md

Signed-off-by: xin.li <xin.li@daocloud.io>

* Update _index.md
2022-03-08 17:06:21 -08:00
Kubernetes Prow Robot e0035233b0 Merge pull request #31807 from stormqueen1990/resources-pods-containers-pt-br
[pt-br] Add concepts/configuration/manage-resources-containers.md
2022-03-08 09:46:49 -08:00
Tim Bannister a21c43eed9 Tidy & reword Secret concept
Co-authored-by: Chris Negus <cnegus@redhat.com>
Co-authored-by: Rey Lejano <rlejano@gmail.com>
2022-03-08 15:55:39 +00:00
Tim Bannister 3530caab63 Revise list of Secret types 2022-03-08 15:55:19 +00:00
Kubernetes Prow Robot ad6c53947a Merge pull request #31141 from gamba47/pod-disruptions
[es] Add concepts/workloads/pods/disruptions
2022-03-08 07:38:33 -08:00
Kubernetes Prow Robot af198feacd Merge pull request #32124 from my-git9/patch-39
Update conventions.md
2022-03-08 04:10:32 -08:00
my-git9 4e98cfe32e Update conventions.md
update conventions.md
2022-03-08 19:57:15 +08:00
my-git9 de061dd38f [zh] Update logging.md (#32102)
* Update logging.md

fix Sync doc about logging
Signed-off-by: LI XIN <xin.li@daocloud.io>

* Update logging.md
2022-03-08 02:32:33 -08:00
Shubham Kuchhal aa8b37770e Improvement: Updated FEATURE STATE of NamespaceDefaultLabelName. 2022-03-08 13:10:22 +05:30
Kubernetes Prow Robot 07a2882868 Merge pull request #32113 from my-git9/patch-35
[zh] Update pod-security-admission.md
2022-03-07 17:40:34 -08:00
Kubernetes Prow Robot 60123f1b4d Merge pull request #32114 from my-git9/patch-37
[zh] Update endpoint-slices.md
2022-03-07 17:38:33 -08:00
Kubernetes Prow Robot e1c7e21191 Merge pull request #32111 from my-git9/patch-34
[zh] Update kube-scheduler.md
2022-03-07 17:36:33 -08:00
Kubernetes Prow Robot 8eb51663bd Merge pull request #32108 from my-git9/patch-33
[zh] Update components.md
2022-03-07 17:34:34 -08:00
Kubernetes Prow Robot 51d115387c Merge pull request #32104 from my-git9/patch-30
[zh] Update operator.md
2022-03-07 17:30:33 -08:00
Kubernetes Prow Robot f9394cba20 Merge pull request #32103 from my-git9/patch-29
[zh] Update service-catalog.md
2022-03-07 17:06:25 -08:00
Kubernetes Prow Robot 0754ec0546 Merge pull request #31654 from chrismetz09/patch-6
Add figure <number> to text/caption _index.md
2022-03-07 14:38:24 -08:00
Kubernetes Prow Robot a26ac80b38 Merge pull request #31816 from voelzmo/patch-2
Update proposal link to point to archive
2022-03-07 14:36:25 -08:00
Kubernetes Prow Robot c33258a7bf Merge pull request #31966 from PriyanshuAhlawat/updating_envVariable
Update kubelet-integration.md issue
2022-03-07 14:32:25 -08:00
Kubernetes Prow Robot e8ac32b1fd Merge pull request #32061 from koolwithk/patch-1
Docs - Fixed double quotes issue with feature-gates
2022-03-07 14:30:24 -08:00
chrismetz09 73ac0a7c0d Add figure <number> to text/caption in docs/contribute/ _index.md 2022-03-07 09:47:47 -08:00
Kubernetes Prow Robot 28ffd81bab Merge pull request #31602 from mtardy/main
Add documentation on pod-security.kubernetes.io annotations
2022-03-07 06:04:54 -08:00
my-git9 5bb121ca5d Update endpoint-slices.md
sync doc about endpoint-slices
Signed-off-by: LI XIN <xin.li@daocloud.io>
2022-03-07 21:42:07 +08:00
my-git9 24df79a794 Update pod-security-admission.md
sync doc  about Pod Security Admission
Signed-off-by: LI XIN <xin.li@daocloud.io>
2022-03-07 21:34:02 +08:00
my-git9 9a0c5406fc Update kube-scheduler.md
sync doc about  kube-scheduler
Signed-off-by: LI XIN <xin.li@daocloud.io>
2022-03-07 21:31:21 +08:00
Arsh Sharma b21dadeeeb documenting the new contributor ambassador role
Signed-off-by: Arsh Sharma <arshsharma461@gmail.com>
2022-03-07 18:47:29 +05:30
my-git9 62edf3c740 Update components.md
Sync doc about Kubernetes Components
Signed-off-by: LI XIN <xin.li@daocloud.io>
2022-03-07 21:06:39 +08:00
Kubernetes Prow Robot a8621cd3e0 Merge pull request #31813 from Arhell/upd-schedule
[id] update schedule
2022-03-07 04:57:54 -08:00
my-git9 f5daca3618 Update operator.md
fix sync doc about operator
Signed-off-by: LI XIN <xin.li@daocloud.io>
2022-03-07 20:43:08 +08:00
my-git9 a1d42a23e2 Update service-catalog.md
fix Sync doc about service-catalog

Signed-off-by: LI XIN <xin.li@daocloud.io>
2022-03-07 20:40:10 +08:00
Mauren Berti ed88562c01 Update link to XFS project quotas. 2022-03-07 07:33:22 -05:00
Mauren Berti e7b1ef7fda Create Dockerfile for arm64 architecture. 2022-03-07 07:18:11 -05:00
Qiming Teng 67fa0bc573 [zh] Fix translation of network policy index page 2022-03-07 20:16:35 +08:00
kartik494 8540194ccd Added Pod security deprecation note 2022-03-07 17:43:10 +05:30
Qiming Teng 3b13867bf6 [zh] Translate 'feature_state' string data 2022-03-07 19:46:13 +08:00
Kubernetes Prow Robot 3668b41e34 Merge pull request #32080 from tengqm/feature-state-i18n
Make FEATURE STATE localizable
2022-03-07 03:06:53 -08:00
196Ikuchil 9cdeaa9f65 small fix 2022-03-07 20:03:51 +09:00
Qiming Teng 4678d692f1 [zh] Tweak translation of dockershim check 2022-03-07 18:38:51 +08:00
Qiming Teng 6c64631944 [zh] Optimize k8s extension index page
There are some italics font style which doesn't render well in Chinese, we should avoid using them when possible.

There are some inappropriate line wraps that are creating extra spaces between Chinese characters, this PR tries to optimizes that as well.

The subsection title 'configuration' was not translated, also fixed in this PR.
2022-03-07 17:55:37 +08:00
Kubernetes Prow Robot 9a9870b0e4 Merge pull request #32091 from my-git9/patch-26
Update runtime-class.md
2022-03-07 00:54:53 -08:00
my-git9 b9f0844c2a Update runtime-class.md
fix Sync doc about Runtime Class
Signed-off-by: LIXIN <xin.li@daocloud.io>
2022-03-07 15:09:28 +08:00
Kubernetes Prow Robot f4a81795e5 Merge pull request #32070 from yuvraj9/patch-1
Fixing typo error
2022-03-06 20:46:53 -08:00
Kubernetes Prow Robot 6971f8e4e8 Merge pull request #31626 from wongma7/migrationplugin
Add that CSIMigration* fallback does not work for provision operations
2022-03-06 11:48:52 -08:00
Kubernetes Prow Robot edce42be0a Merge pull request #32064 from my-git9/patch-16
Update resource-bin-packing.md
2022-03-06 08:54:52 -08:00
196Ikuchil d1c505e171 fix:test errors 2022-03-07 00:06:44 +09:00
196Ikuchil 1a4044bf30 add:policies.md 2022-03-06 23:48:53 +09:00
196Ikuchil 8981587a68 add:replica-set.md 2022-03-06 23:27:23 +09:00
196Ikuchil 46a13354a1 add:config.md 2022-03-06 23:27:09 +09:00
196Ikuchil 3359ef1ad1 add:content/ja/docs/reference/scheduling/_index.md 2022-03-06 23:26:56 +09:00
Qiming Teng 8311f4324c Make FEATURE STATE localizable
Add i18n string for FEATURE STATE, for ease of localization.
2022-03-06 21:44:40 +08:00
Kubernetes Prow Robot 03683630a8 Merge pull request #32057 from ianychoi/fix-anchor-on-using-subpath
[ko] Fix anchor usage on docs/concepts/storage/volumes
2022-03-06 04:18:52 -08:00
Kubernetes Prow Robot 2623a94d45 Merge pull request #32075 from my-git9/patch-22
Update system-traces.md
2022-03-06 04:04:52 -08:00
Kubernetes Prow Robot 2cb60ae4f3 Merge pull request #32072 from my-git9/patch-19
Update replicationcontroller.md
2022-03-06 03:56:53 -08:00
Kubernetes Prow Robot 0748c28fef Merge pull request #32078 from my-git9/patch-24
Update container-environment.md
2022-03-06 03:54:52 -08:00
Kubernetes Prow Robot 1246fc9e3d Merge pull request #32074 from my-git9/patch-21
Update service-traffic-policy.md
2022-03-06 03:48:52 -08:00
Kubernetes Prow Robot 71800bcafb Merge pull request #32076 from my-git9/patch-23
Update networking.md
2022-03-06 03:36:52 -08:00
my-git9 6d01a88215 Update container-environment.md
Sync doc about container-environment
2022-03-06 16:22:59 +08:00
my-git9 9e216c6f6b Update networking.md
Sync document about Cluster Networking
2022-03-06 13:14:22 +08:00
my-git9 c4c2288084 Update system-traces.md
Sync doc about Traces For Kubernetes System Components
2022-03-06 12:49:16 +08:00
my-git9 d95e296a17 Update service-traffic-policy.md
Sync the en document about Service Internal Traffic Policy
2022-03-06 12:31:34 +08:00
my-git9 e11a116a34 Update replicationcontroller.md
Modify statement
2022-03-06 11:50:48 +08:00
Qiming Teng da4ecd0788 [zh] Translate kubelet config v1alpha1 reference 2022-03-06 10:33:03 +08:00
Kubernetes Prow Robot c5651721b3 Merge pull request #32059 from my-git9/patch-12
Update replicaset.md
2022-03-05 18:20:52 -08:00
Kubernetes Prow Robot 796f4b322b Merge pull request #32040 from my-git9/patch-9
Update cron-jobs.md
2022-03-05 18:12:52 -08:00
Kubernetes Prow Robot db1d918c3d Merge pull request #32063 from my-git9/patch-15
Update volume-snapshot-classes.md
2022-03-05 17:40:52 -08:00
Kubernetes Prow Robot a518fd8c24 Merge pull request #32062 from my-git9/patch-14
Update storage-classes.md
2022-03-05 17:38:52 -08:00
Kubernetes Prow Robot 6a96edd07f Merge pull request #32065 from my-git9/patch-17
Update scheduler-perf-tuning.md
2022-03-05 17:32:54 -08:00
Kubernetes Prow Robot 1320da645a Merge pull request #32032 from FOWind/fix/zh-namespaces-walkthrough
[zh]fix namespaces-walkthrough title format error
2022-03-05 17:30:52 -08:00
Jason Kim (Jun Chul Kim) 2cca1a2f85 Update content/en/docs/setup/best-practices/certificates.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-03-06 09:39:02 +09:00
Mauren Berti e4350ed1b8 Add translation for manage-resources-containers.md
Create translation for /docs/concepts/configuration/manage-resources-containers.md
to Brazilian Portuguese.
2022-03-05 17:49:18 -05:00
Kubernetes Prow Robot 3bcb656e06 Merge pull request #29847 from sftim/20210928_migrate_kubectl_overview
Move kubectl overview to be section index
2022-03-05 13:54:52 -08:00
Yuvraj Shekhawat d884ce7ce0 Fixing typo error 2022-03-06 02:49:14 +05:30
Kubernetes Prow Robot 90188d33b7 Merge pull request #31636 from tengqm/fix-links-2
Fix links and markdown format for some pages
2022-03-05 12:54:54 -08:00
FOWind 2862054aa0 [zh]fix namespaces-walkthrough, title format error 2022-03-05 14:41:40 +00:00
Ole-Martin Bratteng 2bfad1bc05 Updated more of the outdated links
Links referencing API spec has been pointed to v1alpha1 which was current at the time of the blog post.
2022-03-05 15:39:00 +01:00
Ole-Martin Bratteng 23bf4cea16 Update the link to Gateway controller implementations
Changed the link for `Gateway controller implementations`
2022-03-05 15:23:37 +01:00
my-git9 c8e181b4bb Update scheduler-perf-tuning.md
Sync English documentation about Scheduler Performance Tuning
2022-03-05 20:53:37 +08:00
my-git9 b6ecca10eb Update resource-bin-packing.md
Sync the English documentation about Resource Bin Packing for Extended Resources
2022-03-05 20:44:00 +08:00
my-git9 f490705edd Update volume-snapshot-classes.md
Sync documentation about Volume Snapshot Classes
2022-03-05 20:14:29 +08:00
Kubernetes Prow Robot 0ef91367f5 Merge pull request #32031 from FOWind/fix/zh-developing-cloud-controller-manager
[zh]sync developing-cloud-controller-manager
2022-03-05 04:12:52 -08:00
Kubernetes Prow Robot a8942cc123 Merge pull request #32025 from tengqm/zh-fix-sched-framework
[zh] tweak scheduling framework page
2022-03-05 04:10:52 -08:00
Kubernetes Prow Robot 6b6ca31468 Merge pull request #32023 from tengqm/zh-fix-sched-index
[zh] Fix scheduling-eviction index
2022-03-05 04:08:52 -08:00
Kubernetes Prow Robot df645a6f87 Merge pull request #32019 from tengqm/zh-fix-vol-health
[zh] Fix some nits in the volume health page
2022-03-05 04:06:52 -08:00
Kubernetes Prow Robot 232e38813f Merge pull request #31975 from pangqing123/main
Modify the expulsion link initiated by API
2022-03-05 04:04:52 -08:00
my-git9 d9c1c7c8ce Update storage-classes.md
Synchronize English documentation about storageclass
2022-03-05 19:55:23 +08:00
koolwithk 927cd05181 Docs - Fixed double quotes issue with feature-gates
Double quotes was giving error as below, may be need to update the code to accept the double quotes.

Error: invalid argument "\"GracefulNodeShutdown=true\"" for "--feature-gates" flag: invalid value of "GracefulNodeShutdown=true", err: strconv.ParseBool: parsing "true\"": invalid syntax
2022-03-05 14:55:49 +05:30
my-git9 eec1592324 Update replicaset.md
Original code comment adjustment
2022-03-05 13:36:03 +08:00
Kubernetes Prow Robot 498d9607a3 Merge pull request #31533 from KobayashiD27/translate-concepts/storage/volume-into-Japanese
[ja] Translate concepts/storage/volumes.md into Japanese
2022-03-04 21:34:52 -08:00
Ian Y. Choi 1a11802f42 [ko] Fix anchor usage on docs/concepts/storage/volumes
The document uses anchor point for "Using Subpath" section
as "#using-subpath", not "#subpath-사용하기", so correcting anchor usage.
2022-03-05 14:18:49 +09:00
my-git9 0f60e93b40 Update cron-jobs.md
Add original comment
2022-03-05 11:58:57 +08:00
Kubernetes Prow Robot 18b5b1fb93 Merge pull request #32027 from tengqm/fix-sched-ver
Update scheduler configuration sample version
2022-03-04 16:52:52 -08:00
Zach Rhoads bbcf9e316f Update link to Azure Gateway Ingress Controller
Changed link for Azure Gateway Ingress Controller to Microsoft documentation.
2022-03-04 16:48:29 -06:00
Marc Khouzam 0976014b7e No need for special handling for zsh aliases
Zsh completion is native since v1.22. Native zsh completion
automatically deals with aliases without needing
any extra configuration from the user.

Signed-off-by: Marc Khouzam <marc.khouzam@gmail.com>
2022-03-04 13:57:49 -05:00
Kubernetes Prow Robot cfb4d2ab93 Merge pull request #32045 from sftim/20220304_mark_dan_kohn_memorial_article_evergreen
Mark “Remembering Dan Kohn” article evergreen
2022-03-04 08:46:52 -08:00
Tim Bannister 3b2dee6b4e Mark “Remembering Dan Kohn” article evergreen 2022-03-04 16:20:59 +00:00
Kubernetes Prow Robot 40ca9d9a6e Merge pull request #31991 from Arhell/fix-xfs
[es] fix link of XFS project quotas
2022-03-04 07:54:52 -08:00
Alexandru Gheorghe 99ce89a035 Reword preStop hook usage regarding container's Terminated state 2022-03-04 15:51:48 +00:00
my-git9 a8e8c9b44c Update cron-jobs.md
Compared with the English document, there is one less description explaining the automatic cleaning task.
2022-03-04 18:41:56 +08:00
Kubernetes Prow Robot dadb6d946c Merge pull request #32028 from bene2k1/de-fix-typo-20220303
[de] fix typo in "what is Kubernetes"
2022-03-03 23:16:51 -08:00
Arhell 15a047d4a8 [es] fix link of XFS project quotas 2022-03-04 08:51:25 +02:00
Wang 56526806c7 [ja] Translate tasks/debug-application-cluster/local-debugging into Japanese (#30981)
* done

* add reviewer

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update local-debugging.md

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/local-debugging.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-03-03 22:14:52 -08:00
pangqing 3f8ac40b0e Modify the expulsion link initiated by API
Signed-off-by: pangqing <pangqing@uniontech.com>
2022-03-04 13:40:33 +08:00
Kubernetes Prow Robot 301f85fd92 Merge pull request #31603 from atiratree/concepts.deployment
add note about Terminating pods when rolling out a Deployment
2022-03-03 08:53:48 -08:00
FOWind 0240ba9a8a [zh]sync developing-cloud-controller-manager 2022-03-03 15:19:05 +00:00
Benedikt Rollik 2268f317c6 fix: typo 2022-03-03 14:49:51 +01:00
Kubernetes Prow Robot e7be79d0c4 Merge pull request #30179 from bene2k1/de-feat-sigdocs-20211021
[de] Participating in SIG Docs
2022-03-03 05:39:48 -08:00
Kubernetes Prow Robot 77ffd322ed Merge pull request #31749 from KoditkarVedant/update-hyperlinks-to-point-to-main-branch-de-local
[de] Update hyperlinks to point to main branch
2022-03-03 05:31:48 -08:00
Kubernetes Prow Robot f09435eb75 Merge pull request #31718 from championshuttler/deb
[de] Fix broken links due to using githubbranch param
2022-03-03 05:29:48 -08:00
Qiming Teng b76366329d Update scheduler configuration sample version
This PR updates the scheduler configuration YAML snippets to use the 'v1beta3' version API. 'v1beta1' is gone and not recommended. We don't have config API reference for 'v1beta1' now.
2022-03-03 20:08:38 +08:00
Kubernetes Prow Robot fa5b81f654 Merge pull request #31973 from Arhell/typo-fix
[de] fix typo in Horizontal Pod Autoscaling
2022-03-03 03:10:48 -08:00
Kubernetes Prow Robot ef01357cbb Merge pull request #30365 from jarmee/fix-typo
[de] Fix typo in hello-minikube.md
2022-03-03 03:08:48 -08:00
Qiming Teng 80fc5e84e5 [zh] tweak scheduling framework page
1. Sync the diagram property "diagram-class"
1. Avoid translating the stages of the scheduling context. These
   translations are not necessary and they may cause confusion when read
   along with the diagram.
2022-03-03 18:49:25 +08:00
Tim Bannister 77a598cb33 Use in-page “what's next” list for kubectl 2022-03-03 10:03:01 +00:00
Tim Bannister e0d4b37070 Highlight link to kubectl cheat sheet
Also, reorder the section overall.
2022-03-03 10:03:01 +00:00
Tim Bannister 73cd38cdc6 Move kubectl overview to be section index
Also:
- use glossary definition in page introduction
- tidy broken link in What's Next section
- update links to refer to moved page
2022-03-03 10:03:00 +00:00
Kubernetes Prow Robot 9f327a4db9 Merge pull request #30695 from deining/patch-1-1
[DE] Localization.md: minor improvements to German translation
2022-03-03 02:00:49 -08:00
Kubernetes Prow Robot 57f4ad976c Merge pull request #32022 from cpanato/update-release-patches
update patch release for march cycle and remove 1.20 release due to EOL
2022-03-03 01:36:48 -08:00
Qiming Teng 0823b3ead1 [zh] Fix shceduling-eviction index
The `no_list: true` directive is important. We should not remove it when
translating an index page.
2022-03-03 17:25:50 +08:00
cpanato 95dd95982f update patch release for march cycle and remove 1.20 release due to eol
Signed-off-by: cpanato <ctadeu@gmail.com>
2022-03-03 10:18:12 +01:00
Kubernetes Prow Robot 337f75f249 Merge pull request #32017 from tengqm/zh-tweak-quota
[zh] Tweak some translations on the Quota API page
2022-03-02 23:26:48 -08:00
Qiming Teng bf6709241e [zh] Fix some nits in the volume health page 2022-03-03 14:15:10 +08:00
Kubernetes Prow Robot 9806e397dd Merge pull request #32001 from FOWind/fix/zh-antrea-network-policy
[zh]fix antrea-network-policy display error
2022-03-02 19:28:47 -08:00
Qiming Teng 7055c95657 [zh] Tweak some translations on the Quota API page 2022-03-03 11:07:51 +08:00
FOWind 11c068d6ac (fix: antrea-network-policy) fix display error 2022-03-03 03:06:37 +00:00
Kubernetes Prow Robot ce758472dc Merge pull request #31978 from tengqm/zh-glossary-cadvisor
[zh] Add glossary cadvisor
2022-03-02 19:04:48 -08:00
Kubernetes Prow Robot b785e79e28 Merge pull request #31948 from tengqm/zh-apiserver-encryption
[zh] Translate API server encryption config API
2022-03-02 19:02:48 -08:00
Kubernetes Prow Robot 7edaa61501 Merge pull request #31945 from tengqm/zh-projected-vol
[zh] Translate projected volume page
2022-03-02 19:00:48 -08:00
Kubernetes Prow Robot 8191683dca Merge pull request #31944 from tengqm/zh-i18n-data
[zh] Update i18n data for zh localization
2022-03-02 18:58:48 -08:00
Kubernetes Prow Robot 9f889fc9b2 Merge pull request #31943 from tengqm/zh-crictl
[zh] Translate docker to crictl map page
2022-03-02 18:56:49 -08:00
Kubernetes Prow Robot 921c2cf1d5 Merge pull request #31941 from tengqm/zh-apicfg-v1
[zh] Translate API server config v1 reference
2022-03-02 18:54:48 -08:00
Kubernetes Prow Robot 6ccb168fec Merge pull request #31940 from tengqm/zh-map-psp
[zh] Translate mapping PSP to PSS page
2022-03-02 18:52:48 -08:00
Kubernetes Prow Robot 8fc97d33e2 Merge pull request #31939 from tengqm/zh-mig-pss
[zh] Translate (resync) the migrating from PSP page
2022-03-02 18:50:47 -08:00
Chris Negus 8ca3492e51 Moved blog guidance from SIG page to docs (#31920)
* Moved blog guidance from SIG page to docs

* Fixed text from review comments
2022-03-02 18:48:48 -08:00
Kubernetes Prow Robot 385ce351ad Merge pull request #31911 from tengqm/zh-kubeadm-user
[zh] Translate kubeadm kubeconfig command reference
2022-03-02 18:46:48 -08:00
Kubernetes Prow Robot db310a68b3 Merge pull request #31907 from tengqm/zh-chg-runtime
[zh] Translate change runtime containerd page
2022-03-02 18:44:48 -08:00
Kubernetes Prow Robot d67b71a39b Merge pull request #31030 from tengqm/zh-kubeadm-ref-v1beta2
[zh] Translate kubeadm config ref v1beta2
2022-03-02 18:42:47 -08:00
Kubernetes Prow Robot 336ee5edd2 Merge pull request #31021 from tengqm/zh-kube-scheduler-cfg-2
[zh] Translate kube-scheduler config API v1beta2
2022-03-02 18:40:48 -08:00
Kubernetes Prow Robot 6004fcf843 Merge pull request #31018 from tengqm/zh-kube-scheduler-cfg
[zh] Translate scheduler config API v1beta3
2022-03-02 18:36:47 -08:00
Kubernetes Prow Robot 4327f2d642 Merge pull request #31926 from tengqm/zh-enforce-pss
[zh] Translate enforcing PSS
2022-03-02 18:34:48 -08:00
Kubernetes Prow Robot b6643f3d51 Merge pull request #31593 from ctalledo/k8s-in-sysbox
Add Sysbox as an option to run kubernetes inside unprivileged containers or pods.
2022-03-02 18:30:46 -08:00
Kubernetes Prow Robot 4d68cbe663 Merge pull request #31980 from tengqm/zh-glossary-event
[zh] Add glossary Event
2022-03-02 18:26:46 -08:00
Kubernetes Prow Robot abd4c430f5 Merge pull request #31971 from neolit123/1.24-fix-ha-etcd-guide-tmp-folders
kubeadm: fix wrong path in the etcd HA guide (step 7)
2022-03-02 17:28:45 -08:00
Kubernetes Prow Robot e58a5eaeba Merge pull request #31858 from howieyuen/add_membership
add howieyuen to sig-doc-zh-owners
2022-03-02 17:26:45 -08:00
Kubernetes Prow Robot beb39db14d Merge pull request #31996 from RA489/upgradenote
kubeadm-upgrade: add note about verifying the kubelet service status
2022-03-02 17:08:46 -08:00
Kubernetes Prow Robot b34fbf963b Merge pull request #32009 from sftim/20220302_fix_zh_blog_uris
[zh] Fix blog articles using wrong custom URIs
2022-03-02 17:04:46 -08:00
Thomas Guettler 7122a4498a fix busybox image to 1.28 (issues with nslookup).
Changes where done with these commands:

reprec 'image: busybox(?!:)' 'image: busybox:1.28' */docs */examples
reprec -- '--image=busybox(?!:)' '--image=busybox:1.28' */docs */examples

Related issues:

 https://github.com/docker-library/busybox/issues/48
 https://github.com/kubernetes/kubernetes/issues/66924
2022-03-02 20:48:26 +01:00
mtardy cc64e7cc98 Add a separate subpage for audit annotations and add reference to it on the main page 2022-03-02 20:14:14 +01:00
Damilola Abioye bf7b94c65a updated allowedTopologies values format 2022-03-02 20:04:02 +01:00
Mahé 876f452d0e Merge branch 'kubernetes:main' into main 2022-03-02 19:23:58 +01:00
Brett Wolmarans 8dd6fa677d --all-namespaces shorthand
As a beginner to kubectl, I must have typed (and re-typed due to typos) --all-namespaces many hundreds of times before I stumbled across the -A shorthand notation for this.  I sincerely would be grateful on behalf of all kubectl beginners if this very useful cheat could be added to this cheatsheet.  I have proposed in this PR a location quite near the beginning of the cheatsheet for this so that it is very hard to miss.
2022-03-02 09:21:06 -08:00
Tim Bannister 5c970ca1b0 Fix blog articles using wrong custom URIs
Some blog articles with custom URIs have been localized into Chinese
without removing the custom URI from the front matter.

Update these articles to use appropriate URIs.
2022-03-02 16:25:08 +00:00
Kubernetes Prow Robot 2cb30790dd Merge pull request #31979 from tengqm/zh-glossary-userns
[zh] Add glossary userns
2022-03-02 07:09:14 -08:00
Kubernetes Prow Robot e904313594 Merge pull request #31982 from howieyuen/api-eviction
[zh]resync api-eviction.md and fix glossary hyper link issue
2022-03-02 07:05:14 -08:00
Kubernetes Prow Robot fbdcbaff2f Merge pull request #31909 from alghe-global/fix-working-with-objects/kubernetes-objects
Fix wording for "concepts/overview/working-with-objects/kubernetes-objects/#required-fields"
2022-03-02 06:49:13 -08:00
Alexandru Gheorghe 8d43e339b9 Fix wording for "concepts/overview/working-with-objects/kubernetes-objects/#required-fields" 2022-03-02 13:44:35 +00:00
Gerard a9f7219210 Improve mentions of CS CA in managing-tls-in-a-cluster (#30347)
* Improve mentions of CS CA in managing-tls-in-a-cluster

* Update content/en/docs/tasks/tls/managing-tls-in-a-cluster.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update managing-tls-in-a-cluster.md

* Update managing-tls-in-a-cluster.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-03-02 05:43:14 -08:00
RA489 7f9869dab8 kubeadm-upgrade: add note about verifying the kubelet service status 2022-03-02 08:20:04 +05:30
Vedant Koditkar e8c29bad9c [en] Update networking model link (#31390)
* Update hyperlinks to point to main branch

* Revert changes to post older than a year 

* Update link to point to localize document 📝

* Fix fragement in the link 📝

change "#the-kubernetes-network-model" to "#how-to-implement-the-kubernetes-networking-model"

* Revert changes in zh localization pages

* Remove changes in files of other localization
2022-03-01 18:41:16 -08:00
Kubernetes Prow Robot 9fbadcb4e3 Merge pull request #31990 from cici37/fixDoc
Fix incorrect field name in CRD examples
2022-03-01 15:37:54 -08:00
Kubernetes Prow Robot 23f0c15b6a Merge pull request #31986 from PriyanshuAhlawat/noteForNodeRestriction
Added note about noderestriction labels issue-#31972
2022-03-01 14:15:55 -08:00
cici37 002985c690 Reduce confusion by fixing field name in samples. 2022-03-01 13:01:47 -08:00
PriyanshuAhlawat 2198d0f519 Update create-cluster-kubeadm.md 2022-03-01 18:46:53 +05:30
Kubernetes Prow Robot cffda78b58 Merge pull request #31985 from holtenko/patch-1
Update mysql-wordpress-persistent-volume.md
2022-03-01 03:35:48 -08:00
Kubernetes Prow Robot af329a6edc Merge pull request #31983 from howieyuen/node-pressure-eviction
[zh]resync node-pressure-eviction.md and fix hyper link issue
2022-03-01 03:33:47 -08:00
holten 10f95b98aa Update mysql-wordpress-persistent-volume.md 2022-03-01 18:51:31 +08:00
howieyuen c4a79558bf [zh]resync api-eviction.md and fix glossary hyper link issue 2022-03-01 18:48:02 +08:00
howieyuen b435630d21 [zh]resync node-pressure-eviction.md and fix hyper link issue 2022-03-01 18:43:42 +08:00
Kubernetes Prow Robot d975200abe Merge pull request #31984 from howieyuen/disruptions
[zh]resync content/zh/docs/concepts/workloads/pods/disruptions.md
2022-03-01 02:11:49 -08:00
holten ed8308a8d3 Update mysql-wordpress-persistent-volume.md
add some words to avoid ambiguity.
2022-03-01 17:35:56 +08:00
howieyuen 1213504003 [zh]resync content/zh/docs/concepts/workloads/pods/disruptions.md 2022-03-01 17:31:01 +08:00
Kubernetes Prow Robot e31d31926d Merge pull request #31903 from howieyuen/kubelet
[zh]resync content/zh/docs/reference/command-line-tools-reference/kub…
2022-03-01 01:29:50 -08:00
howieyuen a52257aa8b [zh]resync content/zh/docs/reference/command-line-tools-reference/kubelet.md 2022-03-01 17:14:47 +08:00
Kubernetes Prow Robot 2088b50bc8 Merge pull request #31867 from howieyuen/seccomp
[zh] sync content/en/docs/tutorials/security/seccomp.md
2022-03-01 00:49:49 -08:00
Kubernetes Prow Robot cedbc7c792 Merge pull request #31859 from howieyuen/cri
[zh]translate Container Runtime Interface(CRI)
2022-03-01 00:45:51 -08:00
Qiming Teng 485cf6bb23 [zh] Translate the migrating from PSP page 2022-03-01 16:38:21 +08:00
Qiming Teng 4c11f6db87 [zh] Translate enforcing PSS
This PR translates two files missing in zh localization and syncs two
related files for consistency.
2022-03-01 16:30:57 +08:00
Qiming Teng b6ceda82c9 [zh] Translate projected volume page 2022-03-01 15:57:21 +08:00
Qiming Teng c8857cd55b [zh] Translate docker to crictl map page 2022-03-01 15:53:06 +08:00
Qiming Teng 6ee7f0f3d0 [zh] Add glossary Event 2022-03-01 13:14:42 +08:00
Qiming Teng db95127bc8 [zh] Add glossary userns 2022-03-01 13:06:16 +08:00
Qiming Teng a65110dc04 [zh] Add glossary cadvisor 2022-03-01 12:59:43 +08:00
Kubernetes Prow Robot ee0389d360 Merge pull request #28290 from shannonxtreme/api-eviction
Add information to API Evictions from Safely Drain a Node
2022-02-28 19:25:46 -08:00
pangqing cdde38b85a Modify node pressure expulsion link
Signed-off-by: pangqing <pangqing@uniontech.com>
2022-03-01 10:50:32 +08:00
Qiming Teng 625ed5e1dd [zh] Translate change runtime containerd page 2022-03-01 07:25:11 +08:00
Arhell cfe7176772 [de] fix typo in Horizontal Pod Autoscaling 2022-03-01 00:47:42 +02:00
PriyanshuAhlawat 3d392f1b51 Update kubelet-integration.md 2022-02-28 23:03:31 +05:30
PriyanshuAhlawat 30abee1696 Update kubelet-integration.md 2022-02-28 22:54:45 +05:30
Lubomir I. Ivanov 7bf583a242 kubeadm: fix wrong path in the etcd HA guide (step 7)
The guide generates some files on one of three ETCD
hosts. It then copies files from host 1 to 2 and 3.
Due to that some file paths differ.

Update step 7 to reflect that and to match step 6.
2022-02-28 19:22:29 +02:00
Kubernetes Prow Robot b88e22a61c Merge pull request #31917 from chrisnegus/describe-yum-basearch
Added note for when baseurl fails in kubeadm install
2022-02-28 08:22:57 -08:00
Christopher Negus 723e5b4aa8 Fixed text from review comments 2022-02-28 15:32:30 +00:00
pangqing bff6d62c45 Modify the expulsion link initiated by API
Signed-off-by: pangqing <pangqing@uniontech.com>
2022-02-28 23:03:51 +08:00
PriyanshuAhlawat 59689b8dea Update kubelet-integration.md 2022-02-28 19:00:41 +05:30
Kubernetes Prow Robot c22571acb7 Merge pull request #31884 from howieyuen/apparmor
[zh]sync content/zh/docs/tutorials/security/apparmor.md
2022-02-27 19:28:56 -08:00
Shubham 8c7d4c2ae2 Added Documents for kubernetes.io/enforce-mountable-secrets. (#31864)
* Added Documents for kubernetes.io/enforce-mountable-secrets.

* Modified the enforce-mountable-secrets docs.
2022-02-27 18:06:56 -08:00
Kubernetes Prow Robot dea4f2b103 Merge pull request #31763 from sgaist/patch-1
Add secure example for getting secret values
2022-02-27 17:44:57 -08:00
Kubernetes Prow Robot 189100f5aa Merge pull request #31786 from tengqm/update-configapis
Update config API reference
2022-02-27 17:38:55 -08:00
Jihoon Seo 8880c5571f [ko] Update outdated files in dev-1.23-ko.2 M1-M8 2022-02-28 10:24:27 +09:00
Kubernetes Prow Robot d2a2af28ea Merge pull request #31721 from mac-chaffee/main
Add upgrade notes to cpu-management-policies
2022-02-27 17:20:55 -08:00
mango 288a7aded9 docs: add etcd cluster upgrade guide to configure-upgrade-etcd (#31833)
* docs: add etcd cluster upgrade guide to configure-upgrade-etcd

* Update content/en/docs/tasks/administer-cluster/configure-upgrade-etcd.md

Co-authored-by: championshuttler <shivams2799@gmail.com>

* Update content/en/docs/tasks/administer-cluster/configure-upgrade-etcd.md

Co-authored-by: Rey Lejano <rlejano@gmail.com>

* put "For more details..."

* Update configure-upgrade-etcd.md

Co-authored-by: championshuttler <shivams2799@gmail.com>
Co-authored-by: Rey Lejano <rlejano@gmail.com>
2022-02-27 17:04:56 -08:00
Kubernetes Prow Robot 879f4d4c86 Merge pull request #31934 from liggitt/evergreen
Allow marking blog posts as evergreen and exempt from outdated warning
2022-02-27 16:25:18 -08:00
Kubernetes Prow Robot 82d43bc35d Merge pull request #31949 from yoonian/patch-3
[ko] fix typo in quickstart
2022-02-27 16:17:18 -08:00
Kubernetes Prow Robot b79f7484e7 Merge pull request #31954 from Arhell/modify
[zh] fix: modify prepositions
2022-02-27 15:55:17 -08:00
Arhell b997555df6 [zh] fix: modify prepositions 2022-02-28 00:35:14 +02:00
Kubernetes Prow Robot 925c5d7a78 Merge pull request #31932 from liggitt/stale-warning
Soften / shrink older article warning
2022-02-27 14:33:18 -08:00
Jordan Liggitt b19e4ff868 Allow marking some blog posts as evergreen and exempt from outdated warning 2022-02-27 17:25:36 -05:00
Jordan Liggitt a61da6510d Soften language about older articles 2022-02-27 17:23:36 -05:00
Kubernetes Prow Robot dfa6e8a258 Merge pull request #30740 from mtilson/patch-1
short alias to set/show namespace
2022-02-27 14:09:18 -08:00
Kubernetes Prow Robot 9f6eb38051 Merge pull request #30860 from tengqm/kubelet-credentialprovider
Add kubelet credentialprovider API reference
2022-02-27 09:19:18 -08:00
Yoon 7ea94acfa9 [ko] fix typo in quickstart 2022-02-27 22:48:37 +09:00
Qiming Teng c1561ebc84 [zh] Translate API server encryption config API 2022-02-27 21:37:35 +08:00
Qiming Teng 65adc59301 [zh] Update i18n data for zh localization 2022-02-27 21:01:22 +08:00
Kubernetes Prow Robot a2a91d8865 Merge pull request #31792 from jihoon-seo/220218_Outdated_M40-M49
[ko] Update outdated files in `dev-1.23-ko.2` (M40-M49)
2022-02-27 01:45:17 -08:00
Qiming Teng d3946657d5 [zh] Translate API server config v1 reference 2022-02-27 17:29:09 +08:00
Qiming Teng fbd6020780 [zh] Translate mapping PSP to PSS page 2022-02-27 16:34:34 +08:00
Arhell 325246892d [ja] Configure multiple schedulers: switch to the secure ports 2022-02-27 09:48:18 +02:00
196Ikuchil 33d4e36f6e docs:translate resource-bin-packing 2022-02-27 15:06:31 +09:00
Tárikly Távora b6f0d8ffbc Review zookeper tutorial and fix command error (#31914)
* Misplaced command result

On zookeeper tutorial https://kubernetes.io/docs/tutorials/stateful-application/zookeeper/#surviving-maintenance command result is concatenated to the command itself:

kubectl drain $(kubectl get pod zk-1 --template {{.spec.nodeName}}) --ignore-daemonsets --force --delete-emptydir-data "kubernetes-node-ixsl" cordoned

* Review zookeeper tutorial

https://github.com/kubernetes/website/pull/31873

Review done!
2022-02-26 18:25:17 -08:00
Yuvraj Chhetri cd26a2bb6b Updated files install-kubectl-linux.md , install-kubectl-macos.md , install-kubectl-windows.md (#31916)
* updated install-kubectl-windows.md

* Updated install-kubectl-windows.md

* Update install-kubectl-linux.md

* Update install-kubectl-macos.md
2022-02-26 18:23:17 -08:00
Kubernetes Prow Robot 093f9758db Merge pull request #31918 from tallclair/psp-migration
Link to PSP migration guide from PSP to PSS reference
2022-02-26 18:19:16 -08:00
Meysam 1e95dbe901 fix: modify article (#31922)
* fix: modify article

* fix: add missing preposition
2022-02-26 18:11:16 -08:00
Kubernetes Prow Robot f3fb023366 Merge pull request #31927 from nabokihms/patch-1
fix: Delete the double running from the service account docs
2022-02-26 17:59:17 -08:00
196Ikuchil 072d6a07c4 docs:translate concepts/scheduling-eviction/pod-overhead/ 2022-02-27 01:25:00 +09:00
Maksim Nabokikh 38c9c82c76 Update configure-service-account.md
fix: Delete the double running from the service account docs
2022-02-26 19:58:32 +04:00
Kubernetes Prow Robot 619f851802 Merge pull request #31172 from tengqm/zh-mem-mgr
[zh] Translate memory manager page
2022-02-26 02:07:23 -08:00
Jaeyeon Kim a1b1aaefc8 [ko] add garbage-collection.md in Korean
Signed-off-by: Jaeyeon Kim <anencore94@gmail.com>
2022-02-26 15:06:46 +09:00
Mac Chaffee d657a0d10a Add upgrade notes to cpu-mgt-policies
Signed-off-by: Mac Chaffee <machaffe@renci.org>
2022-02-25 18:49:11 -05:00
Tim Allclair b8264dcfc7 Link to PSP migration guide from PSP to PSS reference 2022-02-25 10:27:52 -08:00
Christopher Negus 1ed65df34c Added note for when baseurl fails in kubeadm install 2022-02-25 17:25:26 +00:00
196Ikuchil ce19347269 commit
translate concepts/scheduling-eviction/scheduling-framework/ into Japanese
2022-02-26 01:36:46 +09:00
Kubernetes Prow Robot b7331def4c Merge pull request #31781 from shannonxtreme/dockershim-debug-intro
Update samples to use containerd
2022-02-25 07:21:51 -08:00
Kubernetes Prow Robot 83faf5f7ad Merge pull request #31746 from KoditkarVedant/update-hyperlinks-to-point-to-main-branch-ko-local
[ko] Fix link
2022-02-25 06:45:51 -08:00
Qiming Teng eeb95d89b8 [zh] Translate kubeadm kubeconfig command reference
This PR renames the kubeadm kubeconfig command reference as did in the
English upstream.
2022-02-25 20:12:05 +08:00
Vedant Koditkar 4141162984 Update hyperlinks to point to main branch & Fixed link 2022-02-25 16:25:50 +05:30
Kubernetes Prow Robot 5887c033fb Merge pull request #31180 from tengqm/zh-gc
[zh] Translate GC page
2022-02-25 01:29:51 -08:00
Kubernetes Prow Robot 26cf43b261 Merge pull request #31896 from meysam81/meysam/fix-typo
fix: typo
2022-02-25 00:39:51 -08:00
Meysam 6e8093e260 apply suggestions from code review
Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-02-25 10:49:28 +03:00
howieyuen 0c3fb981c4 [zh]sync content/zh/docs/tutorials/security/apparmor.md 2022-02-25 14:46:31 +08:00
Kubernetes Prow Robot b3ae22615e Merge pull request #31855 from Arhell/resolve-schedule
[ja] update schedule
2022-02-24 22:37:51 -08:00
Kubernetes Prow Robot df38c63598 Merge pull request #31902 from howieyuen/rbac
[zh]bugfix: fix title level
2022-02-24 21:57:55 -08:00
howieyuen 6b83d1734d [zh]bugfix: fix title level 2022-02-25 13:14:46 +08:00
Meysam 00336f4c6e Fix: Update line breaks (#31598)
* fix: add missing word 📝

* apply suggestions from code review

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-02-24 20:09:55 -08:00
Kubernetes Prow Robot fe955d4a9e Merge pull request #31768 from brunosaboia/31543-add-multi-container-debug-info
Add multi-container info on pod failure docs
2022-02-24 20:01:56 -08:00
Kubernetes Prow Robot 2f42f783a3 Merge pull request #31901 from 0xff-dev/main
[zh] update admissionregistration.k8s.io/v1 default failure policy
2022-02-24 19:43:55 -08:00
Kubernetes Prow Robot 4b3d2d639f Merge pull request #31898 from Arhell/fix-download-link
[es] Fix the download link to kubectl convert plugin for bash
2022-02-24 18:43:56 -08:00
0xff-dev 007ede51f6 [zh] update admissionregistration.k8s.io/v1 default failure policy 2022-02-25 10:31:40 +08:00
Kubernetes Prow Robot 7baebdb7ab Merge pull request #31894 from liggitt/manual-token
Fixup service account token doc
2022-02-24 18:25:55 -08:00
Kubernetes Prow Robot 078d438443 Merge pull request #31892 from alaypatel07/volume-populator-fixes
volume populators: fix urls and add url for populator crd
2022-02-24 18:09:55 -08:00
Tim Allclair 198ae37902 Rewrite PodSecurityPolicy migration guide (#31782) 2022-02-24 18:07:56 -08:00
Kubernetes Prow Robot 25358e17d1 Merge pull request #31889 from FOWind/fix/zh-translations-error
[zh] fix some translations error
2022-02-24 18:05:55 -08:00
Arhell 5bd15fefa5 [es] Fix the download link to kubectl convert plugin for bash 2022-02-25 01:07:25 +02:00
Meysam Azad 94fd5b9698 fix: typo 2022-02-24 23:36:03 +03:00
Filip Křepinský 88d33034b7 add note about Terminating pods when rolling out a Deployment
- fix number of Pods when describing the rollout functionality
2022-02-24 20:15:36 +01:00
Jordan Liggitt f7b4ca4d1c Fixup service account token doc 2022-02-24 14:04:40 -05:00
Kubernetes Prow Robot 9de083393a Merge pull request #31845 from liggitt/manual-token
Stop recommending people scrape auto-generated service account tokens
2022-02-24 09:46:31 -08:00
Alay Patel 3da61432a5 volume populators: fix urls and add url for populator crd 2022-02-24 11:42:28 -05:00
Bruno Saboia d1f511f92c Use explicit backticks for shell content 2022-02-24 09:09:06 -03:00
FOWind c4e811d129 (fix:zh)fix some translations error
- `content/zh/docs/concepts/cluster-administration/system-metrics.md`
    line 131 , '启用' should be '弃用'

-  `content/zh/docs/reference/access-authn-authz/_index.md`
   Title '访问 API' should be ‘API 访问控制'
2022-02-24 19:41:28 +08:00
Kubernetes Prow Robot 08ad36dfd7 Merge pull request #31752 from shawnhanx/pod
[zh] resync pod-lifecycle page
2022-02-24 02:59:35 -08:00
Kubernetes Prow Robot a35cecced5 Merge pull request #31842 from 0xff-dev/main
[zh] Update some grammar and spelling mistakes
2022-02-24 02:55:36 -08:00
howieyuen 0523f824bd [zh]sync content/zh/docs/tutorials/security/seccomp.md 2022-02-24 18:48:14 +08:00
Kubernetes Prow Robot 6c5fd95659 Merge pull request #31879 from JimBugwadia/add_projects
add 3rd party pod security options
2022-02-24 02:05:34 -08:00
Kubernetes Prow Robot 9e878fc8b4 Merge pull request #31883 from JayBeale/patch-2
Adding kube-proxy to the command line tools list in this page
2022-02-24 00:33:34 -08:00
Jay Beale 5440681803 Adding kube-proxy to this list
This list appears to name binaries whose configuration flags are documented in this section: [Command Line Tools Reference](/docs/reference/command-line-tools-reference/). Since kube-proxy is an item in that reference, it seems helpful to give it an entry and link here.
2022-02-23 23:30:30 -08:00
Kubernetes Prow Robot 0f6cb4fbfe Merge pull request #31863 from Aayush987/typo_fix
Fixed typo in cpu-constraint-namespace.md & memory-default-namespace.md
2022-02-23 23:25:33 -08:00
Kubernetes Prow Robot b5a70ce254 Merge pull request #31877 from JayBeale/patch-1
Correct the name: CertificateSigningRequests
2022-02-23 23:11:34 -08:00
Jim Bugwadia 9e10d98d07 add options
Signed-off-by: Jim Bugwadia <jim@nirmata.com>
2022-02-23 17:58:26 -08:00
Jay Beale c910edd70e Correct the name: CertificateSigningRequests
- This page referenced the "CertificationSigningRequests API," but this should be "CertificateSigningRequests API" or "Certificates API." 
- Added a link to the documentation for CertificateSigningRequests.
2022-02-23 17:27:32 -08:00
Kubernetes Prow Robot 4f75142c35 Merge pull request #31876 from Arhell/update-schedule
[zh] update schedule
2022-02-23 16:41:33 -08:00
Kubernetes Prow Robot e025825f02 Merge pull request #31865 from mitul3737/new-branch
[en] Solved some typos "hostname of FQDN" and "PowerShell"
2022-02-23 16:39:33 -08:00
Kubernetes Prow Robot e4c09583e7 Merge pull request #31875 from shannonxtreme/dockershim-ddebug-troubleshooting
Remove docker mention in bugs guidance
2022-02-23 16:33:33 -08:00
Kubernetes Prow Robot f678b95243 Merge pull request #31726 from MrMYHuang/patch-1
Simplify commands.
2022-02-23 16:19:34 -08:00
delusko22 24f2fc6fb2 [de] Fix typos in README (#31613)
* Fixed Typos

* Update README-de.md
2022-02-23 16:05:35 -08:00
Arhell 6b9b5702fa [zh] update schedule 2022-02-24 01:36:16 +02:00
Shannon Kularathna b03d603182 Remove docker mention in bugs guidance 2022-02-23 23:16:45 +00:00
Shannon Kularathna b60aa414a0 Update samples to use containerd 2022-02-23 21:35:01 +00:00
Bruno Saboia dd3e660cfe Remove useless whitespace 2022-02-23 17:22:05 -03:00
Jordan Liggitt 3d15ef3810 Stop recommending people scrape auto-generated service account tokens 2022-02-23 13:28:02 -05:00
Wang f606e6e01c [ja] Translate tasks/administer-cluster/certificates into Japanese (#31314)
* done

* self review

* minor change

* Update content/ja/docs/tasks/administer-cluster/certificates.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/certificates.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/certificates.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/certificates.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/certificates.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

* Update content/ja/docs/tasks/administer-cluster/certificates.md

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>

Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-02-23 08:02:20 -08:00
Kubernetes Prow Robot f396c81215 Merge pull request #31436 from KobayashiD27/translate-concepts/storage/projected-volumes
[ja]Translate concepts/storage/projected-volumes into Japanese
2022-02-23 08:00:19 -08:00
Kubernetes Prow Robot 4da4bd4828 Merge pull request #31806 from Arhell/space
[es] sha256sum requires 2nd space for the file type
2022-02-23 07:52:19 -08:00
Kubernetes Prow Robot 3a72c907f6 Merge pull request #31683 from ThiagoGMF/system-metrics-pt-br
[pt-br] Adding brazilian portuguese translation of system metrics page
2022-02-23 06:34:18 -08:00
Kubernetes Prow Robot ee3e2d0c91 Merge pull request #31826 from Arhell/pt-cron
[pt-br] update schedule
2022-02-23 05:54:18 -08:00
0xff-dev 7251b44311 [zh] Update some grammar and spelling mistakes 2022-02-23 21:25:06 +08:00
howieyuen 92788263bb [zh]translate Container Runtime Interface(CRI) 2022-02-23 21:02:25 +08:00
Thomas Güttler 46cc50c4ef Added "OR sun,mon,tue,wed,thu,fri,sat" to CronJob 2022-02-23 13:38:20 +01:00
Md Shahriyar Al Mustakim Mitul 038256a86b Solved some typos 2022-02-23 18:23:36 +06:00
Aayush Sharma 27caffcbf0 fixed typo 2022-02-23 16:53:10 +05:30
Kubernetes Prow Robot 813b0050dd Merge pull request #31861 from howieyuen/glossary-control-plane
[zh]fix display issue of Control Plane in glossary
2022-02-23 01:34:18 -08:00
howieyuen 8afd47723f fix display issue of Control Plane in glossary 2022-02-23 16:40:50 +08:00
Kubernetes Prow Robot 4b9ba4eda8 Merge pull request #31820 from arielshaqed/patch-1
Fix golang client-go/tools/cache package name
2022-02-23 00:32:19 -08:00
Kubernetes Prow Robot 55b0abf63f Merge pull request #31843 from 0xff-dev/en-main
[en] update yaml docs
2022-02-23 00:24:18 -08:00
Kubernetes Prow Robot cb54a727ef Merge pull request #31860 from howieyuen/node-ref-info
[zh]translate node reference info
2022-02-22 23:38:18 -08:00
Qiming Teng b0a194355a [zh] Translate GC page 2022-02-23 14:59:54 +08:00
Shubham a45bf8459d Added Hyperlink to RFC3339. (#31836)
* Added Hyperlink to RFC3339.

* Wrapping a line!
2022-02-22 22:54:18 -08:00
howieyuen a4a2897763 [zh]translate node reference info 2022-02-23 14:49:30 +08:00
howieyuen d62a8da5b6 add howieyuen to sig-doc-zh-owners 2022-02-23 14:12:32 +08:00
Jay Beale e0765344a9 Adding an example (#31830)
* Adding an example

This text mentions that you can view the logs from a specific container by appending the container name.  I've created an example, based on the previous few lines.

Also, I've added a -c flag, to bring this in line with both the ```kubectl logs``` [documentation's examples](https://kubernetes.io/docs/reference/generated/kubectl/kubectl-commands#logs) and other kubectl commands that require the -c flag when selecting a specific container from a pod.

* Wrapping long line and marking `-c` as code.

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2022-02-22 19:46:18 -08:00
Jay Beale 5be3b2de8e Replaced "master" with newer terms in two places (#31846)
* Replaced "master" with newer terms in two places

- Replacing the outdated "master" term with API server.
- Changed "master" to "control plane node(s)"

* control plane node -> control plane

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-22 17:00:18 -08:00
Arhell 9c0676ebe0 [ja] update schedule 2022-02-23 01:09:54 +02:00
Bruno Saboia 24444fab32 Remove unecessary additional info 2022-02-22 16:48:57 -03:00
0xff-dev f9ac04521d [en] update yaml docs 2022-02-23 00:32:01 +08:00
Bruno Saboia 25aa381f75 Put multi-container info outside numbered list 2022-02-22 12:55:58 -03:00
Kobayashi Daisuke 1b1917c16c [ja] Translate docs/concepts/architecture/cri into Japanese (#31065)
* translate concepts/architecture/cri

* fix build error

* modify URLs

* Remove unnecessary space

* Update content/ja/docs/concepts/architecture/cri.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/architecture/cri.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/concepts/architecture/cri.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-02-22 07:17:46 -08:00
Ariel Shaqed (Scolnicov) 9d45d964ed Fix golang client-go/tools/cache package name
Documentation shows incorrect package name, I believe it should refer to
[`client-go/ools/cache`](https://pkg.go.dev/k8s.io/client-go/tools/cache).
2022-02-22 17:08:57 +02:00
ThiagoGMF 57a706daba adding request changes for system-metrics page 2022-02-22 10:39:49 -03:00
Kubernetes Prow Robot 42b4f2b503 Merge pull request #31832 from championshuttler/1link
Remove dead link to svc-cat.io
2022-02-22 03:41:46 -08:00
Jihoon Seo b1aa9e7a32 [ko] Update outdated files in dev-1.23-ko.2 M9-M17 2022-02-22 19:27:43 +09:00
Kubernetes Prow Robot 78306127a0 Merge pull request #31703 from championshuttler/jab
[ja] Fix broken links due to using githubbranch param
2022-02-22 01:59:46 -08:00
Shivam Singhal 736c1e6d74 [ja] Fix broken links due to using githubbranch param 2022-02-22 11:43:24 +02:00
Shivam Singhal a1d69a8d12 Remove dead link to svc-cat.io 2022-02-22 09:45:41 +02:00
Kubernetes Prow Robot 98255cc75d Merge pull request #31828 from JayBeale/patch-1
Changing "VMs" to "machines" in this sentence
2022-02-21 23:39:46 -08:00
Qiming Teng 8699ee6ff1 [zh] Translate scheduler config API v1beta3 2022-02-22 15:11:16 +08:00
PranshuSrivastava 8b1b8a4f80 updated the container-runtime page to include info about dockershim deprecation. 2022-02-22 12:21:36 +05:30
PriyanshuAhlawat c855463d3d Update ingress.md 2022-02-22 11:46:43 +05:30
Kubernetes Prow Robot 282d9b56d1 Merge pull request #31762 from jihoon-seo/220216_Remove_invisible_char
[ko] Remove invisible chars
2022-02-21 19:31:46 -08:00
Jay Beale 33c1877b39 Changing "VMs" to "machines" in this sentence
The rest of this paragraph talks about nodes being "machines," whereas this sentence is more specific, referring to virtual machines ("VMs"). The article this sentence points to also uses "machines" and isn't specific to VMs.
2022-02-21 15:14:19 -08:00
Arhell b1777debd7 [pt-br] update schedule 2022-02-22 01:03:56 +02:00
Kubernetes Prow Robot 0c8eab971c Merge pull request #31766 from bassaer/fix-ja-translation
[ja] fix translation cordon/uncordon
2022-02-21 08:06:13 -08:00
Kubernetes Prow Robot 7b5ff600d0 Merge pull request #31278 from eltociear/patch-1
[ja] Fix kubernetes-api.md
2022-02-21 08:04:14 -08:00
Kubernetes Prow Robot a3b30be299 Merge pull request #31558 from chrismetz09/metzResourceMetrics
update resource metrics pipeline section
2022-02-21 04:38:11 -08:00
yuswift 62f4b02e65 Merge branch 'main' of github.com:swiftslee/k8s-website 2022-02-21 20:17:45 +08:00
yuswift cd3ee79a88 update scripts/verify-spelling.sh 2022-02-21 20:14:35 +08:00
Kubernetes Prow Robot d202485f1e Merge pull request #31563 from bryfry/main
correct references to service-account-signing-key-file flag
2022-02-21 03:42:11 -08:00
Kubernetes Prow Robot 3f6efc04df Merge pull request #31621 from mk46/doc_description
Added docs for kubernetes.io/description
2022-02-21 02:22:11 -08:00
Marco Voelz 9823ecda09 Update proposal link to point to archive
Original link says
```
Design proposals have been archived.

To view the last version of this document, see the Design Proposals Archive Repo.

Please remove after 2022-04-01 or the release of Kubernetes 1.24, whichever comes first.
```
2022-02-21 10:54:50 +01:00
Kubernetes Prow Robot b90237d9cb Merge pull request #31672 from Frankkkkk/patch-2
operator: add `Kopf` framework to list of libraries
2022-02-21 00:20:11 -08:00
Kubernetes Prow Robot ecbe8f7351 Merge pull request #31735 from benjaminguttmann-avtq/update-ebs-storage-class-information
[StorageClasses] Add gp3 to available ebs volume types
2022-02-21 00:02:10 -08:00
Mark Rossetti 1b1dd7d9ae Adding a warning to Windows docs for NodePort service issues on WS2022 (#31759)
* Adding a warning to Windows docs for NodePort service issues on WS2022

Signed-off-by: Mark Rossetti <marosset@microsoft.com>

* Update content/en/docs/setup/production-environment/windows/intro-windows-in-kubernetes.md

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>

* Update content/en/docs/setup/production-environment/windows/intro-windows-in-kubernetes.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-20 23:54:11 -08:00
Kubernetes Prow Robot 9da7dead81 Merge pull request #31764 from RinkiyaKeDad/nca_update
mention about monthly meeting in NCA responsibilities
2022-02-20 23:48:11 -08:00
Kubernetes Prow Robot 96c388532b Merge pull request #31804 from PriyanshuAhlawat/update_link
Ensure “Download Kubernetes” link goes to right page #31794
2022-02-20 20:54:15 -08:00
Qiming Teng fdd671626d Add kubelet credentialprovider API reference 2022-02-21 08:56:27 +08:00
Arhell 70827d5970 [id] update schedule 2022-02-21 01:17:11 +02:00
Tim Bannister 49c8a25044 Restrict approvals for community static content
The intent here is to make really sure that we only accept changes that
match upstream exactly.
2022-02-20 16:11:33 +00:00
Tim Bannister a520a7bb2d Update code-of-conduct page to use new styles 2022-02-20 16:11:33 +00:00
Tim Bannister d6a755b474 Revise community values page
- reduce sitemap priority; the contributor site is a better version
- make title match included file
2022-02-20 16:11:33 +00:00
Tim Bannister afc338c0bf Update and restyle community page
- Use new styles (and remove inline CSS)
- Fix some hyperlinks
- Wording tweaks
- Link to Server Fault, not Stack Overflow
2022-02-20 16:11:33 +00:00
Tim Bannister e993de5dc6 Tidy styles for community section
This change enables an opt-in switch to new styles for /community
It is opt-in to enable localizations to migrate to the new page on their
own timeline.
2022-02-20 16:11:31 +00:00
Kubernetes Prow Robot c67d45de83 Merge pull request #31803 from Arhell/add-link
[zh] add link to lightkube
2022-02-19 18:16:10 -08:00
Arhell d5b16c9e59 [es] sha256sum requires 2nd space for the file type 2022-02-20 01:09:17 +02:00
Kubernetes Prow Robot 09c3d17202 Merge pull request #31787 from tengqm/add-apiserver-v1alpha1-config
Add API server config reference (v1alpha1)
2022-02-19 14:26:09 -08:00
Kubernetes Prow Robot ca8f4f1b7d Merge pull request #31056 from sftim/20211221_mermaid_improvements
Improvements for Mermaid support
2022-02-19 14:22:09 -08:00
Kubernetes Prow Robot 069e4c939a Merge pull request #31800 from SergeyKanzhelev/patch-1
fix error display string
2022-02-19 13:56:10 -08:00
PriyanshuAhlawat d8271f94f9 Update _index.md 2022-02-20 01:58:00 +05:30
Arhell 8e166a258a [zh] add link to lightkube 2022-02-19 14:30:10 +02:00
Kubernetes Prow Robot d2f7d7a2ed Merge pull request #31174 from tengqm/zh-cascading
[zh] Translate cascading deletion task
2022-02-18 23:38:10 -08:00
Kubernetes Prow Robot b90e996ad9 Merge pull request #31801 from jiaqiluo/fix-dockershim-faq
Remove A Duplicated Line From The Updated Dockershim FAQ blog
2022-02-18 19:40:10 -08:00
Jiaqi Luo fe7f291bb2 remove a duplicated line from 2022-02-17-updated-dockershim-faq.md 2022-02-18 20:15:34 -07:00
ThiagoGMF 80d359f061 adding request changes 2022-02-18 22:28:54 -03:00
Kubernetes Prow Robot 9b2d169ef4 Merge pull request #31797 from Mouly22/patch-1
Update feature-gates.md
2022-02-18 17:14:22 -08:00
Kubernetes Prow Robot 608df0e4e6 Merge pull request #31798 from ShivamTyagi12345/typo
Fixed typo in feature-gates.md
2022-02-18 17:10:22 -08:00
Sergey Kanzhelev ec25052227 fix error display string 2022-02-18 14:30:23 -08:00
shivam tyagi 33b55edda7 fixed 2022-02-19 01:20:10 +05:30
Umme Abira Azmary 0223627599 Update feature-gates.md
Updated the word "Deprecated" in (L455)
Updated the sign "-" in (L818)
2022-02-19 00:06:17 +06:00
Kubernetes Prow Robot d6daf7f1e1 Merge pull request #31312 from morallito/proxies-pt-br
[pt-br] add  translation to concepts/cluster-administration/proxies.md
2022-02-18 07:22:23 -08:00
Jihoon Seo 8a73287e65 [ko] Update outdated files in dev-1.23-ko.2 M40-49 2022-02-18 18:24:25 +09:00
Mikhail Polivakha d78f8d2736 Add example of Service targetPort binding by name
Add example of Service targetPort binding by name
2022-02-18 11:10:47 +03:00
Arsh Sharma 3c38080005 Update content/en/docs/contribute/advanced.md
Co-authored-by: Shannon Kularathna <ax3shannonkularathna@gmail.com>
2022-02-18 13:07:03 +05:30
Kubernetes Prow Robot 670ae1a6de Merge pull request #31783 from mengjiao-liu/sync-dns-pod-service-zh
[zh] Correcting DNS record for pods exposed by a Service
2022-02-17 22:50:23 -08:00
Kubernetes Prow Robot 09fac317a6 Merge pull request #31773 from mengjiao-liu/sync-common-labels
[zh] Add glossary_tooltip for StatefulSet
2022-02-17 22:42:23 -08:00
Qiming Teng ca36ac797c Add API server config reference (v1alpha1)
The `TracingConfiguration` struct we reference from the system traces
page only exists in the v1alpha1 version of the API server
configuration. This PR fixes the problem.
2022-02-18 14:32:57 +08:00
Mengjiao Liu 5abe709d13 [zh] Correcting DNS record for pods exposed by a Service 2022-02-18 14:28:08 +08:00
Qiming Teng 5dfea11d6f Update config API reference
This PR refreshes the config API references using the latest generator
which had some nits fixed.
2022-02-18 14:27:04 +08:00
Kubernetes Prow Robot effa50ed1c Merge pull request #31777 from sftim/20220217_update_links_to_dockershim_removal_faq
Update links to Dockershim Removal FAQ
2022-02-17 13:21:04 -08:00
Tim Bannister 362da74120 Update links to Dockershim Removal FAQ
- Identify selected links to the Dockershim Deprecation FAQ
- Replace them with links to the updated FAQ
2022-02-17 17:41:55 +00:00
Chris Short 35f5f4ca01 Updated dockershim faq (#31765)
* Create updated dockershim FAQ

- The current dockershim FAQ is marked as outdated
- This new FAQ states clearly "removal"
- This new FAQ also has links to additional resources created by the community and others.

* deprecation -> removal scrub

- It's important this new FAQ says removal rather than deprecation as we're at that moment in time.

* Update content/en/blog/_posts/2022-02-16-updated-dockershim-faq.md

Did not know Hugo allowed for this.

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-02-16-updated-dockershim-faq.md

🤯

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-02-16-updated-dockershim-faq.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-02-16-updated-dockershim-faq.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-02-16-updated-dockershim-faq.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-02-16-updated-dockershim-faq.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Apply suggestions from code review

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Bump version to 1.23

Warning in 1.23
Removed in 1.24

* Update for today's date

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-17 09:35:38 -08:00
Tsubasa Nakayama 4438b6aa2b Update content/ja/docs/reference/kubectl/cheatsheet.md
Co-authored-by: Wang <ooocamel@icloud.com>
2022-02-18 01:48:20 +09:00
Tsubasa Nakayama e65d5a57fe Update content/ja/docs/reference/kubectl/cheatsheet.md
Co-authored-by: Wang <ooocamel@icloud.com>
2022-02-18 01:47:48 +09:00
Kubernetes Prow Robot b72092e0bc Merge pull request #31730 from SWADESNA/patch-2
Update memory-default-namespace.md
2022-02-17 07:19:37 -08:00
Kubernetes Prow Robot 63edc70641 Merge pull request #31639 from JayKayy/patch-1
Remove deprecated `--record` flag from example
2022-02-17 07:17:38 -08:00
Kubernetes Prow Robot 4cc1994da1 Merge pull request #31728 from tengqm/zh-fix-certificates
Fix typo in certificates page
2022-02-17 05:41:37 -08:00
Mengjiao Liu 10adfaca70 [zh] Add glossary_tooltip for StatefulSet 2022-02-17 17:56:09 +08:00
Samuel Gaist 73bd4563a8 docs: add secure example for getting secret values
The current example showing how to decode a secret
does it in several steps which is fine but if some level
of security is required will leak the encoded secret
value in the shell history thus making it retrievable.

This patch adds an example on how to retrieve that
value without exposing it.
2022-02-17 09:11:19 +01:00
韩啸10279154 253b02c9d8 [zh]fix error punctuation 2022-02-17 12:16:06 +08:00
Kubernetes Prow Robot e60da5b72e Merge pull request #31655 from SergeyKanzhelev/ci-group
SIG Node CI Subproject celebrates two years of test improvements
2022-02-16 14:12:45 -08:00
Sergey Kanzhelev 1c0b4eb70b Update content/en/blog/_posts/2022-02-16-sig-node-ci-subproject-celebrates/index.md
Co-authored-by: Rey Lejano <rlejano@gmail.com>
2022-02-16 13:51:07 -08:00
Bruno Saboia 481eff6321 Add multi-container info on pod failure docs 2022-02-16 18:40:26 -03:00
Tsubasa Nakayama 97cfe80e45 [ja] fix translation cordon/uncordon 2022-02-16 23:44:19 +09:00
Kubernetes Prow Robot e3d0384b33 Merge pull request #31175 from tengqm/zh-hostprocess
[zh] Translate create hostprocess pod
2022-02-16 05:44:36 -08:00
Kubernetes Prow Robot 7e268d8059 Merge pull request #30864 from lcbcFoo/pt_br_namespaces
Add content/pt-br/docs/concepts/overview/working-with-objects/namespa…
2022-02-16 05:08:36 -08:00
Arsh Sharma ca51b25078 mention about monthly meeting in NCA responsibilities
Signed-off-by: Arsh Sharma <arshsharma461@gmail.com>
2022-02-16 18:26:23 +05:30
Kubernetes Prow Robot 267e7427a5 Merge pull request #31747 from KoditkarVedant/update-hyperlinks-to-point-to-main-branch-ru-local
[ru] Update hyperlinks to point to main branch
2022-02-15 23:06:37 -08:00
Kubernetes Prow Robot f394c4adde Merge pull request #31500 from FOWind/fix/zh-ha-format
[zh]Fix tools/kubeadm/high-availablility.md display format
2022-02-15 21:34:36 -08:00
Kubernetes Prow Robot 172bb1e459 Merge pull request #31751 from gaffeyQiu/patch-1
[zh]fix guestbook.md: 原文:"面向生产的" 斜体未生效
2022-02-15 21:28:36 -08:00
Jihoon Seo 0f1e8df67f [ko] Remove invisible chars 2022-02-16 14:25:35 +09:00
Kubernetes Prow Robot 3721610853 Merge pull request #31760 from tallclair/patch-4
Delete broken link (contiv.io)
2022-02-15 16:35:02 -08:00
Sergey Kanzhelev ed9a8d1c2c SIG Node CI Subproject Celebrates Two Years of Test Improvements 2022-02-16 00:29:02 +00:00
Tim Allclair b0e4e7a03c Delete broken link (contiv.io) 2022-02-15 15:17:15 -08:00
Kubernetes Prow Robot 9e5ab12117 Merge pull request #31757 from meysam81/meysam/remove-redundant-word
docs: remove redundant word 📝
2022-02-15 11:44:42 -08:00
Meysam Azad 259e312ff2 docs: remove redundant word 📝 2022-02-15 19:16:42 +03:00
Kubernetes Prow Robot a04f1c9f4a Merge pull request #31742 from shu-mutou/patch-1
Update reviewers from SIG-UI
2022-02-15 07:08:03 -08:00
Kubernetes Prow Robot 3c9583dfee Merge pull request #31754 from liggitt/finalizers
Fix finalizer doc
2022-02-15 07:04:04 -08:00
Jordan Liggitt 0e8acb4b02 Fix finalizer doc 2022-02-15 08:42:14 -05:00
Kubernetes Prow Robot bfe7ca1178 Merge pull request #31443 from tengqm/zh-authentication
[zh] Resync authentication page
2022-02-15 03:04:03 -08:00
Kubernetes Prow Robot 72ba8474a6 Merge pull request #31178 from tengqm/zh-dual-stack
[zh] Translate dual-stack-support page
2022-02-15 03:02:02 -08:00
Gaffey ec8ba1453c fix:markdown 斜体未生效 2022-02-15 15:07:03 +08:00
Vedant Koditkar 88fae789bd Update hyperlinks to point to main branch 2022-02-15 12:23:47 +05:30
Vedant Koditkar 4b85efed41 Update hyperlinks to point to main branch 2022-02-15 12:22:46 +05:30
Vedant Koditkar f7fa36b5cd Update hyperlinks to point to main branch 2022-02-15 12:19:05 +05:30
Kubernetes Prow Robot 1e5b3abce1 Merge pull request #31696 from whitebear009/typo
[zh] Fix typo: kubeclt to kubectl
2022-02-14 18:22:12 -08:00
Shu Muto c1da5f25ab Update reviewers from SIG-UI
Also, bump kubernetes dashboard to v2.5.0.
2022-02-15 11:18:14 +09:00
Kubernetes Prow Robot 018191a4d2 Merge pull request #31737 from liggitt/patch-3
Update finalizers.md
2022-02-14 18:10:12 -08:00
Kubernetes Prow Robot 85438bfd4d Merge pull request #31732 from Arhell/lightkube
[zh] add link to lightkube in community-maintained client libraries
2022-02-14 17:52:12 -08:00
Arhell 73f0f1afde [zh] add link to lightkube in community-maintained client libraries 2022-02-15 00:39:53 +02:00
chrismetz09 3f74c2ae79 update component explanation 2022-02-14 11:01:39 -08:00
Jordan Liggitt fa4cc5965b Update finalizers.md 2022-02-14 10:37:44 -05:00
Kubernetes Prow Robot 7ae88efd7a Merge pull request #31630 from tengqm/fix-links
Fix links in security context page
2022-02-14 07:31:31 -08:00
BG 541e89228c [StorageClasses] Add gp3 to available ebs volume types 2022-02-14 11:38:44 +01:00
Dohyun Jung ede7013dc7 Update namespaces.md
Delete content that doesn't exist in the English version.
2022-02-14 19:24:54 +09:00
srout deb2a9c96b Update memory-default-namespace.md 2022-02-14 13:05:33 +05:30
Kubernetes Prow Robot 7dd728cf69 Merge pull request #31729 from SWADESNA/patch-1
Update memory-default-namespace.md
2022-02-13 23:25:28 -08:00
Kubernetes Prow Robot 1f4ca9f802 Merge pull request #31631 from tengqm/fix-gc-cascade
Fix the cascading deletion page
2022-02-13 23:09:28 -08:00
srout a191d71627 Update memory-default-namespace.md 2022-02-14 12:37:58 +05:30
whitebear009 94d98124c1 sync reconfigure-kubelet.md to the latest with en version 2022-02-14 14:05:06 +08:00
Qiming Teng cab6e717d6 Fix typo in certificates page 2022-02-14 14:03:30 +08:00
Meng-Yuan Huang f62e3032af Simplify commands.
Simplify commands to output paths to all elements.
Note: the jq filter "path(..)" is simplified to "paths," however, there is a trivial difference: the filter "paths" doesn't output the top path "[]."
2022-02-14 10:20:18 +08:00
Kubernetes Prow Robot 7ef7a39cf1 Merge pull request #31239 from tengqm/zh-pss-admission
[zh] Translate enforce-standards-admission-controller.md
2022-02-13 17:57:28 -08:00
Kubernetes Prow Robot f814a70f34 Merge pull request #31238 from tengqm/zh-namespace-lbl
[zh] Translate enforce standards-namespace-labels page
2022-02-13 17:55:27 -08:00
Kubernetes Prow Robot 068d86d793 Merge pull request #31608 from atoato88/update-job-ttl-mechanism-to-stable
Update TTL mechanism in Job to stable feature state
2022-02-12 20:51:48 -08:00
Kubernetes Prow Robot 4727e39e70 Merge pull request #31682 from tengqm/apiserver-encryption-v1
Add configuration reference for API server encryption
2022-02-12 20:45:46 -08:00
bryfry c14e5c2c43 correct references to service-account-signing-key-file flag 2022-02-13 01:13:56 +00:00
Qiming Teng 52696d80b0 Fix links in security context page
The links to AppArmor etc are using redirection records. This is a bad
practice because when translating the page to a different language, the
link will become invalid. So we should use the actual target in the
English source.

This PR also fixes some incorrect syntax directives for code snippets.
2022-02-13 08:05:30 +08:00
Kubernetes Prow Robot 9115aaa460 Merge pull request #31701 from championshuttler/xps
Fix link of XFS project quotas in manage-resources-containers
2022-02-12 07:05:47 -08:00
Kubernetes Prow Robot dc88203bcc Merge pull request #31720 from shannonxtreme/dockershim-debug-replication
Change language so that docker is an example
2022-02-12 06:57:47 -08:00
Kubernetes Prow Robot 5c4a0c9aa7 Merge pull request #31437 from tengqm/zh-tls-cluster
[zh] Resync managing TLS in a cluster
2022-02-12 05:27:47 -08:00
Kubernetes Prow Robot 7dffff4b71 Merge pull request #31246 from tengqm/zh-deprecation-guide
[zh] Translate deprecation guide
2022-02-12 05:25:47 -08:00
Kubernetes Prow Robot e3a9814b33 Merge pull request #31439 from tengqm/zh-webui
[zh] Resync web UI dashboard page
2022-02-12 05:23:47 -08:00
Kubernetes Prow Robot e301a74e52 Merge pull request #31447 from tengqm/zh-community
[zh] Resync community index
2022-02-12 05:15:47 -08:00
Kubernetes Prow Robot 97fd422bad Merge pull request #31685 from jiwq/resyc-configure-multiple-schedulers-zh
[zh] Resync configure multiple schedulers file
2022-02-12 05:13:46 -08:00
Kubernetes Prow Robot dcc7a761dd Merge pull request #31435 from tengqm/zh-config-overview
[zh] Resync configuration overview
2022-02-12 05:03:46 -08:00
Kubernetes Prow Robot 0f213c5204 Merge pull request #31177 from tengqm/zh-mig-psp
[zh] Translate migrate from PSP
2022-02-12 05:01:47 -08:00
Kubernetes Prow Robot f2ae4d1d0c Merge pull request #30973 from tengqm/zh-kube-proxy
[zh] Translation of the kube-proxy configuration struct
2022-02-12 04:59:46 -08:00
Qiming Teng d97e53f2a1 [zh] Resync the configmap page 2022-02-12 18:59:43 +08:00
Kubernetes Prow Robot d7db82d44f Merge pull request #31714 from championshuttler/itb
[it] Fix broken links due to using githubbranch param
2022-02-12 01:47:47 -08:00
Kubernetes Prow Robot 411d8b7a0d Merge pull request #31717 from championshuttler/rub
[ru] Fix broken links due to using githubbranch param
2022-02-11 23:55:47 -08:00
Paul "TBBle" Hampson b6045d6160 Update link to TECHNET article about Windows NAT (#31702)
* Update link to TECHNET article about Windows NAT

* Fix inconsistent capitalisation of win-overlay

No other instance of win-overlay is capitalised, and win-bridge in the same place on the previous row is not capitalised either.
2022-02-11 13:59:47 -08:00
Shannon Kularathna 0e9e8b96cb Change language so that docker is an example 2022-02-11 19:19:49 +00:00
Kubernetes Prow Robot 2853547cf9 Merge pull request #31715 from championshuttler/esb
[es] Fix broken links due to using githubbranch param
2022-02-11 10:50:13 -08:00
Kubernetes Prow Robot 44cd70c2d4 Merge pull request #31653 from chrismetz09/patch-5
Add figure <number> to text and caption reviewing-prs.md
2022-02-11 08:54:24 -08:00
Kubernetes Prow Robot 78f6ae073e Merge pull request #31623 from sftim/20220204_tweak_blog_outdated_warning
Recolor warning about old blog articles
2022-02-11 08:52:24 -08:00
Kubernetes Prow Robot 1592f3a445 Merge pull request #31595 from sftim/20220102_revise_managing_tls_in_a_cluster_task
Tidy page “Manage TLS Certificates in a Cluster”
2022-02-11 08:50:25 -08:00
Kubernetes Prow Robot 1e87ec875d Merge pull request #31627 from tengqm/tune-diagram-guide
Reformat diagram guide
2022-02-11 08:48:25 -08:00
Kubernetes Prow Robot 108bae87c2 Merge pull request #31668 from Shubham82/fix-typo
Fix typo in Horizontal Pod Autoscaling.
2022-02-11 08:16:26 -08:00
Shubham Kuchhal 929e8a2dfa Fixed minor typo. 2022-02-11 20:58:06 +05:30
Wanqiang Ji 23c39e44e2 [zh] Resync configure multiple schedulers file 2022-02-11 23:17:42 +08:00
chrismetz09 10e7039a69 update resource metrics pipeline section 2022-02-11 07:09:01 -08:00
Kubernetes Prow Robot 97cccf845e Merge pull request #31716 from championshuttler/ptb
[pt-br] Fix broken links due to using githubbranch param
2022-02-11 07:06:24 -08:00
Shivam Singhal 4efe336440 [de] Fix broken links due to using githubbranch param 2022-02-11 16:26:53 +02:00
Shivam Singhal 399a5ef0e8 [it] Fix broken links due to using githubbranch param 2022-02-11 16:26:04 +02:00
Shivam Singhal 4847d28bda [es] Fix broken links due to using githubbranch param 2022-02-11 16:25:33 +02:00
Shivam Singhal 82868b0276 [pt-br] Fix broken links due to using githubbranch param 2022-02-11 16:23:26 +02:00
Shivam Singhal d6a3d05b99 [ru] Fix broken links due to using githubbranch param 2022-02-11 16:22:45 +02:00
Shivam Singhal d722e64d1d Fix link of XFS project quotas in manage-resources-containers 2022-02-11 15:47:38 +02:00
Debabrata Panigrahi b03dfa8096 Docs to change Container runtime (#30141)
* Docs to change Container runtime

* Updated header

* Updated header

* Few changes made according to the reviews

* Updated few headings

* Updated few markdown changes

* Reverted a unwanted changes

* Removed the double extension in the filename

* Updated

* Updated according to review

* Final Updates

* Added instructions to remove docker engine

* Minor changes

* Minor updates on heading

* Minor updates on lists

* Minor updates on line 106

* Minor updates on line 106
2022-02-11 04:38:03 -08:00
whitebear009 6a5ee2fe98 update kubeclt to kubectl 2022-02-11 17:37:01 +08:00
Qiming Teng 3d1ca8c164 [zh] Translate kube-scheduler config API v1beta2 2022-02-11 16:05:38 +08:00
Kubernetes Prow Robot 89e2fa2986 Merge pull request #31691 from mengjiao-liu/sync_configmap_zh
[zh]Resync concepts configuration configmap file
2022-02-10 23:22:04 -08:00
FOWind b2c22d683f Resolve Suggestion 2022-02-11 14:21:57 +08:00
Qiming Teng 52c80f479d [zh] Minor tweaks to configuration overview 2022-02-11 12:19:31 +08:00
Kubernetes Prow Robot f806c6a1a4 Merge pull request #31684 from douglarek/patch-1
[zh-docs] typo fix
2022-02-10 20:14:03 -08:00
Mengjiao Liu 15a8827036 [zh]Resync concepts configuration configmap file 2022-02-11 11:21:30 +08:00
xinlingchao a1ec586976 minor improvement 2022-02-11 10:52:22 +08:00
Kubernetes Prow Robot f9c11cfef2 Merge pull request #31681 from Arhell/correct
[id] correct separator in generated ConfigMap
2022-02-10 18:34:03 -08:00
Arhell 8b234f8db0 [ja] kube-etcd certificate requires additional SAN's 2022-02-11 00:35:54 +02:00
Kubernetes Prow Robot fef3dccc01 Merge pull request #31679 from shannonxtreme/dockershim-debug
Remove docker pull command in Debug > Troubleshoot Applications
2022-02-10 11:17:30 -08:00
Shannon Kularathna c99901f11c Remove docker pull command 2022-02-10 18:43:25 +00:00
Kubernetes Prow Robot ff9e590bb7 Merge pull request #31597 from yaroslav-serhiichuk/fix_grammar_minikube_doc
[uk] Minikube installation guide grammar fix
2022-02-10 07:11:48 -08:00
xinlingchao 84593e9606 [zh-docs] lsync && typo fix 2022-02-10 17:30:59 +08:00
FOWind b4441044ab Sync tools/kubeadm/high-availablility.md from main 2022-02-10 15:51:16 +08:00
Kubernetes Prow Robot 98863fce8b Merge pull request #31670 from mengjiao-liu/sync-configuration-overview-zh
[zh]Resync concepts configuration overview file
2022-02-09 22:11:46 -08:00
ThiagoGMF 3228bd692a feat: adding pt-br translation for system metrics page
Co-authored-by: Brenda Santos <brendasantosv.bs@gmail.com>
2022-02-10 00:43:53 -03:00
Mengjiao Liu ff6203dfa9 [zh]Resync concepts configuration overview file 2022-02-10 11:33:24 +08:00
Qiming Teng 3e58334b07 Add configuration reference for API server encryption 2022-02-10 11:27:52 +08:00
Kubernetes Prow Robot 78f0459d3f Merge pull request #31628 from tengqm/fix-crictl
Fix crictl page
2022-02-09 18:53:46 -08:00
Qiming Teng 23286b6085 Fix crictl page
This PR fixes a link (at the bottom of the page) to reference.
It also fixes the indentation of the number lists, the incorrect syntax tag for code snippets.
2022-02-10 10:39:30 +08:00
Qiming Teng d4f6e0be55 Fix the cascading deletion page
This PR fixes two problems in the cascading deletion page:

- The indentation of list items should be 2 spaces for unordered lists,
  or 3 spaces for ordered lists. We should avoid using 4 spaces as
  indentation because 4-spaces indentation has special meaning in
  markdown.
- The garbage-collection page was moved to a new place. With redirect
  records for English site, there seems no obvious problems. However,
  for localization teams, such redirection records don't exist. It is
  super easy to create a dangling link in localized pages.
2022-02-10 10:38:01 +08:00
Kubernetes Prow Robot 0211d7f7c9 Merge pull request #31622 from meysam81/meysam/fix-prepositions
fix: modify prepositions 📝
2022-02-09 18:25:47 -08:00
Arhell 939a50b692 [id] correct separator in generated ConfigMap 2022-02-10 02:16:21 +02:00
Kubernetes Prow Robot 68dfbb15ee Merge pull request #31662 from sftim/20220208_revise_dockershim_article_list
Revise dockershim removal article list
2022-02-09 14:55:50 -08:00
Kubernetes Prow Robot 2ad2dbede8 Merge pull request #30863 from lcbcFoo/pt_br_field_selectors
Add pt-br/docs/concepts/overview/working-with-objects/field-selectors.md
2022-02-09 07:04:17 -08:00
Frank Villaro-Dixon c0387a8b76 operator: add Kopf framework to list of libraries
`Kopf` is a python operator framework that is also well known and used.
2022-02-09 14:54:53 +01:00
Kubernetes Prow Robot 9a763562b0 Merge pull request #31397 from NoicFank/patch-4
Update assign-pod-node.md
2022-02-09 02:36:17 -08:00
Shubham Kuchhal 6937928969 Fix typo in Horizontal Pod Autoscaling. 2022-02-09 14:13:49 +05:30
FOWind 270b6c006c Merge branch 'main' into fix/zh-ha-format 2022-02-09 14:34:37 +08:00
Kubernetes Prow Robot 58fb4c2f83 Merge pull request #31572 from Nordix/multi-numa-doc
Update doc for reserved memory flag
2022-02-08 20:26:17 -08:00
Kubernetes Prow Robot 71389e6293 Merge pull request #31604 from neolit123/1.24-add-example-for-kubeconfig-user
kubeadm: add missing guide for "kubeconfig user"
2022-02-08 20:24:17 -08:00
Kubernetes Prow Robot 76429c1a66 Merge pull request #31666 from monitor1379/main
[zh] Update "CLuster" to "Cluster"
2022-02-08 20:20:17 -08:00
Qiming Teng 897578e840 [zh] Translate memory manager page 2022-02-09 11:51:11 +08:00
monitor1379 948aedbec8 [zh] Update "CLuster" to "Cluster" 2022-02-09 11:07:29 +08:00
Qiming Teng 6119b7f7d8 [zh] Translate deprecation guide 2022-02-09 10:54:22 +08:00
Kubernetes Prow Robot 6b6c7a2df8 Merge pull request #31506 from alexfornuto/patch-1
Add Pomerium Ingress Controller to list.
2022-02-08 18:50:17 -08:00
Kubernetes Prow Robot 3e8de6be04 Merge pull request #31624 from agamdua/remove-broken-rss-link
Removed: link to broken RSS feed
2022-02-08 18:46:17 -08:00
Matthew Wong d5c500bda3 Add that CSIMigration* fallback does not work for provision operations 2022-02-08 17:31:06 -08:00
Tim Bannister a9d4ed0182 Revise dockershim removal article list
- sort external content alphabetically
- retitle to “Articles on dockershim Removal and on Using CRI-compatible Runtimes”
- style tweaks
- add some entries
2022-02-08 20:30:21 +00:00
Kubernetes Prow Robot 64cb410bea Merge pull request #31528 from rolfedh/30919-topics-on-dockershim-and-cri-compatible-runtimes
Collate and list resources about the dockershim removal
2022-02-08 11:07:03 -08:00
Lucas Castro 0da75b059a Update field-selectors.md with review suggestions 2022-02-08 13:38:36 -03:00
nwanati df993e1261 Update logging.md (#31286)
* Update logging.md

Updated some sentences for clarity.

* Update content/en/docs/concepts/cluster-administration/logging.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-08 07:56:54 -08:00
Kubernetes Prow Robot d07cebf38d Merge pull request #30209 from adithyaakrishna/feature/language-es
[es] - Updated `kubectl` Installation Docs
2022-02-08 07:42:55 -08:00
Kubernetes Prow Robot ec8ea88c33 Merge pull request #31545 from chrisnegus/dockershim-hook-handlers
Updated Debugging Hook handlers example to remove docker reference
2022-02-08 07:12:54 -08:00
Kubernetes Prow Robot 167cc75308 Merge pull request #31307 from JNat/patch-1
added Stack Overflow guidance
2022-02-08 06:04:54 -08:00
Kubernetes Prow Robot d2aa617954 Merge pull request #31606 from Arhell/add
[id] add safe sysctl
2022-02-08 01:20:54 -08:00
Manish Kumar 4b91d983d6 Added docs for kubernetes.io/description 2022-02-08 13:52:11 +05:30
Arhell da10deaa1a [id] add safe sysctl 2022-02-08 02:14:04 +02:00
chrismetz09 f9af064052 add period after caption text 2022-02-07 15:12:00 -08:00
chrismetz09 e40fcde548 Add figure <number> to text and caption
File change: reviewing-prs.md

Method described in [How to use captions](https://kubernetes.io/docs/contribute/style/diagram-guide/#how-to-use-captions)

Contributes to common method for referencing and labeling figures in docs.
2022-02-07 14:45:55 -08:00
Agam Dua 9486fa2c65 Removed: link to broken RSS feed
It has been removed from one place previously:
https://github.com/kubernetes/website/commit/d55d7703652db7771b6a7eafc80a33c72e116ca8

This changes only `en`: `ko` and `zh` will be separate patches.

Signed-off-by: Agam Dua <agam_dua@apple.com>
2022-02-07 11:56:53 -08:00
Kubernetes Prow Robot 996ac4d941 Merge pull request #31641 from Arhell/manage-upd
[es] update manage-resources-containers.md
2022-02-07 10:51:46 -08:00
Kubernetes Prow Robot 2ccb707a0b Merge pull request #31629 from tengqm/fix-hostprocess-pod
Fix link in create hostprocess pod page
2022-02-07 10:29:43 -08:00
Kubernetes Prow Robot 1ceda4e31f Merge pull request #31614 from Arhell/add-comma
[en] add comma
2022-02-07 10:09:43 -08:00
Kubernetes Prow Robot b0a99f3952 Merge pull request #31388 from fluktuid/patch-1
set hpa examples to current networking api version
2022-02-07 10:01:43 -08:00
Dewan Ishtiaque Ahmed c73ef3c453 Blog on SIG Multicluster Spotlight 2022 (#31242)
* Update to SIG Multicluster Spotlight

* Implemented review comments

* Update content/en/blog/_posts/2022-01-14-SIG-Multicluster-Spotlight/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-01-14-SIG-Multicluster-Spotlight/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/blog/_posts/2022-01-14-SIG-Multicluster-Spotlight/index.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Renaming blog folder to match publication date

* Update publish date to match

* Fix path to article

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-07 09:59:43 -08:00
Kubernetes Prow Robot 18eac1d273 Merge pull request #31619 from theanshi/main
pt: Fixed outdated Portuguese content to mention latest KubeCon 2022 conference
2022-02-07 08:39:43 -08:00
Ravindra Thakur f38c09fa6a Update doc for reserved memory flag
This change is to update the documentation for reserved-memory flag.
Now, for specifying memory reservations across multiple NUMA nodes,
semicolon needs to be used as separator.

Signed-off-by: Ravindra Thakur <ravindra.nath.thakur@est.tech>
2022-02-07 18:58:37 +05:30
Kubernetes Prow Robot 4ba12fc856 Merge pull request #31643 from sftim/20220206_fix_navbar_span
Fix incorrect markup for navbar
2022-02-06 21:11:42 -08:00
Qiming Teng 43dd2ef879 [zh] Translate migrate from PSP 2022-02-07 10:31:33 +08:00
Kubernetes Prow Robot b071c35025 Merge pull request #31642 from sftim/20220206_fix_file_modes
Fix permissions for two Sass files
2022-02-06 18:23:43 -08:00
Kubernetes Prow Robot 2493c62af7 Merge pull request #31568 from urangurang/fix/typo-persistent-volumes
[ko] Fix typo in persistent-volumes
2022-02-06 18:07:42 -08:00
Tim Bannister 7245f44c52 Fix incorrect markup for navbar
Remove a vestigial </span> from the partial.
2022-02-06 22:16:17 +00:00
mtilson 071d27ea12 More clarification according to the discussion 2022-02-07 00:56:58 +03:00
mtilson dc9f8bf21f Update content/en/docs/reference/kubectl/cheatsheet.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-07 00:43:21 +03:00
Kubernetes Prow Robot b7e6cf5d55 Merge pull request #31634 from tengqm/link-feature-gates
Fix links in feature gates
2022-02-06 13:16:51 -08:00
Tim Bannister 56d4b26a24 Fix permissions for two Sass files
Sass should not be executable. Update permissions to reflect this.
2022-02-06 21:14:27 +00:00
Arhell 4056f0b897 [es] update manage-resources-containers.md 2022-02-06 09:47:37 +02:00
Kubernetes Prow Robot fdd25460d8 Merge pull request #31637 from kubernetes/dev-1.23-ko.1
[ko] 1st Korean localization work for v1.23
2022-02-05 17:02:50 -08:00
Kubernetes Prow Robot e31ee88e15 Merge pull request #31638 from seokho-son/fix-conflict-1.23ko1
[ko] Fix merge conflict between dev-1.23-ko.1 and main
2022-02-05 16:52:51 -08:00
John Kwiatkoski 0d9d83a23d Remove deprecated --record flag from example
Trying to use this flag `--record` in the example leads to the warning:
```
Flag --record has been deprecated, --record will be removed in the future
```
2022-02-05 19:41:02 -05:00
Seokho Son d282a29d75 Fix merge conflict between dev-1.23-ko.1 and main 2022-02-06 04:44:18 +09:00
Kubernetes Prow Robot e218f383e5 Merge pull request #31635 from tengqm/hugo-shortcodes
Wrap long lines for hugo-shortcodes page
2022-02-05 02:58:50 -08:00
Qiming Teng 459a3f96ac Fix links and markdown format for some pages 2022-02-05 15:19:21 +08:00
Qiming Teng 37fae75ffd Fix links in feature gates
Some links are pointing to redirection records, which will be
problematic for downstream localizations.
2022-02-05 15:01:31 +08:00
Qiming Teng 6ea009fa04 Wrap long lines for hugo-shortcodes page 2022-02-05 14:57:39 +08:00
Qiming Teng 71268c2e52 Fix link in create hostprocess pod page
When link target is on the same page, we don't need the path in links.
2022-02-05 12:56:13 +08:00
Qiming Teng 439ef1f84f Reformat diagram guide
This PR wraps the long lines in the diagram guide for ease of change tracking.
It also fixes some link targets to use relative paths.
2022-02-05 12:01:47 +08:00
mtardy e00fe1d2cb Remove the Used on information and replace caution tag with note 2022-02-04 19:07:28 +01:00
mtardy 3cc1b1b047 Add disclaimers before reorganizing this reference page between API groups 2022-02-04 18:53:37 +01:00
Kubernetes Prow Robot 517ec927bf Merge pull request #31567 from Arhell/fix
[ja] fixed the list container images by pod section
2022-02-04 09:00:00 -08:00
Tim Bannister fbc529ce0a Recolor warning about old blog articles
Use white on blue. This color combination is on-brand and stands out,
whilst looking less alarming than the black on yellow for old
documentation versions.
2022-02-04 15:37:59 +00:00
Kubernetes Prow Robot 71408cd4f9 Merge pull request #31554 from guymenahem/fix-hpa-labels-based
Clarify that HPA controller searches for labels
2022-02-04 06:46:00 -08:00
Meysam Azad 228c676cd1 fix: modify prepositions 📝 2022-02-04 16:48:20 +03:00
Kubernetes Prow Robot 80ca73cab3 Merge pull request #31617 from seokho-son/out1.23-1-m13
[ko] Update outdated files in dev-1.23-ko.1 (M13-M16)
2022-02-04 01:06:01 -08:00
Anshi 90c15fadc6 Update _index.html 2022-02-04 14:01:39 +05:30
Anshi 0ce6c3eafb Update _index.html 2022-02-04 13:35:02 +05:30
seokho-son 18932c9630 Update outdated files in dev-1.23-ko.1 (M13-M16) 2022-02-04 15:44:58 +09:00
Arhell af7a9a515c [en] add comma 2022-02-04 01:47:35 +02:00
alexfornuto df38c30bb3 Add Pomerium Ingress Controller to list. 2022-02-03 09:31:32 -06:00
Rolfe Dlugy-Hegwer 988ce8d976 Dockershim: collate a list of 3rd party resources on the topic #30919 2022-02-03 06:52:26 -05:00
Kubernetes Prow Robot 2d6d22ddec Merge pull request #31440 from MikeSpreitzer/note-apf-autoupdate
Catch APF description up with recent developments
2022-02-03 03:05:45 -08:00
Kobayashi Daisuke 070853a03d fix word mistakes 2022-02-03 11:36:26 +09:00
Kobayashi Daisuke 369d512ee6 Update content/ja/docs/concepts/storage/volumes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-02-03 11:24:56 +09:00
Kobayashi Daisuke e756335619 Update content/ja/docs/concepts/storage/volumes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-02-03 11:22:41 +09:00
Akihito INOH f1310cab68 Update TTL mechanism in Job to stable
This commit update feature stage for TTL mechanism in Job with stable.
TTL mechanism has been GA from k8s v1.23, so we can update "beta" to "stable".
2022-02-03 08:10:47 +09:00
Lubomir I. Ivanov 75a33b2650 kubeadm: add missing guide for "kubeconfig user"
The command "kubeadm kubeconfig user" is missing
some examples and more details on why it is needed.

- Add a new section "Generating kubeconfig files
for additional users" under the kubeadm-certs page.
- Link to this section from the kubeadm-kubeconfig reference page.
- Link to this section from the create-cluster-kubeadm page.
2022-02-02 21:41:40 +02:00
mtardy 167ddd36b9 Add documentation on pod-security.kubernetes.io annotations 2022-02-02 20:21:21 +01:00
Guy Menahem 4bdcf5dd16 fix: clarify that the HPA controller selects the pods based on labels 2022-02-02 21:00:03 +02:00
Kubernetes Prow Robot d7e1bcaa36 Merge pull request #31582 from krvaibhaw/main
Update _index.html to include latest details and links for KubeCon
2022-02-02 09:50:22 -08:00
Kubernetes Prow Robot 189c471917 Merge pull request #31316 from shannonxtreme/dockershim-logmon-crictl
Migrate crictl to docker-cli mapping to references
2022-02-02 09:48:22 -08:00
Kubernetes Prow Robot 5580f5c5d4 Merge pull request #31594 from chalin/chalin-outdated-blog-feat-2022-02-01
Mark blogs older than a year as outdated
2022-02-02 09:44:22 -08:00
Kubernetes Prow Robot 7acd9b3f7b Merge pull request #31599 from TBBle/patch-1
Tidy docs for ServiceLoadBalancerClass and ServiceLBNodePortControl features
2022-02-02 09:32:21 -08:00
Paul "TBBle" Hampson db2b66e365 Apply wording improvements to load-balancer-class
Credit to Tim Bannister <tim@scalefactory.com> for the same improvements
in load-balancer-nodeport-allocation above.

Signed-off-by: Paul "TBBle" Hampson <Paul.Hampson@Pobox.com>
2022-02-03 02:40:00 +11:00
Paul "TBBle" Hampson 2103a16c0f Fix style nit-pick
Co-authored-by: Tim Bannister <tim@scalefactory.com>
Signed-off-by: Paul "TBBle" Hampson <Paul.Hampson@Pobox.com>
2022-02-03 02:39:49 +11:00
Paul "TBBle" Hampson be07879592 Remove needless mention of previous versions
Co-authored-by: Tim Bannister <tim@scalefactory.com>
Signed-off-by: Paul "TBBle" Hampson <Paul.Hampson@Pobox.com>
2022-02-03 02:39:43 +11:00
Paul "TBBle" Hampson b54cee1c44 Apply better wording to remain current in future versions
Co-authored-by: Tim Bannister <tim@scalefactory.com>
Signed-off-by: Paul "TBBle" Hampson <Paul.Hampson@Pobox.com>
2022-02-03 02:39:24 +11:00
Kubernetes Prow Robot f0cb43fa86 Merge pull request #31055 from championshuttler/mermaid
Convert sequence diagram in admission controllers for container drift…
2022-02-02 07:00:21 -08:00
Patrice Chalin 1a88ffdf99 Final cleanup and choice of i18n-key and class names 2022-02-02 09:04:05 -05:00
Paul "TBBle" Hampson f0da3cf753 ServiceLBNodePortControl went to beta in v1.22
Looks like this was overlooked to be updated when the feature gate documentation was updated in #28770.

Signed-off-by: Paul "TBBle" Hampson <Paul.Hampson@Pobox.com>
2022-02-03 00:49:06 +11:00
Kubernetes Prow Robot df0011723b Merge pull request #31464 from tengqm/tune-kubelet-ref
Update kubelet reference
2022-02-02 05:30:22 -08:00
Patrice Chalin 3e8f9d2f15 Whitespace cleanup 2022-02-01 16:02:38 -05:00
Patrice Chalin 6de4f5bcf1 Use single i18n entry for the message 2022-02-01 15:59:01 -05:00
Patrice Chalin d7b651a76d page -> article
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-01 15:42:26 -05:00
Patrice Chalin 659dd4b904 Add class blog-outdated-warning
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-01 15:41:54 -05:00
Yaroslav Serhiichuk 71843b2993 Minikube installation guide grammar fix 2022-02-01 22:10:17 +02:00
Cesar Talledo 021f8be65b Add Sysbox as an option to run kubernetes inside unprivileged containers or pods.
Sysbox is an open-source container runtime (similar to "runc") that supports
running VM-workloads such as Docker and Kubernetes inside unprivileged
containers or pods.

Sysbox containers always use the Linux user-namespace for isolation, plus
specially crafted proc and sys filesystems, some syscall interception,
filesystem ID-mapping, and more.

It's possible to run Kubernetes, K3s, K0s, inside containers or pods deployed
with Sysbox. This commit aims to make the Kubernetes community aware of this
option.

Signed-off-by: Cesar Talledo <ctalledo@nestybox.com>
2022-02-01 19:38:10 +00:00
Tim Bannister ae4e63fac1 Tidy page “Manage TLS Certificates in a Cluster” 2022-02-01 19:15:12 +00:00
Patrice Chalin a4726731ed Mark blogs older than a year as outdated 2022-02-01 14:04:08 -05:00
Kubernetes Prow Robot 05b03c737c Merge pull request #31591 from liggitt/tls-example
Update TLS doc to use example signer for arbitrary https server
2022-02-01 09:52:11 -08:00
Jordan Liggitt 111c3eaabe Update TLS doc to use example signer for arbitrary https server 2022-02-01 12:22:32 -05:00
Kubernetes Prow Robot 5313a873f2 Merge pull request #31419 from ingvagabund/multiple-schedulers-fix-secure-port
Configure multiple schedulers: switch to the secure ports
2022-02-01 08:40:10 -08:00
Kubernetes Prow Robot a3e868c931 Merge pull request #31320 from rayw000/docs-for-module-check-and-module-init
Add help docs for module-check and module-init
2022-02-01 08:38:11 -08:00
Kubernetes Prow Robot df4ab33bca Merge pull request #31537 from verb/main-ec-api-ref
Update API reference for Ephemeral Containers beta
2022-02-01 08:36:11 -08:00
Shubham 9af1c83002 Added the note for --service-account-issuer flag. (#31237)
* Added the note for --service-account-issuer flag.

* Modify the Note.

* Added Content for each Flag.

* Improvement: Modify the content.
2022-02-01 07:22:12 -08:00
Kubernetes Prow Robot c468037747 Merge pull request #31331 from yashodhanmohan/feat/docker-cleanup
Clean up docker references from Service documentations
2022-02-01 07:21:12 -08:00
Shivam Singhal 1ed02f66af Convert sequence diagram in admission controllers for container drift article to Mermaid 2022-02-01 16:39:58 +02:00
Kubernetes Prow Robot a5702fa60c Merge pull request #31590 from cpanato/update-patch-releases-feb
update patch releases for February cycle
2022-02-01 06:00:13 -08:00
Kubernetes Prow Robot f53f7e9203 Merge pull request #31387 from avoidik/patch-2
Update encrypt-data.md - multi-master configuration notice
2022-02-01 05:48:18 -08:00
Carlos Panato c5e9cf1ee8 update patch releases for February cycle
Signed-off-by: Carlos Panato <ctadeu@gmail.com>
2022-02-01 14:34:57 +01:00
Viacheslav Vasilyev 241e635197 Update content/en/docs/tasks/administer-cluster/encrypt-data.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-02-01 15:31:21 +02:00
Viacheslav Vasilyev ddd4a3defb Update content/en/docs/tasks/administer-cluster/encrypt-data.md
Co-authored-by: Jim Angel <jimangel@users.noreply.github.com>
2022-02-01 12:38:35 +02:00
Jan Chaloupka a475c2147e Configure multiple schedulers: switch to the secure ports
Starting v1.23 the kube-scheduler no longer provides insecure serving.
2022-02-01 11:03:01 +01:00
Kubernetes Prow Robot 3aed543250 Merge pull request #31581 from jeremy-morren/jeremy-morren-doc-updates
Fix powershell install script
2022-02-01 01:14:18 -08:00
Vaibhaw 5b31a2ec82 Update _index.html 2022-02-01 10:01:54 +05:30
Kobayashi Daisuke 9e65cf1ba8 update 2022-02-01 12:06:30 +09:00
Kobayashi Daisuke 01abcb22e0 fix some points commented 2022-02-01 11:55:19 +09:00
Kobayashi Daisuke 849a28d4aa Update content/ja/docs/concepts/services-networking/topology-aware-hints.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-02-01 11:51:29 +09:00
Kobayashi Daisuke 96d831443f change Japanese URL to English ID link 2022-02-01 11:42:46 +09:00
Kobayashi Daisuke 2739096926 Update content/ja/docs/concepts/storage/projected-volumes.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-02-01 11:33:19 +09:00
Kobayashi Daisuke 027f8c96bd Update content/ja/docs/concepts/storage/projected-volumes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-02-01 11:33:00 +09:00
jeremy-morren 095c52a590 Fix powershell install script
Setting powershell variables container only numbers does not work with multiple periods (at least on Powershell 5.1). Using quotes is necessary.
2022-01-31 22:15:40 -04:00
Kubernetes Prow Robot 8e66eedbff Merge pull request #31569 from mfilocha/pl-update-readme
Synchronize Polish README with the upstream version
2022-01-31 18:09:52 -08:00
Kubernetes Prow Robot 0c18793db6 Merge pull request #31244 from Arhell/fix-link
[en] fix meetup link
2022-01-31 18:03:52 -08:00
Kubernetes Prow Robot 26d565c5c5 Merge pull request #31315 from utkarsh-singh1/edit-managed-resource-containers
Updated managed-resource-containers.md
2022-01-31 17:53:52 -08:00
Kubernetes Prow Robot e909d003a5 Merge pull request #31359 from meysam81/meysam/grammatical-error
docs: modify grammatical error ✏️
2022-01-31 17:45:52 -08:00
Md Sahil c4dc68c8ff Update service-traffic-policy.md (#31408)
* Update service-traffic-policy.md

<h3>What this PR does ?</h3>
Improve documentation.

<h3>Which issue this PR fixes ?</h3>
fixes 31403(Issue).

* Update service-traffic-policy.md

* Update service-traffic-policy.md

* Update service-traffic-policy.md
2022-01-31 17:37:53 -08:00
Kubernetes Prow Robot e3ad96a6c4 Merge pull request #31466 from deepakcpakhale06/main
Updated overview section of ConfigMaps
2022-01-31 17:33:53 -08:00
Kubernetes Prow Robot 0d8645cc7b Merge pull request #31570 from sftim/20220130_recommend_server_fault
Direct support query submitters to Server Fault
2022-01-31 17:21:52 -08:00
Kubernetes Prow Robot dec940e537 Merge pull request #31328 from sftim/20220113_clarify_example_linux_command_line_cgroup_v2
Clarify example for setting Linux command line
2022-01-31 16:59:53 -08:00
Kubernetes Prow Robot 5ccbcd89be Merge pull request #31372 from sftim/20220117_tidy_kubeadm_ha
Tidy kubeadm HA guide
2022-01-31 16:57:52 -08:00
Kubernetes Prow Robot 1f3152031f Merge pull request #31556 from anubha-v-ardhan/30952
Dockershim removal from concepts/containers/container-environment
2022-01-31 16:55:52 -08:00
Kubernetes Prow Robot c1eda9da64 Merge pull request #31578 from ravikiranr26/bug/footer
Fixed wrong footer rendering on community page
2022-01-31 15:45:52 -08:00
Kubernetes Prow Robot 48401482bc Merge pull request #31571 from prameshj/patch-8
Add a section about nodelocaldns memory limits.
2022-01-31 15:43:53 -08:00
Ravi Kiran Raju c530a8c914 Fixed wrong footer rendering on community page 2022-01-31 19:55:00 +01:00
Kubernetes Prow Robot b2063eedeb Merge pull request #31546 from chrisnegus/remove-docker-cgroup-reference
Change docker cgroup driver example to containerd
2022-01-31 10:00:23 -08:00
Kubernetes Prow Robot 77a8605f65 Merge pull request #31487 from Babapool/update-case-studies
Update some Case Studies mentioning Docker
2022-01-31 09:10:24 -08:00
Kubernetes Prow Robot f8db38b98d Merge pull request #30066 from sftim/20211012_tidy_manage_resources_tasks
Tidy task pages within Manage Memory, CPU, and API Resources
2022-01-31 07:58:23 -08:00
prameshj 9b0539eeb5 Incorporate review comments.
Co-authored-by: Tim Bannister <tim@scalefactory.com>
Co-authored-by: Chris O'Haver <cohaver@infoblox.com>
2022-01-31 07:50:54 -08:00
Kubernetes Prow Robot 1d77a887e9 Merge pull request #31355 from Babapool/fix-binary-path
Mention the kubectl binary folder as PATH environment variable
2022-01-31 04:08:23 -08:00
Kubernetes Prow Robot eb59e0bb77 Merge pull request #31126 from championshuttler/content/ja
[ja] Fix configuration overview example link
2022-01-31 03:34:25 -08:00
Kubernetes Prow Robot 38be34166f Merge pull request #31564 from fabriziopandini/fix-clusterclass-blog-link
fix broken link in the ClusterClass blog
2022-01-31 03:22:24 -08:00
fabriziopandini f0b7f2bece Add link to newly available documentation for the ClusterClass blog 2022-01-31 11:59:08 +01:00
fabriziopandini f7b0122955 Fix broken link in the ClusterClass blog 2022-01-31 11:58:23 +01:00
Kubernetes Prow Robot 376fbc1640 Merge pull request #31573 from Arhell/fixed-list
[fr] fixed the list container images by pod section
2022-01-31 01:48:24 -08:00
Arhell 859c155639 [fr] fixed the list container images by pod section 2022-01-31 11:07:37 +02:00
prameshj 1b469285e8 Add a section about nodelocaldns memory limits. 2022-01-30 21:10:40 -08:00
Kubernetes Prow Robot 138039e853 Merge pull request #30750 from fenggw-fnst/update-persistent-volumes
[zh] Update persistent-volumes.md
2022-01-30 17:52:23 -08:00
Tim Bannister f3602bf484 Direct support query submitters to Server Fault
Use the right URL for Server Fault queries tagged Kubernetes, not the
wrong URL for Stack Overflow (which is more about workload / app
development help).
2022-01-30 23:08:45 +00:00
Kubernetes Prow Robot d996c9ed4e Merge pull request #31566 from amej/patch-1
Updates url to point to the glossary
2022-01-30 15:08:23 -08:00
Kubernetes Prow Robot 097b6c4b73 Merge pull request #31469 from AugustasV/telemetery_security_agents
Revise “Migrating telemetry and security agents from dockershim” task
2022-01-30 14:56:23 -08:00
Kubernetes Prow Robot 6712fbee60 Merge pull request #31542 from yashodhanmohan/fix/capitalization
Update capitalization for mount options based on correct PV types
2022-01-30 14:34:24 -08:00
Kubernetes Prow Robot e431d58209 Merge pull request #31532 from Kartik494/addAnotation
Documented annotation volume.kubernetes.io/storage-provisioner
2022-01-30 14:24:23 -08:00
AugustasV 80f4c27c66 correction
Signed-off-by: AugustasV <reg1nt1z@gmail.com>
2022-01-30 21:49:09 +01:00
Augustas 3bdfba74ed Apply suggestions from code review
Thank you sftim for recommended changes.

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-30 21:37:06 +01:00
Ameya Sathe b19b9da1b6 Replaces with relative uri
Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-01-30 22:14:41 +05:30
Maciej Filocha b03cfa18e4 Synchronize Polish README with the upstream version 2022-01-30 16:33:57 +01:00
Park, Jinsoo | Peter | ECFD 44b410d064 Fix typo, 파트 -> 파드 2022-01-30 23:01:57 +09:00
Wang ce1e6211d0 [ja] Translate tasks/debug-application-cluster/resource-metrics-pipeline into Japanese (#31093)
* done

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update resource-metrics-pipeline.md

* Update resource-metrics-pipeline.md

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: atoato88 <akihito-inou@nec.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update resource-metrics-pipeline.md

* Update content/ja/docs/tasks/debug-application-cluster/resource-metrics-pipeline.md

Co-authored-by: inductor(Kohei) <kela@inductor.me>

* fix

* fix link

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
Co-authored-by: atoato88 <akihito-inou@nec.com>
Co-authored-by: inductor(Kohei) <kela@inductor.me>
2022-01-30 05:54:23 -08:00
Wang 720d92a34f [ja] Translate tasks/debug-application-cluster/resource-usage-monitoring into Japanese (#31054)
* done

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update resource-usage-monitoring.md

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/resource-usage-monitoring.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-30 05:52:23 -08:00
Wang c4aae88011 [ja] Translate tasks/debug-application-cluster/debug-application-introspection into Japanese (#30868)
* done

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/tasks/debug-application-cluster/debug-application-introspection.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-30 05:50:23 -08:00
Wang 16c4d4555a [ja] Translate reference/kubectl/conventions into Japanese (#30785)
* add the target

* done

* Update conventions.md

* Update content/ja/docs/reference/kubectl/conventions.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/reference/kubectl/conventions.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/reference/kubectl/conventions.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

* Update content/ja/docs/reference/kubectl/conventions.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-30 05:48:23 -08:00
Ikko Ashimine aa11e3f5cc Update content/ja/docs/concepts/overview/kubernetes-api.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-30 21:56:34 +09:00
Arhell 555fe65047 [ja] fixed the list container images by pod section 2022-01-30 14:05:07 +02:00
Ameya Sathe 8c7c94d578 Updates url to point to the glossary
Substitutes the existing url to archived documentation of "Kubernetes Resource" with URL pointing to glossary .

Fixes the https://github.com/kubernetes/website/issues/31396
2022-01-30 16:16:58 +05:30
Kubernetes Prow Robot 2a654017db Merge pull request #30715 from aquiladayc/dont-panic-k8s-and-docker-ja
[ja] Create 2020-12-02-dont-panic-kubernetes-and-docker.md
2022-01-29 01:50:02 -08:00
Wang d6ee6da7bc [ja] Translate reference/using-api into Japanese (#30703)
* done

* fix typo

* 英単語と日本語の間に半角スペースは不要

* fix feedback and minor change

* delete unneeded blank line

* Update content/ja/docs/reference/using-api/_index.md

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>

Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-29 01:48:02 -08:00
Anubhav Vardhan 0dca4ef984 Dockershim removal from container-environment 2022-01-29 13:01:10 +05:30
Kubernetes Prow Robot dc1104c794 Merge pull request #31548 from mfilocha/pl-synch-1.23a2
Synchronize Polish localization for ver 1.23, part 2
2022-01-28 06:50:31 -08:00
Maciej Filocha b268875293 Synchronize Polish localization for ver 1.23, part 2
Synchronize Polish localization with upstream up to 285eb39e2e.
Part 2
2022-01-28 15:17:57 +01:00
Kubernetes Prow Robot d3840af82f Merge pull request #31088 from KobayashiD27/translate-docs/concepts/service/service-traffic-policy
[ja]Translate docs/concepts/service/service traffic policy into Japanese
2022-01-28 05:52:30 -08:00
Kubernetes Prow Robot 3b331ee15f Merge pull request #31539 from praveenrewar/main
Fix broken link in fr/docs/concepts/services-networking/ingress/
2022-01-28 05:22:30 -08:00
Kubernetes Prow Robot a66d34d3f6 Merge pull request #31549 from mfilocha/pl-synch-1.23a3
Synchronize Polish localization for ver 1.23, part 3
2022-01-28 05:08:30 -08:00
Kubernetes Prow Robot 3a822d78e4 Merge pull request #31401 from krsakshi/main
ja: Fixed outdated Japanese content to mention latest KubeCon 2022 conference
2022-01-28 05:02:31 -08:00
Maciej Filocha d3daa39e9b Synchronize Polish localization for ver 1.23, part 3
Synchronize Polish localization with upstream docs up to 285eb39e2e.
Part 3.
2022-01-28 10:37:05 +01:00
Kubernetes Prow Robot 595cc5a054 Merge pull request #31463 from mfilocha/pl-synch-1.23a1
Synchronize Polish localization for ver 1.23, part 1
2022-01-28 01:16:30 -08:00
Yashodhan Mohan Bhatnagar cd7114d66e Update capitalization for mount options based on correct PV types 2022-01-28 13:37:36 +05:30
Maciej Filocha 65887b7e5d Synchronize Polish localization for ver 1.23, part 1
Synchronize Polish localization with upstream up to 285eb39e2e.
Part 1
2022-01-28 09:07:36 +01:00
kartik494 49c67a96d2 Documented new Annotation 2022-01-28 09:56:23 +05:30
Guangwen Feng 9c3e655989 [zh] Update persistent-volumes.md
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2022-01-28 11:01:37 +08:00
Kubernetes Prow Robot d4657bdbce Merge pull request #29898 from edithturn/add-content/es/docs/concepts/storage/dynamic-provisioning
[es] Add concepts/storage/storage-capacity.md,  concepts/storage/volume-pvc-datasource.md,  concepts/storage/dynamic-provisioning.md
2022-01-27 17:04:31 -08:00
Lucas Castro 1893c8a1a8 Update docs/concepts/overview/working-with-objects/field-selectors with review suggestions. 2022-01-27 21:39:44 -03:00
Lucas Castro 9fe32aa21d Update docs/concepts/overview/working-with-objects/namespaces with review suggestions 2022-01-27 21:29:46 -03:00
Kubernetes Prow Robot d3a4f2e23f Merge pull request #31486 from liggitt/pss
Pod Security Standards doc updates
2022-01-27 16:16:45 -08:00
Christopher Negus 976004b957 Change docker cgroup driver example to containerd 2022-01-27 22:05:02 +00:00
Christopher Negus ccd2fd216e Updated Debugging Hook handlers example to remove docker reference. 2022-01-27 21:30:03 +00:00
Kubernetes Prow Robot 2309413a89 Merge pull request #31344 from chalin/patch-1
Copyedits to API ref building instructions in README
2022-01-27 11:11:50 -08:00
Kubernetes Prow Robot 030cc57ff7 Merge pull request #31089 from ptux/add-tasks/debug-application-cluster/debug-application-ja
[ja] Translate tasks/debug-application-cluster/debug-application into Japanese
2022-01-27 06:12:26 -08:00
Kubernetes Prow Robot f1b4131deb Merge pull request #31538 from mbongard/patch-1
Fixed malformed sentence
2022-01-27 04:56:25 -08:00
Kubernetes Prow Robot 70a990def8 Merge pull request #31516 from whitebear009/patch-1
[zh] Update "kubeclt" to "kubectl"
2022-01-27 04:54:25 -08:00
Kubernetes Prow Robot 7d9dd29483 Merge pull request #31531 from prasadkatti/patch-1
Move command to a code-block
2022-01-27 04:52:26 -08:00
Kubernetes Prow Robot 023db16622 Merge pull request #31518 from mtardy/main
Add warning for creating namespaces with the same name as public TLDs
2022-01-27 04:48:26 -08:00
Kubernetes Prow Robot 32bd7727ad Merge pull request #31534 from saschagrunert/seccomp-default-improvements
Improve SeccompDefault documentation
2022-01-27 04:40:25 -08:00
Kubernetes Prow Robot c93f0966c4 Merge pull request #31226 from atiratree/concepts.deployment
make deployment status behaviour more descriptive
2022-01-27 04:30:26 -08:00
Kubernetes Prow Robot abac6d2439 Merge pull request #31495 from xzyangNB/main
[zh] Fix translate problem in Chinese doc
2022-01-27 04:04:25 -08:00
Praveen Rewar 84c3c3b1a6 Fix broken link in docs/concepts/services-networking/ingress/ 2022-01-27 17:31:05 +05:30
Michel Bongard 8ea2fb38ed Update logging.md 2022-01-27 12:37:35 +01:00
Lee Verberne 627a56d147 Update API reference for Ephemeral Containers beta 2022-01-27 11:14:06 +01:00
mtardy 61174c49ba Add warning for creating namespaces with the same name as public TLDs
Uppercase Service API object following documentation style guide

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Add mitigation propositions

Add RFC reference for the trailing dot in an absolute DNS name

Co-authored-by: Shannon Kularathna <ax3shannonkularathna@gmail.com>
2022-01-27 10:58:41 +01:00
Sascha Grunert 4074c2e7c3 Improve SeccompDefault documentation
- Highlight that we do not change the Kubernetes API and how to verify
  the used seccomp profile
- Fix the kind configuration and enhance the example with a custom
  workload.

Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2022-01-27 10:09:18 +01:00
Kobayashi Daisuke 3d96a08179 translate concepts/storage/volume.md into japanese 2022-01-27 16:38:58 +09:00
Prasad Katti eee745066d Move command to a code-block
Put the command in a separate code block to keep things consistent
2022-01-26 22:20:54 -08:00
Kubernetes Prow Robot 53c222cbbf Merge pull request #31429 from jihoon-seo/220121_ko_Update_links_in_dev-1.23-ko.1
[ko] Update links in `dev-1.23-ko.1`
2022-01-26 21:40:02 -08:00
Kubernetes Prow Robot 00d4e05e98 Merge pull request #31521 from SpecialYang/main
Fix imprecise statements for virtual hosting example.
2022-01-26 08:00:01 -08:00
Kubernetes Prow Robot 37b7c6fd55 Merge pull request #31410 from chris-short/cbshort-issue-31394
Update static-pod.md
2022-01-26 07:34:01 -08:00
Chris Short 2e870ee761 console no worky; shortening lines 2022-01-26 10:20:32 -05:00
SpecialYang 9911912709 Fix imprecise statements for virtual hosting example 2022-01-26 22:33:33 +08:00
Kubernetes Prow Robot f7b9625249 Merge pull request #31505 from Babapool/out-of-band-v1.22.3
Updates Releases page to mention v1.23.3
2022-01-26 06:30:01 -08:00
Chris Short da296afc78 Merge branch 'cbshort-issue-31394' of github.com:chris-short/website into cbshort-issue-31394 2022-01-26 07:14:34 -05:00
Chris Short 2e812faacf Update static-pod.md
Adding console to crictl ps output lines as suggested: https://github.com/kubernetes/website/pull/31410#discussion_r791186773
2022-01-26 07:14:31 -05:00
whitebear009 4e2f9b67a7 Update "kubeclt" to "kubectl" 2022-01-26 16:19:19 +08:00
Kubernetes Prow Robot 8b34063fba Merge pull request #30961 from ystkfujii/v1.24_remove_section_on_dockershim
Set the dockershim state to deprecation.
2022-01-25 22:46:26 -08:00
Kobayashi Daisuke 150c0ad0a3 Update content/ja/docs/concepts/storage/projected-volumes.md
Co-authored-by: Wang <ooocamel@icloud.com>
2022-01-26 12:07:49 +09:00
Kobayashi Daisuke d7f8bc4f7b Update content/ja/docs/concepts/storage/projected-volumes.md
Co-authored-by: Wang <ooocamel@icloud.com>
2022-01-26 12:07:44 +09:00
William Denniss 20ee91f0da Include link to Pod Security Admission in the PodSecurityPolicy deprecation notice (#31475)
* Include link to Pod Security Admission in the PodSecurityPolicy deprecation notice

Add a link to the Pod Security Admission feature, which replaces PodSecurityPolicy. Currently users who read this page may not realize what the replacement is. The linked blog post talks about the KEP that created Pod Security Admission, but with no direct link.

* Remove link prefix

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>

Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-01-25 16:28:26 -08:00
Subhasmita Swain cdfe3fa6bc removal of docker runtime mentions in feature gates page (#31498)
* removal of docker runtime mentions in feature gates page

* Update content/en/docs/reference/command-line-tools-reference/feature-gates.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/docs/reference/command-line-tools-reference/feature-gates.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-25 16:24:26 -08:00
Kubernetes Prow Robot 7012f76988 Merge pull request #31389 from liggitt/stable-deprecation-policy
Modify the deprecation policy to disallow removal of stable API versions
2022-01-25 12:33:43 -08:00
Kubernetes Prow Robot ee346e48d8 Merge pull request #31363 from yashodhanmohan/fix/pod-dns
Correcting DNS record for pods exposed by a Service
2022-01-25 12:21:41 -08:00
Kubernetes Prow Robot 45061ef70f Merge pull request #31434 from BenTheElder/jaun-admin
update build admins, add Juan Escobar, remove Amit Watve
2022-01-25 08:54:31 -08:00
Kubernetes Prow Robot 7cb748a933 Merge pull request #31308 from meysam81/meysam/annotation-between-backticks
docs: place annotation between backticks ✏️
2022-01-25 08:50:31 -08:00
Kubernetes Prow Robot 045370a194 Merge pull request #30982 from KimDoubleB/cascade-default-background
Update `cascade` default value to background
2022-01-25 08:16:31 -08:00
Kubernetes Prow Robot 561cb83a26 Merge pull request #31456 from gaoliang/main
Sticky table of contents
2022-01-25 07:56:30 -08:00
Vitthal Sai 345ff4fcc1 Updates Releases page to mention v1.23.3 2022-01-25 20:51:33 +05:30
Kubernetes Prow Robot 6aa07e7918 Merge pull request #31407 from MdSahil-oss/main
Update update-daemon-set.md
2022-01-25 05:42:32 -08:00
FOWind 65ee81261d Fix tools/kubeadm/high-availablility.md display format 2022-01-25 19:33:10 +08:00
Kubernetes Prow Robot 501daa29b5 Merge pull request #31496 from ptux/patch-14
Update projected-volumes.md
2022-01-25 02:06:31 -08:00
Wang 88fbaa1160 Update projected-volumes.md 2022-01-25 18:47:48 +09:00
Wang e08d312a6d Update projected-volumes.md 2022-01-25 17:46:30 +09:00
Kobayashi Daisuke 5e1ada172d Update content/ja/docs/concepts/storage/projected-volumes.md
Co-authored-by: Wang <ooocamel@icloud.com>
2022-01-25 17:13:34 +09:00
Kobayashi Daisuke b5ba524610 Update content/ja/docs/concepts/storage/projected-volumes.md
Co-authored-by: Wang <ooocamel@icloud.com>
2022-01-25 17:13:29 +09:00
Kobayashi Daisuke b26817dc0d Update content/ja/docs/concepts/storage/projected-volumes.md
Co-authored-by: Wang <ooocamel@icloud.com>
2022-01-25 17:13:24 +09:00
Kubernetes Prow Robot 0632b6afba Merge pull request #31494 from puerco/out-of-band
Add Out-of-band release 1.23.3 to schedule files
2022-01-24 21:44:31 -08:00
Puerco 003b5dad5c Fix dates in 1.23.3 patch release date
Co-authored-by: Jihoon Seo <46767780+jihoon-seo@users.noreply.github.com>
2022-01-24 22:56:07 -06:00
Adithya Krishna 59cd3c70ee Made Requested Changes v2 - Related to https://github.com/kubernetes/website/issues/27078
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-25 10:08:14 +05:30
Kobayashi Daisuke efcf33c4a9 change "projected" to Japanese 2022-01-25 13:21:41 +09:00
yangxianzhao 4d793a9a34 Fix translate problem in Chinese doc 2022-01-25 11:17:27 +08:00
Kubernetes Prow Robot 5c5e87edad Merge pull request #31482 from krvaibhaw/main
ko : Updated KubeCon dates
2022-01-24 19:10:50 -08:00
Adolfo García Veytia (Puerco) 29fb92a20d Add release 1.23.3 to schedulke markdown
Signed-off-by: Adolfo García Veytia (Puerco) <adolfo.garcia@uservers.net>
2022-01-24 21:02:15 -06:00
Adolfo García Veytia (Puerco) 669213a6f1 Add emergency release 1.23.3 to schedule.yaml
Signed-off-by: Adolfo García Veytia (Puerco) <adolfo.garcia@uservers.net>
2022-01-24 21:01:27 -06:00
Kubernetes Prow Robot 23db35e9bb Merge pull request #31493 from Arhell/fix-list
[id] fixed the list container images by pod section
2022-01-24 17:40:49 -08:00
iago-moreira 5123dfe252 add requested changes 2022-01-24 20:54:10 -03:00
Arhell 4a2fb111bd [id] fixed the list container images by pod section 2022-01-25 00:34:36 +02:00
Kubernetes Prow Robot 9ffbaf39b2 Merge pull request #31357 from anubha-v-ardhan/Add-event-to-glossary
Add "event" to glossary
2022-01-24 14:05:15 -08:00
Chris Short 2a32814359 Merge branch 'kubernetes:main' into cbshort-issue-31394 2022-01-24 15:07:23 -05:00
Kubernetes Prow Robot 5ae78ac97e Merge pull request #31009 from mikemonteith/patch-1
Use --patch-file in documentation
2022-01-24 11:43:35 -08:00
Chris Short a819c51c22 Update static-pod.md
- Fixed brain flatuence around which runtime I was testing
- Outputs changed
- Noted added about crictl ps's default behavior of outputting sha256sum in image name
- Image name in outputs have been shortened per Slack convo https://kubernetes.slack.com/archives/C02PZMA3R6E/p1643026840047600
2022-01-24 14:40:52 -05:00
Kubernetes Prow Robot 3a4a1ca3f1 Merge pull request #30835 from AvineshTripathi/addlink
Update default-storage-class-prereqs.md
2022-01-24 11:39:33 -08:00
Kubernetes Prow Robot 1d552afaa6 Merge pull request #30737 from mfbieber/ingress-class-name-in-example
Added ingressClassName: nginx to Ingress example
2022-01-24 11:37:35 -08:00
Kubernetes Prow Robot d81bc93d81 Merge pull request #31327 from adrianludwin/patch-3
Clarify that namespace names must be RFC 1123 DNS labels
2022-01-24 11:35:33 -08:00
Akpobome Oke Kelvin 7023b926a6 [en] Updated the page to be more docker specific (#31421)
* Update: Updated to be more docker specific

* Update content/en/docs/tasks/configure-pod-container/pull-image-private-registry.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/en/docs/tasks/configure-pod-container/pull-image-private-registry.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update pull-image-private-registry.md

* Update pull-image-private-registry.md

* Update: fixes issue  #31422

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-24 10:55:33 -08:00
Jordan Liggitt b828365a0e Change deprecation rule 4a to make stable APIs permanent within a major version 2022-01-24 11:43:05 -05:00
Vitthal Sai 6b672ac2b8 Update some Case Studies mentioning Docker 2022-01-24 21:26:04 +05:30
Jordan Liggitt 4ca5ff6b3c PodSecurity: remove optional non-root group check 2022-01-24 10:10:12 -05:00
Jordan Liggitt 8917b26250 PodSecurity: switch restricted volume check to positive check 2022-01-24 10:09:00 -05:00
Vaibhaw ecef64acbd Update _index.html to sync with EN version
ko : Updated KubeCon dates
2022-01-24 15:15:21 +05:30
Kubernetes Prow Robot f89e0ba1c9 Merge pull request #31473 from shoukathmd/i-31078
Fixed issue - borken link https://kubernetes.io/docs/reference/kubect…
2022-01-23 23:35:57 -08:00
Kubernetes Prow Robot 3aea799ca5 Merge pull request #31231 from sftim/20220106_add_contiv_vpp
Add Contiv-VPP network plugin
2022-01-23 18:31:57 -08:00
Kubernetes Prow Robot 0920f9ebd7 Merge pull request #31277 from sftim/20210110_fix_footer
Fix footer rendering
2022-01-23 18:27:56 -08:00
Yashodhan Mohan Bhatnagar 12653d2266 Update to bring back mention of container links compatibility 2022-01-24 01:56:44 +05:30
Yashodhan Mohan Bhatnagar 36336334c3 Update content/en/docs/concepts/services-networking/connect-applications-service.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-24 01:23:29 +05:30
iago-moreira a0b9425c00 add pt-br translation for proxies.md 2022-01-23 16:23:28 -03:00
Kubernetes Prow Robot 05e3a57960 Merge pull request #31470 from 0xff-dev/main
[zh] fix wrong dns record
2022-01-23 07:37:56 -08:00
Mohammed Shoukath Ali 105610d0bb Fixed issue - borken link https://kubernetes.io/docs/reference/kubectl/conventions/ #31078 2022-01-23 19:55:37 +05:30
0xff-dev b4f52c1a22 [zh] fix wrong dns record 2022-01-23 19:25:30 +08:00
deepakcpakhale06 0243eeb385 Updated overview section of ConfigMaps #30729 2022-01-23 10:58:40 +08:00
AugustasV e0eb75215b why_telemetery_agents_talk
Signed-off-by: AugustasV <reg1nt1z@gmail.com>
2022-01-22 22:42:49 +01:00
Kubernetes Prow Robot 14b5ac97c4 Merge pull request #31446 from championshuttler/ln
Update URLs for some network plugins
2022-01-22 05:41:52 -08:00
Kubernetes Prow Robot 160b768e6d Merge pull request #31461 from 0xff-dev/main
[zh] fix document description problem
2022-01-22 04:25:52 -08:00
Qiming Teng f7da06af13 Update kubelet reference
The reference for kubelet is manually maintained due to upstream code changes.
This PR updates the reference according to the help message from the 1.23 version of kubelet executable.
2022-01-22 20:21:19 +08:00
0xff-dev 46258f1172 [zh]fix document description problem 2022-01-22 18:26:10 +08:00
Kubernetes Prow Robot 285eb39e2e Merge pull request #31460 from Arhell/patch-1
[ru] fix KubeCon date
2022-01-22 01:03:52 -08:00
Ihor Sychevskyi b01b86b921 [ru] fix KubeCon date 2022-01-22 10:48:36 +02:00
Sakshi 54faa2dda1 Update _index.html 2022-01-22 11:43:40 +05:30
Shannon Kularathna d01714e72b Migrate mapping dockercli to crictl to Reference
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-21 20:58:10 +00:00
gaoliang 2ba08d6cb8 Make TOC sticky 2022-01-22 02:36:08 +08:00
Mike Spreitzer 2bfc31833f Catch APF description up with recent developments
Primarily the change, in release 1.22, of how configuration objects
are maintained.

Also describe the new priority level.

Also move the sections on defaults and health check configuration to
follow the description of configuration objects.
2022-01-21 13:06:51 -05:00
Kubernetes Prow Robot 3b28fbba1b Merge pull request #31398 from PurneswarPrasad/patch-1
Changed the explicit mention of Docker due to deprecation in Tasks > …
2022-01-21 08:25:19 -08:00
Kubernetes Prow Robot da262be43e Merge pull request #31282 from shannonxtreme/dockershim-clusteradmin
Action on Docker mentions in Concepts > Cluster Administration
2022-01-21 07:41:59 -08:00
Shannon Kularathna 4650e1df61 Refactor Assign Pods to Nodes 2022-01-21 15:27:20 +00:00
Kubernetes Prow Robot 0849d43f8c Merge pull request #31445 from championshuttler/zsh
Fix the download link to kubectl convert plugin for bash
2022-01-21 04:17:59 -08:00
Shivam Singhal d677a0eed5 Update URLs for some network plugins 2022-01-21 13:02:32 +02:00
Qiming Teng ed4725471f [zh] Resync community index 2022-01-21 17:06:33 +08:00
Shivam Singhal 788591c7e1 Fix the download link to kubectl convert plugin for bash 2022-01-21 10:38:39 +02:00
Qiming Teng f9221993d8 [zh] Resync authentication page 2022-01-21 16:17:06 +08:00
Kobayashi Daisuke c60045bbdb add example yaml files 2022-01-21 16:36:39 +09:00
Qiming Teng e80a87ac57 [zh] Resync web UI dashboard page 2022-01-21 14:22:03 +08:00
Qiming Teng ab69d3f4f0 [zh] Resync managing TLS in a cluster
This one supercedes a previous PR which is not complete.
2022-01-21 13:55:27 +08:00
Kobayashi Daisuke ca53f4a5fc fix mistake 2022-01-21 14:53:49 +09:00
Kobayashi Daisuke 73e258aac8 translate projected volumes 2022-01-21 14:48:05 +09:00
Benjamin Elder cde8c64ded update build admins, add Juan Escobar, remove Amit Watve 2022-01-20 21:27:56 -08:00
Kubernetes Prow Robot a3a6d46b4d Merge pull request #31402 from shuaijinchao/zh/tasks/tools/optional/kubectl
[zh] update kubectl user and system auto-completion config
2022-01-20 18:45:58 -08:00
Dingzhu Lurong 7ec8bad3a9 Update assign-pod-node.md
1. 修正部分说明,让语意更加明确
2022-01-21 10:10:32 +08:00
Jihoon Seo edfc752282 [ko] Update links in dev-1.23-ko.1 2022-01-21 09:52:17 +09:00
Kubernetes Prow Robot 085a696939 Merge pull request #31418 from jihoon-seo/220120_ko_Update_type-nodeport_anchor_1.23
[ko] Update anchor (`dev-1.23-ko.1`)
2022-01-20 16:51:59 -08:00
Kubernetes Prow Robot f59a649376 Merge pull request #31412 from marosset/gmsa-container-runtime
configure-gmsa.md updates
2022-01-20 09:25:36 -08:00
Kubernetes Prow Robot 02759c53fa Merge pull request #31414 from mengjiao-liu/update_security_context_link
[zh]Update security-context.md by replacing the link in docs/tasks/configure-pod-container/security-context/#what-s-next
2022-01-20 05:17:51 -08:00
Kubernetes Prow Robot 624ebf19f5 Merge pull request #31160 from riita10069/ja-fix-link
Replace all inappropriate links to English pages in Japanese documentation.
2022-01-20 02:43:52 -08:00
Md Sahil f0a1484a70 Update update-daemon-set.md 2022-01-20 15:44:48 +05:30
Jihoon Seo ff7af9c7a9 [ko] Update anchor (type-nodeport) 2022-01-20 18:59:36 +09:00
Kubernetes Prow Robot 2f39630549 Merge pull request #30990 from jihoon-seo/211216_Outdated_M43
[ko] Update outdated files in dev-1.23-ko.1 (M43-M54)
2022-01-20 01:47:52 -08:00
Kubernetes Prow Robot fa2b224ccc Merge pull request #31188 from jihoon-seo/220104_Update_outdated_M83
[ko] Update outdated files in `dev-1.23-ko.1` (M83-M93)
2022-01-20 01:43:51 -08:00
Kubernetes Prow Robot 4ce3ae4bdd Merge pull request #31031 from jihoon-seo/211220_Outdated_M55
[ko] Update outdated files in dev-1.23-ko.1 (M55-M61)
2022-01-20 01:41:51 -08:00
Kubernetes Prow Robot 15df751557 Merge pull request #30989 from jihoon-seo/211216_Outdated_M38
[ko] Update outdated files in dev-1.23-ko.1 (M38-M42)
2022-01-20 01:37:51 -08:00
Kubernetes Prow Robot 220a2586b4 Merge pull request #30988 from jihoon-seo/211215_Outdated_M34
[ko] Update outdated files in dev-1.23-ko.1 (M34-M37)
2022-01-20 01:35:53 -08:00
Purneswar Prasad dd2ea439e8 Removed all previous PR links with Docker reference
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-20 14:50:41 +05:30
Mengjiao Liu d7de2141e3 [zh]Update security-context.md by replacing the link in docs/tasks/configure-pod-container/security-context/#what-s-next 2022-01-20 15:57:45 +08:00
Kubernetes Prow Robot fb50f9e4cd Merge pull request #31399 from shuaijinchao/zh/tasks/tools/install-kubectl
[zh] macos and linux add fish auto-completion
2022-01-19 23:13:51 -08:00
Kubernetes Prow Robot 1efb2b40ef Merge pull request #31413 from ShivamTyagi12345/Fix
Update security-context.md by replacing the link in docs/tasks/configure-pod-container/security-context/#what-s-next
2022-01-19 23:03:51 -08:00
Kubernetes Prow Robot edbbc58103 Merge pull request #31406 from butavicius/butavicius-typo-1
Fix: typo in cloud-controller.md
2022-01-19 23:01:51 -08:00
shivam tyagi e39fc674e4 Update
Signed-off-by: shivam tyagi <shivamt.ug19.ec@nitp.ac.in>
2022-01-20 07:42:14 +05:30
Purneswar Prasad d44efbeefb Removed the PR link from manages
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-20 06:59:55 +05:30
Mark Rossetti 6ffd07cbbc Updates for EnableCompartmentNamespace fix for GMSA 2022-01-19 16:12:49 -08:00
Mark Rossetti f13522be29 update supported container runtimes in configure-gmsa.md 2022-01-19 15:02:38 -08:00
Mark Rossetti d2b9f0e09c fix linting/whitespace in configure-gmsa.md 2022-01-19 14:40:09 -08:00
Kubernetes Prow Robot dc8c89fc47 Merge pull request #31334 from jberkus/ptlink
[pt-br] Fix link to dev@kubernetes mailing list
2022-01-19 12:59:55 -08:00
Chris Short d158cdf028 Removing additional Docker mentions 2022-01-19 15:10:45 -05:00
Chris Short 40afa49efa Update static-pod.md
Fixes Issue #31394
2022-01-19 14:16:57 -05:00
Kubernetes Prow Robot 7d54e1e5c6 Merge pull request #31405 from Shubham82/Update-Feature_Gate
Improvement: Updated FEATURE STATE of PodSecurityAdmission.
2022-01-19 09:04:06 -08:00
Md Sahil 2c30b68c77 Update update-daemon-set.md
<h3>What type of PR is this ?</h3>
Improve documentation.

<h3>Which type of issue this PR fixes</h3>
fixes 31311(issue).
2022-01-19 21:16:15 +05:30
Simas Butavičius d6ca144def Fix: typo in cloud-controller.md
The cloud-controller-manager is a Kubernetes control plane component" according to docs. That is, a singular manager. This PR fixes typo in docs where it was referenced to as "cloud controller managers".
2022-01-19 16:03:41 +02:00
Shubham Kuchhal 15bc0c7621 Improvement: Updated FEATURE STATE of PodSecurityAdmission. 2022-01-19 18:04:52 +05:30
Kubernetes Prow Robot 564baf15c1 Merge pull request #31356 from Arhell/update-date
[pl] update date to mention KubeCon NA 2022
2022-01-19 01:52:06 -08:00
Kubernetes Prow Robot 5e9c909283 Merge pull request #31381 from mengjiao-liu/sync-networking-index
[zh]Resync  concepts/services-networking/_index.md
2022-01-19 01:04:05 -08:00
Kobayashi Daisuke ffa586acf4 Corresponds to review comments about comma. 2022-01-19 18:03:14 +09:00
帅进超 29c2d36765 [zh] update kubectl user and system auto-completion config 2022-01-19 16:27:44 +08:00
Kobayashi Daisuke d48800b763 address reviews (change "ー", ":") 2022-01-19 17:21:35 +09:00
帅进超 b388f1caf6 [zh] macos and linux add fish auto-completion 2022-01-19 16:10:11 +08:00
Sakshi 04d2272572 Update _index.html 2022-01-19 13:30:49 +05:30
Purneswar Prasad bf6e6caa12 Changed the explicit mention of Docker due to deprecation in Tasks > Netwrking 2022-01-19 13:24:15 +05:30
Mengjiao Liu c2a14fc491 [zh]Resync concepts/services-networking/_index.md 2022-01-19 15:49:48 +08:00
Arhell 12a35865c1 [pl] update date to mention KubeCon NA 2022 2022-01-19 02:17:09 +02:00
Kubernetes Prow Robot ebceaf1343 Merge pull request #30862 from sftim/20211211_marke_dockershim_deprecated_add_mcr
Mark dockershim deprecated / add MCR
2022-01-18 14:13:03 -08:00
Lukas Paluch 88a92b0d47 set hpa examples to current networking api version 2022-01-18 19:19:54 +01:00
Kubernetes Prow Robot 5dc4a880d3 Merge pull request #31385 from krvaibhaw/main
it: Link and description mismatch
2022-01-18 10:05:10 -08:00
Jordan Liggitt 3dfffd39c8 Clarify deprecation rule 3 2022-01-18 10:12:19 -05:00
Tim Bannister 843ff5a90b Fix external etcd setup guide 2022-01-18 13:32:57 +00:00
Tim Bannister acea84ae3f Tweak wording around reporting issues
The style guide recommends against using “we” in documentation.
2022-01-18 13:32:57 +00:00
Tim Bannister 63f32f4908 Tidy prerequisites
Use tabs to make the comparison visually straighforward, and also to
clearly indicate that the reader has a choice to make.
2022-01-18 13:32:57 +00:00
Viacheslav Vasilyev 0ef0c8d570 Update encrypt-data.md - multi-master configuration notice
Add short notice about multi-cluster configurations
2022-01-18 12:40:37 +02:00
Vaibhaw 86b8b2e5ac Merge pull request #1 from krvaibhaw/krvaibhaw-patch-1
it: Link and description mismatch
2022-01-18 15:49:50 +05:30
Vaibhaw 446a98ae0b Update _index.html 2022-01-18 15:47:17 +05:30
Vaibhaw a91d4a2441 Update _index.html 2022-01-18 15:32:42 +05:30
Kobayashi Daisuke 027b08ca22 fix some mistakes 2022-01-18 16:07:37 +09:00
Kobayashi Daisuke d2ad1640c3 fix build error 2022-01-18 15:40:34 +09:00
Kobayashi Daisuke f5fac359bb translate topology-aware-hints into Japanese 2022-01-18 15:35:10 +09:00
Kubernetes Prow Robot b599a32374 Merge pull request #30959 from bglimepoint/patch-1
Note that subPathExpr uses round brackets.
2022-01-17 15:32:49 -08:00
Kubernetes Prow Robot 0d4211e159 Merge pull request #31374 from sftim/20220117_more_detail_daemonset_update_surge
Link to DaemonSet update task from DaemonSetUpdateSurge feature gate short description
2022-01-17 15:06:49 -08:00
Tim Bannister 02f1234ce8 Link to DaemonSet update task
from DaemonSetUpdateSurge feature gate short description
2022-01-17 22:25:27 +00:00
Kubernetes Prow Robot 953bb28644 Merge pull request #30790 from sftim/20211207_mark_only_live_site_indexable
Make only live website indexable
2022-01-17 14:10:49 -08:00
Tim Bannister a8112a6d8a Clarify advice about etcd private key
"Quote" can mislead; skip should be more obvious.
2022-01-17 21:55:08 +00:00
Tim Bannister f1dda969c4 Add security advice about SSH agent forwarding
In the case of a malicious node, or malicious superuser with access to
the same node, SSH agent forwarding is a risk. Call that out.
2022-01-17 21:41:01 +00:00
Tim Bannister 000536e52c Fix Markdown formatting 2022-01-17 21:41:01 +00:00
Tim Bannister 62905feb8e Don't recommend any CNI plugin for kubeadm clusters 2022-01-17 21:32:12 +00:00
Kubernetes Prow Robot 9bdb086f30 Merge pull request #30331 from renan/MaxSurgeDefault
Fix default value for MaxSurge in RollingUpdates for DaemonSets beat feature
2022-01-17 13:12:49 -08:00
Kubernetes Prow Robot d9edcc33ff Merge pull request #31325 from Darshnadas/weave
Removed weave url
2022-01-17 12:52:49 -08:00
Kubernetes Prow Robot c7079c4ee1 Merge pull request #31349 from humblec/csiMigration
mention the correct feature gate name for RBD CSI migration.
2022-01-17 12:46:49 -08:00
Kubernetes Prow Robot 19b327c3df Merge pull request #31263 from brianpursley/fish-completion
Add instructions for enabling fish auto-completions for kubectl
2022-01-17 12:02:50 -08:00
Anubhav Vardhan 34ded72a7f Update event.md
Update content/en/docs/reference/glossary/event.md

Create event.md

Create event.md

Update event.md

Add full link

Update content/en/docs/reference/glossary/event.md

Update content/en/docs/reference/glossary/event.md

Update content/en/docs/reference/glossary/event.md

Update event.md

Update event.md

Co-Authored-By: Tim Bannister <tim@scalefactory.com>
2022-01-18 01:00:30 +05:30
Kubernetes Prow Robot c870be11cb Merge pull request #31342 from mengjiao-liu/sync-networking.md
[zh]Resync cluster-administration networking file
2022-01-17 06:37:11 -08:00
Kubernetes Prow Robot 90c780b133 Merge pull request #31365 from jihoon-seo/220117_Fix_wrong_Korean_translations
[ko] Fix wrong Korean translations
2022-01-17 05:25:29 -08:00
Kubernetes Prow Robot e353d6f634 Merge pull request #31317 from krvaibhaw/patch-1
Updating outdated Russian _index.html
2022-01-17 04:47:29 -08:00
Kubernetes Prow Robot 1357deb43b Merge pull request #31221 from raesene/main
Add blog article “Securing Admission Controllers”
2022-01-17 01:15:30 -08:00
Jihoon Seo 593bef6bfe [ko] Fix wrong Korean translations 2022-01-17 17:53:52 +09:00
Mengjiao Liu b4f8f26ec0 [zh]Resync cluster-administration networking file 2022-01-17 10:53:59 +08:00
Yashodhan Mohan Bhatnagar 3a6fa8fea2 Correcting DNS record for pods exposed by a Service
For pods, DNS record incorrectly specifies deployment name
instead of service name. This commit corrects that.
2022-01-17 01:39:01 +05:30
Meysam Azad 7a3732e0d0 docs: modify grammatical error ✏️ 2022-01-16 19:49:51 +03:00
Darshna Das 8a5c44c874 Added changes 2022-01-16 20:47:37 +05:30
Adithya Krishna dc4ecc0234 Made Final Requested Changes - Related to https://github.com/kubernetes/website/issues/27078
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 18:39:59 +05:30
Kubernetes Prow Robot ec54c706de Merge pull request #31287 from neolit123/1.24-fix-ha-etcd-guide
kubeadm: update HA etcd guide for clarity and fix an issue
2022-01-16 04:57:28 -08:00
Adithya Krishna a77e2efca1 Made Requested Changes-Set1 - Related to https://github.com/kubernetes/website/issues/27078
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 18:18:58 +05:30
Adithya Krishna 80e35c8f95 Made Requested Changes v1
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 17:57:45 +05:30
Adithya Krishna 382b3a89c9 Removed included
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 17:57:45 +05:30
Adithya Krishna a457700948 Fixed CI
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 17:57:44 +05:30
Adithya Krishna 6251ff2179 Reverted en/ko Changes
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 17:57:43 +05:30
Adithya Krishna ad749beb5f Reverted zh Changes
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 17:57:43 +05:30
Adithya Krishna e85dc9af1d Updated File Links
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 17:57:42 +05:30
Adithya Krishna bb467f614a Updated with Changes From Main
Signed-off-by: Adithya Krishna <aadithya794@gmail.com>
2022-01-16 17:56:49 +05:30
Vitthal Sai be56556f8f Incorporates the feedback changes 2022-01-16 16:45:22 +05:30
Kubernetes Prow Robot 019108a028 Merge pull request #31339 from krvaibhaw/main
fr: Fixed outdated French contents
2022-01-16 01:25:27 -08:00
Kubernetes Prow Robot a5c8331e31 Merge pull request #31352 from meysam81/meysam/drop-redundant-preposition
typo: remove redundant preposition ✏️
2022-01-15 23:31:28 -08:00
Vitthal Sai d8f4cefa59 Mention the kubectl binary folder as PATH environment variable 2022-01-15 22:14:53 +05:30
Kubernetes Prow Robot 2d399351e6 Merge pull request #31351 from Arhell/patch-1
[uk] update date to mention KubeCon NA 2022
2022-01-15 04:34:15 -08:00
Kubernetes Prow Robot 7e9b95ff0a Merge pull request #31298 from championshuttler/tr
[zh] Fix link to OWNERS_ALIASES
2022-01-15 04:00:16 -08:00
Meysam Azad 60551bc338 typo: remove redundant preposition ✏️ 2022-01-15 13:26:50 +03:00
Ihor Sychevskyi 0e98775ec7 [uk] update date to mention KubeCon NA 2022 2022-01-15 10:49:06 +03:00
Humble Chirammal 9abefaba6b mention the correct feature gate name for RBD CSI migration.
The feature gate string (CSIMigrationRBD) was not matching with the
implementation (csiMigrationRBD) and this commit make it in parity

Ref# https://github.com/kubernetes/kubernetes/pull/107571

Signed-off-by: Humble Chirammal <hchiramm@redhat.com>
2022-01-15 09:24:54 +05:30
Kubernetes Prow Robot 312853c9d7 Merge pull request #31343 from gjtempleton/Correct-Pod-Statuses-Link
EN - Concepts - Correct Pod-Conditions Anchor Link
2022-01-14 12:22:26 -08:00
Patrice Chalin 91df90d68d README: copyedits to API ref building instructions 2022-01-14 09:55:56 -05:00
Kubernetes Prow Robot 2a55433557 Merge pull request #31337 from alexzielenski/patch-3
Fix typo for OpenAPIV3 and OpenAPIEnums
2022-01-14 02:32:28 -08:00
GuyTempleton 80e2f669a0 Docs - EN - Concepts - Correct Pod-Conditions Anchor Link 2022-01-14 10:30:44 +00:00
Jihoon Seo 6b56f2924b [ko] Update outdated files in dev-1.23-ko.1 M83-93 2022-01-14 17:36:06 +09:00
Jihoon Seo 615ff586b2 [ko] Update outdated files in dev-1.23-ko.1 M55-61 2022-01-14 17:27:30 +09:00
Jihoon Seo 3b1d2ce63a [ko] Update outdated files in dev-1.23-ko.1 M43-54 2022-01-14 17:26:31 +09:00
Jihoon Seo f91f632287 [ko] Update outdated files in dev-1.23-ko.1 M38-42 2022-01-14 17:25:10 +09:00
Jihoon Seo b928e5c8de [ko] Update outdated files in dev-1.23-ko.1 M34-37 2022-01-14 17:22:18 +09:00
Kubernetes Prow Robot a4c4da90aa Merge pull request #30964 from jihoon-seo/211215_Outdated_M25
[ko] Update outdated files in dev-1.23-ko.1 (M25-M33)
2022-01-13 22:10:28 -08:00
Kubernetes Prow Robot 74fcc786b6 Merge pull request #31332 from jberkus/frlink
[fr] Fix link to dev@kubernetes group
2022-01-13 20:54:27 -08:00
Jihoon Seo d311fcecad [ko] Update outdated files in dev-1.23-ko.1 M25-33 2022-01-14 11:55:56 +09:00
Alex Zielenski e346ea41ee Fix typo for OpenAPIV3 and OpenAPIEnums
If a user were to copy & paste from the docs into the feature-gate option they would receive the error `flag: unrecognized feature gate: OpenAPIv3` or `flag: unrecognized feature gate: OpenAPIEnum`. This change uses the correct case for `V` and uses the plural form for `Enums` as the command line parser expects.
2022-01-13 18:51:01 -08:00
Josh Berkus 730b9b09e9 Fix link to dev@kubernetes mailing list
Signed-off-by: Josh Berkus <josh@agliodbs.com>
2022-01-13 17:45:04 -08:00
Josh Berkus b85a7df5a8 Fix link to dev@kubernetes mailing list
Signed-off-by: Josh Berkus <josh@agliodbs.com>
2022-01-13 17:44:14 -08:00
Josh Berkus 04b4356744 Fix link to dev@kubernetes group.
Signed-off-by: Josh Berkus <josh@agliodbs.com>
2022-01-13 17:43:28 -08:00
Yashodhan Mohan Bhatnagar a18a34c482 Clean up docker references from Service documentations
1. Remove examples contrasting k8s networking with Docker networking
from concept document explaining connecting applications using services
2. Remove reference to dockerlinks in favor of English description
of the env vars autocreated for every Service.
2022-01-14 02:39:33 +05:30
Tim Bannister ef6d83b5dd Clarify example for setting Linux command line 2022-01-13 17:43:34 +00:00
Adrian Ludwin 9117178a97 Namespace names must be RFC 1123 DNS labels
The how-to docs to create a new namespace already specify this, but I think it's worth mentioning in the overview doc that a namespace name must be an RFC 1123 label, as I didn't initially think to look in the how-to doc for limitations.
2022-01-13 12:10:06 -05:00
Darshna Das c5881a11b8 Removed weave url 2022-01-13 19:56:57 +05:30
Kubernetes Prow Robot 66081efd04 Merge pull request #31323 from neolit123/1.24-adjust-note-in-upgrade-about-drain
kubeadm-upgrade: adjust note about node drain
2022-01-13 05:48:30 -08:00
Lubomir I. Ivanov b00ffa2093 kubeadm-upgrade: adjust note about node drain
The current entry under additional information about drain can
be confusing and users might jump into draining the nodes before
the upgrade steps (as a pre-req), following the
instructions in the external link. This is not accurate.

Adjust the entry text to explain that drain is a step as part of
the upgrade process and this additional information entry just
mentions why it is needed.
2022-01-13 15:36:30 +02:00
Ray Wang 6c6288e41d Add help docs for module-check and module-init
Now command `make` will show help docs for `module-check` and `module-init`
targets also.
2022-01-13 18:06:10 +08:00
Kubernetes Prow Robot 46f8258412 Merge pull request #31255 from ptux/add-tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use-ja
[ja] Translate tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use into Japanese
2022-01-13 01:34:32 -08:00
Kubernetes Prow Robot baace8bd8e Merge pull request #31213 from ptux/add-tasks/administer-cluster/kubeadm/kubeadm-certs-ja
[ja] Translate tasks/administer-cluster/kubeadm/kubeadm-certs into Japanese
2022-01-13 01:32:29 -08:00
Kubernetes Prow Robot f5dcd59ffd Merge pull request #31204 from Arhell/remove
[ja] remove Open vSwitch
2022-01-13 01:30:29 -08:00
Kubernetes Prow Robot 86f1c2581c Merge pull request #30881 from ptux/add-tasks/debug-application-cluster/crictl-ja
[ja] Translate tasks/debug-application-cluster/crictl into Japanese
2022-01-13 01:28:29 -08:00
Kubernetes Prow Robot 11da625747 Merge pull request #30529 from ptux/tasks/inject-data-application/distribute-credentials-secure
[ja] Translate tasks/inject-data-application/distribute-credentials-secure into Japanese
2022-01-13 01:26:30 -08:00
Kubernetes Prow Robot 31b90c5180 Merge pull request #30452 from fenggw-fnst/cleanup-ja
[ja] Remove ^H character
2022-01-13 01:24:30 -08:00
Vaibhaw 8b5c45a912 Update _index.html 2022-01-13 14:28:19 +05:30
Vaibhaw c9a7183045 Update_index.html 2022-01-13 14:10:43 +05:30
d3vus 42e88a361c Updated managed-resource-containers.md 2022-01-13 13:05:17 +05:30
Kubernetes Prow Robot 2838508953 Merge pull request #31230 from Arhell/update-date
[ru] update date to mention KubeCon NA 2022
2022-01-12 21:52:29 -08:00
Arhell b78f3bf591 [ru] update date to mention KubeCon NA 2022 2022-01-13 07:40:16 +02:00
Kubernetes Prow Robot 9bb737da7c Merge pull request #31268 from mengjiao-liu/sync-task-tutorial-prereqs.md
[zh]Resync task-tutorial-prereqs.md
2022-01-12 18:43:08 -08:00
Wang 07bbfa7218 Update data/i18n/ja/ja.toml
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-13 11:42:58 +09:00
Kubernetes Prow Robot f311c4f0c6 Merge pull request #31297 from championshuttler/koowner
[ko] Fix link to OWNERS_ALIASES
2022-01-12 17:41:08 -08:00
ptux 3f257caf07 長音記号追加 2022-01-13 10:15:23 +09:00
ptux f7312bc32a add thirdparty_message 2022-01-13 10:09:30 +09:00
ptux 7d6f129e75 長音記号を追加 2022-01-13 09:37:12 +09:00
ptux 21cdff80ee add ja for thirdparty-content 2022-01-13 09:29:44 +09:00
Wang 4287a0e9e8 Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-13 09:08:28 +09:00
Kubernetes Prow Robot 29254d7eab Merge pull request #31296 from championshuttler/owner
Fix link to OWNERS_ALIASES
2022-01-12 11:10:13 -08:00
Wang 6f9f8e0dcc Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-13 04:09:08 +09:00
Kubernetes Prow Robot ebfa2e4bed Merge pull request #31306 from ptux/patch-13
Update migrating-telemetry-and-security-agents.md
2022-01-12 11:02:14 -08:00
Meysam Azad 1c4ea6d5af docs: place annotation between backticks ✏️ 2022-01-12 19:25:27 +03:00
Kubernetes Prow Robot b6b81c4c75 Merge pull request #30565 from ptux/add-auditing-ja
[ja] Translate tasks/debug-application-cluster/audit into Japanese
2022-01-12 08:18:37 -08:00
Lubomir I. Ivanov 0acf0e98ee kubeadm: update HA etcd guide for clarity and fix an issue
There were a couple of reported problems with this guide:

- The introductory paragraph talks about single control plane nodes
and does not mention the different options for HA etcd. Clear the
language to reduce the confusion and cross-link to the ha-topology
page.
- The hostname / IP detection in kubeadm can end
up with values not suitable for the certificates that kubeadm
generates for all etcd instances. Ensure that the hostnames / IPs
are pinned by the user in the example script.

Side cleanup related to the dockershim removal:
- Use containerd in the setup example and don't mention docker as
a requirement.
2022-01-12 16:24:26 +02:00
Kubernetes Prow Robot 6833ee99e3 Merge pull request #31305 from gjkim42/add-requirement-for-expandeddnsconfig
Add requirement for the ExpandedDNSConfig feature
2022-01-12 06:12:37 -08:00
Kubernetes Prow Robot b42674e881 Merge pull request #31289 from ixodie/patch-5
Removing Romana
2022-01-12 05:30:37 -08:00
JNat ce37f1b293 added Stack Overflow guidance
Added extra links to the guidance pertaining asking questions on Stack Overflow, to ensure users first read through guidance to ensure questions are both on-topic and well-written — both of which will improve these users' experience on Stack Overflow, and avoid having off-topic questions asked there.
2022-01-12 13:29:30 +00:00
Shannon Kularathna b0da90dd08 Minor wording fixes
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2022-01-12 17:22:19 +04:00
Wang 02dc4a258a Update migrating-telemetry-and-security-agents.md 2022-01-12 22:17:55 +09:00
Gunju Kim 62d76a2d88 Add requirement for the ExpandedDNSConfig feature 2022-01-12 22:07:17 +09:00
Kubernetes Prow Robot 976f23445e Merge pull request #31281 from anubha-v-ardhan/glossary-toolstip-statefulset
Add glossary_tooltip for StatefulSet in Recommended labels
2022-01-12 03:54:37 -08:00
Shivam Singhal 35d0ddd312 [zh] Fix link to OWNERS_ALIASES 2022-01-12 12:04:03 +02:00
Shivam Singhal 3200993466 [ko] Fix link to OWNERS_ALIASES 2022-01-12 12:03:09 +02:00
Shivam Singhal b49701b566 Fix link to OWNERS_ALIASES 2022-01-12 12:02:18 +02:00
Wang b1021a627c Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:29:03 +09:00
Wang 7e23cb0bda Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:28:47 +09:00
Wang 0b3585e449 Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:28:38 +09:00
Wang dbb4ada8b4 Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:28:26 +09:00
Wang 2f5b1eb9cc Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:28:21 +09:00
Wang 9588612861 Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:28:15 +09:00
Wang 0228a1af9a Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:28:07 +09:00
Wang af6e6eb46e Update content/ja/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:27:37 +09:00
Wang d9f5966340 Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use.md
Co-authored-by: atoato88 <akihito-inou@nec.com>
2022-01-12 14:26:26 +09:00
edithturn 46e0d1b69b solved Victor's feedback 2022-01-11 17:19:47 -05:00
Kubernetes Prow Robot 98d8836c23 Merge pull request #31267 from mengjiao-liu/fix-PreemptionPolicy
Fix wrong capitalization for preemptionPolicy field
2022-01-11 11:13:15 -08:00
Emilano Vazquez 49b27f9a30 Update content/es/docs/concepts/workloads/pods/disruptions.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-01-11 15:38:30 -03:00
Emilano Vazquez e42015e3c8 Update content/es/docs/concepts/workloads/pods/disruptions.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-01-11 15:38:23 -03:00
Emilano Vazquez 7f2aff5b7e Update content/es/docs/concepts/workloads/pods/disruptions.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-01-11 15:38:16 -03:00
Emilano Vazquez 7fd53f4789 Update content/es/docs/concepts/workloads/pods/disruptions.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-01-11 15:38:07 -03:00
Emilano Vazquez 52e770c8af Update content/es/docs/concepts/workloads/pods/disruptions.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-01-11 15:37:59 -03:00
ixodie c073285fb3 Removing Romana
Romana is defunct and has been removed from main networking docs already.
2022-01-11 10:53:58 -05:00
Emilano Vazquez 5d61c30c3a Update disruptions.md 2022-01-11 12:46:09 -03:00
Kubernetes Prow Robot aae389ad73 Merge pull request #31280 from MarcoZhang111/main
Fix wrong capitalization for preemptionPolicy field in zh.
2022-01-11 04:47:16 -08:00
Rory McCune 7e067efddc Update content/en/blog/_posts/2022-01-19-Securing-Admission-Controllers.md
Blog Post from SIG-Security docs on securing admission controllers.

Co-Authored-By: Tim Bannister <tim@scalefactory.com>
Co-Authored-By: Rey Lejano <rlejano@gmail.com>
Co-Authored-By: Nate W. <4453979+nate-double-u@users.noreply.github.com>
2022-01-11 10:44:29 +00:00
Kubernetes Prow Robot d159608a62 Merge pull request #31284 from Babapool/add-tooltip
Add Glossary_tooltip for object
2022-01-11 01:15:16 -08:00
Vitthal Sai b930314a64 Add glossary_tooltip for object 2022-01-11 14:24:09 +05:30
Kubernetes Prow Robot 1f65397a80 Merge pull request #31218 from anencore94/ko_update_cri.md
[ko] add cri.md in Korean
2022-01-11 00:21:17 -08:00
Shannon Kularathna be490005ff Remove Docker mentions 2022-01-11 07:07:22 +00:00
Anubhav Vardhan 5a5b4d8a70 Comment YAML to specify excerpt 2022-01-11 10:33:07 +05:30
Anubhav Vardhan f6ae550af4 Add glossary_tooltip for StatefulSet 2022-01-11 10:26:58 +05:30
Jaeyeon Kim e9fe604ce1 [ko] Translate content/ko/docs/concepts/architecture/cri.md
Signed-off-by: Jaeyeon Kim <anencore94@gmail.com>
Co-authored-by: Jesang Myung <jesang.myung@gmail.com>
Co-authored-by: Seokho Son <shsongist@gmail.com>
2022-01-11 13:43:29 +09:00
Ikko Ashimine 8b89bb8b7c Fix kubernetes-api.md
markdown format
2022-01-11 10:33:08 +09:00
zhangtaikun 5030dec711 Fix wrong capitalization for preemptionPolicy field in zh. 2022-01-11 09:31:09 +08:00
Tim Bannister 688c246882 Fix footer rendering
The community page had the wrong rendering for the page footer.
Ensure that the footer is as wide as the viewport.
2022-01-10 23:34:53 +00:00
Kubernetes Prow Robot 0872e8ec51 Merge pull request #30818 from sftim/20211007_revise_device_plugins_page
Revise device plugins page
2022-01-10 14:42:26 -08:00
Kubernetes Prow Robot 4698b128c0 Merge pull request #31205 from MikeSpreitzer/fix-apf-alpha
Corrected alpha release for APIPriorityAndFairness FeatureGate
2022-01-10 14:14:26 -08:00
Filip Křepinský 8f8d2bb039 make deployment status behaviour more descriptive 2022-01-10 21:22:45 +01:00
Kubernetes Prow Robot d4387d2064 Merge pull request #31265 from shannonxtreme/blog-edit
Correct minor spelling and grammar issues in dockershim blog
2022-01-10 10:35:13 -08:00
Kubernetes Prow Robot 218dfe5901 Merge pull request #31272 from jayesh-srivastava/branch-02
Add releases page to minimum required content
2022-01-10 09:13:13 -08:00
Jayesh Srivastava 27d400d0e6 Update localization.md 2022-01-10 22:00:54 +05:30
Renan Gonçalves 696027ce06 Remove changes to ko and zh locales 2022-01-10 16:12:33 +01:00
Mengjiao Liu 1c8db8fde8 [zh]Resync task-tutorial-prereqs.md 2022-01-10 18:29:09 +08:00
Qiming Teng 087fdec7dc [zh] Translate enforce standards-namespace-labels page 2022-01-10 18:27:57 +08:00
Kubernetes Prow Robot 46bc900d1a Merge pull request #31266 from saschagrunert/cri-glossary
Update CRI description to be more verbose
2022-01-10 02:07:12 -08:00
Mengjiao Liu a35da2ba7f Fix wrong capitalization for preemptionPolicy field 2022-01-10 17:59:22 +08:00
Sascha Grunert 36a5a39a35 Update CRI description to be more verbose
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2022-01-10 10:38:15 +01:00
Kubernetes Prow Robot 7444dc5d6a Merge pull request #31240 from tengqm/zh-findout-runtime
[zh] Translate find out runtime page
2022-01-10 00:35:13 -08:00
Shannon Kularathna 58fcd66c89 Correct minor spelling and grammar issues 2022-01-10 07:58:19 +00:00
brianpursley ad015ad425 Add instructions for enabling fish auto-completions for kubectl 2022-01-09 20:36:19 -05:00
Kubernetes Prow Robot 05c913e683 Merge pull request #31014 from Babapool/merge-tuts
Merge the tutorials under tutorials->clusters into tutorials->security
2022-01-09 14:07:14 -08:00
Babapool cb9a103af6 Fix the redirect links
Co-Authored-By: Tim Bannister <tim@scalefactory.com>
2022-01-09 21:38:02 +00:00
Babapool ec94e69c4e Merge the tutorials under tutorials->clusters into tutorials->security 2022-01-09 21:31:20 +00:00
Kubernetes Prow Robot 81b5255224 Merge pull request #31257 from expoli/patch-1
Correct some misrepresentations on Chinese pages
2022-01-09 04:27:12 -08:00
Wang 50aa4ac47e Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-09 19:20:17 +09:00
Wang 40bd978326 Update content/ja/docs/tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-09 19:20:12 +09:00
mtilson 1e85065aaa Alias for context 2022-01-09 12:47:43 +03:00
expoli 4a2981a0d8 Correct some misrepresentations on Chinese pages
Correct some misrepresentations on Chinese pages

# 原始文件内容
原始文档上写的是:输入类似于 (Enter something like),但是者实际上是一个输出内容。
此错误在这个页面上不止一处,已经全部订正

```bash
输入类似于 -> 输出类似于
input -> output
```
2022-01-09 15:40:57 +08:00
edithturn 5d255db39e removing version v1.19 2022-01-09 00:34:11 -05:00
Edith Puclla e1080031f5 Update content/es/docs/concepts/storage/storage-capacity.md
Co-authored-by: Emilano Vazquez <emilianovazquez@gmail.com>
2022-01-09 00:25:15 -05:00
Edith Puclla 131258881d Update content/es/docs/concepts/storage/storage-capacity.md
Co-authored-by: Emilano Vazquez <emilianovazquez@gmail.com>
2022-01-09 00:25:04 -05:00
Kubernetes Prow Robot f6c5fa73d6 Merge pull request #31245 from k0000k/ko-_index-file
[ko] Add translation of parts that haven't been translated in _index
2022-01-08 19:12:19 -08:00
Kubernetes Prow Robot 290d0a6c29 Merge pull request #31198 from shuaijinchao/zh/sync/overview/components
[zh] synchronize translate components.md
2022-01-08 18:30:18 -08:00
Kubernetes Prow Robot 1fdf62bdbd Merge pull request #31158 from howieyuen/zh/tutorials/security/cluster
[zh]translate content/zh/docs/tutorials/security/cluster-level-pss.md
2022-01-08 18:28:19 -08:00
Kubernetes Prow Robot c35f580d7b Merge pull request #31156 from howieyuen/zh/tutorials/security/ns
[zh]translate content/zh/docs/tutorials/security/ns-level-pss.md
2022-01-08 18:26:19 -08:00
Kubernetes Prow Robot 54c8d4410d Merge pull request #31216 from shuaijinchao/zh/sync/administer-cluster/encrypt-data
[zh] synchronize translate encrypt-data.md
2022-01-08 18:24:19 -08:00
ptux 215983779b down 2022-01-09 08:55:01 +09:00
ptux 95211a8fcf change back 2022-01-09 08:48:10 +09:00
Kubernetes Prow Robot ae5ae3ab71 Merge pull request #31247 from championshuttler/unkow
Remove Unknown Symbol on Container Runtime Interface (CRI) Page
2022-01-08 06:58:18 -08:00
Kubernetes Prow Robot 5446a4f7ed Merge pull request #31219 from pacoxu/patch-9
storage class parameters value should be string
2022-01-08 06:30:18 -08:00
Kubernetes Prow Robot 77cc3857e6 Merge pull request #30662 from CarlosDomingues/patch-1
Use tee to write to /etc/bash_completion.d/kubectl
2022-01-08 06:28:19 -08:00
Kubernetes Prow Robot c4b4768ae0 Merge pull request #31145 from hhyasdf/introduce-hybridnet
Add Hybridnet CNI to networking.md
2022-01-08 06:26:19 -08:00
Wang b70a72e2cc Merge branch 'kubernetes:main' into master 2022-01-08 22:46:30 +09:00
ptux 09fa80f506 done 2022-01-08 22:43:39 +09:00
Shivam Singhal 5473fe272f Remove Unknown Symbol on Container Runtime Interface (CRI) Page 2022-01-08 15:20:14 +02:00
Kubernetes Prow Robot 38f72d7972 Merge pull request #31040 from ClaudiaJKang/ko-30330
[ko] Translate docs/tasks/debug-application-cluster/troubleshooting.md
2022-01-08 02:03:04 -08:00
Kubernetes Prow Robot c56cd541d6 Merge pull request #31214 from shuaijinchao/zh/sync/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you
[zh] synchronize translate check-if-dockershim-deprecation-affects-you.md
2022-01-08 01:39:05 -08:00
k0000k cb7da4fc41 [ko] Add translation of parts that haven't been translated in _index file 2022-01-08 17:10:47 +09:00
Arhell 0c61c48529 [en] fix meetup link 2022-01-08 01:34:01 +02:00
Michelle Fernandez Bieber e21f0563f3 Added ingressClassName: nginx to Ingress example, mentioned to the necessity of it and referenced to the section describing that further 2022-01-07 22:15:42 +01:00
Kubernetes Prow Robot ce5896d695 Merge pull request #30583 from stormqueen1990/secrets-pt-br
[pt-br] Add /content/pt-br/docs/concepts/configuration/secrets.md
2022-01-07 10:48:33 -08:00
Avinesh Tripathi 34273a6874 Update content/en/includes/default-storage-class-prereqs.md
Co-authored-by: Arsh Sharma <56963264+RinkiyaKeDad@users.noreply.github.com>
2022-01-07 22:46:02 +05:30
Kubernetes Prow Robot 68a90aef60 Merge pull request #31208 from Priyankasaggu11929/psaggu-add-moc-apac-blog
blog: meet our contributors APAC India region
2022-01-07 06:58:30 -08:00
Priyanka Saggu 4bb3f367a2 blog: meet our contributors APAC India region 2022-01-07 20:21:15 +05:30
Qiming Teng 21558d676a [zh] Translate find out runtime page 2022-01-07 21:10:41 +08:00
Qiming Teng 612eeec263 [zh] Translate enforce-standards-admission-controller.md 2022-01-07 21:00:28 +08:00
帅进超 875bb06af8 [zh] synchronize translate encrypt-data.md 2022-01-07 19:51:31 +08:00
帅进超 2546d64397 [zh] synchronize translate check-if-dockershim-deprecation-affects-you.md 2022-01-07 18:06:10 +08:00
Kubernetes Prow Robot 36c22f1d48 Merge pull request #31229 from sftim/20220106_update_dockershim_survey_article_closure
Mark dockershim survey closed
2022-01-07 01:18:31 -08:00
Mauren Berti 6708e86c6e Remove comment blocks with original content. 2022-01-06 19:33:47 -05:00
Mauren Berti 735c85364b Remove comment blocks with original content. 2022-01-06 19:28:08 -05:00
Mauren Berti 9cf1da9096 Fix typo on translation. 2022-01-06 18:46:10 -05:00
Mauren Berti 34036af321 Add pt-br/docs/concepts/configuration/secret.md.
Create the Brazilian Portuguese translation for the Secrets page.
2022-01-06 18:46:10 -05:00
Tim Bannister a3e8980eac Add Contiv-VPP network plugin 2022-01-06 22:24:08 +00:00
Kubernetes Prow Robot 4763cd9329 Merge pull request #30759 from ixodie/patch-12
Kind cleanup - Remove Contiv
2022-01-06 14:22:00 -08:00
Kubernetes Prow Robot c18ddf5d75 Merge pull request #31227 from DanStough/remove-kubeadm-clusterstatus
kubeadm: remove ClusterStatus references
2022-01-06 14:20:01 -08:00
Tim Bannister 2a0fb0690f Mark dockershim survey closed 2022-01-06 21:04:13 +00:00
Kubernetes Prow Robot a7d28c2192 Merge pull request #30972 from SergeyKanzhelev/dockershim-blog-post
Add blog post announcing actual dockershim removal
2022-01-06 12:56:00 -08:00
Sergey Kanzhelev 9617e67e51 Update content/en/blog/_posts/2022-01-07-kubernetes-is-moving-on-from-dockershim.md
Co-authored-by: Rey Lejano <rlejano@gmail.com>
2022-01-06 12:40:58 -08:00
DanStough 4030f7fab9 kubeadm: remove ClusterStatus references 2022-01-06 14:50:38 -05:00
Kubernetes Prow Robot f8c4289c07 Merge pull request #31155 from bang9211/bang9211/debug-application-cluster/v0.1
[ko] Translate tasks/debug-application-cluster/debug-cluster.md in Korean
2022-01-06 01:02:29 -08:00
Kubernetes Prow Robot 4d7f985b7a Merge pull request #31176 from jihoon-seo/220103_Update_outdated_M71
[ko] Update outdated files in dev-1.23-ko.1 (M71-M82)
2022-01-06 00:36:28 -08:00
Paco Xu d51b32bab8 storage class parameters value should be string 2022-01-06 11:24:06 +08:00
Jihoon Seo afe43b34e1 [ko] Update outdated files in dev-1.23-ko.1 M71-82 2022-01-06 11:07:04 +09:00
Sergey Kanzhelev 4207597a91 blog post draft: https://docs.google.com/document/d/160edAf2q3-FY8SFNCfEoSWcQ0Y7OUUy4hD7nc-b11n8/edit# 2022-01-06 01:37:16 +00:00
Kubernetes Prow Robot 409590a6e8 Merge pull request #31206 from jihoon-seo/220105_Add_jihoon-seo_as_ko-owner
Add jihoon-seo to sig-docs-ko-owners
2022-01-05 14:29:47 -08:00
Tim Bannister 2558306e58 Add third-party content disclaimer 2022-01-05 21:44:49 +00:00
Tim Bannister d67ac4dc95 Fix mismatched whitespace
Convert a tab to spaces to match other lines in snippet.
2022-01-05 21:44:48 +00:00
Tim Bannister fea1dc2801 Clean up front matter 2022-01-05 21:44:48 +00:00
Tim Bannister 7715646907 Tweak wording for Device Plugins concept 2022-01-05 21:44:44 +00:00
Kubernetes Prow Robot 1bc24bb348 Merge pull request #31201 from mtilson/patch-3
Remove extra command and fix reference to profile
2022-01-05 13:17:48 -08:00
Kubernetes Prow Robot 1b75c44306 Merge pull request #31058 from championshuttler/notecleanup
Cleanup notes in Define a Command and Arguments docs
2022-01-05 12:23:49 -08:00
Kubernetes Prow Robot 988b1ba439 Merge pull request #30348 from afirth/2021-11-03-docs-for-kustomize-env-vars
[DOCS] Document the environment variable substitution feature of kustomize configMapGenerator
2022-01-05 12:07:47 -08:00
Kubernetes Prow Robot b6d995e671 Merge pull request #31182 from sftim/20220103_fix_case_patch_releases_tables
Fix case for tables in patch releases list
2022-01-05 11:31:48 -08:00
Kubernetes Prow Robot bef1768ff1 Merge pull request #31207 from tengqm/tune-config-links
Tune config API links
2022-01-05 08:42:25 -08:00
Neha Viswanathan 24ee2527d0 migrate the K8s networking model section (#28617) 2022-01-05 08:08:41 -08:00
Kubernetes Prow Robot 14671be579 Merge pull request #31203 from nate-double-u/add-nate-double-u-as-blog-reviewer
Add nate-double-u as blog reviewer
2022-01-05 07:00:34 -08:00
ptux e3dd9fe077 done 2022-01-05 22:53:14 +09:00
Kubernetes Prow Robot 4aa0b0fb6b Merge pull request #31212 from shuaijinchao/zh/sync/access-application-cluster/access-cluster2
[zh] synchronize translate access-cluster.md
2022-01-05 04:46:33 -08:00
Kubernetes Prow Robot 2ab575cf27 Merge pull request #30327 from perithompson/patch-2
Update Windows pause image
2022-01-05 04:18:33 -08:00
帅进超 8ed0eb3e41 [zh] synchronize translate access-cluster.md 2022-01-05 18:38:55 +08:00
Kubernetes Prow Robot 264ae2847b Merge pull request #31196 from shuaijinchao/zh/sync/extend-kubernetes/operator
[zh] synchronize translate operator.md
2022-01-04 22:04:33 -08:00
Qiming Teng 7bc2709d6b [zh] Translate create hostprocess pod 2022-01-05 13:48:40 +08:00
帅进超 d281674822 [zh] synchronize translate operator.md 2022-01-05 13:46:35 +08:00
Kubernetes Prow Robot 0453404ab4 Merge pull request #31197 from shuaijinchao/zh/sync/extend-kubernetes/service-catalog
[zh] synchronize translate service-catalog.md
2022-01-04 21:46:32 -08:00
Claudia J. Kang 208e4ed66c [ko] Translate docs/tasks/debug-application-cluster/troubleshooting.md 2022-01-05 14:43:02 +09:00
Qiming Teng 6be193b4de Tune config API links
We favor links to generated docs targetting non-developer audiences over
golang specifics.
2022-01-05 13:42:32 +08:00
帅进超 8804605079 [zh] synchronize translate service-catalog.md 2022-01-05 13:37:06 +08:00
帅进超 b28500b7a5 [zh] synchronize translate components.md 2022-01-05 13:33:24 +08:00
Qiming Teng c939f8150d [zh] Translate dual-stack-support page 2022-01-05 13:27:45 +08:00
Kubernetes Prow Robot bf39ea5ea5 Merge pull request #31202 from rsalmond/patch-1
Fix broken link to grpc liveness probe yaml
2022-01-04 21:26:32 -08:00
Kubernetes Prow Robot e223a5553f Merge pull request #31199 from shuaijinchao/zh/sync/cluster-administration/system-traces
[zh] synchronize translate system-traces.md
2022-01-04 21:18:33 -08:00
bang9211 022bf26ab2 Translate tasks/run-application/scale-stateful-set.md in Korean 2022-01-05 11:53:09 +09:00
Jihoon Seo 992bc8e716 Add jihoon-seo as ko-owner 2022-01-05 11:50:55 +09:00
Mike Spreitzer 9f1de9cd87 Corrected alpha release for APIPriorityAndFairness FeatureGate 2022-01-04 21:25:23 -05:00
mtilson 5e964818e8 Remove "Service" as well 2022-01-05 02:15:41 +03:00
Arhell ce0ede9dc0 [ja] remove Open vSwitch 2022-01-05 00:17:28 +02:00
Kubernetes Prow Robot 9118ba9df6 Merge pull request #31019 from championshuttler/fixLink
Fix the link to access cluster service in docs
2022-01-04 12:36:08 -08:00
Kubernetes Prow Robot c39b834244 Merge pull request #30431 from Kartik494/improveDocsCRD
Added a note for CRD improvement in Docs
2022-01-04 12:14:08 -08:00
Nate W 92ca8ed873 add nate-double-u as blog reviewer
Signed-off-by: Nate W <4453979+nate-double-u@users.noreply.github.com>
2022-01-04 12:01:50 -08:00
rob salmond 36bf4368c7 Fix broken link to grpc liveness probe yaml 2022-01-04 14:18:01 -05:00
Kubernetes Prow Robot bc21cd563c Merge pull request #30798 from sftim/20211208_add_sftim_blog_owner
Add sftim as a blog editor
2022-01-04 10:50:38 -08:00
mtilson 3e48467a27 Remove extra command and fix reference to profile 2022-01-04 21:40:48 +03:00
Kubernetes Prow Robot cc53157970 Merge pull request #31161 from CodingCanuck/patch-1
Fix grammar in kubernetes dashboard docs
2022-01-04 09:16:53 -08:00
Kubernetes Prow Robot d9545116cd Merge pull request #31184 from CodingCanuck/patch-3
Fix kind delete cluster commands
2022-01-04 09:10:52 -08:00
帅进超 02d19b7fa9 [zh] synchronize translate system-traces.md 2022-01-05 00:09:31 +08:00
Qiming Teng 0bf3fedeb9 [zh] Translate cascading deletion task 2022-01-04 21:01:36 +08:00
Peri Thompson 60824acdd2 Update windows pause image
Signed-off-by: Peri Thompson <perit@vmware.com>
2022-01-04 09:40:47 +00:00
Kubernetes Prow Robot 77ca45ab8a Merge pull request #31187 from Arhell/remove
[it] remove Open vSwitch
2022-01-04 00:41:00 -08:00
Kubernetes Prow Robot 9c8e4184ed Merge pull request #30998 from bang9211/bang9211/scale-stateful-set/v0.1
[ko] Translate tasks/run-application/scale-stateful-set.md in Korean
2022-01-03 23:05:01 -08:00
Kobayashi Daisuke 8c4dcb2ee4 Update service-traffic-policy.md 2022-01-04 13:26:04 +09:00
howieyuen cf8ddb9aed [zh]translate content/zh/docs/tutorials/security/cluster-level-pss.md 2022-01-04 11:13:55 +08:00
Lucas Castro dadfede32c Apply suggestions from code review
Including review suggestions.

Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2022-01-04 00:08:40 -03:00
howieyuen a08460d8cd [zh]translate content/zh/docs/tutorials/security/ns-level-pss.md 2022-01-04 11:03:03 +08:00
hhyasdf 1d56098e9a Add Hybridnet CNI to networking.md 2022-01-04 10:34:57 +08:00
Kobayashi Daisuke 0068f7b226 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-04 11:07:56 +09:00
Kobayashi Daisuke f6b5958b03 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-04 11:07:19 +09:00
Kobayashi Daisuke 95d4b8c9d7 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-04 11:06:12 +09:00
Emilano Vazquez 858d90abef Apply suggestions from code review
commit of suggestions made by electrocucaracha

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2022-01-03 23:05:47 -03:00
Kobayashi Daisuke fb59286f02 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 10:41:39 +09:00
Kobayashi Daisuke 0af73e658d Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 10:41:22 +09:00
Kobayashi Daisuke 9de1412a98 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 10:40:16 +09:00
Kobayashi Daisuke 47010c1ff7 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 10:40:12 +09:00
Kobayashi Daisuke e558ee70e0 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 10:40:05 +09:00
Kobayashi Daisuke 2fa6918df0 Update content/ja/docs/concepts/services-networking/service-traffic-policy.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 10:39:52 +09:00
Wang 87f2f38ee1 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:22:47 +09:00
Wang aace87316e Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:22:30 +09:00
Wang d97de90faf Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:22:24 +09:00
Wang 42df213b81 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:22:20 +09:00
Wang 85a6b60e05 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:22:14 +09:00
Wang 0d5bd1f386 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:22:09 +09:00
Wang dc157188ee Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:22:04 +09:00
Wang 5860445100 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:58 +09:00
Wang 0258f297dd Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:52 +09:00
Wang c8e5a4e187 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:47 +09:00
Wang d8890fa712 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:42 +09:00
Wang 4e5ceafe6d Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:36 +09:00
Wang 9e4294faed Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:30 +09:00
Wang 51fbb58590 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:23 +09:00
Wang cadb23938d Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:17 +09:00
Wang a87c55f809 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:11 +09:00
Wang 0e89570bc4 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:21:00 +09:00
Wang f7961d7792 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:20:52 +09:00
Wang 3e2b6c8655 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-04 08:20:41 +09:00
ptux 6b355af0ea fix glossary 2022-01-04 08:16:10 +09:00
Kubernetes Prow Robot 4793ac10d6 Merge pull request #31181 from tengqm/fix-gc
Fix nits in the garbage collection page
2022-01-03 15:13:00 -08:00
Kubernetes Prow Robot b7ac7eeedc Merge pull request #31050 from suchen-sci/update-ingress-controller-easegress-link
[ingresscontroller] Update Easegress link for Kubernetes website
2022-01-03 14:27:00 -08:00
Arhell b2dadde6bf [it] remove Open vSwitch 2022-01-04 00:21:52 +02:00
Kubernetes Prow Robot 91b57ffa12 Merge pull request #31138 from superorbital/tammersaleh/cronjob-schedule-fix
The `schedule: "*/1 * * * *"` is the same as "* * * * *"
2022-01-03 14:13:00 -08:00
Kubernetes Prow Robot caf587e27a Merge pull request #31183 from CodingCanuck/patch-2
Remove trailing whitespace to fix command pasting
2022-01-03 09:27:00 -08:00
Tim Bannister 4592cf5703 Mark live site in HTML
This allows CSS, JavaScript etc to detect if the served website is the
live one.
2022-01-03 17:24:19 +00:00
Tim Bannister 2dfe0d1c30 Make only live website indexable
This change updates how we run Hugo AND changes the logic for checking
whether a page should be indexable (copied with a backport from upstream
Docsy).
2022-01-03 17:24:18 +00:00
Alex McCarthy 90970b7b73 Fix kind delete cluster commands
The name flag requires two leading dashes, not one.
2022-01-03 07:17:52 -10:00
Alex McCarthy 6b4cbac16c Remove trailing whitespace to fix command pasting 2022-01-03 07:03:52 -10:00
Kubernetes Prow Robot 0de2680607 Merge pull request #31170 from ptux/fix-debug-application-en
fix glossary
2022-01-03 07:58:59 -08:00
Kubernetes Prow Robot 830c2ac073 Merge pull request #31171 from tengqm/tune-mem-mgr
Tune mem mgr
2022-01-03 07:55:00 -08:00
Tim Bannister 4c0612d605 Fix case for tables in patch releases list
(aside: if we did want these all-uppercase, I'd be tempted to apply that
style using CSS / Sass)
2022-01-03 15:44:06 +00:00
Ryota Yamada 2f511e498a Merge branch 'main' into ja-fix-link 2022-01-03 23:22:49 +09:00
Kubernetes Prow Robot f030fbf6b4 Merge pull request #30465 from ptux/patch-9
[jp] Update operator.md
2022-01-03 06:05:00 -08:00
Kubernetes Prow Robot ab38aa3e72 Merge pull request #30407 from ptux/patch-6
[jp] Update custom-resources.md
2022-01-03 06:02:59 -08:00
Kubernetes Prow Robot 94903b5a8b Merge pull request #31102 from championshuttler/jamultus
[ja] Remove link to compromised github account
2022-01-03 06:01:00 -08:00
Qiming Teng 757915ae99 Fix nits in the garbage collection page
Some nits fixed in this PR:

- The typo of 'MaxContainers' and 'MaxPerPodContainer';
- The section name which should be 'Container garbage collection' rather
  than 'Container image garbage collection'.
2022-01-03 21:14:31 +08:00
afirth b9da040a08 Document the environment variable substitution feature of configMapGenerator 2022-01-03 11:56:03 +01:00
Qiming Teng 83323d428d Reformat the memory-manager page
This commit reformats the memory manager page:

- convert the page from DOS to UNIX format;
- wrap long lines where appropriate for ease of change tracking;
- remove useless trailing spaces and empty lines.

This commit contains **NO** changes to the text itself.
2022-01-03 11:36:37 +08:00
Qiming Teng c1783b4b71 Tune memory manager page
This PR fixes the memory manager page by:

- removing links to non-existent sections;
- fixing links with bad anchors;
- fixing incorrect language tag for code snippets
2022-01-03 11:28:41 +08:00
gamba47 2eb10e943c more changes and final revision done 2022-01-02 23:18:31 -03:00
Kubernetes Prow Robot 63dd5f7a00 Merge pull request #31127 from championshuttler/pt-brrrr
[pt] Fix configuration overview example link
2022-01-02 18:02:59 -08:00
Kubernetes Prow Robot 3f20c22b82 Merge pull request #31169 from Arhell/remove
[id] remove Open vSwitch
2022-01-02 17:00:59 -08:00
ptux cef7f2f546 fix glossary 2022-01-03 08:58:28 +09:00
Wang 988d7ed9f1 Update debug-application.md 2022-01-03 08:50:13 +09:00
Wang f200c28158 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:47:42 +09:00
Wang e42662ec14 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:46:13 +09:00
Wang de39a49141 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:46:07 +09:00
Wang 71002b2be7 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:46:02 +09:00
Wang 2e564cc51e Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:53 +09:00
Wang 8c287b22bc Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:46 +09:00
Wang 4403af79c8 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:36 +09:00
Wang bb5631f383 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:30 +09:00
Wang ab35736630 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:25 +09:00
Wang a9c76ae35d Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:16 +09:00
Wang 198e454ce9 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:08 +09:00
Wang 46c8086020 Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:45:02 +09:00
Wang 7c5c2692fc Update content/ja/docs/tasks/debug-application-cluster/debug-application.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:44:56 +09:00
Wang 295c5139c1 Update audit.md 2022-01-03 08:43:52 +09:00
Wang 180187a4ac Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:43:13 +09:00
Wang e3837be65c Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:43:07 +09:00
Wang 4bfe55f6c5 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:43:00 +09:00
Wang 8aa713d39d Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:42:53 +09:00
Wang 6f8e01f3fd Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:42:46 +09:00
Wang b42062ad97 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:42:29 +09:00
Wang a85d4b8bec Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:42:21 +09:00
Wang 00a454f43d Update crictl.md 2022-01-03 08:37:15 +09:00
Wang eb47f5b6c0 Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:36:15 +09:00
Wang 3a2047889e Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:36:04 +09:00
Wang b7c7c6cd66 Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:35:58 +09:00
Wang 0d9ed1dc00 Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:35:38 +09:00
Wang b88e373e01 Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:35:29 +09:00
Wang 3b64cd5703 Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:35:22 +09:00
Wang c0b89323cc Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:35:15 +09:00
Wang 80a4405e77 Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:35:06 +09:00
Wang 6b6f2aa762 Update content/ja/docs/tasks/debug-application-cluster/crictl.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-03 08:34:58 +09:00
Wang 20ff4dba3b Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:34:05 +09:00
Wang 481d62f957 Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:33:34 +09:00
Wang 1c9b990b4a Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:33:21 +09:00
Wang 8fcbeb9b9a Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: Ryota Yamada <42636694+riita10069@users.noreply.github.com>
2022-01-03 08:33:08 +09:00
Arhell e0e58ace5b [id] remove Open vSwitch 2022-01-03 00:40:32 +02:00
Ryota Yamada 6530c8c1ee Update nodes.md 2022-01-02 18:32:17 +09:00
Ryota Yamada 5b8e9f9684 Update content/ja/docs/concepts/architecture/nodes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:30:57 +09:00
Ryota Yamada a7e39dfeea Update content/ja/docs/concepts/architecture/nodes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:30:48 +09:00
Ryota Yamada 6cc732a817 Update content/ja/docs/concepts/architecture/nodes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:30:37 +09:00
Ryota Yamada db97e76b41 Update content/ja/docs/concepts/architecture/nodes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:30:19 +09:00
Ryota Yamada dc5509d107 Update content/ja/docs/concepts/architecture/nodes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:30:09 +09:00
Ryota Yamada a4e66916cc Update content/ja/docs/concepts/architecture/nodes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:30:03 +09:00
Ryota Yamada 396ce8ed36 Update content/ja/docs/concepts/architecture/nodes.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:29:57 +09:00
Ryota Yamada 7a4cc6ca66 Update secret.md 2022-01-02 18:28:03 +09:00
Ryota Yamada 61cbfe80b2 Update content/ja/docs/concepts/configuration/secret.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:25:37 +09:00
Ryota Yamada 76fdf0e3e6 Update content/ja/docs/concepts/configuration/secret.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:25:32 +09:00
Ryota Yamada 6c6d267a48 Update content/ja/docs/concepts/configuration/secret.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:25:23 +09:00
Ryota Yamada f829e1698d Update content/ja/docs/concepts/configuration/secret.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:25:12 +09:00
Ryota Yamada 93c0c2a514 Update content/ja/docs/concepts/configuration/secret.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:25:03 +09:00
Ryota Yamada e0d3ec65b6 Update content/ja/docs/concepts/configuration/secret.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:24:53 +09:00
Ryota Yamada 8dd92746a4 Update content/ja/docs/concepts/security/pod-security-standards.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2022-01-02 18:23:07 +09:00
Kubernetes Prow Robot 0a474e749a Merge pull request #30451 from nuka137/pr-1
[ja] Translate setup/best-practices/cluster-large/ into Japanese
2022-01-02 01:22:51 -08:00
Kubernetes Prow Robot 60564dbb31 Merge pull request #31104 from championshuttler/ptmmultus
[pt-br] Remove link to compromised github account
2022-01-01 17:40:52 -08:00
Kubernetes Prow Robot 22a8da2641 Merge pull request #31165 from shuaijinchao/zh/sync/pods/init-containers
[zh] synchronize translate init-containers.md
2022-01-01 17:38:51 -08:00
Kubernetes Prow Robot 2c40d62eb4 Merge pull request #31164 from shuaijinchao/zh/sync/pods/ephemeral-containers
[zh] synchronize translate ephemeral-containers.md
2022-01-01 17:36:52 -08:00
Kubernetes Prow Robot 7664653a32 Merge pull request #31166 from shuaijinchao/zh/sync/pods/disruptions
[zh] synchronize translate disruptions.md
2022-01-01 17:34:52 -08:00
Kubernetes Prow Robot 00b23e997f Merge pull request #31167 from Arhell/fix-shell
[zh] fix shell typo
2022-01-01 16:50:52 -08:00
Arhell 5052aa6c03 [zh] fix shell typo 2022-01-02 02:07:37 +02:00
帅进超 55e10f26e3 [zh] synchronize translate disruptions.md 2022-01-02 00:22:00 +08:00
帅进超 8e503d8d78 [zh] synchronize translate init-containers.md 2022-01-02 00:09:58 +08:00
帅进超 a6d8235891 [zh] synchronize translate ephemeral-containers.md 2022-01-02 00:00:25 +08:00
Kubernetes Prow Robot 76b01c2063 Merge pull request #31154 from tengqm/fix-31153
[zh] Fix markdown error
2022-01-01 04:34:51 -08:00
Kubernetes Prow Robot ec67f839a2 Merge pull request #30969 from tengqm/zh-webhookadmission-api
[zh] Translate WebhookAdmission API
2022-01-01 04:32:52 -08:00
Kubernetes Prow Robot fe1cc9999d Merge pull request #30967 from tengqm/zh-audit-api
[zh] Translate audit API reference
2022-01-01 04:30:53 -08:00
Kubernetes Prow Robot 1179306f4b Merge pull request #31053 from sftim/20211221_include_netlify_preview_screenshot
Add screenshot of GitHub showing link to Netlify preview
2021-12-31 12:40:51 -08:00
Alex McCarthy f424739d9c Fix grammar in kubernetes dashboard docs
Start a new sentence after a period.
2021-12-31 07:06:04 -10:00
riita10069 82a201cf3f replace link to en 2022-01-01 01:42:28 +09:00
Kubernetes Prow Robot 05df45aaf5 Merge pull request #31157 from howieyuen/zh/tutorials/_index
[zh]resync content/zh/docs/tutorials/_index.md
2021-12-31 02:36:51 -08:00
howieyuen 28de411751 [zh]resync content/zh/docs/tutorials/_index.md 2021-12-31 17:15:06 +08:00
Kubernetes Prow Robot 900a811406 Merge pull request #31150 from shuaijinchao/zh/sync/access-application-cluster/access-cluster
[zh] synchronize translate access-cluster.md
2021-12-30 22:10:50 -08:00
Qiming Teng a59221cf89 [zh] Fix markdown error 2021-12-31 13:54:12 +08:00
Kubernetes Prow Robot e66a6c9819 Merge pull request #31149 from shuaijinchao/zh/sync/access-application-cluster/connecting-frontend-backend
[zh] synchronize translate connecting-frontend-backend.md
2021-12-30 19:48:51 -08:00
Kubernetes Prow Robot 4daa800efb Merge pull request #31148 from shuaijinchao/zh/sync/access-application-cluster/list-all-running-container-images
[zh] synchronize translate list-all-running-container-images.md
2021-12-30 18:42:51 -08:00
Kubernetes Prow Robot 7838e753aa Merge pull request #31152 from Arhell/fix
[id] fix ref
2021-12-30 16:40:51 -08:00
Arhell fb6d636f14 [id] fix ref 2021-12-31 00:40:15 +02:00
Kubernetes Prow Robot 543e3f3b5f Merge pull request #30450 from nuka137/pr-2
[ja] Fix: link to ja/docs/concepts/extend-kubernetes/operator/ in ja/docs/concepts/extend-kubernetes/
2021-12-30 08:40:50 -08:00
Kubernetes Prow Robot 34354d0f33 Merge pull request #31147 from shuaijinchao/zh/sync/configure-pod-container/static-pod
[zh] synchronize translate static-pod.md
2021-12-30 04:32:51 -08:00
bang9211 1badd802c3 Translate tasks/run-application/scale-stateful-set.md in Korean 2021-12-30 21:09:23 +09:00
帅进超 23aaa92e74 [zh] synchronize translate access-cluster.md 2021-12-30 19:30:02 +08:00
帅进超 bcb5f93d5a [zh] synchronize translate connecting-frontend-backend.md 2021-12-30 19:04:52 +08:00
帅进超 16f9fcaace [zh] synchronize translate list-all-running-container-images.md 2021-12-30 18:58:59 +08:00
帅进超 4ad404518a [zh] synchronize translate static-pod.md 2021-12-30 18:46:39 +08:00
Kubernetes Prow Robot b99aa2336a Merge pull request #31033 from jihoon-seo/211220_Outdated_M62
[ko] Update outdated files in dev-1.23-ko.1 (M62-M70)
2021-12-29 23:52:50 -08:00
Kubernetes Prow Robot a3e5e08292 Merge pull request #30963 from jihoon-seo/211215_Outdated_M17
[ko] Update outdated files in dev-1.23-ko.1 (M17-M24)
2021-12-29 23:50:50 -08:00
Kubernetes Prow Robot 8143f8a488 Merge pull request #30915 from jihoon-seo/211214_Outdated_M1
[ko] Update outdated files in dev-1.23-ko.1 (M1-M12)
2021-12-29 23:48:50 -08:00
Jihoon Seo 1d1928e173 [ko] Update outdated files in dev-1.23-ko.1 M17-24 2021-12-30 16:38:05 +09:00
Kubernetes Prow Robot ed16058154 Merge pull request #31143 from Arhell/upd
[ru] fix typo
2021-12-29 22:46:50 -08:00
Kubernetes Prow Robot 75b13933ee Merge pull request #31144 from mengjiao-liu/fix-style-guide-zh
[zh]Fix translation errors on style-guide.md
2021-12-29 21:54:50 -08:00
Mengjiao Liu 6b32203dec [zh]Fix translation errors on style-guide.md 2021-12-30 10:59:11 +08:00
Kubernetes Prow Robot 78043d78f3 Merge pull request #30968 from tengqm/zh-client-auth
[zh] Translate client-authentication v1 API reference
2021-12-29 18:38:50 -08:00
Kubernetes Prow Robot 31eabc70db Merge pull request #31135 from shuaijinchao/zh/sync/configure-pod-container/pull-image-private-registry
[zh] synchronize translate pull-image-private-registry.md
2021-12-29 18:34:50 -08:00
Jihoon Seo aa161ad833 [ko] Update outdated files in dev-1.23-ko.1 M1-M12 2021-12-30 11:09:50 +09:00
Kubernetes Prow Robot 08ffbe85cb Merge pull request #31134 from shuaijinchao/zh/sync/configure-pod-container/configure-service-account
[zh] synchronize translate configure-service-account.md
2021-12-29 16:56:49 -08:00
Kubernetes Prow Robot 92ad948e4b Merge pull request #31133 from shuaijinchao/zh/sync/configure-pod-container/configure-projected-volume-storage
[zh] synchronize translate configure-projected-volume-storage.md
2021-12-29 16:54:50 -08:00
Kubernetes Prow Robot c67b7ba821 Merge pull request #31136 from shuaijinchao/zh/sync/configure-pod-container/configure-persistent-volume-storage
[zh] synchronize translate configure-persistent-volume-storage.md
2021-12-29 16:52:50 -08:00
Kubernetes Prow Robot be3969eaba Merge pull request #31137 from shuaijinchao/zh/sync/configure-pod-container/security-context
[zh] synchronize translate security-context.md
2021-12-29 16:50:50 -08:00
Arhell 3edbc732dc [ru] fix typo 2021-12-30 00:25:30 +02:00
Kubernetes Prow Robot 71281e7193 Merge pull request #31017 from gamba47/security-1
[es] Add concepts/security/controlling-access.md
2021-12-29 13:05:21 -08:00
gamba47 eab7b6cbdc [es] Creating first disruptoins.md file 2021-12-29 15:24:13 -03:00
Emilano Vazquez 9a577a0ed6 Apply suggestions from code review
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:52:22 -03:00
Emilano Vazquez 1e82410a0a Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:47:19 -03:00
Emilano Vazquez 04187d06d6 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:47:06 -03:00
Emilano Vazquez a5b79e7fd1 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:46:43 -03:00
Emilano Vazquez 73de7ea1e3 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:46:24 -03:00
Emilano Vazquez 732887cef6 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:45:51 -03:00
Emilano Vazquez d1517c5dd9 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:45:38 -03:00
Emilano Vazquez 701dd37d61 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:45:23 -03:00
Emilano Vazquez a4923189e5 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:43:03 -03:00
Emilano Vazquez 3305c6ab76 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:41:26 -03:00
Emilano Vazquez efc15f6fe4 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:40:53 -03:00
Emilano Vazquez 0a621a0f41 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:40:31 -03:00
Emilano Vazquez 99bb072879 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:39:48 -03:00
Emilano Vazquez 6f1f2d600a Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:39:19 -03:00
Emilano Vazquez d319828a17 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:38:56 -03:00
Emilano Vazquez c3abe90f0c Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:38:39 -03:00
Emilano Vazquez fed463149e Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:38:34 -03:00
Emilano Vazquez c2593677fa Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:38:26 -03:00
Emilano Vazquez 1e4927b59c Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:37:38 -03:00
Emilano Vazquez f9541ec21d Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:37:28 -03:00
Emilano Vazquez 900b959b52 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:36:56 -03:00
Emilano Vazquez 46b06953e5 Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:36:45 -03:00
Emilano Vazquez fc7b76afcb Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:36:32 -03:00
Emilano Vazquez e4358a121f Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:36:18 -03:00
Emilano Vazquez b911ddeb5b Update content/es/docs/concepts/security/controlling-access.md
Co-authored-by: Rael Garcia <rael@rael.io>
2021-12-29 12:36:00 -03:00
帅进超 5d83710f18 [zh] synchronize translate security-context.md 2021-12-29 23:07:30 +08:00
帅进超 4916d4bd81 [zh] synchronize translate configure-persistent-volume-storage.md 2021-12-29 22:59:13 +08:00
帅进超 a6bc41f9aa [zh] synchronize translate pull-image-private-registry.md 2021-12-29 22:38:56 +08:00
帅进超 808117bf10 [zh] synchronize translate configure-service-account.md 2021-12-29 20:42:17 +08:00
帅进超 1c746e3799 [zh] synchronize translate configure-projected-volume-storage.md 2021-12-29 20:28:42 +08:00
Kubernetes Prow Robot ff4e472dcf Merge pull request #31124 from championshuttler/fixLink2
[es] Update deployment components.yaml link
2021-12-29 04:01:35 -08:00
帅进超 49cfb48993 [zh] synchronize translate local-debugging.md (#31111)
* [zh] synchronize translate local-debugging.md

* [zh] fix local-debugging.md chinese syntax
2021-12-29 03:45:36 -08:00
Kubernetes Prow Robot 19ad4fef79 Merge pull request #31130 from shuaijinchao/zh/sync/network/validate-dual-stack
[zh] synchronize translate validate-dual-stack.md
2021-12-29 02:13:35 -08:00
Kubernetes Prow Robot 801e9613a8 Merge pull request #31132 from Arhell/fix
[fr] fix broken ref
2021-12-29 01:39:35 -08:00
帅进超 f6b21172fd [zh] synchronize translate create-cluster-kubeadm.md (#31095)
* [zh] synchronize translate create-cluster-kubeadm.md

* [zh] synchronize translate create-cluster-kubeadm.md
2021-12-29 01:37:35 -08:00
Kubernetes Prow Robot 92385de821 Merge pull request #31092 from shuaijinchao/zh/sync/translate/install-kubeadm
[zh] synchronize translate install-kubeadm.md
2021-12-29 01:35:35 -08:00
帅进超 55cb1300db [zh] sync translation troubleshooting-kubeadm.md (#31084)
* [zh] sync translation troubleshooting-kubeadm.md

* [zh] add **Note** englisg comment
2021-12-29 01:33:35 -08:00
帅进超 13bf9ad8db [zh] synchronize translate kubelet-integration.md (#31096)
* [zh] synchronize translate kubelet-integration.md

* [zh] update kubelet-integration.md review question
2021-12-28 23:07:35 -08:00
Kubernetes Prow Robot 1d1c22e817 Merge pull request #31091 from mengjiao-liu/remove_compromised_link_zh
[zh]Remove link to compromised github account
2021-12-28 23:03:35 -08:00
帅进超 af5266886b [zh] synchronize translate validate-dual-stack.md 2021-12-29 12:19:18 +08:00
Kubernetes Prow Robot d88fee82a1 Merge pull request #31125 from championshuttler/idlink
[id] Fix configuration overview example link
2021-12-28 19:55:34 -08:00
Kubernetes Prow Robot ef866fd9e4 Merge pull request #31129 from shuaijinchao/zh/sync/manage-kubernetes-objects/kustomization
[zh] synchronize translate kustomization.md
2021-12-28 18:19:34 -08:00
Kubernetes Prow Robot b7baaf3212 Merge pull request #31128 from shuaijinchao/zh/remove/administer-cluster/enabling-topology-aware-hints
[zh] synchronize remove enabling-topology-aware-hints.md
2021-12-28 18:17:34 -08:00
Kubernetes Prow Robot c1aff4a64e Merge pull request #31122 from mengjiao-liu/fix-resource-metrics-pipeline.md
[zh]Update deployment components.yaml link
2021-12-28 18:13:34 -08:00
Tammer Saleh 19845f593e The schedule: "*/1 * * * *" is the same as "* * * * *" 2021-12-29 00:19:02 +00:00
Arhell ba14c59125 [fr] fix broken ref 2021-12-29 00:36:55 +02:00
Kubernetes Prow Robot 31f9762ce7 Merge pull request #31007 from Rossalli/main
[pt-br] update operator framework link
2021-12-28 09:42:18 -08:00
帅进超 d1fd91700c [zh] synchronize translate kustomization.md 2021-12-28 21:28:58 +08:00
帅进超 bc15e3b176 [zh] synchronize remove enabling-topology-aware-hints.md 2021-12-28 21:04:39 +08:00
Shivam Singhal 8b64e432a3 [pt] Fix configuration overview example link 2021-12-28 14:47:25 +02:00
Shivam Singhal 77f9daaa7b [ja] Fix configuration overview example link 2021-12-28 14:46:29 +02:00
Shivam Singhal bf6ef207f6 [es] Fix configuration overview example link 2021-12-28 14:45:40 +02:00
Shivam Singhal 0433977caa [es] Update deployment components.yaml link 2021-12-28 13:40:59 +02:00
Kubernetes Prow Robot 0d9f0d6f7c Merge pull request #31082 from shuaijinchao/zh/sync/kubespray
[zh] synchronization kubespray.md
2021-12-28 01:28:19 -08:00
Kubernetes Prow Robot 49c8195c8e Merge pull request #31119 from shuaijinchao/zh/sync/services-networking/topology-aware-hints
[zh] synchronize translate topology-aware-hints.md
2021-12-28 01:14:18 -08:00
Kubernetes Prow Robot 563619ec84 Merge pull request #31116 from shuaijinchao/zh/remove/administer-cluster/highly-available-master
[zh] synchronize remove highly-available-master.md
2021-12-28 00:34:19 -08:00
Mengjiao Liu 66317b0197 [zh]Update deployment components.yaml link 2021-12-28 14:46:39 +08:00
帅进超 7ab1bf2020 [zh] synchronize translate resource-metrics-pipeline.md (#31099)
* [zh] synchronize translate resource-metrics-pipeline.md

* [zh] fix resource-metrics-pipeline.md english spelling error
2021-12-27 22:36:19 -08:00
Kubernetes Prow Robot d82e8aab85 Merge pull request #31113 from Arhell/fix-link
[es] fix broken ref
2021-12-27 21:00:18 -08:00
Kubernetes Prow Robot 96536fd025 Merge pull request #31117 from shuaijinchao/zh/sync/services-networking/service-traffic-policy
[zh] synchronize translate service-traffic-policy.md
2021-12-27 18:36:19 -08:00
Kubernetes Prow Robot 30c4dbafdb Merge pull request #31115 from shuaijinchao/zh/remove/administer-cluster/out-of-resource
[zh] synchronize remove out-of-resource.md
2021-12-27 18:34:19 -08:00
Kubernetes Prow Robot 2a33d864d7 Merge pull request #31073 from shuaijinchao/zh/sync/install-kubectl
[zh] synchronize install-kubectl-*.md
2021-12-27 18:32:18 -08:00
ptux b645bc7890 remove the En content 2021-12-28 10:34:43 +09:00
Wang edcac816d7 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:33:04 +09:00
Wang ea1368d271 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:32:54 +09:00
Wang 463a2ae5ad Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:32:46 +09:00
Wang 6836db14a1 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:32:33 +09:00
Wang 887ee7c11d Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:32:22 +09:00
Wang 464efc69f7 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:32:12 +09:00
Wang dc60343888 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:31:59 +09:00
Wang ca6b01b7c1 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:31:47 +09:00
Wang 940dbeddd7 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:31:33 +09:00
Arhell 8bf9cb8ccc [es] fix broken ref 2021-12-28 03:31:05 +02:00
Wang 518bfe85e1 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:31:01 +09:00
Wang 08f17252ff Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:30:49 +09:00
Wang 683af6800e Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:30:37 +09:00
Wang 5091e15ec8 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:30:13 +09:00
Wang f08434993d Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:30:06 +09:00
Wang fc62908083 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:29:58 +09:00
Wang 1e498bf031 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:29:52 +09:00
Wang ad11be4449 Update content/ja/docs/tasks/debug-application-cluster/audit.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-28 10:29:46 +09:00
ptux 8b0c67d651 fix 2021-12-28 10:29:00 +09:00
ptux 758a490655 change to English reference 2021-12-28 10:24:54 +09:00
Kubernetes Prow Robot ebe842eb1f Merge pull request #30947 from marosset/windows-add-ws2022-as-supported
Updating intro-windows-in-k8s for 1.23
2021-12-27 09:21:16 -08:00
Kubernetes Prow Robot 3c6d913e9b Merge pull request #31118 from meysam81/meysam/fix-typo
fix: modify typo ✏️
2021-12-27 09:17:17 -08:00
帅进超 b78e98435d [zh] synchronize translate topology-aware-hints.md 2021-12-28 01:06:50 +08:00
Meysam Azad 12ab3aecca fix: modify typo ✏️ 2021-12-27 19:51:29 +03:00
帅进超 3353dc99d2 [zh] synchronize translate service-traffic-policy.md 2021-12-28 00:51:25 +08:00
帅进超 0f2c1e397d [zh] synchronize remove highly-available-master.md 2021-12-28 00:36:14 +08:00
帅进超 5a89da60f6 [zh] synchronize remove out-of-resource.md 2021-12-28 00:30:21 +08:00
Kubernetes Prow Robot 72b65adec6 Merge pull request #31037 from erpel/patch-1
Update Release Managers Link
2021-12-27 07:55:16 -08:00
Kubernetes Prow Robot 1ed5d14dc7 Merge pull request #30723 from YuikoTakada/29770_ja
[ja]Apply changes in #29770
2021-12-27 07:53:16 -08:00
帅进超 c8dd92370c [zh] synchronize translate debug-service.md (#31106)
* [zh] synchronize translate debug-service.md

* [zh] fix debug-service.md chinese syntax
2021-12-27 00:47:16 -08:00
Kubernetes Prow Robot b71a1d4d58 Merge pull request #31101 from championshuttler/komultus
[ko] Remove link to compromised github account
2021-12-26 18:57:16 -08:00
Kubernetes Prow Robot e7d3992fbb Merge pull request #31109 from Arhell/remove-link
[ru] remove link
2021-12-26 01:21:14 -08:00
Kubernetes Prow Robot b828a16d0c Merge pull request #31085 from Arhell/remove
[ja] remove link
2021-12-25 18:03:14 -08:00
liutao 9bb892ea52 [zh] Update rbac.md (#29795)
* Update rbac.md

* Update rbac.md
2021-12-25 17:47:14 -08:00
Kubernetes Prow Robot 66032f9bc6 Merge pull request #31079 from championshuttler/kep
Fix the description of the Summary API Source section
2021-12-25 17:43:14 -08:00
Kubernetes Prow Robot e2ceb1f292 Merge pull request #31098 from shuaijinchao/zh/sync/debug-application-cluster/audit
[zh] synchronize translate audit.md
2021-12-25 17:25:14 -08:00
Kubernetes Prow Robot 830690121c Merge pull request #31097 from shuaijinchao/zh/sync/debug-application-cluster/debug-running-pod
[zh] synchronize translate debug-running-pod.md
2021-12-25 17:23:14 -08:00
Arhell 18fef835e5 [ru] remove link 2021-12-26 01:35:03 +02:00
Shivam Singhal 7a3b13dbff [pt-br] Remove link to compromised github account 2021-12-25 12:18:00 +02:00
Shivam Singhal 9ffe2de5ed [ko] Remove link to compromised github account 2021-12-25 12:15:28 +02:00
Shivam Singhal f838de347c [ja] Remove link to compromised github account 2021-12-25 12:14:48 +02:00
帅进超 51339b4f27 [zh] synchronize translate audit.md 2021-12-25 13:12:21 +08:00
帅进超 e721f4cb75 [zh] synchronize translate debug-running-pod.md 2021-12-25 12:56:52 +08:00
Kubernetes Prow Robot b28b1d3474 Merge pull request #31094 from shuaijinchao/zh/sync/translate/control-plane-flags
[zh] synchronize translate control-plane-flags.md
2021-12-24 18:19:14 -08:00
帅进超 b52b41f4b9 [zh] synchronize translate control-plane-flags.md 2021-12-24 22:22:42 +08:00
帅进超 bd23cf9dc7 [zh] add english comment to install-kubeadm.md 2021-12-24 21:35:06 +08:00
帅进超 e5d630cdbd [zh] synchronize translate install-kubeadm.md 2021-12-24 21:30:35 +08:00
Mengjiao Liu c3ce07f6b2 [zh] Remove link to compromised github account 2021-12-24 18:00:09 +08:00
Swift 1522ac81ff Update scripts/verify-spelling.sh
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-24 15:28:36 +08:00
Swift 42780f388d Update scripts/verify-spelling.sh
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-24 15:28:21 +08:00
kartik494 c7b9b20083 Added a note for CRD improvement in Docs 2021-12-24 11:31:45 +05:30
ptux 410ca70027 fix 2021-12-24 14:21:31 +09:00
ptux 2416f95686 done 2021-12-24 14:19:19 +09:00
Kobayashi Daisuke 74586913db fix translation 2021-12-24 13:37:00 +09:00
Kobayashi Daisuke 13f3c2a6db Remove unnecessary spaces 2021-12-24 13:14:14 +09:00
Kubernetes Prow Robot 930081f60e Merge pull request #31083 from shuaijinchao/zh/sync/services-networking/service
[zh] synchronize services-networking/service.md
2021-12-23 16:34:14 -08:00
Arhell 224143d89b [ja] remove link 2021-12-24 02:15:59 +02:00
帅进超 1ffdb4f760 [zh] update services-networking/service.md text 2021-12-23 22:56:55 +08:00
帅进超 c2dc6d3dbe [zh] synchronize services-networking/service.md 2021-12-23 22:51:22 +08:00
Kubernetes Prow Robot 781410ddec Merge pull request #30820 from Arhell/upd
[ja] updated crictl version
2021-12-23 03:40:36 -08:00
帅进超 46b34161a4 [zh] update kubespray.md format 2021-12-23 18:50:42 +08:00
Kobayashi Daisuke 1dbece9860 Translate service-traffic-policy into Japanese 2021-12-23 18:49:52 +09:00
帅进超 31ca1631b0 [zh] synchronization kubespray.md 2021-12-23 17:34:05 +08:00
Kubernetes Prow Robot a37ee3a9e8 Merge pull request #31080 from glongzh/main
Update configmap docs with subpath limitation
2021-12-23 01:12:37 -08:00
Philipp Erbelding f62a5eb677 Apply suggestions from code review
Obviously the better approach. I was not familiar enough with how which repo corresponds to which site and just blindly followed the link in the placeholder.

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-23 09:29:49 +01:00
glongzh b56ba23397 Update content/en/docs/concepts/configuration/configmap.md
Co-authored-by: divya-mohan0209 <divya.mohan0209@gmail.com>
2021-12-23 16:05:25 +08:00
Kobayashi Daisuke 3fb0bf8391 Fix the commented point 2021-12-23 15:13:38 +09:00
glongzh 19ab41d4b8 Update configmap docs with subpath limitation
This note should be added to avoid confusion just as [Secrets](/docs/concepts//configuration/secret#mounted-secrets-are-updated-automatically)
2021-12-23 10:23:23 +08:00
Shivam Singhal 9aa7f71e45 Fix the description of the Summary API Source section 2021-12-23 04:04:40 +02:00
帅进超 18758d7614 [zh] synchornize remove install-kubectl-gcloud.md (#31074)
* [zh] synchornize remove install-kubectl-gcloud.md

* [zh] remove install-kubectl-gcloud.md qoute
2021-12-22 16:04:36 -08:00
IceCodeNew 6b75caef74 [zh] Translate blog/storage-in-tree-to-csi-migration-status-update (#31068)
* Initiate the translating work

Signed-off-by: IceCodeNew <32576256+IceCodeNew@users.noreply.github.com>

* Adopt the recommendations giving by reviewer

Credit to `tengqm`.

Signed-off-by: IceCodeNew <32576256+IceCodeNew@users.noreply.github.com>
2021-12-22 16:02:36 -08:00
Shivam Singhal 7a2863b99a Cleanup notes in Define a Command and Arguments docs 2021-12-22 23:42:55 +02:00
帅进超 ea28345fd4 [zh] synchronize install-kubectl-*.md 2021-12-22 21:22:20 +08:00
Kubernetes Prow Robot 084b840a03 Merge pull request #31071 from shuaijinchao/zh/translate/optional-kubectl-configs-pwsh
[zh] translate optional-kubectl-configs-pwsh.md
2021-12-22 05:01:35 -08:00
帅进超 4866812e8b [zh] translate optional-kubectl-configs-pwsh.md 2021-12-22 20:13:28 +08:00
Kubernetes Prow Robot cdeca91910 Merge pull request #30166 from stefanlasiewski/patch-1
sha256sum requires 2nd space for the file type
2021-12-22 01:29:35 -08:00
帅进超 bddfa4f82f [zh] sync translation of ingress minikube page (#31027)
* [zh] verification methods of different minikube versions of ingress

* [zh] sync translation of ingress minikube content page

* [zh] update translate comment struct
2021-12-22 00:03:36 -08:00
Kubernetes Prow Robot 74a3573ed7 Merge pull request #31057 from championshuttler/faqq
Add blog post link to dockershim removal faq
2021-12-21 22:57:35 -08:00
Kobayashi Daisuke ac1710e060 fix title 2021-12-22 15:22:29 +09:00
Kobayashi Daisuke b2e3c4a78e modify some words 2021-12-22 15:12:10 +09:00
Kobayashi Daisuke 7719b8a0fe Fix build error 2021-12-22 14:24:35 +09:00
Kobayashi Daisuke 74da123ef9 [ja] Translate docs/concepts/architecture/garbage-
collection into Japanese
2021-12-22 14:13:34 +09:00
Bobae Kim a50453f753 Added update log
Co-authored-by: Rey Lejano <rlejano@gmail.com>
2021-12-22 13:58:19 +09:00
Kubernetes Prow Robot 3500303928 Merge pull request #29676 from kvaps/kink-and-pxe
blog: Add Kubernetes-in-Kubernetes and PXE bootable servers farm blog post
2021-12-21 17:37:35 -08:00
Kubernetes Prow Robot 3ddd14415f Merge pull request #30826 from tengqm/fix-configapi-123
Improve configuration API for 1.23
2021-12-21 17:35:35 -08:00
Tim Bannister 7b34155a24 Update article publication date 2021-12-22 01:32:28 +00:00
Kubernetes Prow Robot dffd3a86ec Merge pull request #30960 from tengqm/fix-examples
Fix examples
2021-12-21 17:17:35 -08:00
Kubernetes Prow Robot 2521d09aff Merge pull request #29227 from sftim/20210804_tweak_resource_limiting_troubleshooting_advice
Tweak advice about managing resources for containers
2021-12-21 17:13:36 -08:00
Kubernetes Prow Robot 4c5b12c986 Merge pull request #31052 from mengjiao-liu/sync-cloud-controller.md
[zh] Resync cloud-controller.md
2021-12-21 16:41:36 -08:00
Shivam Singhal c727a0078d Add blog post link to dockershim removal faq 2021-12-22 00:55:06 +02:00
Andrei Kvapil 97fdfdb06b Add Kubernetes-in-Kubernetes and PXE bootable servers farm blog post
Co-authored-by: Deepak Gupta <deepakgdkg1g8868@gmail.com>
Co-authored-by: Tim Bannister <tim@scalefactory.com>

Signed-off-by: Andrei Kvapil <kvapss@gmail.com>
2021-12-21 22:53:47 +01:00
Tim Bannister b9afbb97c1 Upgrade to Mermaid 8.13.0
static/js/mermaid.min.js as fetched from https://cdn.jsdelivr.net/npm/mermaid@8.13.0/dist/mermaid.min.js
2021-12-21 18:55:19 +00:00
Tim Bannister e66d19ff6e Improve message shown for Mermaid when JS not enabled 2021-12-21 18:54:46 +00:00
Kubernetes Prow Robot 4c14f7f840 Merge pull request #29904 from sftim/20211003_mark_when_javascript_available
Mark when JavaScript is available
2021-12-21 09:48:46 -08:00
Tim Bannister 7f1f16746f Include screenshot showing Netlify preview 2021-12-21 11:39:10 +00:00
Mengjiao Liu 50afb9c00a [zh] Resync cloud-controller.md 2021-12-21 18:56:46 +08:00
Kubernetes Prow Robot 271416521a Merge pull request #31026 from tengqm/zh-kubeadm-ref-v1beta3
[zh] Translate kubeadm config v1beta3 reference
2021-12-21 01:28:46 -08:00
chen f767c7171b update easegress link 2021-12-21 17:25:10 +08:00
Kubernetes Prow Robot 2f667e93a4 Merge pull request #31039 from gtsystem/add-lightkube-link
Add link to lightkube in Community-maintained client libraries.
2021-12-21 01:18:45 -08:00
Giuseppe Tribulato ff7726faf1 Add link to lightkube in Community-maintained client libraries. 2021-12-20 20:21:09 +01:00
Kubernetes Prow Robot 05974ae3da Merge pull request #31041 from chrismetz09/patch-3
Diagram-Guide: corrected Figure 10 caption
2021-12-20 10:55:33 -08:00
chrismetz09 da6826f5cc Diagram-Guide: corrected Figure 10 caption
for Figure 10 in How to use captions section
2021-12-20 09:55:54 -08:00
Kubernetes Prow Robot cd9b5a9cdd Merge pull request #31029 from Arhell/remove-link
[pt-br] remove link
2021-12-20 09:16:56 -08:00
Kubernetes Prow Robot 5782f65264 Merge pull request #31004 from clementnuss/patch-1
docs: add link to a new kubelet csr approver
2021-12-20 07:04:56 -08:00
Clément Nussbaumer 65eaccecf5 remove kubeler-rubber-stamp
Due to it not being compatible with K8s 1.22 anymore and not being maintained either
2021-12-20 14:10:13 +01:00
Kubernetes Prow Robot 787b92dff0 Merge pull request #28557 from jihoon-seo/210622_no_Remove_exec_permission_on_markdown_files
[no] Remove exec permission on markdown files
2021-12-20 05:09:25 -08:00
Qiming Teng e05a28c402 [zh] Translate kubeadm config ref v1beta2 2021-12-20 21:07:10 +08:00
Kubernetes Prow Robot 3e257a1c3d Merge pull request #31002 from Sn-Kinos/patch-1
[ko] Replace smart quote
2021-12-20 04:51:25 -08:00
Kubernetes Prow Robot 7191d32055 Merge pull request #31034 from didicodes/third-party
Adding third party shortcode to the Telepresence content
2021-12-20 04:47:25 -08:00
Qiming Teng fcd6c8e046 [zh] Translation of the kube-proxy configuration struct 2021-12-20 18:49:53 +08:00
Kubernetes Prow Robot 1834fd35bc Merge pull request #31022 from Arhell/remove
[it] remove link
2021-12-20 02:21:25 -08:00
Kubernetes Prow Robot 3e24647c3c Merge pull request #31036 from xmudrii/jan-22-cycle
patches: update patch release calendar for January 2022 cycle
2021-12-20 01:29:26 -08:00
Philipp Erbelding 81238ea7ff Update Release Managers Link
Link lead to redirec/placeholder due for deletion on December 31st 2021
2021-12-20 09:55:05 +01:00
Marko Mudrinić 59e2125b8f patches: update patch release calendar for January 2022 cycle
Signed-off-by: Marko Mudrinić <mudrinic.mare@gmail.com>
2021-12-20 09:47:13 +01:00
Edidiong Asikpo 80f38982fe Added the {{% thirdparty-content %}} shortcode 2021-12-20 08:04:37 +01:00
Jihoon Seo fdde76a4ce [ko] Update outdated files in dev-1.23-ko.1 M62-70 2021-12-20 16:02:29 +09:00
Kubernetes Prow Robot 485518468b Merge pull request #31028 from didicodes/telepresence
Update: Developing and debugging services locally
2021-12-19 22:19:25 -08:00
Qiming Teng bce7fb57e2 Improve configuration API for 1.23
The previous commit for configuration APIs has some nits to fix:

- The client-authentication API has both v1beta1 and v1 supported.
  We need to include both.
- The kube-scheduler v1alpha1 is superceded by v1alpha3 which is new.
- The links to some external type definitions should point to the 1.23
  API rather than old versions.
2021-12-20 09:45:38 +08:00
Qiming Teng 58bd2dbf17 [zh] Translate kubeadm config v1beta3 reference 2021-12-20 09:30:01 +08:00
Arhell dc897d639a [pt-br] remove link 2021-12-20 01:08:19 +02:00
Kubernetes Prow Robot 9b7902e20f Merge pull request #31006 from tengqm/rm-sched-policy
Remove kube-scheduler-policy contents
2021-12-19 14:33:25 -08:00
Kubernetes Prow Robot 63a1d5058e Merge pull request #31025 from ptux/patch-10
Update audit.md
2021-12-19 05:33:25 -08:00
Edidiong Asikpo d97147912f Update local debugging documentation 2021-12-19 14:31:35 +01:00
Wang f5df7772f4 Update audit.md 2021-12-19 19:08:46 +09:00
Arhell d82c2558ba [it] remove link 2021-12-19 00:27:38 +02:00
Shivam Singhal 5fee22b574 Fix the link to access cluster service in docs 2021-12-18 12:25:34 +02:00
gamba47 dcf7fa9bb0 terminando primer revision de documento 2021-12-17 23:23:58 -03:00
gamba47 5c18ac1880 commit inicial con archivo base 2021-12-17 23:23:20 -03:00
Qiming Teng f733bbb956 Remove kube-scheduler-policy contents 2021-12-18 09:43:50 +08:00
Kubernetes Prow Robot 59f7c6f39c Merge pull request #28905 from RA489/update_cluster
Improvement to create cluster page
2021-12-17 07:44:29 -08:00
Mike Monteith f7d717d2fe Use --patch-file in documentation
--patch-file is designed for file input, using a subshell `--patch $(cat filename.yaml)` is unecessary
2021-12-17 15:00:35 +00:00
Rossalli a0ae1fdf4d update operator framework link 2021-12-17 11:24:35 -03:00
mahailiang a370ca2b42 [zh] Translate reference/glossary/affinity.md (#30889)
* Translate Reference/glossary/affinity.md

* Translate Reference/glossary/affinity.md

* Translate Reference/glossary/affinity.md
2021-12-17 03:48:30 -08:00
Kubernetes Prow Robot 6f019208b8 Merge pull request #30299 from chrismetz09/metz-diagStyleGuide
Add Diagram Guide to Documentation Style Overview section
2021-12-17 03:40:29 -08:00
Clément Nussbaumer 3e839ef963 docs: add link to a new kubelet csr approver 2021-12-17 09:59:46 +01:00
ptux 1e03a8789a fix typo 2021-12-17 14:59:12 +09:00
Yuiko Mouri 5586b7f01d Apply changes in #29770 2021-12-17 14:39:19 +09:00
Kinos 22d4cdb3f2 replace smart quote 2021-12-17 14:25:35 +09:00
ptux 454031bc32 deletion of these lines is rejected by the upstream pr #30880 2021-12-17 13:23:36 +09:00
Kubernetes Prow Robot 574eca943f Merge pull request #30906 from mattcary/pv-resize
Clarify editing PV for volume resize
2021-12-16 14:54:52 -08:00
Kubernetes Prow Robot 1b12bcc645 Merge pull request #30958 from MikeSpreitzer/fix-105494b
Update NetworkPolicy concept doc for egress
2021-12-16 12:52:52 -08:00
Kubernetes Prow Robot 4832d3026c Merge pull request #30995 from palnabarun/releng/update-release-managers
releng: update release managers and OWNERS_ALIASES
2021-12-16 10:56:54 -08:00
Mike Spreitzer c25398b904 fix typeo in content/en/docs/concepts/services-networking/network-policies.md
Co-authored-by: Chris Negus <cnegus@redhat.com>
2021-12-16 13:45:39 -05:00
Kubernetes Prow Robot 194ef5ac6b Merge pull request #30986 from jimangel/co-chair-tweaks
Updating SIG Co-chair requirements
2021-12-16 08:21:19 -08:00
Kubernetes Prow Robot 78b252f511 Merge pull request #30689 from saschagrunert/spo-release
Add blog post about SPO v0.4.0 release
2021-12-16 08:15:19 -08:00
Tim Bannister 65e92a8f14 Add Docker Engine as container runtime
Mention that the support via Dockershim is deprecated.

Co-Authored-By: Rey Lejano <rlejano@gmail.com>
2021-12-16 16:09:29 +00:00
Kubernetes Prow Robot e2e7843554 Merge pull request #30596 from mattcary/blogpost
StatefulSet AutoDelete blog post
2021-12-16 07:29:19 -08:00
Kubernetes Prow Robot 56d5330950 Merge pull request #30993 from sftim/20211216_blog_fixups
Two small blog fixups
2021-12-16 06:29:18 -08:00
Qiming Teng 26b54b06fb [zh] Translate audit API reference 2021-12-16 21:53:03 +08:00
Nabarun Pal 149d659c70 OWNERS_ALIASES: update release-engineering-* membership
- Promote palnabarun and Verolop to release-engineering-approvers
- Remove hasheddan from release-engineering-approvers

Signed-off-by: Nabarun Pal <pal.nabarun95@gmail.com>
2021-12-16 17:22:19 +05:30
Nabarun Pal 94601ce233 releng: update release managers
Promote Nabarun Pal to Release Manager

Signed-off-by: Nabarun Pal <pal.nabarun95@gmail.com>
2021-12-16 17:17:23 +05:30
Tim Bannister dafeca8b40 Fixup Prevent PersistentVolume leaks blog article
- Add ":" into title
- Fix path in repository
2021-12-16 09:18:33 +00:00
Tim Bannister 4b71eb034b Retitle (published) Pod Security blog article
Make this article's title align with others in the series.
2021-12-16 09:18:09 +00:00
Kubernetes Prow Robot 503f8a478f Merge pull request #30903 from tengqm/update-feature-gates
Update feature gates for 1.23
2021-12-15 18:47:18 -08:00
Kubernetes Prow Robot 4f0b7e5484 Merge pull request #30987 from Arhell/remove
[id] remove link
2021-12-15 17:45:18 -08:00
chrismetz09 f381db2d49 fixed typos 2021-12-15 15:30:28 -08:00
Arhell 7200a76b54 [id] remove link 2021-12-16 00:54:21 +02:00
Jim Angel a331d7b840 Updating SIG Co-chair requirements
Removing archaic requirements for SIG Docs co-chairs. For the record, that I did not fully meet when becoming a co-chair a couple years ago. The current set of requirements hurt more than they help.
2021-12-15 16:11:49 -06:00
Mike Spreitzer eab36f83c9 Update docs/concepts/services-networking/network-policies for egress
That doc did not get fully updated when egress filtering was
introduced.
2021-12-15 15:15:03 -05:00
chrismetz09 e830abc8bd refactored caption section and hyperlinked diagrams to live editor 2021-12-15 12:09:20 -08:00
Mark Rossetti f19ded7dc0 Apply suggestions from code review
Using v{{< skew currentVersion>}} in  windows docs

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-15 09:20:54 -08:00
KimDoubleB e275149785 Update cascade default - background 2021-12-15 23:59:26 +09:00
ystkfujii 19928a83fa Change the dockershim state to deprecation 2021-12-15 21:51:06 +09:00
Kubernetes Prow Robot 51e89f16d4 Merge pull request #30913 from killerkc12/remove-docker-from-node-pressure
Remove docker from Node-pressure Eviction
2021-12-15 03:54:18 -08:00
killerkc12 5de2a04a2f Remove docker from Node-pressure Eviction 2021-12-15 16:59:57 +05:30
Kubernetes Prow Robot 9324262416 Merge pull request #30935 from ahmetb/patch-9
blog: rephrase the article update
2021-12-15 01:06:20 -08:00
Paulo Gomes 7979bad01e Add AppArmor support section
Signed-off-by: Paulo Gomes <pjbgf@linux.com>
2021-12-15 07:59:38 +00:00
Qiming Teng fe1c3e8c53 [zh] Translate WebhookAdmission API 2021-12-15 15:30:03 +08:00
Qiming Teng 1b605ea733 [zh] Translate client-authentication API reference 2021-12-15 15:28:31 +08:00
ystkfujii 1fb9324fc3 remove the section on dockershim 2021-12-15 14:32:10 +09:00
Qiming Teng 5f8e58a2c0 Fix errors detected by the test case
The service account token one must have `serviceAccountName` specified
in order to be successfully validated.
The PV duplicate example can only refer to an existing volume.
2021-12-15 12:50:30 +08:00
Qiming Teng 440ebd1e0e Fix example test code
This commit adapts the example test case to 1.23.
2021-12-15 12:49:45 +08:00
Qiming Teng 04ecc8c663 Update go module for examples test 2021-12-15 12:49:16 +08:00
bglimepoint ab9fdcbe24 Note that subPathExpr uses round brackets.
As it's easy to misread this as curly brackets for users familiar with
shell interpolation.
2021-12-15 04:16:21 +00:00
Kubernetes Prow Robot 1154e19be3 Merge pull request #30656 from chenxuc/authn-authz-1
[zh] sync auth docs
2021-12-14 17:16:18 -08:00
Wang 63d5e34d21 Update crictl.md 2021-12-15 09:05:08 +09:00
Kubernetes Prow Robot e43c5ce2f1 Merge pull request #30926 from sftim/2021-12-14_add_release_dates_data
Add minor release data for recent releases
2021-12-14 14:28:50 -08:00
Kubernetes Prow Robot 29db85089f Merge pull request #30916 from kaihoffman/main
Minor grammar & consistency updates
2021-12-14 13:22:50 -08:00
Mark Rossetti e774004131 Updating intro-windows-in-k8s for 1.23
Signed-off-by: Mark Rossetti <marosset@microsoft.com>
2021-12-14 13:11:54 -08:00
Ahmet Alp Balkan a5da40b917 blog: rephrase the article update
this blog post was modified as part of #29740 but IMO the update note doesn't make it clear enough what's going on.
2021-12-14 11:40:45 -08:00
Tim Bannister eb1dbb4cda Add minor release data for recent releases
This change makes the /releases page look right.
2021-12-14 18:36:54 +00:00
Kubernetes Prow Robot 7012c979f5 Merge pull request #30800 from sftim/20211208_add_v1.23_release
Add v1.23 release to release list
2021-12-14 10:27:47 -08:00
Kubernetes Prow Robot 45342348cd Merge pull request #30924 from sftim/20211214_improve_release_data_shortcode
Improve release data shortcode
2021-12-14 10:25:47 -08:00
Tim Bannister 3fcc2c812f Make release-data time format localizable 2021-12-14 17:39:21 +00:00
Tim Bannister 270bc93258 Fix HTML for release-data shortcode 2021-12-14 17:38:59 +00:00
Tim Bannister ea4dfa19a1 Add v1.23 release to release list
Co-authored-by: Puerco <puerco@users.noreply.github.com>
2021-12-14 17:00:37 +00:00
Kai Hoffman 3ea785d07d Merge branch 'kubernetes:main' into main 2021-12-14 12:55:36 +00:00
Kai Hoffman db03b5cacc Update "master" to "main" in PR submission guide 2021-12-14 12:55:20 +00:00
Kai Hoffman 0c7491f125 Update to plural (grammar fix)
Minor change of ingress controller -> ingress controllers for grammatical agreement with the rest of the sentence.
2021-12-14 12:54:03 +00:00
Sascha Grunert 6e97ed46fb Add SELinuxProfile CRD graduation part
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2021-12-14 12:39:27 +01:00
Sascha Grunert dd63a3102a Fix typos in selinux part
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2021-12-14 12:37:33 +01:00
Sascha Grunert 9d5e049afd Rename post directory to reflect correct date
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2021-12-14 12:33:39 +01:00
Sascha Grunert e3301a4e95 Merge pull request #1 from jhrozek/spo-release
Add content about SELinux recording and moved selinuxd
2021-12-14 12:32:34 +01:00
Kubernetes Prow Robot 003ffe4b56 Merge pull request #30702 from yoshwata/patch-1
The command empties the shell variable.
2021-12-14 02:47:45 -08:00
Kubernetes Prow Robot a5d367e9fd Merge pull request #30907 from liggitt/flowcontrol-v1beta1
Document flowcontrol v1beta1 removal release
2021-12-13 20:32:02 -08:00
Qiming Teng 03b5de4e1c Kubelet config v1alpha1 (#30859)
* Add config API for kubelet v1alpha1

The CredentialProvider struct is defined in the v1alpha1 config API
rather than v1beta1. The upstream generator is updated to include this
version (https://github.com/kubernetes-sigs/reference-docs/pull/268).

This commit adds references to the API as well.

* Wrap long lines in the page
2021-12-13 18:28:03 -08:00
Kubernetes Prow Robot efa89a4e78 Merge pull request #30895 from mengjiao-liu/sysctl-allow-slashes-zh
sync sysctl-cluster.md
2021-12-13 18:00:03 -08:00
Qiming Teng 4f27a3fb16 Update feature gates for 1.23 2021-12-14 09:54:14 +08:00
Kubernetes Prow Robot 8577231a24 Merge pull request #30716 from dgengtek/main
kube-etcd certificate requires additional SAN's
2021-12-13 16:16:02 -08:00
Kubernetes Prow Robot e2b18a2897 Merge pull request #30844 from tengqm/kubeadm-ref-123
Update kubeadm reference for 1.23
2021-12-13 16:08:01 -08:00
yoshwata 321795000b fix: here doc style and comment 2021-12-13 23:43:37 +00:00
Matt Cary 33aae9b7e5 Update content/en/docs/concepts/storage/persistent-volumes.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-13 15:35:11 -08:00
Jordan Liggitt 5b6e46d6de flowcontrol v1beta1 removal release 2021-12-13 18:28:16 -05:00
yoshwata f1bd7c48af Update kustomization.md
I generated a file in a here document, but the shell variable part seemed to be empty.
2021-12-13 22:00:24 +00:00
Matthew Cary 57e72bce9a Clarify editing PV for volume resize 2021-12-13 10:22:14 -08:00
Kubernetes Prow Robot 4f1eea050d Merge pull request #30905 from sanposhiho/patch-1
Change the role restriction for `/lgtm`
2021-12-13 09:30:25 -08:00
Kensei Nakada dc5820977b Change the role restriction for /lgtm 2021-12-13 23:45:26 +09:00
Mengjiao Liu ab21cca067 sync sysctl-cluster.md 2021-12-13 17:31:54 +08:00
Kubernetes Prow Robot 6e7e9ea357 Merge pull request #30884 from Arhell/remove
[pt-br] remove link
2021-12-12 16:51:58 -08:00
Kubernetes Prow Robot 632bafa331 Merge pull request #30836 from neolit123/1.24-fix-bug-kubeadm-patches-config
kubeadm: fix wrong config example for customization with patches
2021-12-12 14:29:57 -08:00
Arhell 7653f815ec [pt-br] remove link 2021-12-13 00:20:37 +02:00
Lubomir I. Ivanov 2295e0c1e2 kubeadm: fix wrong config example for customization with patches
The patches sub-structure is top level and not under nodeRegistration.
2021-12-12 23:06:27 +02:00
ptux b9d21bf215 done 2021-12-12 21:38:36 +09:00
lcbcfoo 2d33179968 Add content/pt-br/docs/concepts/overview/working-with-objects/namespaces.md 2021-12-11 16:27:51 -03:00
Antonio Ojea ec3ed1ee36 kubernetes networking model clarifications (#28454)
Amend some clarifications to the kubernetes networking model to
deal with some ambiguities, mainly related to the use of NAT and
the host-network pods special requirements.

xref:

https://groups.google.com/g/kubernetes-sig-network/c/m6lwTjKLV8o/m/jM59qEKOBAAJ
2021-12-11 10:31:58 -08:00
lcbcfoo e56ef1180f Add pt-br/docs/concepts/overview/working-with-objects/field-selectors.md 2021-12-11 14:47:37 -03:00
Tim Bannister 6d9fec4175 Update third party list of container runtimes 2021-12-11 17:06:51 +00:00
Kubernetes Prow Robot 96feca9a5b Merge pull request #30854 from chetak123/main
Changed Docker EE to MCR in Windows
2021-12-11 08:31:57 -08:00
Kubernetes Prow Robot 0b266eb4fe Merge pull request #30784 from ChetHosey/patch-1
Correct separator in generated ConfigMap.
2021-12-11 08:29:58 -08:00
Ayushman Mishra 2042d8966d changes
Signed-off-by: Ayushman Mishra <ayushvidushi01@gmail.com>
2021-12-11 21:53:07 +05:30
Kubernetes Prow Robot b29ea89e95 Merge pull request #30855 from neolit123/1.24-remove-reset-status-phase
kubeadm: remove "reset" phase that no longer exists
2021-12-11 08:07:58 -08:00
Kubernetes Prow Robot ebf23ad93e Merge pull request #30753 from fenggw-fnst/update-volume-pvc-datasource
[zh] Update volume-pvc-datasource.md
2021-12-11 03:01:58 -08:00
Kubernetes Prow Robot 37cc147f76 Merge pull request #30752 from fenggw-fnst/update-storage-capacity
[zh] Update storage-capacity.md
2021-12-11 02:59:58 -08:00
Kubernetes Prow Robot 57c2a560b8 Merge pull request #30754 from fenggw-fnst/update-volume-snapshot-classes
[zh] Update volume-snapshot-classes.md
2021-12-11 02:57:58 -08:00
Kubernetes Prow Robot baa5ace44c Merge pull request #30856 from Arhell/remove-link
[de] remove link to compromised github account
2021-12-11 00:07:58 -08:00
Kubernetes Prow Robot f751450229 Merge pull request #30841 from sftim/20211209_fix_link_to_hpa_reference
Fix link to HorizontalPodAutoscaler API reference
2021-12-10 21:25:57 -08:00
Kubernetes Prow Robot 4ac9aa413e Merge pull request #29532 from aojea/patch-1
Update dual-stack node.status
2021-12-10 20:35:57 -08:00
Qiming Teng 36a57f5b4d Update kubeadm reference for 1.23
This PR refresh the generated files for kubeadm v1.23.
2021-12-11 12:11:18 +08:00
Arhell 70f5c30499 [de] remove link to compromised github account 2021-12-11 02:21:58 +02:00
Lubomir I. Ivanov 5d674845f5 kubeadm: remove "reset" phase that no longer exists
The phase was removed with k/k commit in 1.23:
https://github.com/kubernetes/kubernetes/commit/b9171aee20a2e3bd60cdf8ed3f269577b443eb4c

We forgot to remove it from the docs before 1.23 was released.
2021-12-11 00:01:54 +02:00
Ayushman Mishra 5ae6af819b Changed Docker EE to MCR in Windows
Signed-off-by: Ayushman Mishra <ayushvidushi01@gmail.com>
2021-12-11 02:34:29 +05:30
Chet Hosey 1abdc117c9 Correct separator in generated ConfigMap. 2021-12-10 12:15:16 -08:00
Kubernetes Prow Robot bec83989aa Merge pull request #30830 from markusheinemann/main
Add glossary entry for cadvisor
2021-12-10 03:13:10 -08:00
Kubernetes Prow Robot 7783d3abad Merge pull request #30353 from Jiawei0227/master
Doc: Add CSI Migration status update blog post
2021-12-10 03:07:11 -08:00
Markus Heinemann a86ca5b431 Add glossary entry for cadvisor 2021-12-09 22:28:24 +00:00
Kubernetes Prow Robot 2e7063ed9c Merge pull request #30822 from kbhawkey/kb-kubectl-cmd-build-1.23
generate kubectl cmd ref 1.23
2021-12-09 14:03:04 -08:00
Tim Bannister bf66a81980 Fix link to HPA API reference
Co-Authored-By: Christoph Neijenhuis <christoph.neijenhuis@commercetools.de>
2021-12-09 20:46:44 +00:00
Marc Boorshtein d4388492c5 Merge branch 'kubernetes:main' into master 2021-12-09 15:12:00 -05:00
chrismetz09 36bcc388cf fixed colon typos 2021-12-09 12:11:25 -08:00
chrismetz09 5e17ad0f18 Add diagram guide 2021-12-09 11:44:05 -08:00
Avinesh Tripathi efe4541e5a Update default-storage-class-prereqs.md 2021-12-09 22:41:06 +05:30
Kubernetes Prow Robot 0a2da8cb46 Merge pull request #30776 from reylejano/deprecation-guide-hpa
Add hpa v2beta1 and v2beta2 to deprecation guide
2021-12-09 02:50:09 -08:00
Kubernetes Prow Robot 5baf960187 Merge pull request #30758 from ixodie/patch-11
Kind cleanup - Remove Romana
2021-12-09 02:34:11 -08:00
Kubernetes Prow Robot b8142bc158 Merge pull request #30792 from Deepakktripathy/mysoln
removed the italics
2021-12-09 02:32:09 -08:00
Sascha Grunert 591fa12dd9 Change publishing date to 12/17
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2021-12-09 09:09:28 +01:00
Jiawei Wang ba84180b7e doc: Add csi migration status update blog 2021-12-09 07:14:44 +00:00
Rey Lejano a1506ae810 add hpa v2beta1 and v2beta2 to deprecation guide 2021-12-08 20:57:15 -08:00
Kubernetes Prow Robot 79da4d1662 Merge pull request #30825 from jimangel/url-fix
fix wrong url
2021-12-08 17:24:09 -08:00
Jim Angel bea7fe7116 fix wrong url 2021-12-08 19:07:05 -06:00
Kubernetes Prow Robot a50b7b9a1c Merge pull request #29668 from feloy/apiref-1.23
API reference v1.23
2021-12-08 16:58:09 -08:00
Kubernetes Prow Robot aa848abc62 Merge pull request #30422 from PushkarJ/psa-tutorial
Tutorials for Pod Security Admission
2021-12-08 16:30:10 -08:00
Karen Bradshaw f75736df4d generate kubectl cmd ref 1.23 2021-12-08 19:00:35 -05:00
Kubernetes Prow Robot 2740d85747 Merge pull request #30803 from tengqm/configapi-123
Configuration API for v1.23
2021-12-08 15:25:45 -08:00
Arhell 9a7eaf771a [ja] updated circtl version 2021-12-09 00:28:21 +02:00
Tim Bannister 3dd1eb1121 Add descriptions to tasks 2021-12-08 22:05:52 +00:00
Tim Bannister 5ab064ceea Tidy resource management task pages
Revise tasks within “Manage Memory, CPU, and API Resources”:

- reword to avoid implying that API clients can create a container
  (you can, but its done by creating a Pod)
- call a manifest a manifest
- use tooltips where relevant
- link to new API reference not the old one
- other improvements
2021-12-08 22:05:36 +00:00
Tim Bannister 367faca49f Tweak advice about managing resources for containers
Co-authored-by: Shannon Kularathna <ax3shannonkularathna@gmail.com>
2021-12-08 21:40:16 +00:00
Kubernetes Prow Robot 532affacb0 Merge pull request #30816 from OlaAde/patch-1
Typo Correction
2021-12-08 11:39:46 -08:00
OlaAde 69f6250d6e Typo Correction
Added missing `:` colons to the sample code.
2021-12-08 21:26:19 +03:00
Philippe Martin 02445930e5 Reference docs for kubernetes 1.23 2021-12-08 09:35:00 +01:00
Sascha Grunert 16c8cc0702 Update content/en/blog/_posts/2021-12-13-security-profiles-operator-v0.4.0/index.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-08 09:25:44 +01:00
Qiming Teng b198199336 Configuration API for v1.23 2021-12-08 16:19:23 +08:00
Pushkar Joglekar d1e25451d3 Added shell script examples
Fixed nits, broken links and numbering

Co-authored-by: Tim Bannister <tim@scalefactory.com>
Co-authored-by: Shannon Kularathna <ax3shannonkularathna@gmail.com>
Co-authored-by: Jim Angel <jimangel@users.noreply.github.com>
2021-12-08 10:41:55 +05:30
Pushkar Joglekar d29e93acbb Tutorial for pod security admission
Refer blog post for v1.23 + suggestions from code review
2021-12-08 10:41:25 +05:30
Kubernetes Prow Robot e808edad3a Merge pull request #30802 from tengqm/compref-123
Component reference for v1.23
2021-12-07 19:49:45 -08:00
Kubernetes Prow Robot fe10ce6efc Merge pull request #30502 from jimangel/blog-psa-beta
v1.23 blog post: Pod Security Admission Graduates to Beta
2021-12-07 18:01:40 -08:00
Qiming Teng f51716ce29 Component reference for v1.23 2021-12-08 09:52:24 +08:00
Matthew Cary 1e7731f60f statefulset autodelete blog post 2021-12-07 17:39:39 -08:00
Kubernetes Prow Robot 9dd810d8ed Merge pull request #29761 from dilyar85/add-new-blog
Blog: Using Admission Controllers to Detect Container Drift at Runtime
2021-12-07 17:13:28 -08:00
Kubernetes Prow Robot 90f6bf72c2 Merge pull request #30556 from deepakkinni/pv_protect_v1
Doc: Add blogpost for honor PV reclaim policy fix
2021-12-07 17:01:23 -08:00
Kubernetes Prow Robot 4f909205eb Merge pull request #30538 from bridgetkromhout/blog-dual-stack-ga
v1.23 blog post: Dual-stack IPv4/IPv6 Networking Reaches GA
2021-12-07 16:53:23 -08:00
Kubernetes Prow Robot e7a987c548 Merge pull request #30797 from sftim/20211208_improve_1.23_release_blog_logo_presentation
Improve 1.23 release blog logo presentation
2021-12-07 16:45:22 -08:00
Tim Bannister a599614861 Add sftim as a blog editor 2021-12-08 00:42:33 +00:00
Tim Bannister 2782b1ef8f Update v1.23 release article to use logo styles 2021-12-08 00:31:13 +00:00
Tim Bannister cf88ca5658 Custom style for release logos
You can now use a figure shortcode to mark a release logo and get
appropriate styles.
2021-12-08 00:30:21 +00:00
Jim Angel c79d213abc adding blog and correcting 1.23 docs
Co-authored-by: Lachlan Evenson <lachlan.evenson@microsoft.com>
2021-12-07 18:20:57 -06:00
Kubernetes Prow Robot 1e0a43a866 Merge pull request #30786 from tom1299/patch-1
Fix broken link to Ingress API
2021-12-07 16:05:22 -08:00
Kubernetes Prow Robot 9e07166713 Merge pull request #30751 from fenggw-fnst/update-ephemeral-volumes
[zh] Update ephemeral-volumes.md
2021-12-07 15:53:20 -08:00
Jesse Butler 0e4f9b3de5 Merge pull request #30770 from karenhchu/main
Create Kubernetes 1.23 Release Blog.md
2021-12-07 18:21:01 -05:00
Jesse Butler f0bb277540 Merge pull request #29658 from kubernetes/dev-1.23
Official 1.23 Release Docs
2021-12-07 18:18:34 -05:00
Jakub Hrozek a2e3f11d22 Add content about SELinux recording and moved selinuxd 2021-12-07 23:09:31 +01:00
Karen Chu 1c4413c2b5 Add Kubernetes 1.23 Release Logo
Adding folder and image file for Kubernetes 1.23 Release logo for release blog

Co-authored-by: Rey Lejano <rlejano@gmail.com>
2021-12-07 18:14:11 +00:00
Karen Chu ffcd58fc32 Create v1.23 release blog article
Co-authored-by: Mickey Boxell <mickey.boxell@oracle.com>
Co-authored-by: Puerco <puerco@users.noreply.github.com>
Co-authored-by: Rey Lejano <rlejano@gmail.com>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-07 18:13:02 +00:00
Deepak Tripathy c214d37d86 removed the italics 2021-12-07 19:00:47 +03:00
tom1299 fa84bdbe69 Update content/en/docs/concepts/services-networking/ingress.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-12-07 15:59:22 +01:00
Sascha Grunert b32c348ff2 Add first content bits
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2021-12-07 12:28:25 +01:00
tom1299 d5539a6558 Fix broken link to Ingress API 2021-12-07 10:15:21 +01:00
Atsushi Nukariya 42917dcd5b Update content/ja/docs/setup/best-practices/cluster-large.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-07 06:26:35 +09:00
ixodie 5d7141f903 Kind cleanup - Remove Contiv
This domain/URL has no relevant content, is a squatter.
Video link on youtube is 5 years old.
Product seems to be abandonware.
2021-12-06 06:53:02 -05:00
ixodie ac929239cf Kind cleanup - Remove Romana
This doimain does not work and company appears to be defunct.
2021-12-06 06:48:52 -05:00
aquiladayc e328d0b731 Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 17:27:06 +09:00
aquiladayc b7761afb7d Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 17:26:56 +09:00
Atsushi Nukariya 1eabc66c8f Update content/ja/docs/setup/best-practices/cluster-large.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 17:03:26 +09:00
RA489 3766686671 Improvement to create cluster page 2021-12-06 12:38:43 +05:30
Guangwen Feng ac50be6265 [zh] Update volume-snapshot-classes.md
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2021-12-06 15:06:01 +08:00
Guangwen Feng 02f6d1f92d [zh] Update volume-pvc-datasource.md
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2021-12-06 14:59:28 +08:00
Guangwen Feng e873186042 [zh] Update storage-capacity.md
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2021-12-06 14:53:28 +08:00
Guangwen Feng 8b8b9636c9 [zh] Update ephemeral-volumes.md
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2021-12-06 14:37:19 +08:00
aquiladayc 61899b0e86 Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:03:32 +09:00
aquiladayc 436d1d8d13 Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:03:28 +09:00
aquiladayc 8ae8a16ffc Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:03:22 +09:00
aquiladayc 4a6f5efcf4 Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:03:15 +09:00
aquiladayc c91f9a7fe4 Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:03:11 +09:00
aquiladayc f41a5c99e3 Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:03:06 +09:00
aquiladayc 12bbb688cd Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:02:55 +09:00
aquiladayc 629b319f7e Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:02:50 +09:00
aquiladayc f8ef819701 Update content/ja/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 09:02:46 +09:00
Atsushi Nukariya 74cf4ccb13 Apply suggestions from code review
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 07:05:33 +09:00
Atsushi Nukariya b1c4618fbd Address review's comment 2021-12-06 07:03:41 +09:00
Wang 68d60b76e4 Update content/ja/docs/concepts/extend-kubernetes/operator.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-06 01:45:34 +09:00
mtilson 9c8367804c short alias to set/show namespace
usage:
$ kn              # shows current namespace
$ kn default # switch to specified namespace
2021-12-05 14:54:13 +03:00
Wang 80750395dd Update operator.md 2021-12-05 17:12:47 +09:00
Wang c7e7de3f5c Update content/ja/docs/concepts/extend-kubernetes/operator.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-05 17:11:57 +09:00
Atsushi Nukariya d2c1939fce Apply suggestions from code review
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-04 10:09:16 +09:00
Bridget Kromhout cd511eff9c Adding blog post for dual-stack GA
Signed-off-by: Bridget Kromhout <bridget@kromhout.org>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
Co-authored-by: Nate W. <4453979+nate-double-u@users.noreply.github.com>
2021-12-03 13:06:35 -06:00
ptux 3b816b6c9b 英単語と日本語の間に半角スペースは不要 2021-12-03 19:12:48 +09:00
ptux 4f30c4178c 英文と日本語間のスペースが不要 2021-12-03 18:59:07 +09:00
Wang d197a309e0 Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:54:46 +09:00
Wang 874d0e3ed0 Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:54:16 +09:00
Wang 5066f13555 Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:53:55 +09:00
Wang 80d7605c23 Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:53:51 +09:00
Wang bf705ea73e Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:53:43 +09:00
Wang 8eba8a7528 Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:53:37 +09:00
Wang 7441a69c1e Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:53:29 +09:00
Wang 3662c0d34f Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:53:20 +09:00
Wang 5ea6a36bca Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:53:02 +09:00
Wang 5bb8a9a721 Update content/ja/docs/tasks/inject-data-application/distribute-credentials-secure.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-12-03 18:52:35 +09:00
ptux 4cbcca7bfa 秘密-->機密 2021-12-03 18:51:13 +09:00
Marc Boorshtein 8dfd425486 making working clearer
*should* implies that an `extra` can be mixed case.  but really it can't because a mixed case `extra` will mismatch on an RBAC `ClusterRole` once the header is canonicalized.
2021-12-02 22:01:07 -05:00
dgengtek bd6dd9b58e kube-etcd certificate requires additional SAN's 2021-12-02 17:33:50 +01:00
chenxuc 655b153a8a [zh] sync auth docs 2021-12-02 20:24:53 +08:00
aquiladayc 392db486a3 Create 2020-12-02-dont-panic-kubernetes-and-docker.md 2021-12-02 14:53:32 +09:00
dilyar85 d9f0097efd Blog: Using Admission Controllers to Detect Container Drift at Runtime
Applied some wordsmithing

Move attribution into the figure tag

Address comment

Add project open-source link and update content

Address review from sftim

Update future improvement section with current gaps to ideal K8s design

Set release date to 2021-12-21
2021-12-01 21:06:21 -08:00
Deepak Kinni 5b375a6c70 Doc: Add blogpost for honor PV reclaim policy fix
Signed-off-by: Deepak Kinni <dkinni@vmware.com>
2021-12-01 10:33:27 -08:00
Atsushi Nukariya f4bf6a2206 Address review comment 2021-12-01 07:18:20 +09:00
Edith Puclla 951f21f792 Update content/es/docs/concepts/storage/storage-capacity.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-11-30 17:07:59 -05:00
Edith Puclla c7a7a60a0d Update content/es/docs/concepts/storage/storage-capacity.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-11-30 16:56:06 -05:00
Edith Puclla 1b1a5b30b4 Update content/es/docs/concepts/storage/storage-capacity.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-11-30 16:55:56 -05:00
Edith Puclla a6b8f76520 Update content/es/docs/concepts/storage/storage-capacity.md
Thanks!

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-11-30 16:55:18 -05:00
Edith Puclla 3fe43ea98a Update content/es/docs/concepts/storage/storage-capacity.md
thank you!

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-11-30 16:54:17 -05:00
Andreas Deininger 7a7fa15a48 Minor improvements 2021-11-30 18:30:55 +01:00
Sascha Grunert 91c07e0402 Add blog post about SPO v0.4.0 release
Signed-off-by: Sascha Grunert <sgrunert@redhat.com>
2021-11-30 14:55:26 +01:00
Carlos Domingues 42e485b814 Use tabs and explicitly say this is for bash only 2021-11-29 22:23:54 -03:00
Carlos Domingues 7efe6cb612 Remove unecessary "echo"
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-11-29 22:11:31 -03:00
Atsushi Nukariya a64b2c1b3f Address review's comment 2021-11-30 08:12:46 +09:00
Atsushi Nukariya eaf9b9713f Fix: missing links 2021-11-30 08:05:45 +09:00
Carlos Domingues cde216e2f4 Use tee to write to /etc/bash_completion.d/kubectl 2021-11-29 00:43:34 -03:00
Jason Kim (Jun Chul Kim) e0fdee6b0d Update certificates.md
[kubelet has client and server certificates](https://kubernetes.io/docs/reference/command-line-tools-reference/kubelet-tls-bootstrapping/#client-and-serving-certificates).

But this page only mentions kubelet client certificate. I linked to the [page](https://kubernetes.io/docs/reference/command-line-tools-reference/kubelet-tls-bootstrapping/#client-and-serving-certificates) because I couldn't find the doc about what are those `certain features`. Please suggest a better link if there are any.
2021-11-22 15:19:13 +09:00
ptux 5ac6dd5886 good morning 2021-11-20 08:56:04 +09:00
ptux 3a7107afb1 bedtime 2021-11-20 00:22:52 +09:00
ptux 497a07f5f5 add reference file 2021-11-19 23:49:54 +09:00
ptux 22ed7f40a4 overview done 2021-11-19 23:08:32 +09:00
ptux 49d19584c6 translate distribute-credentials-secure into Japanese 2021-11-18 05:32:07 +09:00
edithturn f7add99775 change scheduler with planificador 2021-11-16 12:43:18 -05:00
Riita b37a9ca361 Update secret.md 2021-11-17 00:45:02 +09:00
Riita 7d24269a64 Update pod-security-standards.md 2021-11-16 19:32:40 +09:00
Wang a6e7c0215d Update operator.md 2021-11-14 19:29:34 +09:00
Guangwen Feng 0ffe9f327b [ja] Remove ^H character
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2021-11-12 11:40:56 +08:00
Atsushi Nukariya cbfb0501de Fix: link to ja/docs/concepts/extend-kubernetes/operator/ 2021-11-12 12:34:54 +09:00
Atsushi Nukariya 61b6871ed4 [ja] Translate setup/best-practices/cluster-large/ into Japanese 2021-11-12 11:09:20 +09:00
Wang eaaf823f2c Update custom-resources.md 2021-11-09 18:42:02 +09:00
Jari Moellenbernd 734aa6b673 Fix typo in hello-minikube.md 2021-11-04 20:32:11 +01:00
edithturn eb6efadf1a test cla 2021-11-03 23:42:09 -05:00
edithturn 141bce454f test cla 2021-11-03 23:42:09 -05:00
Edith Puclla 7336477aed adding point at the end 2021-11-03 23:42:09 -05:00
Edith Puclla 02b3b8e4cb test 2021-11-03 23:42:09 -05:00
edithturn 7f4fdd57e3 fixing word in link 2021-11-03 23:40:46 -05:00
Renan Gonçalves b4b8893a93 Fix default value for MaxSurge
The implementation defines the default value for MaxSurge being 0, as to
preserve the current behavior of rolling updates in DaemonSets.

This change is just a copy-paste of the docblock defined in the types.go
file.

See:
- https://github.com/kubernetes/kubernetes/blob/10a3cc815bea73f78f7126cab5df95233da96e1b/pkg/apis/apps/types.go
- https://github.com/kubernetes/kubernetes/blob/10a3cc815bea73f78f7126cab5df95233da96e1b/pkg/apis/apps/v1/defaults.go#L87-L91
2021-11-02 14:03:40 +01:00
Riita 54cd481f36 Update nodes.md 2021-10-30 00:32:32 +09:00
Riita 79a6b1972f Update nodes.md 2021-10-30 00:29:55 +09:00
Benedikt Rollik e97b170c50 typo 2021-10-27 16:04:40 +02:00
Benedikt Rollik 2261af19a7 fix typos and wording review 2021-10-27 15:55:30 +02:00
Benedikt Rollik 4dc14931e8 fix typo 2021-10-22 11:17:26 +02:00
Benedikt Rollik 62e8810b4a add unicode characters 2021-10-22 11:16:03 +02:00
Benedikt Rollik 249248e946 add unicode characters 2021-10-22 11:15:54 +02:00
Benedikt Rollik bbc216bc72 Update content/de/docs/contribute/participate/_index.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-10-22 11:09:14 +02:00
Benedikt Rollik 400861724a Update content/de/docs/contribute/participate/_index.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-10-22 11:09:06 +02:00
Benedikt Rollik 74c53d61de fixed broken links + typos 2021-10-21 18:29:38 +02:00
Benedikt Rollik 4f1ccf1bc6 typo 2021-10-21 18:16:38 +02:00
Benedikt Rollik c6f301bd08 [de] Participating in SIG Docs 2021-10-21 18:14:38 +02:00
Stefan Lasiewski 537c2e101b sha256sum requires 2nd space for the type 2021-10-20 10:12:43 -07:00
Riita 2fdb8e2c17 Update pod-security-standards.md 2021-10-20 23:10:30 +09:00
Riita cf858d854f Update nodes.md 2021-10-20 19:17:34 +09:00
Edith Puclla 31581e5884 Update content/es/docs/concepts/storage/volume-pvc-datasource.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:27:37 -05:00
Edith Puclla 202b2ad646 Update content/es/docs/concepts/storage/volume-pvc-datasource.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:27:28 -05:00
Edith Puclla 2a2f973907 Update content/es/docs/concepts/storage/volume-pvc-datasource.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:27:00 -05:00
Edith Puclla f206df1b2e Update content/es/docs/concepts/storage/storage-capacity.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:24:15 -05:00
Edith Puclla 50f945de77 Update content/es/docs/concepts/storage/storage-capacity.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:23:59 -05:00
Edith Puclla 838df6cfcc Update content/es/docs/concepts/storage/dynamic-provisioning.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:23:35 -05:00
Edith Puclla 907020f85f Update content/es/docs/concepts/storage/dynamic-provisioning.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:22:54 -05:00
Edith Puclla dde74945b9 Update content/es/docs/concepts/storage/dynamic-provisioning.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:22:15 -05:00
Edith Puclla 926be5786e Update content/es/docs/concepts/storage/dynamic-provisioning.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:21:26 -05:00
Edith Puclla 47fd2b3de5 Update content/es/docs/concepts/storage/dynamic-provisioning.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:18:45 -05:00
Edith Puclla 4d126eb89b Update content/es/docs/concepts/storage/dynamic-provisioning.md
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:17:40 -05:00
Edith Puclla b63b180d2d Update content/es/docs/concepts/storage/dynamic-provisioning.md
Great! :)

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:16:59 -05:00
Edith Puclla a03d2ea8e1 Update content/es/docs/concepts/storage/dynamic-provisioning.md
thanks for this

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-10-10 10:11:33 -05:00
Tim Bannister 7738ba16fc Mark when JavaScript is available
This might be useful for custom styling, or for using
a pure-CSS fallback for some scripted behavior.

There is already a no-js class set on the <html> element;
this change removes it when JavaScript is running OK.
2021-10-03 17:14:11 +01:00
Edith 1788adc35f [es] Add concepts/storage/dynamic-provisioning.md 2021-10-02 20:27:17 -05:00
Edith eb34864d3e [es] Add concepts/storage/volume-pvc-datasource.md 2021-10-02 19:34:02 -05:00
Edith 491365356f [es] Add concepts/storage/storage-capacity.md 2021-10-02 18:39:58 -05:00
Shannon Kularathna d6345808f4 Add information to API evictions 2021-10-01 15:26:01 +00:00
Shannon Kularathna c2f55492bd Add information to API evictions 2021-09-10 20:51:57 +00:00
Antonio Ojea d27e177c88 Update content/en/docs/concepts/services-networking/dual-stack.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-08-25 13:33:44 +02:00
Antonio Ojea 4001b9cd7a Update dual-stack node.status
Add missing comment about node addresses and podIPs order:
https://github.com/kubernetes/kubernetes/pull/95239
https://github.com/kubernetes/kubernetes/pull/97979
2021-08-25 12:29:12 +02:00
yuswift a78abf5b86 Add the reason why we ignore old blog typos
Signed-off-by: yuswift <yuswift2018@gmail.com>
2021-08-11 15:42:14 +08:00
yuswift 919995fe3b support ignoring files when check the spelling
Signed-off-by: yuswift <yuswift2018@gmail.com>
2021-08-11 15:42:14 +08:00
yuswift 7318b18c03 fix some typos
Signed-off-by: yuswift <yuswift2018@gmail.com>
2021-08-11 15:42:01 +08:00
Akihito INOH 79364dad11 Add script to print URLs updated by target PR 2021-07-19 10:10:22 +09:00
Jihoon Seo 585bcee188 [vi] Remove exec permission on markdown files 2021-06-22 18:32:02 +09:00
Jihoon Seo 1dc460db8e [no] Remove exec permission on markdown files 2021-06-22 18:25:22 +09:00
1523 changed files with 157800 additions and 44401 deletions
+1 -1
View File
@@ -11,7 +11,7 @@ STOP -- PLEASE READ!
GitHub is not the right place for support requests.
If you're looking for help, check [Stack Overflow](https://stackoverflow.com/questions/tagged/kubernetes)
If you're looking for help, check [Server Fault](https://serverfault.com/questions/tagged/kubernetes).
You can also post your question on the [Kubernetes Slack](http://slack.k8s.io/) or the [Discuss Kubernetes](https://discuss.kubernetes.io/) forum.
+1
View File
@@ -1,6 +1,7 @@
[submodule "themes/docsy"]
path = themes/docsy
url = https://github.com/google/docsy.git
branch = v0.2.0
[submodule "api-ref-generator"]
path = api-ref-generator
url = https://github.com/kubernetes-sigs/reference-docs
+1 -1
View File
@@ -34,6 +34,6 @@ Note that code issues should be filed against the main kubernetes repository, wh
### Submitting Documentation Pull Requests
If you're fixing an issue in the existing documentation, you should submit a PR against the master branch. Follow [these instructions to create a documentation pull request against the kubernetes.io repository](http://kubernetes.io/docs/home/contribute/create-pull-request/).
If you're fixing an issue in the existing documentation, you should submit a PR against the main branch. Follow [these instructions to create a documentation pull request against the kubernetes.io repository](http://kubernetes.io/docs/home/contribute/create-pull-request/).
For more information, see [contributing to Kubernetes docs](https://kubernetes.io/docs/contribute/).
+27 -12
View File
@@ -4,28 +4,43 @@
# change is that the Hugo version is now an overridable argument rather than a fixed
# environment variable.
FROM golang:1.15-alpine
FROM golang:1.16-alpine
LABEL maintainer="Luc Perkins <lperkins@linuxfoundation.org>"
RUN apk add --no-cache \
curl \
git \
openssh-client \
rsync \
gcc \
g++ \
musl-dev \
build-base \
libc6-compat \
npm && \
npm install -D autoprefixer postcss-cli
libc6-compat
ARG HUGO_VERSION
RUN mkdir -p /usr/local/src && \
cd /usr/local/src && \
curl -L https://github.com/gohugoio/hugo/releases/download/v${HUGO_VERSION}/hugo_extended_${HUGO_VERSION}_Linux-64bit.tar.gz | tar -xz && \
mv hugo /usr/local/bin/hugo && \
RUN mkdir $HOME/src && \
cd $HOME/src && \
curl -L https://github.com/gohugoio/hugo/archive/refs/tags/v${HUGO_VERSION}.tar.gz | tar -xz && \
cd "hugo-${HUGO_VERSION}" && \
go install --tags extended
FROM golang:1.16-alpine
RUN apk add --no-cache \
runuser \
git \
openssh-client \
rsync \
npm && \
npm install -D autoprefixer postcss-cli
RUN mkdir -p /var/hugo && \
addgroup -Sg 1000 hugo && \
adduser -Sg hugo -u 1000 -h /src hugo
adduser -Sg hugo -u 1000 -h /var/hugo hugo && \
chown -R hugo: /var/hugo && \
runuser -u hugo -- git config --global --add safe.directory /src
COPY --from=0 /go/bin/hugo /usr/local/bin/hugo
WORKDIR /src
+15 -13
View File
@@ -19,23 +19,23 @@ CCEND=\033[0m
help: ## Show this help.
@awk 'BEGIN {FS = ":.*?## "} /^[a-zA-Z_-]+:.*?## / {sub("\\\\n",sprintf("\n%22c"," "), $$2);printf "\033[36m%-20s\033[0m %s\n", $$1, $$2}' $(MAKEFILE_LIST)
module-check:
module-check: ## Check if all of the required submodules are correctly initialized.
@git submodule status --recursive | awk '/^[+-]/ {err = 1; printf "\033[31mWARNING\033[0m Submodule not initialized: \033[34m%s\033[0m\n",$$2} END { if (err != 0) print "You need to run \033[32mmake module-init\033[0m to initialize missing modules first"; exit err }' 1>&2
module-init:
module-init: ## Initialize required submodules.
@echo "Initializing submodules..." 1>&2
@git submodule update --init --recursive --depth 1
all: build ## Build site with production settings and put deliverables in ./public
build: module-check ## Build site with production settings and put deliverables in ./public
hugo --minify
build: module-check ## Build site with non-production settings and put deliverables in ./public
hugo --minify --environment development
build-preview: module-check ## Build site with drafts and future posts enabled
hugo --buildDrafts --buildFuture
hugo --buildDrafts --buildFuture --environment preview
deploy-preview: ## Deploy preview site via netlify
hugo --enableGitInfo --buildFuture -b $(DEPLOY_PRIME_URL)
hugo --enableGitInfo --buildFuture --environment preview -b $(DEPLOY_PRIME_URL)
functions-build:
$(NETLIFY_FUNC) build functions-src
@@ -43,13 +43,15 @@ functions-build:
check-headers-file:
scripts/check-headers-file.sh
production-build: build check-headers-file ## Build the production site and ensure that noindex headers aren't added
production-build: module-check ## Build the production site and ensure that noindex headers aren't added
hugo --minify --environment production
HUGO_ENV=production $(MAKE) check-headers-file
non-production-build: ## Build the non-production site, which adds noindex headers to prevent indexing
hugo --enableGitInfo
non-production-build: module-check ## Build the non-production site, which adds noindex headers to prevent indexing
hugo --enableGitInfo --environment nonprod
serve: module-check ## Boot the development server.
hugo server --buildFuture
hugo server --buildFuture --environment development
docker-image:
@echo -e "$(CCRED)**** The use of docker-image is deprecated. Use container-image instead. ****$(CCEND)"
@@ -70,10 +72,10 @@ container-image: ## Build a container image for the preview of the website
--build-arg HUGO_VERSION=$(HUGO_VERSION)
container-build: module-check
$(CONTAINER_RUN) --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 $(CONTAINER_IMAGE) sh -c "npm ci && hugo --minify"
$(CONTAINER_RUN) --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 $(CONTAINER_IMAGE) sh -c "npm ci && hugo --minify --environment development"
container-serve: module-check ## Boot the development server using container. Run `make container-image` before this.
$(CONTAINER_RUN) --cap-drop=ALL --cap-add=AUDIT_WRITE --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 -p 1313:1313 $(CONTAINER_IMAGE) hugo server --buildFuture --bind 0.0.0.0 --destination /tmp/hugo --cleanDestinationDir
$(CONTAINER_RUN) --cap-drop=ALL --cap-add=AUDIT_WRITE --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 -p 1313:1313 $(CONTAINER_IMAGE) hugo server --buildFuture --environment development --bind 0.0.0.0 --destination /tmp/hugo --cleanDestinationDir
test-examples:
scripts/test_examples.sh install
@@ -88,7 +90,7 @@ docker-internal-linkcheck:
$(MAKE) container-internal-linkcheck
container-internal-linkcheck: link-checker-image-pull
$(CONTAINER_RUN) $(CONTAINER_IMAGE) hugo --config config.toml,linkcheck-config.toml --buildFuture
$(CONTAINER_RUN) $(CONTAINER_IMAGE) hugo --config config.toml,linkcheck-config.toml --buildFuture --environment test
$(CONTAINER_ENGINE) run --mount type=bind,source=$(CURDIR),target=/test --rm wjdp/htmltest htmltest
clean-api-reference: ## Clean all directories in API reference directory, preserve _index.md
+14 -4
View File
@@ -2,10 +2,12 @@ aliases:
sig-docs-blog-owners: # Approvers for blog content
- onlydole
- mrbobbytables
- sftim
sig-docs-blog-reviewers: # Reviewers for blog content
- mrbobbytables
- onlydole
- sftim
- nate-double-u
sig-docs-de-owners: # Admins for German content
- bene2k1
- mkorbi
@@ -22,12 +24,14 @@ aliases:
- jimangel
- jlbutler
- kbhawkey
- natalisucks
- onlydole
- pi-victor
- reylejano
- savitharaghunathan
- sftim
- tengqm
- zacharysarah
sig-docs-en-reviews: # PR reviews for English content
- bradtopol
- celestehorgan
@@ -36,11 +40,13 @@ aliases:
- jimangel
- kbhawkey
- mehabhalodiya
- natalisucks
- onlydole
- rajeshdeshpande02
- sftim
- shannonxtreme
- tengqm
- zacharysarah
sig-docs-es-owners: # Admins for Spanish content
- raelga
- electrocucaracha
@@ -125,6 +131,7 @@ aliases:
- ClaudiaJKang
- gochist
- ianychoi
- jihoon-seo
- seokho-son
- ysyukr
sig-docs-ko-reviews: # PR reviews for Korean content
@@ -141,15 +148,20 @@ aliases:
- divya-mohan0209
- jimangel
- kbhawkey
- natalisucks
- onlydole
- reylejano
- sftim
- tengqm
sig-docs-zh-owners: # Admins for Chinese content
# chenopis
- chenrui333
# dchen1107
# haibinxie
# hanjiayao
- howieyuen
# lichuqiang
- mengjiao-liu
- SataQiu
- tanjunchen
- tengqm
@@ -234,7 +246,6 @@ aliases:
# authoritative source: https://git.k8s.io/sig-release/OWNERS_ALIASES
sig-release-leads:
- cpanato # SIG Technical Lead
- hasheddan # SIG Technical Lead
- jeremyrickard # SIG Technical Lead
- justaugustus # SIG Chair
- LappleApple # SIG Program Manager
@@ -242,19 +253,18 @@ aliases:
- saschagrunert # SIG Chair
release-engineering-approvers:
- cpanato # Release Manager
- hasheddan # subproject owner / Release Manager
- palnabarun # Release Manager
- puerco # Release Manager
- saschagrunert # subproject owner / Release Manager
- justaugustus # subproject owner / Release Manager
- Verolop # Release Manager
- xmudrii # Release Manager
release-engineering-reviewers:
- ameukam # Release Manager Associate
- jimangel # Release Manager Associate
- markyjackson-taulia # Release Manager Associate
- mkorbi # Release Manager Associate
- palnabarun # Release Manager Associate
- onlydole # Release Manager Associate
- sethmccombs # Release Manager Associate
- thejoycekung # Release Manager Associate
- verolop # Release Manager Associate
- wilsonehusin # Release Manager Associate
+13 -13
View File
@@ -3,13 +3,13 @@
[![Build Status](https://api.travis-ci.org/kubernetes/website.svg?branch=master)](https://travis-ci.org/kubernetes/website)
[![GitHub release](https://img.shields.io/github/release/kubernetes/website.svg)](https://github.com/kubernetes/website/releases/latest)
Herzlich willkommen! Dieses Repository enthält alle Assets, die zur Erstellung der [Kubernetes-Website und Dokumentation](https://kubernetes.io/) erforderlich sind. Wir freuen uns sehr, dass Sie dazu beitragen wollen!
Herzlich Willkommen! Dieses Repository enthält alle Assets, die zur Erstellung der [Kubernetes-Website und Dokumentation](https://kubernetes.io/) erforderlich sind. Wir freuen uns sehr, dass Sie dazu beitragen wollen!
## Beiträge zur Dokumentation
Sie können auf die Schaltfläche **Fork** im oberen rechten Bereich des Bildschirms klicken, um eine Kopie dieses Repositorys in Ihrem GitHub-Konto zu erstellen. Diese Kopie wird als *Fork* bezeichnet. Nehmen Sie die gewünschten Änderungen an Ihrem Fork vor. Wenn Sie bereit sind, diese Änderungen an uns zu senden, gehen Sie zu Ihrem Fork und erstellen Sie eine neue Pull-Anforderung, um uns darüber zu informieren.
Sie können auf die Schaltfläche **Fork** im oberen rechten Bereich des Bildschirms klicken, um eine Kopie dieses Repositorys in Ihrem GitHub-Konto zu erstellen. Diese Kopie wird als *Fork* bezeichnet. Nehmen Sie die gewünschten Änderungen an Ihrem Fork vor. Wenn Sie bereit sind, diese Änderungen an uns zu senden, gehen Sie zu Ihrem Fork und erstellen Sie eine neue Pull-Request, um uns darüber zu informieren.
Sobald Ihre Pull-Anfrage erstellt wurde, übernimmt ein Rezensent von Kubernetes die Verantwortung für klares, umsetzbares Feedback. Als Eigentümer des Pull-Request **liegt es in Ihrer Verantwortung Ihren Pull-Reqest entsprechend des Feedbacks, dass Sie vom Kubernetes-Reviewer erhalten haben abzuändern.** Beachten Sie auch, dass Sie am Ende mehr als einen Rezensenten von Kubernetes erhalten, der Ihnen Feedback gibt, oder dass Sie Rückmeldungen von einem Rezensenten von Kubernetes erhalten, der sich von demjenigen unterscheidet, der ursprünglich für das Feedback zugewiesen wurde. In einigen Fällen kann es vorkommen, dass einer Ihrer Prüfer bei Bedarf eine technische Überprüfung von einem [Kubernetes Tech-Reviewer](https://github.com/kubernetes/website/wiki/tech-reviewers) anfordert. Reviewer geben ihr Bestes, um zeitnah Feedback zu geben, die Antwortzeiten können jedoch je nach den Umständen variieren.
Sobald Ihre Pull-Request erstellt wurde, übernimmt ein Rezensent von Kubernetes die Verantwortung für klares, umsetzbares Feedback. Als Eigentümer des Pull-Request **liegt es in Ihrer Verantwortung Ihre Pull-Request entsprechend des Feedbacks, welches Sie vom Kubernetes-Reviewer erhalten haben, abzuändern.** Beachten Sie auch, dass Sie am Ende mehr als einen Rezensenten von Kubernetes erhalten, der Ihnen Feedback gibt, oder dass Sie Rückmeldungen von einem Rezensenten von Kubernetes erhalten, der sich von demjenigen unterscheidet, der ursprünglich für das Feedback zugewiesen wurde. In einigen Fällen kann es vorkommen, dass einer Ihrer Prüfer bei Bedarf eine technische Überprüfung von einem [Kubernetes Tech-Reviewer](https://github.com/kubernetes/website/wiki/tech-reviewers) anfordert. Reviewer geben ihr Bestes, um zeitnah Feedback zu geben, die Antwortzeiten können jedoch je nach den Umständen variieren.
Weitere Informationen zum Beitrag zur Kubernetes-Dokumentation finden Sie unter:
@@ -28,14 +28,14 @@ Die Betreuer der deutschen Lokalisierung erreichen Sie unter:
* Max Körbächer ([@mkorbi](https://github.com/mkorbi))
* [Slack Kanal](https://kubernetes.slack.com/messages/kubernetes-docs-de)
## Site lokal mit Docker ausführen
## Website lokal mit Docker ausführen
Um die Kubernetes-Website lokal laufen zu lassen, empfiehlt es sich, ein spezielles [Docker](https://docker.com) Image auszuführen, das den statischen Site-Generator [Hugo](https://gohugo.io) enthält.
Um die Kubernetes-Website lokal laufen zu lassen, empfiehlt es sich, ein spezielles [Docker](https://docker.com) Image auszuführen, das den statischen Website-Generator [Hugo](https://gohugo.io) enthält.
> Unter Windows benötigen Sie einige weitere Tools, die Sie mit [Chocolatey](https://chocolatey.org) installieren können.
`choco install make`
> Wenn Sie die Website lieber lokal ohne Docker ausführen möchten, finden Sie weitere Informationen unter [Website lokal mit Hugo ausführen](#Die-Site-lokal-mit-Hugo-ausführen).
> Wenn Sie die Website lieber lokal ohne Docker ausführen möchten, finden Sie weitere Informationen unter [Website lokal mit Hugo ausführen](#Die-Website-lokal-mit-Hugo-ausführen).
Das benötigte [Docsy Hugo theme](https://github.com/google/docsy#readme) muss als git submodule installiert werden:
@@ -50,26 +50,26 @@ Wenn Sie Docker [installiert](https://www.docker.com/get-started) haben, erstell
make container-image
```
Nachdem das Image erstellt wurde, können Sie die Site lokal ausführen:
Nachdem das Image erstellt wurde, können Sie die Website lokal öffnen:
```bash
make container-serve
```
Öffnen Sie Ihren Browser unter http://localhost:1313, um die Site anzuzeigen. Wenn Sie Änderungen an den Quelldateien vornehmen, aktualisiert Hugo die Site und erzwingt eine Browseraktualisierung.
Öffnen Sie Ihren Browser unter http://localhost:1313, um die Website anzuzeigen. Wenn Sie Änderungen an den Quelldateien vornehmen, aktualisiert Hugo die Website und erzwingt eine Browseraktualisierung.
## Die Site lokal mit Hugo ausführen
## Die Website lokal mit Hugo ausführen
Hugo-Installationsanweisungen finden Sie in der [offiziellen Hugo-Dokumentation](https://gohugo.io/getting-started/installing/). Stellen Sie sicher, dass Sie die Hugo-Version installieren, die in der Umgebungsvariablen `HUGO_VERSION` in der Datei [`netlify.toml`](netlify.toml#L9) angegeben ist.
Das benötigte [Docsy Hugo theme](https://github.com/google/docsy#readme) muss als git submodule installiert werden:
Das benötigte [Docsy Hugo-Theme](https://github.com/google/docsy#readme) muss als git submodule installiert werden:
```
#Füge das Docsy submodule hinzu
git submodule update --init --recursive --depth 1
```
So führen Sie die Site lokal aus, wenn Sie Hugo installiert haben:
So führen Sie die Website lokal aus, wenn Sie Hugo installiert haben:
```bash
# Installieren der JavaScript Abhängigkeiten
@@ -77,7 +77,7 @@ npm ci
make serve
```
Dadurch wird der lokale Hugo-Server an Port 1313 gestartet. Öffnen Sie Ihren Browser unter http://localhost:1313, um die Site anzuzeigen. Wenn Sie Änderungen an den Quelldateien vornehmen, aktualisiert Hugo die Site und erzwingt eine Browseraktualisierung.
Dadurch wird der lokale Hugo-Server an Port 1313 gestartet. Öffnen Sie Ihren Browser unter http://localhost:1313, um die Website anzuzeigen. Wenn Sie Änderungen an den Quelldateien vornehmen, aktualisiert Hugo die Website und erzwingt eine Browseraktualisierung.
## Community, Diskussion, Beteiligung und Unterstützung
@@ -94,4 +94,4 @@ Die Teilnahme an der Kubernetes-Community unterliegt dem [Kubernetes-Verhaltensk
## Vielen Dank!
Kubernetes lebt vom Community Engagement und wir freuen uns sehr über Ihre Beiträge zu unserer Website und unserer Dokumentation!
Kubernetes lebt vom Community-Engagement und wir freuen uns sehr über Ihre Beiträge zu unserer Website und unserer Dokumentation!
+50 -2
View File
@@ -4,6 +4,9 @@
このリポジトリには、[KubernetesのWebサイトとドキュメント](https://kubernetes.io/)をビルドするために必要な全アセットが格納されています。貢献に興味を持っていただきありがとうございます!
- [ドキュメントに貢献する](#contributing-to-the-docs)
- [翻訳された`README.md`一覧](#localization-readmemds)
# リポジトリの使い方
Hugo(Extended version)を使用してWebサイトをローカルで実行することも、コンテナランタイムで実行することもできます。コンテナランタイムを使用することを強くお勧めします。これにより、本番Webサイトとのデプロイメントの一貫性が得られます。
@@ -56,6 +59,43 @@ make serve
これで、Hugoのサーバーが1313番ポートを使って開始します。お使いのブラウザにて http://localhost:1313 にアクセスしてください。リポジトリ内のソースファイルに変更を加えると、HugoがWebサイトの内容を更新してブラウザに反映します。
## API reference pagesをビルドする
`content/en/docs/reference/kubernetes-api`に配置されているAPIリファレンスページは<https://github.com/kubernetes-sigs/reference-docs/tree/master/gen-resourcesdocs>を使ってSwagger仕様書からビルドされています。
新しいKubernetesリリースのためにリファレンスページをアップデートするには、次の手順を実行します:
1. `api-ref-generator`サブモジュールをプルする:
```bash
git submodule update --init --recursive --depth 1
```
2. Swagger仕様書を更新する:
```bash
curl 'https://raw.githubusercontent.com/kubernetes/kubernetes/master/api/openapi-spec/swagger.json' > api-ref-assets/api/swagger.json
```
3. 新しいリリースの変更を反映するため、`api-ref-assets/config/`で`toc.yaml`と`fields.yaml`を適用する。
4. 次に、ページをビルドする:
```bash
make api-reference
```
コンテナイメージからサイトを作成・サーブする事でローカルで結果をテストすることができます:
```bash
make container-image
make container-serve
```
APIリファレンスを見るために、ブラウザで<http://localhost:1313/docs/reference/kubernetes-api/>を開いてください。
5. 新しいコントラクトのすべての変更が設定ファイル`toc.yaml`と`fields.yaml`に反映されたら、新しく生成されたAPIリファレンスページとともにPull Requestを作成します。
## トラブルシューティング
### error: failed to transform resource: TOCSS: failed to transform "scss/main.scss" (text/x-scss): this feature is not available in your current Hugo version
@@ -107,7 +147,7 @@ sudo launchctl load -w /Library/LaunchDaemons/limit.maxfiles.plist
- [Slack](https://kubernetes.slack.com/messages/kubernetes-docs-ja)
- [メーリングリスト](https://groups.google.com/forum/#!forum/kubernetes-sig-docs)
## ドキュメントに貢献する
## ドキュメントに貢献する {#contributing-to-the-docs}
GitHubの画面右上にある**Fork**ボタンをクリックすると、お使いのGitHubアカウントに紐付いた本リポジトリのコピーが作成され、このコピーのことを*フォーク*と呼びます。フォークリポジトリの中ではお好きなように変更を加えていただいて構いません。加えた変更をこのリポジトリに追加したい任意のタイミングにて、フォークリポジトリからPull Reqeustを作成してください。
@@ -124,7 +164,15 @@ Kubernetesのドキュメントへの貢献に関する詳細については以
* [ドキュメントのスタイルガイド](https://kubernetes.io/docs/contribute/style/style-guide/)
* [Kubernetesドキュメントの翻訳方法](https://kubernetes.io/docs/contribute/localization/)
## 翻訳された`README.md`一覧
### New Contributor Ambassadors
コントリビュートする時に何か助けが必要なら、[New Contributor Ambassadors](https://kubernetes.io/docs/contribute/advanced/#serve-as-a-new-contributor-ambassador)に聞いてみると良いでしょう。彼らはSIG Docsのapproverで、最初の数回のPull Requestを通して新しいコントリビューターを指導し助けることを責務としています。New Contributors Ambassadorsにコンタクトするには、[Kubernetes Slack](https://slack.k8s.io)が最適な場所です。現在のSIG DocsのNew Contributor Ambassadorは次の通りです:
| 名前 | Slack | GitHub |
| -------------------------- | -------------------------- | -------------------------- |
| Arsh Sharma | @arsh | @RinkiyaKeDad |
## 翻訳された`README.md`一覧 {#localization-readmemds}
| Language | Language |
|---|---|
+23 -22
View File
@@ -5,9 +5,9 @@
W tym repozytorium znajdziesz wszystko, czego potrzebujesz do zbudowania [strony internetowej Kubernetesa wraz z dokumentacją](https://kubernetes.io/). Bardzo nam miło, że chcesz wziąć udział w jej współtworzeniu!
+ [Twój wkład w dokumentację](#twój-wkład-w-dokumentację)
+ [Informacje o wersjach językowych](#informacje-o-wersjach-językowych)
+ [Informacje o wersjach językowych](#różne-wersje-językowe-readmemd)
# Jak używać tego repozytorium
## Jak używać tego repozytorium
Możesz uruchomić serwis lokalnie poprzez Hugo (Extended version) lub ze środowiska kontenerowego. Zdecydowanie zalecamy korzystanie z kontenerów, bo dzięki temu lokalna wersja będzie spójna z tym, co jest na oficjalnej stronie.
@@ -22,14 +22,14 @@ Aby móc skorzystać z tego repozytorium, musisz lokalnie zainstalować:
Przed rozpoczęciem zainstaluj niezbędne zależności. Sklonuj repozytorium i przejdź do odpowiedniego katalogu:
```
```bash
git clone https://github.com/kubernetes/website.git
cd website
```
Strona Kubernetesa używa [Docsy Hugo theme](https://github.com/google/docsy#readme). Nawet jeśli planujesz uruchomić serwis w środowisku kontenerowym, zalecamy pobranie podmodułów i innych zależności za pomocą polecenia:
```
```bash
# pull in the Docsy submodule
git submodule update --init --recursive --depth 1
```
@@ -38,14 +38,14 @@ git submodule update --init --recursive --depth 1
Aby zbudować i uruchomić serwis wewnątrz środowiska kontenerowego, wykonaj następujące polecenia:
```
```bash
make container-image
make container-serve
```
Jeśli widzisz błędy, prawdopodobnie kontener z Hugo nie dysponuje wystarczającymi zasobami. Aby rozwiązać ten problem, zwiększ ilość dostępnych zasobów CPU i pamięci dla Dockera na Twojej maszynie ([MacOSX](https://docs.docker.com/docker-for-mac/#resources) i [Windows](https://docs.docker.com/docker-for-windows/#resources)).
Aby obejrzeć zawartość serwisu, otwórz w przeglądarce adres http://localhost:1313. Po każdej zmianie plików źródłowych, Hugo automatycznie aktualizuje stronę i odświeża jej widok w przeglądarce.
Aby obejrzeć zawartość serwisu, otwórz w przeglądarce adres <http://localhost:1313>. Po każdej zmianie plików źródłowych, Hugo automatycznie aktualizuje stronę i odświeża jej widok w przeglądarce.
## Jak uruchomić lokalną kopię strony przy pomocy Hugo?
@@ -59,13 +59,14 @@ npm ci
make serve
```
Zostanie uruchomiony lokalny serwer Hugo na porcie 1313. Otwórz w przeglądarce adres http://localhost:1313, aby obejrzeć zawartość serwisu. Po każdej zmianie plików źródłowych, Hugo automatycznie aktualizuje stronę i odświeża jej widok w przeglądarce.
Zostanie uruchomiony lokalny serwer Hugo na porcie 1313. Otwórz w przeglądarce adres <http://localhost:1313>, aby obejrzeć zawartość serwisu. Po każdej zmianie plików źródłowych, Hugo automatycznie aktualizuje stronę i odświeża jej widok w przeglądarce.
## Budowanie dokumentacji źródłowej API
Budowanie dokumentacji źródłowej API zostało opisane w [angielskiej wersji pliku README.md](README.md#building-the-api-reference-pages).
## Rozwiązywanie problemów
### error: failed to transform resource: TOCSS: failed to transform "scss/main.scss" (text/x-scss): this feature is not available in your current Hugo version
Z przyczyn technicznych, Hugo jest rozprowadzany w dwóch wersjach. Aktualny serwis używa tylko wersji **Hugo Extended**. Na stronie z [wydaniami](https://github.com/gohugoio/hugo/releases) poszukaj archiwum z `extended` w nazwie. Dla potwierdzenia, uruchom `hugo version` i poszukaj słowa `extended`.
@@ -74,7 +75,7 @@ Z przyczyn technicznych, Hugo jest rozprowadzany w dwóch wersjach. Aktualny ser
Jeśli po uruchomieniu `make serve` na macOS widzisz następujący błąd:
```
```bash
ERROR 2020/08/01 19:09:18 Error: listen tcp 127.0.0.1:1313: socket: too many open files
make: *** [serve] Error 1
```
@@ -104,36 +105,36 @@ sudo chown root:wheel /Library/LaunchDaemons/limit.maxproc.plist
sudo launchctl load -w /Library/LaunchDaemons/limit.maxfiles.plist
```
Przedstawiony sposób powinien działać dla MacOS w wersji Catalina i Mojave.
Przedstawiony sposób powinien działać dla MacOS w wersjach Catalina i Mojave.
# Zaangażowanie w prace SIG Docs
## Zaangażowanie w prace SIG Docs
O społeczności SIG Docs i terminach spotkań dowiesz z [jej strony](https://github.com/kubernetes/community/tree/master/sig-docs#meetings).
Możesz kontaktować się z gospodarzami projektu za pomocą:
- [Komunikatora Slack](https://kubernetes.slack.com/messages/sig-docs) [Tutaj możesz dostać zaproszenie do tej grupy Slack-a](https://slack.k8s.io/)
- [Komunikatora Slack](https://kubernetes.slack.com/messages/sig-docs)
- [Tutaj możesz dostać zaproszenie do tej grupy Slacka](https://slack.k8s.io/)
- [List dyskusyjnych](https://groups.google.com/forum/#!forum/kubernetes-sig-docs)
# Twój wkład w dokumentację
## Twój wkład w dokumentację
Możesz kliknąć w przycisk **Fork** w prawym górnym rogu ekranu, aby stworzyć kopię tego repozytorium na swoim koncie GitHub. Taki rodzaj kopii (odgałęzienia) nazywa się *fork*. Zmieniaj w nim, co chcesz, a kiedy będziesz już gotowy/a przesłać te zmiany do nas, przejdź do swojej kopii i stwórz nowy *pull request*, abyśmy zostali o tym poinformowani.
Po stworzeniu *pull request*, jeden z recenzentów projektu Kubernetes podejmie się przekazania jasnych wskazówek pozwalających podjąć następne działania. Na Tobie, jako właścicielu *pull requesta*, **spoczywa odpowiedzialność za wprowadzenie poprawek zgodnie z uwagami recenzenta.**
Po stworzeniu *pull request*, jeden z recenzentów projektu Kubernetes podejmie się przekazania jasnych wskazówek pozwalających podjąć następne działania. Na Tobie, jako właścicielu *pull requesta*, **spoczywa odpowiedzialność za wprowadzenie poprawek zgodnie z uwagami recenzenta.**
Może też się zdarzyć, że swoje uwagi zgłosi więcej niż jeden recenzent, lub że recenzję będzie robił ktoś inny, niż ten, kto został przydzielony na początku.
W niektórych przypadkach, jeśli zajdzie taka potrzeba, recenzent może poprosić dodatkowo o recenzję jednego z [recenzentów technicznych](https://github.com/kubernetes/website/wiki/Tech-reviewers). Recenzenci zrobią wszystko, aby odpowiedzieć sprawnie, ale konkretny czas odpowiedzi zależy od wielu czynników.
W niektórych przypadkach, jeśli zajdzie taka potrzeba, recenzent może poprosić dodatkowo o recenzję jednego z recenzentów technicznych. Recenzenci zrobią wszystko, aby odpowiedzieć sprawnie, ale konkretny czas odpowiedzi zależy od wielu czynników.
Więcej informacji na temat współpracy przy tworzeniu dokumentacji znajdziesz na stronach:
* [Udział w rozwijaniu dokumentacji](https://kubernetes.io/docs/contribute/)
* [Rodzaje stron](https://kubernetes.io/docs/contribute/style/page-content-types/)
* [Styl pisania dokumentacji](http://kubernetes.io/docs/contribute/style/style-guide/)
* [Lokalizacja dokumentacji Kubernetes](https://kubernetes.io/docs/contribute/localization/)
- [Udział w rozwijaniu dokumentacji](https://kubernetes.io/docs/contribute/)
- [Rodzaje stron](https://kubernetes.io/docs/contribute/style/page-content-types/)
- [Styl pisania dokumentacji](http://kubernetes.io/docs/contribute/style/style-guide/)
- [Lokalizacja dokumentacji Kubernetesa](https://kubernetes.io/docs/contribute/localization/)
# Różne wersje językowe `README.md`
## Różne wersje językowe `README.md`
| Język | Język |
|---|---|
@@ -145,10 +146,10 @@ Więcej informacji na temat współpracy przy tworzeniu dokumentacji znajdziesz
| [wietnamski](README-vi.md) | [rosyjski](README-ru.md) |
| [włoski](README-it.md) | [ukraiński](README-uk.md) |
# Zasady postępowania
## Zasady postępowania
Udział w działaniach społeczności Kubernetesa jest regulowany przez [Kodeks postępowania CNCF](https://github.com/cncf/foundation/blob/master/code-of-conduct-languages/pl.md).
# Dziękujemy!
## Dziękujemy!
Kubernetes rozkwita dzięki zaangażowaniu społeczności — doceniamy twój wkład w tworzenie naszego serwisu i dokumentacji!
+2 -2
View File
@@ -123,7 +123,7 @@ Hugo is shipped in two set of binaries for technical reasons. The current websit
由于技术原因,Hugo 会发布两套二进制文件。
当前网站仅基于 **Hugo Extended** 版本运行。
在 [发布页面](https://github.com/gohugoio/hugo/releases) 中查找名称为 `extended` 的归档。可以运行 `huge version` 查看是否有单词 `extended` 来确认。
在 [发布页面](https://github.com/gohugoio/hugo/releases) 中查找名称为 `extended` 的归档。可以运行 `hugo version` 查看是否有单词 `extended` 来确认。
<!--
### Troubleshooting macOS for too many open files
@@ -131,7 +131,7 @@ Hugo is shipped in two set of binaries for technical reasons. The current websit
If you run `make serve` on macOS and receive the following error:
-->
### 对 macOs 上打开太多文件的故障排除
### 对 macOS 上打开太多文件的故障排除
如果在 macOS 上运行 `make serve` 收到以下错误:
+13 -5
View File
@@ -65,9 +65,9 @@ This will start the local Hugo server on port 1313. Open up your browser to <htt
The API reference pages located in `content/en/docs/reference/kubernetes-api` are built from the Swagger specification, using <https://github.com/kubernetes-sigs/reference-docs/tree/master/gen-resourcesdocs>.
To update the reference pages for a new Kubernetes release (replace v1.20 in the following examples with the release to update to):
To update the reference pages for a new Kubernetes release follow these steps:
1. Pull the `kubernetes-resources-reference` submodule:
1. Pull in the `api-ref-generator` submodule:
```bash
git submodule update --init --recursive --depth 1
@@ -75,9 +75,9 @@ To update the reference pages for a new Kubernetes release (replace v1.20 in the
2. Update the Swagger specification:
```
curl 'https://raw.githubusercontent.com/kubernetes/kubernetes/master/api/openapi-spec/swagger.json' > api-ref-assets/api/swagger.json
```
```bash
curl 'https://raw.githubusercontent.com/kubernetes/kubernetes/master/api/openapi-spec/swagger.json' > api-ref-assets/api/swagger.json
```
3. In `api-ref-assets/config/`, adapt the files `toc.yaml` and `fields.yaml` to reflect the changes of the new release.
@@ -167,6 +167,14 @@ For more information about contributing to the Kubernetes documentation, see:
- [Documentation Style Guide](https://kubernetes.io/docs/contribute/style/style-guide/)
- [Localizing Kubernetes Documentation](https://kubernetes.io/docs/contribute/localization/)
### New contributor ambassadors
If you need help at any point when contributing, the [New Contributor Ambassadors](https://kubernetes.io/docs/contribute/advanced/#serve-as-a-new-contributor-ambassador) are a good point of contact. These are SIG Docs approvers whose responsibilities include mentoring new contributors and helping them through their first few pull requests. The best place to contact the New Contributors Ambassadors would be on the [Kubernetes Slack](https://slack.k8s.io/). Current New Contributors Ambassadors for SIG Docs:
| Name | Slack | GitHub |
| -------------------------- | -------------------------- | -------------------------- |
| Arsh Sharma | @arsh | @RinkiyaKeDad |
## Localization `README.md`'s
| Language | Language |
File diff suppressed because it is too large Load Diff
+26 -4
View File
@@ -6,6 +6,7 @@
- initContainers
- imagePullSecrets
- enableServiceLinks
- os
- name: Volumes
fields:
- volumes
@@ -49,11 +50,9 @@
- securityContext
- name: Beta level
fields:
- ephemeralContainers
- preemptionPolicy
- overhead
- name: Alpha level
fields:
- ephemeralContainers
- name: Deprecated
fields:
- serviceAccount
@@ -154,6 +153,7 @@
- timeoutSeconds
- failureThreshold
- successThreshold
- grpc
- definition: io.k8s.api.core.v1.SecurityContext
field_categories:
@@ -225,6 +225,9 @@
- stdin
- stdinOnce
- tty
- name: Security context
fields:
- securityContext
- name: Not allowed
fields:
- ports
@@ -232,7 +235,6 @@
- lifecycle
- livenessProbe
- readinessProbe
- securityContext
- startupProbe
- definition: io.k8s.api.core.v1.ReplicationControllerSpec
@@ -313,6 +315,7 @@
- revisionHistoryLimit
- volumeClaimTemplates
- minReadySeconds
- persistentVolumeClaimRetentionPolicy
- definition: io.k8s.api.apps.v1.StatefulSetUpdateStrategy
field_categories:
@@ -393,6 +396,9 @@
- completedIndexes
- conditions
- uncountedTerminatedPods
- name: Alpha level
fields:
- ready
- definition: io.k8s.api.batch.v1.CronJobSpec
field_categories:
@@ -421,6 +427,22 @@
- value
- periodSeconds
- definition: io.k8s.api.autoscaling.v2.HorizontalPodAutoscalerSpec
field_categories:
- fields:
- maxReplicas
- scaleTargetRef
- minReplicas
- behavior
- metrics
- definition: io.k8s.api.autoscaling.v2.HPAScalingPolicy
field_categories:
- fields:
- type
- value
- periodSeconds
- definition: io.k8s.api.core.v1.ServiceSpec
field_categories:
- fields:
+6 -3
View File
@@ -23,7 +23,7 @@ parts:
- PodSpec
- Container
- EphemeralContainer
- Handler
- LifecycleHandler
- NodeAffinity
- PodAffinity
- PodAntiAffinity
@@ -60,6 +60,9 @@ parts:
- name: HorizontalPodAutoscaler
group: autoscaling
version: v1
- name: HorizontalPodAutoscaler
group: autoscaling
version: v2
- name: HorizontalPodAutoscaler
group: autoscaling
version: v2beta2
@@ -217,10 +220,10 @@ parts:
version: v1
- name: FlowSchema
group: flowcontrol.apiserver.k8s.io
version: v1beta1
version: v1beta2
- name: PriorityLevelConfiguration
group: flowcontrol.apiserver.k8s.io
version: v1beta1
version: v1beta2
- name: Binding
group: ""
version: v1
+71 -6
View File
@@ -7,7 +7,7 @@ $announcement-size-adjustment: 8px;
}
main {
img {
*:not(figure) > img {
max-width: 100%;
}
@@ -222,8 +222,14 @@ footer {
padding: 1rem !important;
min-height: initial !important;
.footer__links {
width: 100%;
> div, > p {
max-width: 95%;
@media only screen and (min-width: 768px) {
max-width: calc(min(80rem,90vw)); // avoid spreading too wide
}
}
> .footer__links {
margin: auto;
padding-bottom: 1rem;
@@ -233,6 +239,8 @@ footer {
}
@media only screen and (min-width: 768px) {
max-width: calc(min(60rem,90vw)); // avoid spreading too wide
nav {
display: flex;
flex-direction: row;
@@ -305,6 +313,12 @@ footer {
padding-top: 1.5rem !important;
top: 5rem !important;
@supports (position: sticky) {
position: sticky !important;
height: calc(100vh - 10rem);
overflow-y: auto;
}
#TableOfContents {
padding-top: 1rem;
}
@@ -315,6 +329,11 @@ main {
.td-content>table td {
word-break: break-word;
}
table.no-word-break td,
table.no-word-break code {
word-break: normal;
}
}
@@ -382,16 +401,24 @@ body {
}
.deprecation-warning, .pageinfo.deprecation-warning {
padding: 20px;
margin: 20px 0;
padding: clamp(10px, 2vmin, 20px);
margin: clamp(10px, 1vh, 20px) 0;
background-color: #faf5b6;
color: #000;
}
.deprecation-warning.outdated-blog, .pageinfo.deprecation-warning.outdated-blog {
background-color: $blue;
color: $white;
}
body.td-home .deprecation-warning, body.td-blog .deprecation-warning, body.td-documentation .deprecation-warning {
border-radius: 3px;
}
.deprecation-warning p:only-child {
margin-bottom: 0;
}
.td-documentation .td-content > .highlight {
max-width: initial;
@@ -539,7 +566,8 @@ main.content {
}
}
/* COMMUNITY */
/* COMMUNITY legacy styles */
/* Leave these in place until localizations are caught up */
.newcommunitywrapper {
.news {
@@ -698,6 +726,26 @@ body.td-documentation {
}
}
figure {
> figcaption {
padding-top: 1em;
margin-bottom: 3em;
}
}
// Clamp size for release logos
figure.release-logo {
> figcaption {
font-size: 1.8em;
}
> img {
max-width: 100%;
max-height: calc(max(40em,min(80vh,70em)));
height: auto;
width: auto;
}
}
// Match Docsy-imposed max width on text body
@media (min-width: 1200px) {
@@ -732,6 +780,10 @@ figure {
max-width: clamp(0vw, 95vw, 100%);
max-height: calc(80vh - 8rem);
}
figure + noscript > *{
max-width: calc(max(100%, 100vw));
}
}
@media only screen and (min-width: 768px) {
@@ -754,6 +806,9 @@ figure {
max-height: calc(100vh - 10rem);
}
}
figure + noscript > * {
max-width: 80%;
}
}
// Indent definition lists
@@ -786,3 +841,13 @@ dl {
margin-bottom: 1em;
}
}
.no-js .mermaid {
display: none;
}
div.alert > em.javascript-required {
display: inline-block;
min-height: 1.5em;
margin: calc(max(4em, ( 8vh + 4em ) / 2)) 0 0.25em 0;
}
Executable → Regular
View File
Executable → Regular
View File
+19 -19
View File
@@ -139,13 +139,13 @@ time_format_default = "January 02, 2006 at 3:04 PM PST"
description = "Production-Grade Container Orchestration"
showedit = true
latest = "v1.23"
latest = "v1.24"
fullversion = "v1.23.0"
fullversion = "v1.23.6"
version = "v1.23"
githubbranch = "main"
docsbranch = "main"
deprecated = false
deprecated = true
currentUrl = "https://kubernetes.io/docs/home/"
nextUrl = "https://kubernetes-io-vnext-staging.netlify.com/"
@@ -179,40 +179,40 @@ js = [
]
[[params.versions]]
fullversion = "v1.23.0"
version = "v1.23"
githubbranch = "v1.23.0"
fullversion = "v1.24.0"
version = "v1.24"
githubbranch = "v1.24.0"
docsbranch = "main"
url = "https://kubernetes.io"
[[params.versions]]
fullversion = "v1.22.4"
fullversion = "v1.23.6"
version = "v1.23"
githubbranch = "v1.23.6"
docsbranch = "release-1.23"
url = "https://v1-23.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.22.9"
version = "v1.22"
githubbranch = "v1.22.4"
githubbranch = "v1.22.9"
docsbranch = "release-1.22"
url = "https://v1-22.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.21.7"
fullversion = "v1.21.12"
version = "v1.21"
githubbranch = "v1.21.7"
githubbranch = "v1.21.12"
docsbranch = "release-1.21"
url = "https://v1-21.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.20.13"
fullversion = "v1.20.15"
version = "v1.20"
githubbranch = "v1.20.13"
githubbranch = "v1.20.15"
docsbranch = "release-1.20"
url = "https://v1-20.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.19.16"
version = "v1.19"
githubbranch = "v1.19.16"
docsbranch = "release-1.19"
url = "https://v1-19.docs.kubernetes.io"
# User interface configuration
[params.ui]
# Enable to show the side bar menu in its compact state.
+2 -2
View File
@@ -42,12 +42,12 @@ Kubernetes ist Open Source und bietet Dir die Freiheit, die Infrastruktur vor Or
<button id="desktopShowVideoButton" onclick="kub.showVideo()">Video ansehen</button>
<br>
<br>
<a href="https://events.linuxfoundation.org/kubecon-cloudnativecon-north-america/?utm_source=kubernetes.io&utm_medium=nav&utm_campaign=kccncna21" button id="desktopKCButton">Besuche die KubeCon North America vom 11. bis 15. Oktober 2021</a>
<a href="https://events.linuxfoundation.org/kubecon-cloudnativecon-europe-2022/?utm_source=kubernetes.io&utm_medium=nav&utm_campaign=kccnceu22" button id="desktopKCButton">Besuche die KubeCon Europe vom 16. bis 20. Mai 2022</a>
<br>
<br>
<br>
<br>
<a href="https://events.linuxfoundation.org/kubecon-cloudnativecon-europe-2022/?utm_source=kubernetes.io&utm_medium=nav&utm_campaign=kccnceu22" button id="desktopKCButton">Besuche die KubeCon Europe vom 17. bis 20. Mai 2022</a>
<a href="https://events.linuxfoundation.org/kubecon-cloudnativecon-north-america/?utm_source=kubernetes.io&utm_medium=nav&utm_campaign=kccncna22" button id="desktopKCButton">Besuchen die KubeCon North America vom 24. bis 28. Oktober 2022</a>
</div>
<div id="videoPlayer">
<iframe data-url="https://www.youtube.com/embed/H06qrNmGqyE?autoplay=1" frameborder="0" allowfullscreen></iframe>
@@ -24,14 +24,14 @@ Die Add-Ons in den einzelnen Kategorien sind alphabetisch sortiert - Die Reihenf
* [Canal](https://github.com/tigera/canal/tree/master/k8s-install) vereint Flannel und Calico um Networking- und Network-Policies bereitzustellen.
* [Cilium](https://github.com/cilium/cilium) ist ein L3 Network- and Network-Policy-Plugin welches das transparent HTTP/API/L7-Policies durchsetzen kann. Sowohl Routing- als auch Overlay/Encapsulation-Modes werden uterstützt. Außerdem kann Cilium auf andere CNI-Plugins aufsetzen.
* [CNI-Genie](https://github.com/Huawei-PaaS/CNI-Genie) ermöglicht das nahtlose Verbinden von Kubernetes mit einer Reihe an CNI-Plugins wie z.B. Calico, Canal, Flannel, Romana, oder Weave.
* [Contiv](http://contiv.github.io) bietet konfigurierbares Networking (Native L3 auf BGP, Overlay mit vxlan, Klassisches L2, Cisco-SDN/ACI) für verschiedene Anwendungszwecke und auch umfangreiches Policy-Framework. Das Contiv-Projekt ist vollständig [Open Source](http://github.com/contiv). Der [installer](http://github.com/contiv/install) bietet sowohl kubeadm als auch nicht-kubeadm basierte Installationen.
* [Contiv](https://contivpp.io/) bietet konfigurierbares Networking (Native L3 auf BGP, Overlay mit vxlan, Klassisches L2, Cisco-SDN/ACI) für verschiedene Anwendungszwecke und auch umfangreiches Policy-Framework. Das Contiv-Projekt ist vollständig [Open Source](http://github.com/contiv). Der [installer](http://github.com/contiv/install) bietet sowohl kubeadm als auch nicht-kubeadm basierte Installationen.
* [Contrail](http://www.juniper.net/us/en/products-services/sdn/contrail/contrail-networking/), basierend auf [Tungsten Fabric](https://tungsten.io), ist eine Open Source, multi-Cloud Netzwerkvirtualisierungs- und Policy-Management Plattform. Contrail und Tungsten Fabric sind mit Orechstratoren wie z.B. Kubernetes, OpenShift, OpenStack und Mesos integriert und bieten Isolationsmodi für Virtuelle Maschinen, Container (bzw. Pods) und Bare Metal workloads.
* [Flannel](https://github.com/flannel-io/flannel#deploying-flannel-manually) ist ein Overlay-Network-Provider der mit Kubernetes genutzt werden kann.
* [Knitter](https://github.com/ZTE/Knitter/) ist eine Network-Lösung die Mehrfach-Network in Kubernetes ermöglicht.
* [Multus](https://github.com/Intel-Corp/multus-cni) ist ein Multi-Plugin für Mehrfachnetzwerk-Unterstützung um alle CNI-Plugins (z.B. Calico, Cilium, Contiv, Flannel), zusätzlich zu SRIOV-, DPDK-, OVS-DPDK- und VPP-Basierten Workloads in Kubernetes zu unterstützen.
* Multus ist ein Multi-Plugin für Mehrfachnetzwerk-Unterstützung um alle CNI-Plugins (z.B. Calico, Cilium, Contiv, Flannel), zusätzlich zu SRIOV-, DPDK-, OVS-DPDK- und VPP-Basierten Workloads in Kubernetes zu unterstützen.
* [NSX-T](https://docs.vmware.com/en/VMware-NSX-T/2.0/nsxt_20_ncp_kubernetes.pdf) Container Plug-in (NCP) bietet eine Integration zwischen VMware NSX-T und einem Orchestator wie z.B. Kubernetes. Außerdem bietet es eine Integration zwischen NSX-T und Containerbasierten CaaS/PaaS-Plattformen wie z.B. Pivotal Container Service (PKS) und OpenShift.
* [Nuage](https://github.com/nuagenetworks/nuage-kubernetes/blob/v5.1.1-1/docs/kubernetes-1-installation.rst) ist eine SDN-Plattform die Policy-Basiertes Networking zwischen Kubernetes Pods und nicht-Kubernetes Umgebungen inklusive Sichtbarkeit und Security-Monitoring bereitstellt.
* [Romana](http://romana.io) ist eine Layer 3 Network-Lösung für Pod-Netzwerke welche auch die [NetworkPolicy API](/docs/concepts/services-networking/network-policies/) unterstützt. Details zur Installation als kubeadm Add-On sind [hier](https://github.com/romana/romana/tree/master/containerize) verfügbar.
* [Romana](https://github.com/romana/romana) ist eine Layer 3 Network-Lösung für Pod-Netzwerke welche auch die [NetworkPolicy API](/docs/concepts/services-networking/network-policies/) unterstützt. Details zur Installation als kubeadm Add-On sind [hier](https://github.com/romana/romana/tree/master/containerize) verfügbar.
* [Weave Net](https://www.weave.works/docs/net/latest/kube-addon/) bietet Networking and Network-Policies und arbeitet auf beiden Seiten der Network-Partition ohne auf eine externe Datenbank angwiesen zu sein.
## Service-Discovery
@@ -52,5 +52,3 @@ Die Add-Ons in den einzelnen Kategorien sind alphabetisch sortiert - Die Reihenf
Es gibt einige weitere Add-Ons die in dem abgekündigten [cluster/addons](https://git.k8s.io/kubernetes/cluster/addons)-Verzeichnis dokumentiert sind.
Add-Ons die ordentlich gewartet werden dürfen gerne hier aufgezählt werden. Wir freuen uns auf PRs!
@@ -15,7 +15,7 @@ Diese Seite ist eine Übersicht über Kubernetes.
Kubernetes ist eine portable, erweiterbare Open-Source-Plattform zur Verwaltung von
containerisierten Arbeitslasten und Services, die sowohl die deklarative Konfiguration als auch die Automatisierung erleichtert.
Es hat einen großes, schnell wachsendes Ökosystem. Kubernetes Dienstleistungen, Support und Tools sind weit verbreitet.
Es hat ein großes, schnell wachsendes Ökosystem. Kubernetes Dienstleistungen, Support und Tools sind weit verbreitet.
Google hat das Kubernetes-Projekt 2014 als Open-Source-Projekt zur Verfügung gestellt. Kubernetes baut auf anderthalb Jahrzehnten
Erfahrung auf, die Google mit der Ausführung von Produktions-Workloads in großem Maßstab hat, kombiniert mit den besten Ideen und Praktiken der Community.
@@ -50,7 +50,7 @@ für Managementtools zu bieten, den Status von Kontrollpunkten zu ermitteln.
Darüber hinaus basiert die [Kubernetes-Steuerungsebene](/docs/concepts/overview/components/) auf den gleichen APIs,
die Entwicklern und Anwendern zur Verfügung stehen. Benutzer können ihre eigenen Controller, wie z.B.
[Scheduler](https://github.com/kubernetes/community/blob/{{< param "githubbranch" >}}/contributors/devel/scheduler.md), mit
[Scheduler](https://github.com/kubernetes/community/blob/master/contributors/devel/scheduler.md), mit
ihren [eigenen APIs](/docs/concepts/api-extension/custom-resources/) schreiben, die von einem
universellen [Kommandozeilen-Tool](/docs/user-guide/kubectl-overview/) angesprochen werden können.
@@ -248,7 +248,7 @@ einige Einschränkungen:
Eintrag zur Liste `metadata.finalizers` hinzugefügt werden.
- Pod-Updates dürfen keine Felder ändern, die Ausnahmen sind
`spec.containers[*].image`,
`spec.initContainers[*].image`,` spec.activeDeadlineSeconds` oder
`spec.initContainers[*].image`, `spec.activeDeadlineSeconds` oder
`spec.tolerations`. Für `spec.tolerations` kannnst du nur neue Einträge
hinzufügen.
- Für `spec.activeDeadlineSeconds` sind nur zwei Änderungen erlaubt:
+12 -14
View File
@@ -22,30 +22,30 @@ Da Mitwirkende nicht ihren eigenen Pull Request freigeben können, brauchst du m
Alle Lokalisierungsteams müssen sich mit ihren eigenen Ressourcen selbst tragen. Die Kubernetes-Website ist gerne bereit, deine Arbeit zu beherbergen, aber es liegt an dir, sie zu übersetzen.
### Finden deinen Zwei-Buchstaben-Sprachcode
### Ermittlung deines Zwei-Buchstaben-Sprachcodes
Rufe den [ISO 639-1 Standard](https://www.loc.gov/standards/iso639-2/php/code_list.php) auf und finde deinen Zwei-Buchstaben-Ländercode zur Lokalisierung. Zum Beispiel ist der Zwei-Buchstaben-Code für Korea `ko`.
### Duplizieren und klonen des Repositories
### Duplizieren und Klonen des Repositories
Als erstes [erstells du dir deine eigenes Duplikat](/docs/contribute/new-content/new-content/#fork-the-repo) vom [kubernetes/website] Repository.
Als erstes [erstellst du dir deine eigenes Duplikat](/docs/contribute/new-content/new-content/#fork-the-repo) vom [kubernetes/website] Repository.
Dann klonst du das Duplikat und `cd` hinein:
Dann klonst du das Duplikat und wechselst in das neu erstellte Verzeichnis:
```shell
git clone https://github.com/<username>/website
cd website
```
### Eröffne ein Pull Request
### Eröffnen eines Pull Requests
Als nächstes [eröffnest du einen Pull Request](/docs/contribute/new-content/open-a-pr/#open-a-pr) (PR) um eine Lokalisierung zum `kubernetes/website` Repository hinzuzufügen.
Der PR muss die [minimalen Inhaltsanforderungen](#mindestanforderungen) erfüllen bevor dieser genehmigt werden kann.
Der PR muss die [minimalen Inhaltsanforderungen](#mindestanforderungen) erfüllen, bevor dieser genehmigt werden kann.
Wie der PR für eine neue Lokalisierung aussieht kannst du dir an dem PR für die [Französische Dokumentation](https://github.com/kubernetes/website/pull/12548) ansehen.
Wie der PR für eine neue Lokalisierung aussieht, kannst du dir an dem PR für die [Französische Dokumentation](https://github.com/kubernetes/website/pull/12548) ansehen.
### Trete der Kubernetes GitHub Organisation bei
### Tritt der Kubernetes GitHub Organisation bei
Sobald du eine Lokalisierungs-PR eröffnet hast, kannst du Mitglied der Kubernetes GitHub Organisation werden. Jede Person im Team muss einen eigenen [Antrag auf Mitgliedschaft in der Organisation](https://github.com/kubernetes/org/issues/new/choose) im `kubernetes/org`-Repository erstellen.
@@ -94,9 +94,9 @@ contentDir = "content/de"
weight = 3
```
Wenn du deinem Block einen Parameter `weight` zuweist, suche den Sprachblock mit dem höchsten Gewicht und addiere 1 zu diesem Wert.
Wenn du deinem Block einen Parameter `weight` zuweist, suche den Sprachblock mit dem höchsten Gewicht und addiere 1 zu diesem Wert.
Weitere Informationen zu Hugos Multilingualen Support findest du unter "[Multilingual Mode](https://gohugo.io/content-management/multilingual/)" auf in der Hugo Dokumentation.
Weitere Informationen zu Hugos multilingualem Support findest du unter "[Multilingual Mode](https://gohugo.io/content-management/multilingual/)" auf in der Hugo Dokumentation.
### Neuen Lokalisierungsordner erstellen
@@ -213,7 +213,7 @@ Die neueste Version ist {{< latest-version >}}, so dass der neueste Versionszwei
### Seitenverlinkung in der Internationalisierung
Lokalisierungen müssen den Inhalt von [`i18n/de.toml`](https://github.com/kubernetes/website/blob/master/i18n/en.toml) in einer neuen sprachspezifischen Datei enthalten. Als Beispiel: `i18n/de.toml`.
Lokalisierungen müssen den Inhalt von [`i18n/de.toml`](https://github.com/kubernetes/website/blob/main/i18n/en.toml) in einer neuen sprachspezifischen Datei enthalten. Als Beispiel: `i18n/de.toml`.
Füge eine neue Lokalisierungsdatei zu `i18n/` hinzu. Zum Beispiel mit Deutsch (`de`):
@@ -278,7 +278,7 @@ Die Teams müssen den lokalisierten Inhalt in demselben Versionszweig zusammenf
Ein Genehmiger muss einen Entwicklungszweig aufrechterhalten, indem er seinen Quellzweig auf dem aktuellen Stand hält und Merge-Konflikte auflöst. Je länger ein Entwicklungszweig geöffnet bleibt, desto mehr Wartung erfordert er in der Regel. Ziehe in Betracht, regelmäßig Entwicklungszweige zusammenzuführen und neue zu eröffnen, anstatt einen extrem lang laufenden Entwicklungszweig zu unterhalten.
Zu Beginn jedes Team-Meilensteins ist es hilfreich, ein Problem [Vergleich der Upstream-Änderungen](https://github.com/kubernetes/website/blob/master/scripts/upstream_changes.py) zwischen dem vorherigen Entwicklungszweig und dem aktuellen Entwicklungszweig zu öffnen.
Zu Beginn jedes Team-Meilensteins ist es hilfreich, ein Problem [Vergleich der Upstream-Änderungen](https://github.com/kubernetes/website/blob/main/scripts/upstream_changes.py) zwischen dem vorherigen Entwicklungszweig und dem aktuellen Entwicklungszweig zu öffnen.
Während nur Genehmiger einen neuen Entwicklungszweig eröffnen und Pull-Anfragen zusammenführen können, kann jeder eine Pull-Anfrage für einen neuen Entwicklungszweig eröffnen. Es sind keine besonderen Genehmigungen erforderlich.
@@ -301,5 +301,3 @@ Sobald eine Lokalisierung die Anforderungen an den Arbeitsablauf und die Mindest
- Die Sprachauswahl auf der Website aktivieren
- Die Verfügbarkeit der Lokalisierung über die Kanäle der [Cloud Native Computing Foundation](https://www.cncf.io/about/) (CNCF), einschließlich des [Kubernetes Blogs](https://kubernetes.io/blog/) veröffentlichen.
@@ -0,0 +1,94 @@
---
title: Bei SIG Docs mitmachen
content_type: concept
weight: 60
card:
name: contribute
weight: 60
---
<!-- overview -->
Die SIG Docs ist eine der [Special Interest Groups](https://github.com/kubernetes/community/blob/master/sig-list.md) (Fachspezifischen Interessengruppen) innerhalb des Kubernetes-Projekts, die sich auf das Schreiben, Aktualisieren und Pflegen der Dokumentation für Kubernetes als Ganzes konzentriert. Weitere Informationen über die SIG findest du unter SIG Docs im [GitHub Repository der Community](https://github.com/kubernetes/community/tree/master/sig-docs).
SIG Docs begrüßt Inhalte und Bewertungen von allen Mitwirkenden. Jeder kann einen
Pull Request (PR) eröffnen, und jeder ist willkommen, Fragen zum Inhalt zu stellen oder Kommentare
zu laufenden Pull Requests abzugeben.
Du kannst dich ausserdem als [Member](/de/docs/contribute/participate/roles-and-responsibilities/#member),
[Reviewer](/de/docs/contribute/participate/roles-and-responsibilities/#reviewer), oder
[Approver](/de/docs/contribute/participate/roles-and-responsibilities/#approver) beteiligen.
Diese Rollen erfordern einen erweiterten Zugriff und bringen bestimmte Verantwortlichkeiten zur Genehmigung und Bestätigung von Änderungen mit sich.
Unter [community-membership](https://github.com/kubernetes/community/blob/master/community-membership.md) findest du weitere Informationen darüber, wie die Mitgliedschaft in der Kubernetes-Community funktioniert.
Der Rest dieses Dokuments umreißt einige spezielle Vorgehensweisen dieser Rollen innerhalb von SIG Docs, die für die Pflege eines der öffentlichsten Aushängeschilder von Kubernetes verantwortlich ist - die Kubernetes-Website und die Dokumentation.
<!-- body -->
## SIG Docs Vorstand
Jede SIG, auch die SIG Docs, wählt ein oder mehrere SIG-Mitglieder, die als
Vorstand fungieren. Sie sind die Kontaktstellen zwischen der SIG Docs und anderen Teilen der
der Kubernetes-Organisation. Sie benötigen umfassende Kenntnisse über die Struktur
des Kubernetes-Projekts als Ganzes und wie SIG Docs darin arbeitet. Hier findest alle weiteren Informationen zu den aktuellen Vorsitzenden und der [Leitung](https://github.com/kubernetes/community/tree/master/sig-docs#leadership).
## SIG Docs-Teams und Automatisierung
Die Automatisierung in SIG Docs stützt sich auf zwei verschiedene Mechanismen:
GitHub-Teams und OWNERS-Dateien.
### GitHub Teams
Es gibt zwei Kategorien von SIG Docs [Teams](https://github.com/orgs/kubernetes/teams?query=sig-docs) auf GitHub:
- `@sig-docs-{language}-owners` sind Genehmiger und Verantwortliche
- `@sig-docs-{language}-reviewers` sind Reviewer
Jede Gruppe kann in GitHub-Kommentaren mit ihrem `@name` referenziert werden, um mit allen Mitgliedern dieser Gruppe zu kommunizieren.
Manchmal überschneiden sich Prow- und GitHub-Teams, ohne eine genaue Übereinstimmung. Für die Zuordnung von Issues, Pull-Requests und zur Unterstützung von PR-Genehmigungen verwendet die
Automatisierung die Informationen aus den `OWNERS`-Dateien.
### OWNERS Dateien und Front-Matter
Das Kubernetes-Projekt verwendet ein Automatisierungstool namens prow für die Automatisierung im Zusammenhang mit GitHub-Issues und Pull-Requests.
Das [Kubernetes-Website-Repository](https://github.com/kubernetes/website) verwendet zwei [prow-Plugins](https://github.com/kubernetes/test-infra/tree/master/prow/plugins):
- blunderbuss
- approve
Diese beiden Plugins nutzen die
[OWNERS](https://github.com/kubernetes/website/blob/main/OWNERS) und
[OWNERS_ALIASES](https://github.com/kubernetes/website/blob/main/OWNERS_ALIASES)
Dateien auf der obersten Ebene des GitHub-Repositorys `kubernetes/website`, um zu steuern
wie prow innerhalb des Repositorys arbeitet.
Eine OWNERS-Datei enthält eine Liste von Personen, die SIG Docs-Reviewer und
Genehmiger sind. OWNERS-Dateien können auch in Unterverzeichnissen existieren und bestimmen, wer
Dateien in diesem Unterverzeichnis und seinen Unterverzeichnissen als Gutachter oder
Genehmiger bestätigen darf. Weitere Informationen über OWNERS-Dateien im Allgemeinen findest du unter
[OWNERS](https://github.com/kubernetes/community/blob/master/contributors/guide/owners.md).
Außerdem kann eine einzelne Markdown-Datei in ihrem Front-Matter (Vorspann) Reviewer und Genehmiger auflisten.
Entweder durch Auflistung einzelner GitHub-Benutzernamen oder GitHub-Gruppen.
Die Kombination aus OWNERS-Dateien und Front-Matter in Markdown-Dateien bestimmt, welche Empfehlungen PR-Eigentümer von automatisierten Systemen erhalten, und wen sie um eine technische und redaktionelle Überprüfung ihres PRs bitten sollen.
## So funktioniert das Zusammenführen
Wenn ein Pull Request mit der Branch (Ast) zusammengeführt wird, in dem der Inhalt bereitgestellt werden soll, wird dieser Inhalt auf http://kubernetes.io veröffentlicht. Um sicherzustellen, dass die Qualität der veröffentlichten Inhalte hoch ist, beschränken wir das Zusammenführen von Pull Requests auf
SIG Docs Freigabeberechtigte. So funktioniert es:
- Wenn eine Pull-Anfrage sowohl das `lgtm`- als auch das `approve`-Label hat, kein `hold`-Label hat,
und alle Tests bestanden sind, wird der Pull Request automatisch zusammengeführt.
- Jedes Kubernetes-Mitglied kann das `lgtm`-Label hinzufügen, indem es einen `/lgtm`-Kommentar hinzufügt.
- Mitglieder der Kubernetes-Organisation und SIG Docs-Genehmiger können kommentieren, um das automatische Zusammenführen eines Pull Requests zu verhindern (durch Hinzufügen eines `/hold`-Kommentars
kann ein vorheriger `/lgtm`-Kommentar zurückgehalten werden).
- Nur SIG Docs-Genehmiger können einen Pull Request zusammenführen indem sie einen `/approve` Kommentar hinzufügen.
Einige Genehmiger übernehmen auch weitere spezielle Rollen, wie zum Beispiel [PR Wrangler](/docs/contribute/participate/pr-wranglers/) oder [SIG Docs Vorsitzende](#sig-docs-chairperson).
## {{% heading "whatsnext" %}}
Weitere Informationen über die Mitarbeit an der Kubernetes-Dokumentation findest du unter:
- [Neue Inhalte beisteuern](/docs/contribute/new-content/overview/)
- [Inhalte überprüfen](/docs/contribute/review/reviewing-prs)
- [Styleguide für die Dokumentation](/docs/contribute/style/)
@@ -0,0 +1,81 @@
---
title: PR Wranglers
content_type: concept
weight: 20
---
<!-- overview -->
SIG Docs [approvers](/docs/contribute/participate/roles-and-responsibilities/#approvers) übernehmen einwöchige Schichten um die [Pull Requests](https://github.com/kubernetes/website/wiki/PR-Wranglers) des Repositories zu verwalten.
Dieser Abschnitt behandelt die Aufgaben eines PR-Wranglers. Weitere Informationen über gute Reviews findest du unter [Überprüfen von Änderungen](/docs/contribute/review/).
<!-- body -->
## Aufgaben
Tägliche Aufgaben in einer einwöchigen Schicht als PR Wrangler:
- Sortiere und kennzeichne täglich eingehende Probleme. Siehe [Einstufung und Kategorisierung von Problemen](/docs/contribute/review/for-approvers/#triage-and-categorize-issues) für Richtlinien, wie SIG Docs Metadaten verwendet.
- Überprüfe [offene Pull Requests](https://github.com/kubernetes/website/pulls) auf Qualität und Einhaltung der [Style](/docs/contribute/style/style-guide/) und [Content](/docs/contribute/style/content-guide/) Leitfäden.
- Beginne mit den kleinsten PRs (`size/XS`) und ende mit den größten (`size/XXL`). Überprüfe so viele PRs, wie du kannst.
- Achte darauf, dass die PR-Autoren den [CLA](https://github.com/kubernetes/community/blob/master/CLA.md) unterschreiben.
- Verwende [dieses](https://github.com/zparnold/k8s-docs-pr-botherer) Skript, um diejenigen, die den CLA noch nicht unterschrieben haben, daran zu erinnern, dies zu tun.
- Gib Feedback zu den Änderungen und bitte die Mitglieder anderer SIGs um technische Überprüfung.
- Gib inline Vorschläge für die vorgeschlagenen inhaltlichen Änderungen in den PR ein.
- Wenn du den Inhalt überprüfen musst, kommentiere den PR und bitte um weitere Details.
- Vergebe das/die entsprechende(n) `sig/`-Label.
- Falls nötig, weise die Reviever aus dem Block `revievers:` im Vorspann der Datei zu.
- Benutze den Kommentar `/approve`, um einen PR zum Zusammenführen zu genehmigen. Führe den PR zusammen, wenn er inhaltlich und technisch einwandfrei ist.
- PRs sollten einen `/lgtm`-Kommentar von einem anderen Mitglied haben, bevor sie zusammengeführt werden.
- Erwäge, technisch korrekte Inhalte zu akzeptieren, die nicht den [Stilrichtlinien](/docs/contribute/style/style-guide/) entsprechen. Eröffne ein neues Thema mit dem Label `good first issue`, um Stilprobleme anzusprechen.
### Hilfreiche GitHub-Anfragen für Wranglers
Die folgenden Anfragen sind beim Wrangling hilfreich.
Wenn du diese Anfragen abgearbeitet hast, ist die verbleibende Liste der zu prüfenden PRs meist klein.
Diese Anfragen schließen Lokalisierungs-PRs aus. Alle Anfragen beziehen sich auf den `main`-Branch, außer der letzten.
- [Kein CLA, nicht zusammenfürbar](https://github.com/kubernetes/website/pulls?q=is%3Aopen+ist%3Apr+label%3A%22cncf-cla%3A+no%22+-label%3A%22do-not-merge%2Fwork-in-progress%22+-label%3A%22do-not-merge%2Fhold%22+label%3Alanguage%2Fen):
Erinnere den Beitragenden daran, den CLA zu unterschreiben. Wenn sowohl der Bot als auch ein Mensch sie daran erinnert haben, schließe
den PR und erinnere die Autoren daran, dass sie ihn erneut öffnen können, nachdem sie den CLA unterschrieben haben.
**Überprüfe keine PRs, deren Autoren den CLA nicht unterschrieben haben!**
- [Benötigt LGTM](https://github.com/kubernetes/website/pulls?q=is%3Aopen+ist%3Apr+-label%3A%22cncf-cla%3A+kein%22+-label%3Ado-not-merge%2Fwork-in-progress+-label%3Ado-not-merge%2Fhold+label%3Alanguage%2Fen+-label%3Algtm):
Listet PRs auf, die ein LGTM von einem Mitglied benötigen. Wenn der PR eine technische Überprüfung benötigt, schalte einen der vom Bot vorgeschlagenen Reviewer ein. Wenn der Inhalt überarbeitet werden muss, füge Vorschläge und Feedback in-line hinzu.
- [Hat LGTM, braucht die Zustimmung von Docs](https://github.com/kubernetes/website/pulls?q=is%3Aopen+is%3Apr+-label%3Ado-not-merge%2Fwork-in-progress+-label%3Ado-not-merge%2Fhold+label%3Alanguage%2Fen+label%3Algtm+):
Listet PRs auf, die einen `/approve`-Kommentar benötigen, um zusammengeführt zu werden.
- [Quick Wins](https://github.com/kubernetes/website/pulls?utf8=%E2%9C%93&q=is%3Apr+is%3Aopen+base%3Amain+-label%3A%22do-not-merge%2Fwork-in-progress%22+-label%3A%22do-not-merge%2Fhold%22+label%3A%22cncf-cla%3A+yes%22+label%3A%22size%2FXS%22+label%3A%22language%2Fen%22): Listet PRs gegen den Hauptzweig auf, die nicht eindeutig blockiert sind. (ändere "XS" in der Größenbezeichnung, wenn du dich durch die PRs arbeitest [XS, S, M, L, XL, XXL]).
- [Nicht gegen den `main`-Branch](https://github.com/kubernetes/website/pulls?q=is%3Aopen+ist%3Apr+label%3Alanguage%2Fen+-base%3Amain): Wenn der PR gegen einen `dev-`Ast gerichtet ist, ist er für eine kommende Veröffentlichung. Weise diesen dem [Docs Release Manager](https://github.com/kubernetes/sig-release/tree/master/release-team#kubernetes-release-team-roles) zu: `/assign @<manager's_github-username>`. Wenn der PR gegen einen alten Ast gerichtet ist, hilf dem Autor herauszufinden, ob er auf den richtigen Ast gerichtet ist.
### Hilfreiche Prow-Befehle für Wranglers
```
# Englisches Label hinzufügen
/language en
# füge dem PR ein Squash-Label hinzu, wenn es mehr als einen Commit gibt
/label tide/merge-method-squash
# einen PR ueber Prow neu betiteln (z.B. als Work-in-Progress [WIP])
/retitle [WIP] <TITLE>
```
### Wann sind Pull Requests zu schließen
Reviews und Genehmigungen sind ein Mittel, um unsere PR-Warteschlange kurz und aktuell zu halten. Ein weiteres Mittel ist das Schließen.
PRs werden geschlossen, wenn:
- Der Autor den CLA seit zwei Wochen nicht unterschrieben hat.
Die Autoren können den PR wieder öffnen, nachdem sie den CLA unterschrieben haben. Dies ist ein risikoarmer Weg, um sicherzustellen, dass nichts zusammengeführt wird, ohne dass ein CLA unterzeichnet wurde.
- Der Autor hat seit Zwei oder mehr Wochen nicht auf Kommentare oder Feedback geantwortet.
Hab keine Angst, Pull Requests zu schließen. Mitwirkende können sie leicht wieder öffnen und die laufenden Arbeiten fortsetzen. Oft ist es die Nachricht über die Schließung, die einen Autor dazu anspornt, seinen Beitrag wieder aufzunehmen und zu beenden.
Um eine Pull-Anfrage zu schließen, hinterlasse einen `/close`-Kommentar zu dem PR.
{{< note >}}
Der [`fejta-bot`](https://github.com/fejta-bot) Bot markiert Themen nach 90 Tagen Inaktivität als veraltet. Nach weiteren 30 Tagen markiert er Issues als faul und schließt sie. PR-Beauftragte sollten Themen nach 14-30 Tagen Inaktivität schließen.
{{< /note >}}
@@ -0,0 +1,227 @@
---
title: Rollen und Verantwortlichkeiten
content_type: concept
weight: 10
---
<!-- overview -->
Jeder kann zu Kubernetes beitragen. Wenn deine Beiträge zu SIG Docs wachsen, kannst du dich für verschiedene Stufen der Mitgliedschaft in der Community bewerben.
Diese Rollen ermöglichen es dir, mehr Verantwortung innerhalb der Gemeinschaft zu übernehmen.
Jede Rolle erfordert mehr Zeit und Engagement. Die Rollen sind:
- Jeder: kann regelmäßig zur Kubernetes-Dokumentation beitragen
- Member: können Issues zuweisen und einstufen und Pull Requests unverbindlich prüfen
- Reviewer: können die Überprüfung von Dokumentations-Pull-Requests leiten und für die Qualität einer Änderung bürgen
- Approver: können die Überprüfung von Dokumentations- und Merge-Änderungen leiten
<!-- body -->
## Jeder
Jeder mit einem GitHub-Konto kann zu Kubernetes beitragen. SIG Docs heißt alle neuen Mitwirkenden willkommen!
Jeder kann:
- Ein Problem in einem beliebigen [Kubernetes](https://github.com/kubernetes/)
Repository, einschließlich
[`kubernetes/website`](https://github.com/kubernetes/website) melden
- Unverbindliches Feedback zu einem Pull Request geben
- Zu einer Lokalisierung beitragen
- Verbesserungen auf [Slack](https://slack.k8s.io/) oder der
[SIG docs mailing list](https://groups.google.com/forum/#!forum/kubernetes-sig-docs) vorschlagen.
Nach dem [Signieren des CLA](/docs/contribute/new-content/overview/#sign-the-cla) kann jeder auch:
- eine Pull-Anfrage öffnen, um bestehende Inhalte zu verbessern, neue Inhalte hinzuzufügen oder einen Blogbeitrag oder eine Fallstudie zu schreiben
- Diagramme, Grafiken und einbettbare Screencasts und Videos erstellen
Weitere Informationen findest du unter [neue Inhalte beisteuern](/docs/contribute/new-content/).
## Member
Ein Member (Mitglied) ist jemand, der bereits mehrere Pull Requests an
`kubernetes/website` eingereicht hat. Mitglieder sind ein Teil der
[Kubernetes GitHub Organisation](https://github.com/kubernetes).
Member können:
- Alles tun, was unter [Jeder](#jeder) aufgeführt ist
- Den Kommentar `/lgtm` verwenden, um einem Pull Request das Label LGTM (looks good to me) hinzuzufügen
{{< note >}}
Die Verwendung von `/lgtm` löst eine Automatisierung aus. Wenn du eine unverbindliche
Zustimmung geben willst, funktioniert der Kommentar "LGTM" auch!
{{< /note >}}
- Verwende den Kommentar `/hold`, um das Zusammenführen eines Pull Requests zu blockieren.
- Benutze den Kommentar `/assign`, um einem Pull Request einen Reviewer zuzuweisen.
- Unverbindliche Überprüfung von Pull Requests
- Nutze die Automatisierung, um Issues zu sortieren und zu kategorisieren
- Neue Funktionen dokumentieren
### Mitglied werden
Du kannst ein Mitglied werden, nachdem du mindestens 5 substantielle Pull Requests eingereicht hast und die anderen
[Anforderungen](https://github.com/kubernetes/community/blob/master/community-membership.md#member) erforderst:
1. Finde zwei [Reviewer](#reviewers) oder [Approver](#approvers), die deine Mitgliedschaft [sponsern](/docs/contribute/advanced#sponsor-a-new-contributor).
Bitte um Sponsoring im [#sig-docs channel on Slack](https://kubernetes.slack.com) oder auf der
[SIG Docs Mailingliste](https://groups.google.com/forum/#!forum/kubernetes-sig-docs).
{{< note >}}
Schicke keine direkte E-Mail oder Slack-Direktnachricht an ein einzelnes
SIG Docs-Mitglied. Du musst das Sponsoring beantragen, bevor du deine Bewerbung einreichst.
{{< /note >}}
1. Eröffne ein GitHub-Issue im
[`kubernetes/org`](https://github.com/kubernetes/org/) Repository. Verwende dabei das
**Organization Membership Request** issue template.
1. Informiere deine Sponsoren über das GitHub-Issue. Du kannst entweder:
- Ihren GitHub-Benutzernamen in deinem Issue (`@<GitHub-Benutzername>`) erwähnen
- Ihnen den Issue-Link über Slack oder per E-Mail senden.
Die Sponsoren werden deine Anfrage mit einer "+1"-Stimme genehmigen. Sobald deine Sponsoren
genehmigen, fügt dich ein Kubernetes-GitHub-Admin als Mitglied hinzu.
Herzlichen Glückwunsch!
Wenn dein Antrag auf Mitgliedschaft nicht angenommen wird, erhältst du eine Rückmeldung.
Nachdem du dich mit dem Feedback auseinandergesetzt hast, kannst du dich erneut bewerben.
1. Nimm die Einladung zur Kubernetes GitHub Organisation in deinem E-Mail-Konto an.
{{< note >}}
GitHub sendet die Einladung an die Standard-E-Mail-Adresse in deinem Konto.
{{< /note >}}
## Reviewer
Reviewer (Gutachteren) sind dafür verantwortlich, offene Pull Requests zu überprüfen. Anders als bei den Mitgliedern
musst du auf das Feedback der Prüfer eingehen. Reviewer sind Mitglieder des
[@kubernetes/sig-docs-{language}-reviews](https://github.com/orgs/kubernetes/teams?query=sig-docs)
GitHub-Teams.
Gutachteren können:
- Alles tun, was unter [Jeder](#jeder) und [Member](#member) aufgeführt ist
- Pull Requests überprüfen und verbindliches Feedback geben
{{< note >}}
Um unverbindliches Feedback zu geben, stellst du deinen Kommentaren eine Formulierung wie "Optional:" voran.
{{< /note >}}
- Bearbeite benutzerseitige Zeichenfolgen im Code
- Verbessere Code-Kommentare
### Zuweisung von Reviewern zu Pull Requests
Die Automatisierung weist allen Pull Requests Reviewer zu. Du kannst eine
Review von einer bestimmten Person anfordern, indem du einen Kommentar schreibst: `/assign
[@_github_handle]`.
Wenn der zugewiesene Prüfer den PR nicht kommentiert hat, kann ein anderer Prüfer
einspringen. Du kannst bei Bedarf auch technische Prüfer zuweisen.
### Verwendung von `/lgtm`
LGTM steht für "Looks good to me" und zeigt an, dass ein Pull Request
technisch korrekt und bereit zum Zusammenführen ist. Alle PRs brauchen einen `/lgtm` Kommentar von einem
Reviewer und einen `/approve` Kommentar von einem Approver, um zusammengeführt zu werden.
Ein `/lgtm`-Kommentar vom Reviewer ist verbindlich und löst eine Automatisierung aus, die das `lgtm`-Label hinzufügt.
### Reviewer werden
Wenn du die
[Anforderungen](https://github.com/kubernetes/community/blob/master/community-membership.md#reviewer) erfüllst,
kannst du ein SIG Docs-Reviewer werden. Reviewer in anderen SIGs müssen sich gesondert für den Reviewer-Status in SIG Docs bewerben.
So bewirbst du dich:
1. Eröffne einen Pull Request, in dem du deinen GitHub-Benutzernamen in einen Abschnitt der
[OWNERS_ALIASES](https://github.com/kubernetes/website/blob/main/OWNERS) Datei
im `kubernetes/website` Repository hinzufügt.
{{< note >}}
Wenn du dir nicht sicher bist, wo du dich hinzufügen sollst, füge dich zu `sig-docs-de-reviews` hinzu.
{{< /note >}}
1. Weise den PR einem oder mehreren SIG-Docs-Genehmigern zu (Benutzernamen, die unter
`sig-docs-{language}-owners` aufgelisted sind).
Wenn der PR genehmigt wurde, fügt dich ein SIG Docs-Lead dem entsprechenden GitHub-Team hinzu. Sobald du hinzugefügt bist,
wird [@k8s-ci-robot](https://github.com/kubernetes/test-infra/tree/master/prow#bots-home)
dich als Reviewer für neue Pull Requests vorschlagen und zuweisen.
## Approver
Approver (Genehmiger) prüfen und genehmigen Pull Requests zum Zusammenführen. Genehmigende sind Mitglieder des
[@kubernetes/sig-docs-{language}-owners](https://github.com/orgs/kubernetes/teams/?query=sig-docs)
GitHub-Teams.
Genehmigende können Folgendes tun:
- Alles, was unter [Jeder](#jeder), [Member](#member) und [Reviewer](#reviewes) aufgeführt ist
- Inhalte von Mitwirkenden veröffentlichen, indem sie Pull Requests mit dem Kommentar `/approve` genehmigen und zusammenführen
- Verbesserungen für den Style Guide vorschlagen
- Verbesserungsvorschläge für Docs-Tests einbringen
- Verbesserungsvorschläge für die Kubernetes-Website oder andere Tools machen
Wenn der PR bereits einen `/lgtm` hat, oder wenn der Genehmigende ebenfalls mit
`/lgtm` kommentiert, wird der PR automatisch zusammengeführt. Ein SIG Docs-Genehmiger sollte nur ein
`/lgtm` für eine Änderung hinterlassen, die keine weitere technische Überprüfung erfordert.
### Pull Requests genehmigen
Genehmiger und SIG Docs-Leads sind die Einzigen, die Pull Requests
in das Website-Repository aufnehmen. Damit sind bestimmte Verantwortlichkeiten verbunden.
- Genehmigende können den Befehl `/approve` verwenden, der PRs in das Repository einfügt.
{{< warning >}}
Ein unvorsichtiges Zusammenführen kann die Website lahmlegen, also sei dir sicher, dass du es auch so meinst, wenn du etwas zusammenführst.
{{< /warning >}}
- Vergewissere dich, dass die vorgeschlagenen Änderungen den
[Beitragsrichtlinien](/docs/contribute/style/content-guide/#contributing-content) entsprechen.
Wenn du jemals eine Frage hast oder dir bei etwas nicht sicher bist, fordere einfach Hilfe an, um eine zusätzliche Überprüfung zu erhalten.
- Vergewissere dich, dass die Netlify-Tests erfolgreich sind, bevor du einen PR mittels `/approve` genehmigst.
<img src="/images/docs/contribute/netlify-pass.png" width="75%" alt="Netlify-Tests müssen vor der Freigabe bestanden werden" />
- Besuche die Netlify-Seitenvorschau für den PR, um sicherzustellen, dass alles gut aussieht, bevor du es genehmigst.
- Nimm am [PR Wrangler Rotationsplan](https://github.com/kubernetes/website/wiki/PR-Wranglers)
für wöchentliche Rotationen teil. SIG Docs erwartet von allen Genehmigern, dass sie an dieser
Rotation teilnehmen. Siehe [PR-Wranglers](/docs/contribute/participate/pr-wranglers/).
für weitere Details.
### Approver werden
Wenn du die [Anforderungen](https://github.com/kubernetes/community/blob/master/community-membership.md#approver) erfüllst,
kannst du ein SIG Docs Approver werden. Genehmigende in anderen SIGs müssen sich separat für den Approver-Status in SIG Docs bewerben.
So bewirbst du dich:
1. Eröffne eine Pull-Anfrage, in der du dich in einem Abschnitt der
[OWNERS_ALIASES](https://github.com/kubernetes/website/blob/main/OWNERS)
Datei im `kubernetes/website` Repository hinzuzufügen.
{{< note >}}
Wenn du dir nicht sicher bist, wo du dich hinzufügen sollst, füge dich zu `sig-docs-de-owners` hinzu.
{{< /note >}}
2. Weise den PR einem oder mehreren aktuellen SIG Docs Genehmigern zu.
Wenn der PR genehmigt wurde, fügt dich ein SIG Docs-Lead dem entsprechenden GitHub-Team hinzu. Sobald du hinzugefügt bist,
wird [@k8s-ci-robot](https://github.com/kubernetes/test-infra/tree/master/prow#bots-home)
dich als Reviewer für neue Pull Requests vorschlagen und zuweisen.
## {{% heading "whatsnext" %}}
- Erfahre mehr über [PR-Wrangling](/de/docs/contribute/participate/pr-wranglers/), eine Rolle, die alle Genehmiger im Wechsel übernehmen.
@@ -322,7 +322,7 @@ Ausgabeformat | Beschreibung
### Kubectl Ausgabe Ausführlichkeit und Debugging
Die Ausführlichkeit von Kubectl wird mit den Flags `-v` oder `--v ` gesteuert, gefolgt von einer Ganzzahl, die die Protokollebene darstellt. Allgemeine Protokollierungskonventionen für Kubernetes und die zugehörigen Protokollebenen werden [hier](https://github.com/kubernetes/community/blob/master/contributors/devel/sig-instrumentation/logging.md) beschrieben.
Die Ausführlichkeit von Kubectl wird mit den Flags `-v` oder `--v` gesteuert, gefolgt von einer Ganzzahl, die die Protokollebene darstellt. Allgemeine Protokollierungskonventionen für Kubernetes und die zugehörigen Protokollebenen werden [hier](https://github.com/kubernetes/community/blob/master/contributors/devel/sig-instrumentation/logging.md) beschrieben.
Ausführlichkeit | Beschreibung
--------------| -----------
@@ -100,7 +100,7 @@ Das auflisten der Autoskalierer geschieht über `kubectl get hpa` und eine detai
Letzendlich können wir einen Autoskalierer mit `kubectl delete hpa` löschen.
Zusätzlich gibt es einen speziellen Befehl `kubectl autoscale` zur einfachen Erstellung eines Horizontal Pod Autoscalers.
Wenn du beispielsweise `kubectl autoscale rs foo --min=2 --max=5 --cpu-percent=80` ausführst, wird ein Autoskalierer für den Replication Set *foo* erstellt, wobei die Ziel-CPU-Auslastung auf `80%` und die Anzahl der Replikate zwischen 2 und 5 gesetzt wird.
Wenn du beispielsweise `kubectl autoscale rs foo --min=2 --max=5 --cpu-percent=80` ausführst, wird ein Autoskalierer für den ReplicaSet *foo* erstellt, wobei die Ziel-CPU-Auslastung auf `80%` und die Anzahl der Replikate zwischen 2 und 5 gesetzt wird.
Die Detaildokumentation von `kubectl autoscale` kann [hier](/docs/reference/generated/kubectl/kubectl-commands/#autoscale) gefunden werden.
## Autoskalieren während rollierender Updates
+1 -1
View File
@@ -105,7 +105,7 @@ Der Pod führt einen Container basierend auf dem bereitgestellten Docker-Image a
hello-node-5f76cf6ccf-br9b5 1/1 Running 0 1m
```
4. Cluster Events anzigen:
4. Cluster Events anzeigen:
```shell
kubectl get events
+1 -1
View File
@@ -48,7 +48,7 @@ Kubernetes is open source giving you the freedom to take advantage of on-premise
<br>
<br>
<br>
<a href="https://events.linuxfoundation.org/kubecon-cloudnativecon-north-america/?utm_source=kubernetes.io&utm_medium=nav&utm_campaign=kccncna21" button id="desktopKCButton">Attend KubeCon North America on October 24-28, 2022</a>
<a href="https://events.linuxfoundation.org/kubecon-cloudnativecon-north-america/?utm_source=kubernetes.io&utm_medium=nav&utm_campaign=kccncna22" button id="desktopKCButton">Attend KubeCon North America on October 24-28, 2022</a>
</div>
<div id="videoPlayer">
<iframe data-url="https://www.youtube.com/embed/H06qrNmGqyE?autoplay=1" frameborder="0" allowfullscreen></iframe>
@@ -1,8 +1,11 @@
---
title: " Faster than a speeding Latte "
title: "Faster than a speeding Latte"
date: 2015-04-06
slug: faster-than-speeding-latte
url: /blog/2015/04/Faster-Than-Speeding-Latte
evergreen: true
---
Check out Brendan Burns racing Kubernetes.
[![Check out Brendan Burns racing Kubernetes](https://img.youtube.com/vi/7vZ9dRKRMyc/0.jpg)](https://www.youtube.com/watch?v=?7vZ9dRKRMyc)
{{< youtube id="7vZ9dRKRMyc" title="Latte vs. Kubernetes setup - which is faster?">}}
@@ -19,7 +19,7 @@ Security:
- [Node authorizer](/docs/reference/access-authn-authz/node/) and admission control plugin are new additions that restrict kubelets access to secrets, pods and other objects based on its node.
- [Encryption for Secrets](/docs/tasks/administer-cluster/encrypt-data/), and other resources in etcd, is now available as alpha.&nbsp;
- [Kubelet TLS bootstrapping](/docs/admin/kubelet-tls-bootstrapping/) now supports client and server certificate rotation.
- [Audit logs](/docs/tasks/debug-application-cluster/audit/) stored by the API server are now more customizable and extensible with support for event filtering and webhooks. They also provide richer data for system audit.
- [Audit logs](/docs/tasks/debug/debug-cluster/audit/) stored by the API server are now more customizable and extensible with support for event filtering and webhooks. They also provide richer data for system audit.
Stateful workloads:
@@ -4,7 +4,12 @@ date: 2017-11-02
slug: containerd-container-runtime-options-kubernetes
url: /blog/2017/11/Containerd-Container-Runtime-Options-Kubernetes
---
**_Editor's note: Today's post is by Lantao Liu, Software Engineer at Google, and Mike Brown, Open Source Developer Advocate at IBM._**
**Authors:** Lantao Liu (Google), and Mike Brown (IBM)
_Update: Kubernetes support for Docker via `dockershim` is now deprecated.
For more information, read the [deprecation notice](/blog/2020/12/08/kubernetes-1-20-release-announcement/#dockershim-deprecation).
You can also discuss the deprecation via a dedicated [GitHub issue](https://github.com/kubernetes/kubernetes/issues/106917)._
A _container runtime_ is software that executes containers and manages container images on a node. Today, the most widely known container runtime is [Docker](https://www.docker.com/), but there are other container runtimes in the ecosystem, such as [rkt](https://coreos.com/rkt/), [containerd](https://containerd.io/), and [lxd](https://linuxcontainers.org/lxd/). Docker is by far the most common container runtime used in production Kubernetes environments, but Dockers smaller offspring, containerd, may prove to be a better option. This post describes using containerd with Kubernetes.
@@ -117,7 +117,7 @@ To achieve the best possible isolation, each function call would have to happen
By using Landlock, we could isolate function calls from each other within the same container, making a temporary file created by one function call inaccessible to the next function call, for example. Integration between Landlock and technologies like Kubernetes-based serverless frameworks would be a ripe area for further exploration.
## Auditing kubectl-exec with eBPF
In Kubernetes 1.7 the [audit proposal](/docs/tasks/debug-application-cluster/audit/) started making its way in. It's currently pre-stable with plans to be stable in the 1.10 release. As the name implies, it allows administrators to log and audit events that take place in a Kubernetes cluster.
In Kubernetes 1.7 the [audit proposal](/docs/tasks/debug/debug-cluster/audit/) started making its way in. It's currently pre-stable with plans to be stable in the 1.10 release. As the name implies, it allows administrators to log and audit events that take place in a Kubernetes cluster.
While these events log Kubernetes events, they don't currently provide the level of visibility that some may require. For example, while we can see that someone has used `kubectl exec` to enter a container, we are not able to see what commands were executed in that session. With eBPF one can attach a BPF program that would record any commands executed in the `kubectl exec` session and pass those commands to a user-space program that logs those events. We could then play that session back and know the exact sequence of events that took place.
## Learn more about eBPF
@@ -66,7 +66,7 @@ There are plenty of [good examples](https://docs.bitnami.com/kubernetes/how-to/c
Incorrect or excessively permissive RBAC policies are a security threat in case of a compromised pod. Maintaining least privilege, and continuously reviewing and improving RBAC rules, should be considered part of the "technical debt hygiene" that teams build into their development lifecycle.
[Audit Logging](/docs/tasks/debug-application-cluster/audit/) (beta in 1.10) provides customisable API logging at the payload (e.g. request and response), and also metadata levels. Log levels can be tuned to your organisation&#39;s security policy - [GKE](https://cloud.google.com/kubernetes-engine/docs/how-to/audit-logging#audit_policy) provides sane defaults to get you started.
[Audit Logging](/docs/tasks/debug/debug-cluster/audit/) (beta in 1.10) provides customisable API logging at the payload (e.g. request and response), and also metadata levels. Log levels can be tuned to your organisation&#39;s security policy - [GKE](https://cloud.google.com/kubernetes-engine/docs/how-to/audit-logging#audit_policy) provides sane defaults to get you started.
For read requests such as get, list, and watch, only the request object is saved in the audit logs; the response object is not. For requests involving sensitive data such as Secret and ConfigMap, only the metadata is exported. For all other requests, both request and response objects are saved in audit logs.
@@ -174,7 +174,7 @@ Cluster-distributed stateful services (e.g., Cassandra) can benefit from splitti
## Other considerations
[Logs](/docs/concepts/cluster-administration/logging/) and [metrics](/docs/tasks/debug-application-cluster/resource-usage-monitoring/) (if collected and persistently retained) are valuable to diagnose outages, but given the variety of technologies available it will not be addressed in this blog. If Internet connectivity is available, it may be desirable to retain logs and metrics externally at a central location.
[Logs](/docs/concepts/cluster-administration/logging/) and [metrics](/docs/tasks/debug/debug-cluster/resource-usage-monitoring/) (if collected and persistently retained) are valuable to diagnose outages, but given the variety of technologies available it will not be addressed in this blog. If Internet connectivity is available, it may be desirable to retain logs and metrics externally at a central location.
Your production deployment should utilize an automated installation, configuration and update tool (e.g., [Ansible](https://github.com/kubernetes-incubator/kubespray), [BOSH](https://github.com/cloudfoundry-incubator/kubo-deployment), [Chef](https://github.com/chef-cookbooks/kubernetes), [Juju](/docs/getting-started-guides/ubuntu/installation/), [kubeadm](/docs/reference/setup-tools/kubeadm/), [Puppet](https://forge.puppet.com/puppetlabs/kubernetes), etc.). A manual process will have repeatability issues, be labor intensive, error prone, and difficult to scale. [Certified distributions](https://www.cncf.io/certification/software-conformance/#logos) are likely to include a facility for retaining configuration settings across updates, but if you implement your own install and config toolchain, then retention, backup and recovery of the configuration artifacts is essential. Consider keeping your deployment components and settings under a version control system such as Git.
@@ -4,10 +4,12 @@ title: 'Health checking gRPC servers on Kubernetes'
date: 2018-10-01
---
_Built-in gRPC probes were introduced in Kubernetes 1.23. To learn more, see [Configure Liveness, Readiness and Startup Probes](/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/#define-a-grpc-liveness-probe)._
**Author**: [Ahmet Alp Balkan](https://twitter.com/ahmetb) (Google)
**Update (December 2021):** _Kubernetes now has built-in gRPC health probes starting in v1.23.
To learn more, see [Configure Liveness, Readiness and Startup Probes](/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/#define-a-grpc-liveness-probe).
This article was originally written about an external tool to achieve the same task._
[gRPC](https://grpc.io) is on its way to becoming the lingua franca for
communication between cloud-native microservices. If you are deploying gRPC
applications to Kubernetes today, you may be wondering about the best way to
@@ -1,17 +1,20 @@
---
title: Runc and CVE-2019-5736
date: 2019-02-11
evergreen: false # mentions PodSecurityPolicy
---
Authors: Kubernetes Product Security Committee
This morning [a container escape vulnerability in runc was announced](https://www.openwall.com/lists/oss-security/2019/02/11/2). We wanted to provide some guidance to Kubernetes users to ensure everyone is safe and secure.
## What Is Runc?
## What is runc?
Very briefly, runc is the low-level tool which does the heavy lifting of spawning a Linux container. Other tools like Docker, Containerd, and CRI-O sit on top of runc to deal with things like data formatting and serialization, but runc is at the heart of all of these systems.
Kubernetes in turn sits on top of those tools, and so while no part of Kubernetes itself is vulnerable, most Kubernetes installations are using runc under the hood.
### What Is The Vulnerability?
### What is the vulnerability?
While full details are still embargoed to give people time to patch, the rough version is that when running a process as root (UID 0) inside a container, that process can exploit a bug in runc to gain root privileges on the host running the container. This then allows them unlimited access to the server as well as any other containers on that server.
@@ -19,13 +22,14 @@ If the process inside the container is either trusted (something you know is not
The most common source of risk is attacker-controller container images, such as unvetted images from public repositories.
### What Should I Do?
### What should i do?
As with all security issues, the two main options are to mitigate the vulnerability or upgrade your version of runc to one that includes the fix.
As the exploit requires UID 0 within the container, a direct mitigation is to ensure all your containers are running as a non-0 user. This can be set within the container image, or via your pod specification:
```yaml
---
apiVersion: v1
kind: Pod
metadata:
@@ -39,6 +43,7 @@ spec:
This can also be enforced globally using a PodSecurityPolicy:
```yaml
---
apiVersion: policy/v1beta1
kind: PodSecurityPolicy
metadata:
@@ -89,7 +94,7 @@ We don't have specific confirmation that Docker for Mac and Docker for Windows a
If you are unable to upgrade Docker, the Rancher team has provided backports of the fix for many older versions at [github.com/rancher/runc-cve](https://github.com/rancher/runc-cve).
## Getting More Information
## Getting more information
If you have any further questions about how this vulnerability impacts Kubernetes, please join us at [discuss.kubernetes.io](https://discuss.kubernetes.io/).
@@ -3,6 +3,7 @@ layout: blog
title: "Kubernetes 1.17: Stability"
date: 2019-12-09T13:00:00-08:00
slug: kubernetes-1-17-release-announcement
evergreen: true
---
**Authors:** [Kubernetes 1.17 Release Team](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.17/release_team.md)
@@ -3,6 +3,7 @@ layout: blog
title: 'Kubernetes 1.18: Fit & Finish'
date: 2020-03-25
slug: kubernetes-1-18-release-announcement
evergreen: true
---
**Authors:** [Kubernetes 1.18 Release Team](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.18/release_team.md)
@@ -360,7 +360,7 @@ So let's fix the issue by installing the missing package:
sudo apt install -y conntrack
```
![minikube-install-conntrack](/images/blog/2020-05-21-wsl2-dockerdesktop-k8s/wsl2-minikube-install conntrack.png)
![minikube-install-conntrack](/images/blog/2020-05-21-wsl2-dockerdesktop-k8s/wsl2-minikube-install-conntrack.png)
Let's try to launch it again:
@@ -3,6 +3,7 @@ layout: blog
title: 'Kubernetes 1.19: Accentuate the Paw-sitive'
date: 2020-08-26
slug: kubernetes-release-1.19-accentuate-the-paw-sitive
evergreen: true
---
**Authors:** [Kubernetes 1.19 Release Team](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.19/release_team.md)
@@ -3,9 +3,10 @@ layout: blog
title: "Warning: Helpful Warnings Ahead"
date: 2020-09-03
slug: warnings
evergreen: true
---
**Author**: Jordan Liggitt (Google)
**Author**: [Jordan Liggitt](https://github.com/liggitt) (Google)
As Kubernetes maintainers, we're always looking for ways to improve usability while preserving compatibility.
As we develop features, triage bugs, and answer support questions, we accumulate information that would be helpful for Kubernetes users to know.
@@ -176,7 +177,7 @@ group_right() apiserver_request_total
Metrics are a fast way to check whether deprecated APIs are being used, and at what rate,
but they don't include enough information to identify particular clients or API objects.
Starting in Kubernetes v1.19, [audit events](/docs/tasks/debug-application-cluster/audit/)
Starting in Kubernetes v1.19, [audit events](/docs/tasks/debug/debug-cluster/audit/)
for requests to deprecated APIs include an audit annotation of `"k8s.io/deprecated":"true"`.
Administrators can use those audit events to identify specific clients or objects that need to be updated.
@@ -327,7 +328,3 @@ A couple areas we're looking at next are warning about [known problematic values
we cannot reject outright for compatibility reasons, and warning about use of deprecated fields or field values
(like selectors using beta os/arch node labels, [deprecated in v1.14](/docs/reference/labels-annotations-taints/#beta-kubernetes-io-arch-deprecated)).
I'm excited to see progress in this area, continuing to make it easier to use Kubernetes.
---
_[Jordan Liggitt](https://twitter.com/liggitt) is a software engineer at Google, and helps lead Kubernetes authentication, authorization, and API efforts._
@@ -3,6 +3,7 @@ layout: blog
title: "Remembering Dan Kohn"
date: 2020-11-02
slug: remembering-dan-kohn
evergreen: true
---
**Author**: The Kubernetes Steering Committee
@@ -18,9 +18,9 @@ The paper attempts to _not_ focus on any specific [cloud native project](https:/
## Kubernetes native security controls
When using Kubernetes as a workload orchestrator, some of the security controls this version of the whitepaper recommends are:
* [Pod Security Policies](/docs/concepts/policy/pod-security-policy/): Implement a single source of truth for “least privilege” workloads across the entire cluster
* [Pod Security Policies](/docs/concepts/security/pod-security-policy/): Implement a single source of truth for “least privilege” workloads across the entire cluster
* [Resource requests and limits](/docs/concepts/configuration/manage-resources-containers/#requests-and-limits): Apply requests (soft constraint) and limits (hard constraint) for shared resources such as memory and CPU
* [Audit log analysis](/docs/tasks/debug-application-cluster/audit/): Enable Kubernetes API auditing and filtering for security relevant events
* [Audit log analysis](/docs/tasks/debug/debug-cluster/audit/): Enable Kubernetes API auditing and filtering for security relevant events
* [Control plane authentication and certificate root of trust](/docs/concepts/architecture/control-plane-node-communication/): Enable mutual TLS authentication with a trusted CA for communication within the cluster
* [Secrets management](/docs/concepts/configuration/secret/): Integrate with a built-in or external secrets store
@@ -3,15 +3,19 @@ layout: blog
title: "Dockershim Deprecation FAQ"
date: 2020-12-02
slug: dockershim-faq
aliases: [ '/dockershim' ]
---
_**Update**: There is a [newer version](/blog/2022/02/17/dockershim-faq/) of this article available._
This document goes over some frequently asked questions regarding the Dockershim
deprecation announced as a part of the Kubernetes v1.20 release. For more detail
on the deprecation of Docker as a container runtime for Kubernetes kubelets, and
what that means, check out the blog post
[Don't Panic: Kubernetes and Docker](/blog/2020/12/02/dont-panic-kubernetes-and-docker/).
Also, you can read [check whether Dockershim deprecation affects you](/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you/) to check whether it does.
### Why is dockershim being deprecated?
Maintaining dockershim has become a heavy burden on the Kubernetes maintainers.
@@ -151,7 +155,7 @@ runtime where possible.
Another thing to look out for is anything expecting to run for system maintenance
or nested inside a container when building images will no longer work. For the
former, you can use the [`crictl`][cr] tool as a drop-in replacement (see [mapping from docker cli to crictl](https://kubernetes.io/docs/tasks/debug-application-cluster/crictl/#mapping-from-docker-cli-to-crictl)) and for the
former, you can use the [`crictl`][cr] tool as a drop-in replacement (see [mapping from docker cli to crictl](https://kubernetes.io/docs/tasks/debug/debug-cluster/crictl/#mapping-from-docker-cli-to-crictl)) and for the
latter you can use newer container build options like [img], [buildah],
[kaniko], or [buildkit-cli-for-kubectl] that dont require Docker.
@@ -7,6 +7,10 @@ slug: dont-panic-kubernetes-and-docker
**Authors:** Jorge Castro, Duffie Cooley, Kat Cosgrove, Justin Garrison, Noah Kantrowitz, Bob Killen, Rey Lejano, Dan “POP” Papandrea, Jeffrey Sica, Davanum “Dims” Srinivas
_Update: Kubernetes support for Docker via `dockershim` is now deprecated.
For more information, read the [deprecation notice](/blog/2020/12/08/kubernetes-1-20-release-announcement/#dockershim-deprecation).
You can also discuss the deprecation via a dedicated [GitHub issue](https://github.com/kubernetes/kubernetes/issues/106917)._
Kubernetes is [deprecating
Docker](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.20.md#deprecation)
as a container runtime after v1.20.
@@ -101,4 +105,4 @@ questions regardless of experience level or complexity! Our goal is to make sure
everyone is educated as much as possible on the upcoming changes. We hope
this has answered most of your questions and soothed some anxieties! ❤️
Looking for more answers? Check out our accompanying [Dockershim Deprecation FAQ](/blog/2020/12/02/dockershim-faq/).
Looking for more answers? Check out our accompanying [Dockershim Removal FAQ](/blog/2022/02/17/dockershim-faq/) _(updated February 2022)_.
@@ -3,6 +3,7 @@ layout: blog
title: 'Kubernetes 1.20: The Raddest Release'
date: 2020-12-08
slug: kubernetes-1-20-release-announcement
evergreen: true
---
**Authors:** [Kubernetes 1.20 Release Team](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.20/release_team.md)
@@ -31,7 +32,7 @@ The `kubectl alpha debug` features graduates to beta in 1.20, becoming `kubectl
Note that as a new built-in command, `kubectl debug` takes priority over any kubectl plugin named “debug”. You must rename the affected plugin.
Invocations using `kubectl alpha debug` are now deprecated and will be removed in a subsequent release. Update your scripts to use `kubectl debug`. For more information about `kubectl debug`, see [Debugging Running Pods](https://kubernetes.io/docs/tasks/debug-application-cluster/debug-running-pod/).
Invocations using `kubectl alpha debug` are now deprecated and will be removed in a subsequent release. Update your scripts to use `kubectl debug`. For more information about `kubectl debug`, see [Debugging Running Pods](https://kubernetes.io/docs/tasks/debug/debug-application/debug-running-pod/).
### Beta: API Priority and Fairness
@@ -21,7 +21,7 @@ Until then, PSP is still PSP. There will be at least a year during which the new
## What is PodSecurityPolicy?
[PodSecurityPolicy](/docs/concepts/policy/pod-security-policy/) is a built-in [admission controller](/blog/2019/03/21/a-guide-to-kubernetes-admission-controllers/) that allows a cluster administrator to control security-sensitive aspects of the Pod specification.
[PodSecurityPolicy](/docs/concepts/security/pod-security-policy/) is a built-in [admission controller](/blog/2019/03/21/a-guide-to-kubernetes-admission-controllers/) that allows a cluster administrator to control security-sensitive aspects of the Pod specification.
First, one or more PodSecurityPolicy resources are created in a cluster to define the requirements Pods must meet. Then, RBAC rules are created to control which PodSecurityPolicy applies to a given pod. If a pod meets the requirements of its PSP, it will be admitted to the cluster as usual. In some cases, PSP can also modify Pod fields, effectively creating new defaults for those fields. If a Pod does not meet the PSP requirements, it is rejected, and cannot run.
@@ -3,6 +3,7 @@ layout: blog
title: 'Kubernetes 1.21: Power to the Community'
date: 2021-04-08
slug: kubernetes-1-21-release-announcement
evergreen: true
---
**Authors:** [Kubernetes 1.21 Release Team](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.21/release-team.md)
@@ -62,7 +62,7 @@ spec:
Note that completion mode is an alpha feature in the 1.21 release. To be able to
use it in your cluster, make sure to enable the `IndexedJob` [feature
gate](/docs/reference/command-line-tools-reference/feature-gates/) on the
[API server](docs/reference/command-line-tools-reference/kube-apiserver/) and
[API server](/docs/reference/command-line-tools-reference/kube-apiserver/) and
the [controller manager](/docs/reference/command-line-tools-reference/kube-controller-manager/).
When you run the example, you will see that each of the three created Pods gets a
@@ -30,15 +30,15 @@ This led to design principles that allow the Gateway API to improve upon Ingress
The Gateway API introduces a few new resource types:
- **[GatewayClasses](https://gateway-api.sigs.k8s.io/references/spec/#networking.x-k8s.io/v1alpha1.GatewayClass)** are cluster-scoped resources that act as templates to explicitly define behavior for Gateways derived from them. This is similar in concept to StorageClasses, but for networking data-planes.
- **[Gateways](https://gateway-api.sigs.k8s.io/references/spec/#networking.x-k8s.io/v1alpha1.Gateway)** are the deployed instances of GatewayClasses. They are the logical representation of the data-plane which performs routing, which may be in-cluster proxies, hardware LBs, or cloud LBs.
- **Routes** are not a single resource, but represent many different protocol-specific Route resources. The [HTTPRoute](https://gateway-api.sigs.k8s.io/references/spec/#networking.x-k8s.io/v1alpha1.HTTPRoute) has matching, filtering, and routing rules that get applied to Gateways that can process HTTP and HTTPS traffic. Similarly, there are [TCPRoutes](https://gateway-api.sigs.k8s.io/references/spec/#networking.x-k8s.io/v1alpha1.TCPRoute), [UDPRoutes](https://gateway-api.sigs.k8s.io/references/spec/#networking.x-k8s.io/v1alpha1.UDPRoute), and [TLSRoutes](https://gateway-api.sigs.k8s.io/references/spec/#networking.x-k8s.io/v1alpha1.TLSRoute) which also have protocol-specific semantics. This model also allows the Gateway API to incrementally expand its protocol support in the future.
- **[GatewayClasses](https://gateway-api.sigs.k8s.io/v1alpha1/references/spec/#networking.x-k8s.io/v1alpha1.GatewayClass)** are cluster-scoped resources that act as templates to explicitly define behavior for Gateways derived from them. This is similar in concept to StorageClasses, but for networking data-planes.
- **[Gateways](https://gateway-api.sigs.k8s.io/v1alpha1/references/spec/#networking.x-k8s.io/v1alpha1.Gateway)** are the deployed instances of GatewayClasses. They are the logical representation of the data-plane which performs routing, which may be in-cluster proxies, hardware LBs, or cloud LBs.
- **Routes** are not a single resource, but represent many different protocol-specific Route resources. The [HTTPRoute](https://gateway-api.sigs.k8s.io/v1alpha1/references/spec/#networking.x-k8s.io/v1alpha1.HTTPRoute) has matching, filtering, and routing rules that get applied to Gateways that can process HTTP and HTTPS traffic. Similarly, there are [TCPRoutes](https://gateway-api.sigs.k8s.io/v1alpha1/references/spec/#networking.x-k8s.io/v1alpha1.TCPRoute), [UDPRoutes](https://gateway-api.sigs.k8s.io/v1alpha1/references/spec/#networking.x-k8s.io/v1alpha1.UDPRoute), and [TLSRoutes](https://gateway-api.sigs.k8s.io/v1alpha1/references/spec/#networking.x-k8s.io/v1alpha1.TLSRoute) which also have protocol-specific semantics. This model also allows the Gateway API to incrementally expand its protocol support in the future.
![The resources of the Gateway API](gateway-api-resources.png)
### Gateway Controller Implementations
The good news is that although Gateway is in [Alpha](https://github.com/kubernetes-sigs/gateway-api/releases), there are already several [Gateway controller implementations](https://gateway-api.sigs.k8s.io/references/implementations/) that you can run. Since its a standardized spec, the following example could be run on any of them and should function the exact same way. Check out [getting started](https://gateway-api.sigs.k8s.io/guides/getting-started/) to see how to install and use one of these Gateway controllers.
The good news is that although Gateway is in [Alpha](https://github.com/kubernetes-sigs/gateway-api/releases), there are already several [Gateway controller implementations](https://gateway-api.sigs.k8s.io/implementations/) that you can run. Since its a standardized spec, the following example could be run on any of them and should function the exact same way. Check out [getting started](https://gateway-api.sigs.k8s.io/v1alpha1/guides/getting-started/) to see how to install and use one of these Gateway controllers.
## Getting Hands-on with the Gateway API
@@ -134,7 +134,7 @@ spec:
So we have two HTTPRoutes matching and routing traffic to different Services. You might be wondering, where are these Services accessible? Through which networks or IPs are they exposed?
How Routes are exposed to clients is governed by [Route binding](https://gateway-api.sigs.k8s.io/concepts/api-overview/#route-binding), which describes how Routes and Gateways create a bidirectional relationship between each other. When Routes are bound to a Gateway it means their collective routing rules are configured on the underlying load balancers or proxies and the Routes are accessible through the Gateway. Thus, a Gateway is a logical representation of a networking data plane that can be configured through Routes.
How Routes are exposed to clients is governed by [Route binding](https://gateway-api.sigs.k8s.io/concepts/api-overview/#route-resources), which describes how Routes and Gateways create a bidirectional relationship between each other. When Routes are bound to a Gateway it means their collective routing rules are configured on the underlying load balancers or proxies and the Routes are accessible through the Gateway. Thus, a Gateway is a logical representation of a networking data plane that can be configured through Routes.
![How Routes bind with Gateways](route-binding.png )
@@ -192,6 +192,6 @@ When you put it all together, you have a single load balancing infrastructure th
There are many resources to check out to learn more.
* Check out the [user guides](https://gateway-api.sigs.k8s.io/guides/getting-started/) to see what use-cases can be addressed.
* Try out one of the [existing Gateway controllers ](https://gateway-api.sigs.k8s.io/references/implementations/)
* Check out the [user guides](https://gateway-api.sigs.k8s.io/v1alpha1/guides/getting-started/) to see what use-cases can be addressed.
* Try out one of the [existing Gateway controllers ](https://gateway-api.sigs.k8s.io/implementations/)
* Or [get involved](https://gateway-api.sigs.k8s.io/contributing/community/) and help design and influence the future of Kubernetes service networking!
@@ -190,7 +190,8 @@ kubectl get configmap
No resources found in default namespace.
```
To sum things up, when there's an override owner reference from a child to a parent, deleting the parent deletes the children automatically. This is called `cascade`. The default for cascade is `true`, however, you can use the --cascade=orphan option for `kubectl delete` to delete an object and orphan its children.
To sum things up, when there's an override owner reference from a child to a parent, deleting the parent deletes the children automatically. This is called `cascade`. The default for cascade is `true`, however, you can use the --cascade=orphan option for `kubectl delete` to delete an object and orphan its children. *Update: starting with kubectl v1.20, the default for cascade is `background`.*
In the following example, there is a parent and a child. Notice the owner references are still included. If I delete the parent using --cascade=orphan, the parent is deleted but the child still exists:
@@ -3,6 +3,7 @@ layout: blog
title: 'Kubernetes 1.22: Reaching New Peaks'
date: 2021-08-04
slug: kubernetes-1-22-release-announcement
evergreen: true
---
**Authors:** [Kubernetes 1.22 Release Team](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.22/release-team.md)
@@ -96,15 +96,16 @@ out.
First install the volume-data-source-validator controller.
```terminal
kubectl apply -f https://github.com/kubernetes-csi/volume-data-source-validator/blob/master/deploy/kubernetes/rbac-data-source-validator.yaml
kubectl apply -f https://github.com/kubernetes-csi/volume-data-source-validator/blob/master/deploy/kubernetes/setup-data-source-validator.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/volume-data-source-validator/master/client/config/crd/populator.storage.k8s.io_volumepopulators.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/volume-data-source-validator/master/deploy/kubernetes/rbac-data-source-validator.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/volume-data-source-validator/master/deploy/kubernetes/setup-data-source-validator.yaml
```
Next install the example populator.
```terminal
kubectl apply -f https://github.com/kubernetes-csi/lib-volume-populator/blob/master/example/hello-populator/crd.yaml
kubectl apply -f https://github.com/kubernetes-csi/lib-volume-populator/blob/master/example/hello-populator/deploy.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/lib-volume-populator/master/example/hello-populator/crd.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/lib-volume-populator/master/example/hello-populator/deploy.yaml
```
Create an instance of the `Hello` CR, with some text.
@@ -175,7 +175,7 @@ require internet access to update the vulnerability database.
### Pod Security Policies
Since Kubernetes v1.21, the [PodSecurityPolicy](/docs/concepts/policy/pod-security-policy/)
Since Kubernetes v1.21, the [PodSecurityPolicy](/docs/concepts/security/pod-security-policy/)
API and related features are [deprecated](/blog/2021/04/06/podsecuritypolicy-deprecation-past-present-and-future/),
but some of the guidance in this section will still apply for the next few years, until cluster operators
upgrade their clusters to newer Kubernetes versions.
@@ -317,7 +317,7 @@ RequestResponse's including metadata and request / response bodies. While helpfu
Each organization needs to evaluate their
own threat model and build an audit policy that complements or helps troubleshooting incident response. Think
about how someone would attack your organization and what audit trail could identify it. Review more advanced options for tuning audit logs in the official [audit logging documentation](/docs/tasks/debug-application-cluster/audit/#audit-policy).
about how someone would attack your organization and what audit trail could identify it. Review more advanced options for tuning audit logs in the official [audit logging documentation](/docs/tasks/debug/debug-cluster/audit/#audit-policy).
It's crucial to tune your audit logs to only include events that meet your threat model. A minimal audit policy that logs everything at `metadata` level can also be a good starting point.
Audit logging configurations can also be tested with
@@ -138,4 +138,5 @@ Stay tuned for what comes next, and if you have any questions, comments or sugge
* Chat with us on the Kubernetes [Slack](http://slack.k8s.io/):[#cluster-api](https://kubernetes.slack.com/archives/C8TSNPY4T)
* Join the SIG Cluster Lifecycle [Google Group](https://groups.google.com/g/kubernetes-sig-cluster-lifecycle) to receive calendar invites and gain access to documents
* Join our [Zoom meeting](https://zoom.us/j/861487554), every Wednesday at 10:00 Pacific Time
* Check out the [ClusterClass tutorial](https://cluster-api.sigs.k8s.io/tasks/experimental-features/cluster-classes.html) in the Cluster API book.
* Check out the [ClusterClass quick-start](https://cluster-api.sigs.k8s.io/user/quick-start.html) for the Docker provider (CAPD) in the Cluster API book.
* _UPDATE_: Check out the [ClusterClass experimental feature](https://cluster-api.sigs.k8s.io/tasks/experimental-features/cluster-class/index.html) documentation in the Cluster API book.
@@ -18,7 +18,7 @@ One of the key security principles for running containers in Kubernetes is the
principle of least privilege. The Pod/container `securityContext` specifies the config
options to set, e.g., Linux capabilities, MAC policies, and user/group ID values to achieve this.
Furthermore, the cluster admins are supported with tools like [PodSecurityPolicy](/docs/concepts/policy/pod-security-policy/) (deprecated) or
Furthermore, the cluster admins are supported with tools like [PodSecurityPolicy](/docs/concepts/security/pod-security-policy/) (deprecated) or
[Pod Security Admission](/docs/concepts/security/pod-security-admission/) (alpha) to enforce the desired security settings for pods that are being deployed in
the cluster. These settings could, for instance, require that containers must be `runAsNonRoot` or
that they are forbidden from running with root's group ID in `runAsGroup` or `supplementalGroups`.
@@ -5,13 +5,25 @@ date: 2021-11-12
slug: are-you-ready-for-dockershim-removal
---
**Author:** Sergey Kanzhelev, Google. With reviews from Davanum Srinivas, Elana Hashman, Noah Kantrowitz, Rey Lejano.
**Authors:** Sergey Kanzhelev, Google. With reviews from Davanum Srinivas, Elana Hashman, Noah Kantrowitz, Rey Lejano.
{{% alert color="info" title="Poll closed" %}}
This poll closed on January 7, 2022.
{{% /alert %}}
Last year we [announced](/blog/2020/12/08/kubernetes-1-20-release-announcement/#dockershim-deprecation)
that Kubernetes' dockershim component (which provides a built-in integration for
Docker Engine) is deprecated.
_Update: There's a [Dockershim Deprecation FAQ](/blog/2020/12/02/dockershim-faq/)
with more information, and you can also discuss the deprecation via a dedicated
[GitHub issue](https://github.com/kubernetes/kubernetes/issues/106917)._
Last year we announced that Dockershim is being deprecated: [Dockershim Deprecation FAQ](/blog/2020/12/02/dockershim-faq/).
Our current plan is to remove dockershim from the Kubernetes codebase soon.
We are looking for feedback from you whether you are ready for dockershim
removal and to ensure that you are ready when the time comes.
**Please fill out this survey: https://forms.gle/svCJmhvTv78jGdSx8**.
<del>Please fill out this survey: https://forms.gle/svCJmhvTv78jGdSx8</del>
The dockershim component that enables Docker as a Kubernetes container runtime is
being deprecated in favor of runtimes that directly use the [Container Runtime Interface](/blog/2016/12/container-runtime-interface-cri-in-kubernetes/)
@@ -25,7 +37,7 @@ are still not ready: [migrating telemetry and security agents](/docs/tasks/admin
At this point, we believe that there is feature parity between Docker and the
other runtimes. Many end-users have used our [migration guide](/docs/tasks/administer-cluster/migrating-from-dockershim/)
and are running production workload using these different runtimes. The plan of
record today is that dockershim will be removed in version 1.24, slated for
record today is that dockershim will be removed in version 1.24, slated for
release around April of next year. For those developing or running alpha and
beta versions, dockershim will be removed in December at the beginning of the
1.24 release development cycle.
@@ -33,7 +45,7 @@ beta versions, dockershim will be removed in December at the beginning of the
There is only one month left to give us feedback. We want you to tell us how
ready you are.
**We are collecting opinions through this survey: [https://forms.gle/svCJmhvTv78jGdSx8](https://forms.gle/svCJmhvTv78jGdSx8)**
<del>We are collecting opinions through this survey: https://forms.gle/svCJmhvTv78jGdSx8</del>
To better understand preparedness for the dockershim removal, our survey is
asking the version of Kubernetes you are currently using, and an estimate of
when you think you will adopt Kubernetes 1.24. All the aggregated information
@@ -0,0 +1,189 @@
---
layout: blog
title: 'Kubernetes 1.23: The Next Frontier'
date: 2021-12-07
slug: kubernetes-1-23-release-announcement
evergreen: true
---
**Authors:** [Kubernetes 1.23 Release Team](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.23/release-team.md)
Were pleased to announce the release of Kubernetes 1.23, the last release of 2021!
This release consists of 47 enhancements: 11 enhancements have graduated to stable, 17 enhancements are moving to beta, and 19 enhancements are entering alpha. Also, 1 feature has been deprecated.
## Major Themes
### Deprecation of FlexVolume
FlexVolume is deprecated. The out-of-tree CSI driver is the recommended way to write volume drivers in Kubernetes. See [this doc](https://github.com/kubernetes/community/blob/master/sig-storage/volume-plugin-faq.md#kubernetes-volume-plugin-faq-for-storage-vendors) for more information. Maintainers of FlexVolume drivers should implement a CSI driver and move users of FlexVolume to CSI. Users of FlexVolume should move their workloads to the CSI driver.
### Deprecation of klog specific flags
To simplify the code base, several [logging flags were marked as deprecated](https://kubernetes.io/docs/concepts/cluster-administration/system-logs/#klog) in Kubernetes 1.23. The code which implements them will be removed in a future release, so users of those need to start replacing the deprecated flags with some alternative solutions.
### Software Supply Chain SLSA Level 1 Compliance in the Kubernetes Release Process
Kubernetes releases now generate provenance attestation files describing the staging and release phases of the release process. Artifacts are now verified as they are handed over from one phase to the next. This final piece completes the work needed to comply with Level 1 of the [SLSA security framework](https://slsa.dev/) (Supply-chain Levels for Software Artifacts).
### IPv4/IPv6 Dual-stack Networking graduates to GA
[IPv4/IPv6 dual-stack networking](https://github.com/kubernetes/enhancements/tree/master/keps/sig-network/563-dual-stack) graduates to GA. Since 1.21, Kubernetes clusters have been enabled to support dual-stack networking by default. In 1.23, the `IPv6DualStack` feature gate is removed. The use of dual-stack networking is not mandatory. Although clusters are enabled to support dual-stack networking, Pods and Services continue to default to single-stack. To use dual-stack networking Kubernetes nodes must have routable IPv4/IPv6 network interfaces, a dual-stack capable CNI network plugin must be used, Pods must be configured to be dual-stack and Services must have their `.spec.ipFamilyPolicy` field set to either `PreferDualStack` or `RequireDualStack`.
### HorizontalPodAutoscaler v2 graduates to GA
The HorizontalPodAutscaler `autoscaling/v2` stable API moved to GA in 1.23. The HorizontalPodAutoscaler `autoscaling/v2beta2` API has been deprecated.
### Generic Ephemeral Volume feature graduates to GA
The generic ephemeral volume feature moved to GA in 1.23. This feature allows any existing storage driver that supports dynamic provisioning to be used as an ephemeral volume with the volumes lifecycle bound to the Pod. All StorageClass parameters for volume provisioning and all features supported with PersistentVolumeClaims are supported.
### Skip Volume Ownership change graduates to GA
The feature to configure volume permission and ownership change policy for Pods moved to GA in 1.23. This allows users to skip recursive permission changes on mount and speeds up the pod start up time.
### Allow CSI drivers to opt-in to volume ownership and permission change graduates to GA
The feature to allow CSI Drivers to declare support for fsGroup based permissions graduates to GA in 1.23.
### PodSecurity graduates to Beta
[PodSecurity](https://kubernetes.io/docs/concepts/security/pod-security-admission/) moves to Beta. `PodSecurity` replaces the deprecated `PodSecurityPolicy` admission controller. `PodSecurity` is an admission controller that enforces Pod Security Standards on Pods in a Namespace based on specific namespace labels that set the enforcement level. In 1.23, the `PodSecurity` feature gate is enabled by default.
### Container Runtime Interface (CRI) v1 is default
The Kubelet now supports the CRI `v1` API, which is now the project-wide default.
If a container runtime does not support the `v1` API, Kubernetes will fall back to the `v1alpha2` implementation. There is no intermediate action required by end-users, because `v1` and `v1alpha2` do not differ in their implementation. It is likely that `v1alpha2` will be removed in one of the future Kubernetes releases to be able to develop `v1`.
### Structured logging graduate to Beta
Structured logging reached its Beta milestone. Most log messages from kubelet and kube-scheduler have been converted. Users are encouraged to try out JSON output or parsing of the structured text format and provide feedback on possible solutions for the open issues, such as handling of multi-line strings in log values.
### Simplified Multi-point plugin configuration for scheduler
The kube-scheduler is adding a new, simplified config field for Plugins to allow multiple extension points to be enabled in one spot. The new `multiPoint` plugin field is intended to simplify most scheduler setups for administrators. Plugins that are enabled via `multiPoint` will automatically be registered for each individual extension point that they implement. For example, a plugin that implements Score and Filter extensions can be simultaneously enabled for both. This means entire plugins can be enabled and disabled without having to manually edit individual extension point settings. These extension points can now be abstracted away due to their irrelevance for most users.
### CSI Migration updates
CSI Migration enables the replacement of existing in-tree storage plugins such as `kubernetes.io/gce-pd` or `kubernetes.io/aws-ebs` with a corresponding CSI driver.
If CSI Migration is working properly, Kubernetes end users shouldnt notice a difference.
After migration, Kubernetes users may continue to rely on all the functionality of in-tree storage plugins using the existing interface.
- CSI Migration feature is turned on by default but stays in Beta for GCE PD, AWS EBS, and Azure Disk in 1.23.
- CSI Migration is introduced as an Alpha feature for Ceph RBD and Portworx in 1.23.
### Expression language validation for CRD is alpha
Expression language validation for CRD is in alpha starting in 1.23. If the `CustomResourceValidationExpressions` feature gate is enabled, custom resources will be validated by validation rules using the [Common Expression Language (CEL)](https://github.com/google/cel-spec).
### Server Side Field Validation is Alpha
If the `ServerSideFieldValidation` feature gate is enabled starting 1.23, users will receive warnings from the server when they send Kubernetes objects in the request that contain unknown or duplicate fields. Previously unknown fields and all but the last duplicate fields would be dropped by the server.
With the feature gate enabled, we also introduce the `fieldValidation` query parameter so that users can specify the desired behavior of the server on a per request basis. Valid values for the `fieldValidation` query parameter are:
- Ignore (default when feature gate is disabled, same as pre-1.23 behavior of dropping/ignoring unkonwn fields)
- Warn (default when feature gate is enabled).
- Strict (this will fail the request with an Invalid Request error)
### OpenAPI v3 is Alpha
If the `OpenAPIV3` feature gate is enabled starting 1.23, users will be able to request the OpenAPI v3.0 spec for all Kubernetes types. OpenAPI v3 aims to be fully transparent and includes support for a set of fields that are dropped when publishing OpenAPI v2: `default`, `nullable`, `oneOf`, `anyOf`. A separate spec is published per Kubernetes group version (at the `$cluster/openapi/v3/apis/<group>/<version>` endpoint) for improved performance and discovery, for all group versions can be found at the `$cluster/openapi/v3` path.
## Other Updates
### Graduated to Stable
- [IPv4/IPv6 Dual-Stack Support](https://github.com/kubernetes/enhancements/issues/563)
- [Skip Volume Ownership Change](https://github.com/kubernetes/enhancements/issues/695)
- [TTL After Finished Controller](https://github.com/kubernetes/enhancements/issues/592)
- [Config FSGroup Policy in CSI Driver object](https://github.com/kubernetes/enhancements/issues/1682)
- [Generic Ephemeral Inline Volumes](https://github.com/kubernetes/enhancements/issues/1698)
- [Defend Against Logging Secrets via Static Analysis](https://github.com/kubernetes/enhancements/issues/1933)
- [Namespace Scoped Ingress Class Parameters](https://github.com/kubernetes/enhancements/issues/2365)
- [Reducing Kubernetes Build Maintenance](https://github.com/kubernetes/enhancements/issues/2420)
- [Graduate HPA API to GA](https://github.com/kubernetes/enhancements/issues/2702)
### Major Changes
- [Priority and Fairness for API Server Requests](https://github.com/kubernetes/enhancements/issues/1040)
### Release Notes
Check out the full details of the Kubernetes 1.23 release in our [release notes](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.23.md).
### Availability
Kubernetes 1.23 is available for download on [GitHub](https://github.com/kubernetes/kubernetes/releases/tag/v1.23.0). To get started with Kubernetes, check out these [interactive tutorials](https://kubernetes.io/docs/tutorials/) or run local Kubernetes clusters using Docker container “nodes” with [kind](https://kind.sigs.k8s.io/). You can also easily install 1.23 using [kubeadm](https://kubernetes.io/docs/setup/independent/create-cluster-kubeadm/).
### Release Team
This release was made possible by a very dedicated group of individuals, who came together as a team to deliver technical content, documentation, code, and a host of other components that go into every Kubernetes release.
A huge thank you to the release lead Rey Lejano for leading us through a successful release cycle, and to everyone else on the release team for supporting each other, and working so hard to deliver the 1.23 release for the community.
### Release Theme and Logo
**Kubernetes 1.23: The Next Frontier**
{{< figure src="/images/blog/2021-12-07-kubernetes-release-1.23/kubernetes-1.23.png" alt="" class="release-logo" >}}
"The Next Frontier" theme represents the new and graduated enhancements in 1.23, Kubernetes' history of Star Trek references, and the growth of community members in the release team.
Kubernetes has a history of Star Trek references. The original codename for Kubernetes within Google is Project 7, a reference to Seven of Nine from Star Trek Voyager. And of course Borg was the name for the predecessor to Kubernetes. "The Next Frontier" theme continues the Star Trek references. "The Next Frontier" is a fusion of two Star Trek titles, Star Trek V: The Final Frontier and Star Trek the Next Generation.
"The Next Frontier" represents a line in the SIG Release charter, "Ensure there is a consistent group of community members in place to support the release process across time." With each release team, we grow the community with new release team members and for many it's their first contribution in their open source frontier.
Reference: https://kubernetes.io/blog/2015/04/borg-predecessor-to-kubernetes/
Reference: https://github.com/kubernetes/community/blob/master/sig-release/charter.md
The Kubernetes 1.23 release logo continues with the theme's Star Trek reference. Every star is a helm from the Kubernetes logo. The ship represents the collective teamwork of the release team.
Rey Lejano designed the logo.
### User Highlights
- [Findings of the latest CNCF End User Technology Radar](https://www.cncf.io/announcements/2021/09/22/cncf-end-user-technology-radar-provides-insights-into-devsecops/) were themed around DevSecOps. Check out the [Radar Page](https://radar.cncf.io/) for the full details and findings.
- Learn about how [end user Aegon Life India migrated core processes from its traditional monolith to a microservice-based architecture](https://www.cncf.io/case-studies/aegon-life-india/) in its effort to transform into a leading digital service company.
- Utilizing multiple cloud native projects, [Seagate engineered edgerX to run Real-time Analytics at the Edge](https://www.cncf.io/case-studies/seagate/).
- Check out how [Zambon worked with SparkFabrik to develop 16 websites, with cloud native technologies, to enable stakeholders to easily update content while maintaining a consistent brand identity](https://www.cncf.io/case-studies/zambon/).
- Using Kubernetes, [InfluxData was able to deliver on the promise of multi-cloud, multi-region service availability](https://www.cncf.io/case-studies/influxdata/) by creating a true cloud abstraction layer that allows for the seamless delivery of InfluxDB as a single application to multiple global clusters across three major cloud providers.
### Ecosystem Updates
- [KubeCon + CloudNativeCon NA 2021](https://www.cncf.io/events/kubecon-cloudnativecon-north-america-2021/) was held in October 2021, both online and in person. All talks are [now available on-demand](https://www.youtube.com/playlist?list=PLj6h78yzYM2Nd1U4RMhv7v88fdiFqeYAP) for anyone that would like to catch up!
- [Kubernetes and Cloud Native Essentials Training and KCNA Certification are now generally available for enrollment and scheduling](https://www.cncf.io/announcements/2021/11/18/kubernetes-and-cloud-native-essentials-training-and-kcna-certification-now-available/). Additionally, a new online training course, [Kubernetes and Cloud Native Essentials (LFS250)](https://www.cncf.io/announcements/2021/10/13/entry-level-kubernetes-certification-to-help-advance-cloud-careers/), has been released to both prepare individuals for entry-level cloud roles and to sit for the KCNA exam.
- [New resources are now available from the Inclusive Naming Initiative](https://www.cncf.io/announcements/2021/10/13/inclusive-naming-initiative-announces-new-community-resources-for-a-more-inclusive-future/), including an Inclusive Strategies for Open Source (LFC103) course, Language Evaluation Framework, and Implementation Path.
### Project Velocity
The [CNCF K8s DevStats](https://k8s.devstats.cncf.io/d/12/dashboards?orgId=1&refresh=15m) project aggregates a number of interesting data points related to the velocity of Kubernetes and various sub-projects. This includes everything from individual contributions to the number of companies that are contributing, and is an illustration of the depth and breadth of effort that goes into evolving this ecosystem.
In the v1.23 release cycle, which ran for 16 weeks (August 23 to December 7), we saw contributions from [1032 companies](https://k8s.devstats.cncf.io/d/9/companies-table?orgId=1&var-period_name=v1.22.0%20-%20now&var-metric=contributions) and [1084 individuals](https://k8s.devstats.cncf.io/d/66/developer-activity-counts-by-companies?orgId=1&var-period_name=v1.22.0%20-%20now&var-metric=contributions&var-repogroup_name=Kubernetes&var-country_name=All&var-companies=All&var-repo_name=kubernetes%2Fkubernetes).
### Event Update
- [KubeCon + CloudNativeCon China 2021](https://www.lfasiallc.com/kubecon-cloudnativecon-open-source-summit-china/) is happening this month from December 9 - 11. After taking a break last year, the event will be virtual this year and includes 105 sessions. Check out the event schedule [here](https://www.lfasiallc.com/kubecon-cloudnativecon-open-source-summit-china/program/schedule/).
- KubeCon + CloudNativeCon Europe 2022 will take place in Valencia, Spain, May 4 7, 2022! You can find more information about the conference and registration on the [event site](https://events.linuxfoundation.org/archive/2021/kubecon-cloudnativecon-europe/).
- Kubernetes Community Days has upcoming events scheduled in Pakistan, Brazil, Chengdu, and in Australia.
### Upcoming Release Webinar
Join members of the Kubernetes 1.23 release team on January 4, 2022 to learn about the major features of this release, as well as deprecations and removals to help plan for upgrades. For more information and registration, visit the [event page](https://community.cncf.io/e/mrey9h/) on the CNCF Online Programs site.
### Get Involved
The simplest way to get involved with Kubernetes is by joining one of the many [Special Interest Groups](https://github.com/kubernetes/community/blob/master/sig-list.md) (SIGs) that align with your interests. Have something youd like to broadcast to the Kubernetes community? Share your voice at our weekly [community meeting](https://github.com/kubernetes/community/tree/master/communication), and through the channels below:
- Find out more about contributing to Kubernetes at the [Kubernetes Contributors](https://www.kubernetes.dev/) website
- Follow us on Twitter [@Kubernetesio](https://twitter.com/kubernetesio) for the latest updates
- Join the community discussion on [Discuss](https://discuss.kubernetes.io/)
- Join the community on [Slack](http://slack.k8s.io/)
- Post questions (or answer questions) on [Stack Overflow](http://stackoverflow.com/questions/tagged/kubernetes)
- Share your Kubernetes [story](https://docs.google.com/a/linuxfoundation.org/forms/d/e/1FAIpQLScuI7Ye3VQHQTwBASrgkjQDSS5TP0g3AXfFhwSM9YpHgxRKFA/viewform)
- Read more about whats happening with Kubernetes on the [blog](https://kubernetes.io/blog/)
- Learn more about the [Kubernetes Release Team](https://github.com/kubernetes/sig-release/tree/master/release-team)
@@ -0,0 +1,56 @@
---
layout: blog
title: 'Kubernetes 1.23: Dual-stack IPv4/IPv6 Networking Reaches GA'
date: 2021-12-08
slug: dual-stack-networking-ga
---
**Author:** Bridget Kromhout (Microsoft)
"When will Kubernetes have IPv6?" This question has been asked with increasing frequency ever since alpha support for IPv6 was first added in k8s v1.9. While Kubernetes has supported IPv6-only clusters since v1.18, migration from IPv4 to IPv6 was not yet possible at that point. At long last, [dual-stack IPv4/IPv6 networking](https://github.com/kubernetes/enhancements/tree/master/keps/sig-network/563-dual-stack/) has reached general availability (GA) in Kubernetes v1.23.
What does dual-stack networking mean for you? Lets take a look…
## Service API updates
[Services](/docs/concepts/services-networking/service/) were single-stack before 1.20, so using both IP families meant creating one Service per IP family. The user experience was simplified in 1.20, when Services were re-implemented to allow both IP families, meaning a single Service can handle both IPv4 and IPv6 workloads. Dual-stack load balancing is possible between services running any combination of IPv4 and IPv6.
The Service API now has new fields to support dual-stack, replacing the single ipFamily field.
* You can select your choice of IP family by setting `ipFamilyPolicy` to one of three options: SingleStack, PreferDualStack, or RequireDualStack. A service can be changed between single-stack and dual-stack (within some limits).
* Setting `ipFamilies` to a list of families assigned allows you to set the order of families used.
* `clusterIPs` is inclusive of the previous `clusterIP` but allows for multiple entries, so its no longer necessary to run duplicate services, one in each of the two IP families. Instead, you can assign cluster IP addresses in both IP families.
Note that Pods are also dual-stack. For a given pod, there is no possibility of setting multiple IP addresses in the same family.
## Default behavior remains single-stack
Starting in 1.20 with the re-implementation of dual-stack services as alpha, the underlying networking for Kubernetes has included dual-stack whether or not a cluster was configured with the feature flag to enable dual-stack.
Kubernetes 1.23 removed that feature flag as part of graduating the feature to stable. Dual-stack networking is always available if you want to configure it. You can set your cluster network to operate as single-stack IPv4, as single-stack IPv6, or as dual-stack IPv4/IPv6.
While Services are set according to what you configure, Pods default to whatever the CNI plugin sets. If your CNI plugin assigns single-stack IPs, you will have single-stack unless `ipFamilyPolicy` specifies PreferDualStack or RequireDualStack. If your CNI plugin assigns dual-stack IPs, `pod.status.PodIPs` defaults to dual-stack.
Even though dual-stack is possible, it is not mandatory to use it. Examples in the documentation show the variety possible in [dual-stack service configurations](/docs/concepts/services-networking/dual-stack/#dual-stack-service-configuration-scenarios).
## Try dual-stack right now
While upstream Kubernetes now supports [dual-stack networking](/docs/concepts/services-networking/dual-stack/) as a GA or stable feature, each providers support of dual-stack Kubernetes may vary. Nodes need to be provisioned with routable IPv4/IPv6 network interfaces. Pods need to be dual-stack. The [network plugin](/docs/concepts/extend-kubernetes/compute-storage-net/network-plugins/) is what assigns the IP addresses to the Pods, so it's the network plugin being used for the cluster that needs to support dual-stack. Some Container Network Interface (CNI) plugins support dual-stack, as does kubenet.
Ecosystem support of dual-stack is increasing; you can create [dual-stack clusters with kubeadm](/docs/setup/production-environment/tools/kubeadm/dual-stack-support/), try a [dual-stack cluster locally with KIND](https://kind.sigs.k8s.io/docs/user/configuration/#ip-family), and deploy dual-stack clusters in cloud providers (after checking docs for CNI or kubenet availability).
## Get involved with SIG Network
SIG-Network wants to learn from community experiences with dual-stack networking to find out more about evolving needs and your use cases. The [SIG-network update video from KubeCon NA 2021](https://www.youtube.com/watch?v=uZ0WLxpmBbY&list=PLj6h78yzYM2Nd1U4RMhv7v88fdiFqeYAP&index=4) summarizes the SIGs recent updates, including dual-stack going to stable in 1.23.
The current SIG-Network [KEPs](https://github.com/orgs/kubernetes/projects/10) and [issues](https://github.com/kubernetes/kubernetes/issues?q=is%3Aopen+is%3Aissue+label%3Asig%2Fnetwork) on GitHub illustrate the SIGs areas of emphasis. The [dual-stack API server](https://github.com/kubernetes/enhancements/issues/2438) is one place to consider contributing.
[SIG-Network meetings](https://github.com/kubernetes/community/tree/master/sig-network#meetings) are a friendly, welcoming venue for you to connect with the community and share your ideas. Looking forward to hearing from you!
## Acknowledgments
The dual-stack networking feature represents the work of many Kubernetes contributors. Thanks to all who contributed code, experience reports, documentation, code reviews, and everything in between. Bridget Kromhout details this community effort in [Dual-Stack Networking in Kubernetes](https://containerjournal.com/features/dual-stack-networking-in-kubernetes/). KubeCon keynotes by Tim Hockin & Khaled (Kal) Henidak in 2019 ([The Long Road to IPv4/IPv6 Dual-stack Kubernetes](https://www.youtube.com/watch?v=o-oMegdZcg4)) and by Lachlan Evenson in 2021 ([And Here We Go: Dual-stack Networking in Kubernetes](https://www.youtube.com/watch?v=lVrt8F2B9CM)) talk about the dual-stack journey, spanning five years and a great many lines of code.
@@ -0,0 +1,782 @@
---
layout: blog
title: 'Kubernetes 1.23: Pod Security Graduates to Beta'
date: 2021-12-09
slug: pod-security-admission-beta
---
**Authors:** Jim Angel (Google), Lachlan Evenson (Microsoft)
With the release of Kubernetes v1.23, [Pod Security admission](/docs/concepts/security/pod-security-admission/) has now entered beta. Pod Security is a [built-in](/docs/reference/access-authn-authz/admission-controllers/) admission controller that evaluates pod specifications against a predefined set of [Pod Security Standards](/docs/concepts/security/pod-security-standards/) and determines whether to `admit` or `deny` the pod from running.
Pod Security is the successor to [PodSecurityPolicy](/docs/concepts/security/pod-security-policy/) which was deprecated in the v1.21 release, and will be removed in Kubernetes v1.25. In this article, we cover the key concepts of Pod Security along with how to use it. We hope that cluster administrators and developers alike will use this new mechanism to enforce secure defaults for their workloads.
## Why Pod Security
The overall aim of Pod Security is to let you isolate workloads. You can run a cluster that runs different workloads and, without adding extra third-party tooling, implement controls that require Pods for a workload to restrict their own privileges to a defined bounding set.
Pod Security overcomes key shortcomings of Kubernetes' existing, but deprecated, PodSecurityPolicy (PSP) mechanism:
* Policy authorization model — challenging to deploy with controllers.
* Risks around switching — a lack of dry-run/audit capabilities made it hard to enable PodSecurityPolicy.
* Inconsistent and Unbounded API — the large configuration surface and evolving constraints led to a complex and confusing API.
The shortcomings of PSP made it very difficult to use which led the community to reevaluate whether or not a better implementation could achieve the same goals. One of those goals was to provide an out-of-the-box solution to apply security best practices. Pod Security ships with predefined Pod Security levels that a cluster administrator can configure to meet the desired security posture.
It's important to note that Pod Security doesn't have complete feature parity with the deprecated PodSecurityPolicy. Specifically, it doesn't have the ability to mutate or change Kubernetes resources to auto-remediate a policy violation on behalf of the user. Additionally, it doesn't provide fine-grained control over each allowed field and value within a pod specification or any other Kubernetes resource that you may wish to evaluate. If you need more fine-grained policy control then take a look at these [other](/docs/concepts/security/pod-security-standards/#faq) projects which support such use cases.
Pod Security also adheres to Kubernetes best practices of declarative object management by denying resources that violate the policy. This requires resources to be updated in source repositories, and tooling to be updated prior to being deployed to Kubernetes.
## How Does Pod Security Work?
Pod Security is a built-in [admission controller](/docs/reference/access-authn-authz/admission-controllers/) starting with Kubernetes v1.22, but can also be run as a standalone [webhook](/docs/concepts/security/pod-security-admission/#webhook). Admission controllers function by intercepting requests in the Kubernetes API server prior to persistence to storage. They can either `admit` or `deny` a request. In the case of Pod Security, pod specifications will be evaluated against a configured policy in the form of a Pod Security Standard. This means that security sensitive fields in a pod specification will only be allowed to have [specific](h/docs/concepts/security/pod-security-standards/#profile-details) values.
## Configuring Pod Security
### Pod Security Standards
In order to use Pod Security we first need to understand [Pod Security Standards](/docs/concepts/security/pod-security-standards/). These standards define three different policy levels that range from permissive to restrictive. These levels are as follows:
* `privileged` — open and unrestricted
* `baseline` — Covers known privilege escalations while minimizing restrictions
* `restricted` — Highly restricted, hardening against known and unknown privilege escalations. May cause compatibility issues
Each of these policy levels define which fields are restricted within a pod specification and the allowed values. Some of the fields restricted by these policies include:
* `spec.securityContext.sysctls`
* `spec.hostNetwork`
* `spec.volumes[*].hostPath`
* `spec.containers[*].securityContext.privileged`
Policy levels are applied via labels on Namespace resources, which allows for granular per-namespace policy selection. The AdmissionConfiguration in the API server can also be configured to set cluster-wide default levels and exemptions.
### Policy modes
Policies are applied in a specific mode. Multiple modes (with different policy levels) can be set on the same namespace. Here is a list of modes:
* `enforce` — Any Pods that violate the policy will be rejected
* `audit` — Violations will be recorded as an annotation in the audit logs, but don't affect whether the pod is allowed.
* `warn` — Violations will send a warning message back to the user, but don't affect whether the pod is allowed.
In addition to modes you can also pin the policy to a specific version (for example v1.22). Pinning to a specific version allows the behavior to remain consistent if the policy definition changes in future Kubernetes releases.
## Hands on demo
### Prerequisites
- [KinD](https://kind.sigs.k8s.io/docs/user/quick-start/#installation)
- [kubectl](/docs/tasks/tools/)
- [Docker](https://docs.docker.com/get-docker/) or [Podman](https://podman.io/getting-started/installation) container runtime & CLI
### Deploy a kind cluster
```shell
kind create cluster --image kindest/node:v1.23.0
```
It might take a while to start and once it's started it might take a minute or so before the node becomes ready.
```shell
kubectl cluster-info --context kind-kind
```
Wait for the node STATUS to become ready.
```shell
kubectl get nodes
```
The output is similar to this:
```
NAME STATUS ROLES AGE VERSION
kind-control-plane Ready control-plane,master 54m v1.23.0
```
### Confirm Pod Security is enabled
The best way to [confirm the API's default enabled plugins](/docs/reference/access-authn-authz/admission-controllers/#which-plugins-are-enabled-by-default) is to check the Kubernetes API container's help arguments.
```shell
kubectl -n kube-system exec kube-apiserver-kind-control-plane -it -- kube-apiserver -h | grep "default enabled ones"
```
The output is similar to this:
```
...
--enable-admission-plugins strings
admission plugins that should be enabled in addition
to default enabled ones (NamespaceLifecycle, LimitRanger,
ServiceAccount, TaintNodesByCondition, PodSecurity, Priority,
DefaultTolerationSeconds, DefaultStorageClass,
StorageObjectInUseProtection, PersistentVolumeClaimResize,
RuntimeClass, CertificateApproval, CertificateSigning,
CertificateSubjectRestriction, DefaultIngressClass,
MutatingAdmissionWebhook, ValidatingAdmissionWebhook,
ResourceQuota).
...
```
`PodSecurity` is listed in the group of default enabled admission plugins.
If using a cloud provider, or if you don't have access to the API server, the best way to check would be to run a quick end-to-end test:
```shell
kubectl create namespace verify-pod-security
kubectl label namespace verify-pod-security pod-security.kubernetes.io/enforce=restricted
# The following command does NOT create a workload (--dry-run=server)
kubectl -n verify-pod-security run test --dry-run=server --image=busybox --privileged
kubectl delete namespace verify-pod-security
```
The output is similar to this:
```
Error from server (Forbidden): pods "test" is forbidden: violates PodSecurity "restricted:latest": privileged (container "test" must not set securityContext.privileged=true), allowPrivilegeEscalation != false (container "test" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container "test" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "test" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "test" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
```
### Configure Pod Security
Policies are applied to a namespace via labels. These labels are as follows:
* `pod-security.kubernetes.io/<MODE>: <LEVEL>` (required to enable pod security)
* `pod-security.kubernetes.io/<MODE>-version: <VERSION>` (*optional*, defaults to latest)
A specific version can be supplied for each enforcement mode. The version pins the policy to the version that was shipped as part of the Kubernetes release. Pinning to a specific Kubernetes version allows for deterministic policy behavior while allowing flexibility for future updates to Pod Security Standards. The possible <MODE(S)> are `enforce`, `audit` and `warn`.
### When to use `warn`?
The typical uses for `warn` are to get ready for a future change where you want to enforce a different policy. The most two common cases would be:
* `warn` at the same level but a different version (e.g. pin `enforce` to *restricted+v1.23* and `warn` at *restricted+latest*)
* `warn` at a stricter level (e.g. `enforce` baseline, `warn` restricted)
It's not recommended to use `warn` for the exact same level+version of the policy as `enforce`. In the admission sequence, if `enforce` fails, the entire sequence fails before evaluating the `warn`.
First, create a namespace called `verify-pod-security` if not created earlier. For the demo, `--overwrite` is used when labeling to allow repurposing a single namespace for multiple examples.
```shell
kubectl create namespace verify-pod-security
```
### Deploy demo workloads
Each workload represents a higher level of security that would not pass the profile that comes after it.
For the following examples, use the `busybox` container runs a `sleep` command for 1 million seconds (≅11 days) or until deleted. Pod Security is not interested in which container image you chose, but rather the Pod level settings and their implications for security.
### Privileged level and workload
For the privileged pod, use the [privileged policy](/docs/concepts/security/pod-security-standards/#privileged). This allows the process inside a container to gain new processes (also known as "privilege escalation") and can be dangerous if untrusted.
First, let's apply a restricted Pod Security level for a test.
```shell
# enforces a "restricted" security policy and audits on restricted
kubectl label --overwrite ns verify-pod-security \
pod-security.kubernetes.io/enforce=restricted \
pod-security.kubernetes.io/audit=restricted
```
Next, try to deploy a privileged workload in the namespace.
```shell
cat <<EOF | kubectl -n verify-pod-security apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-privileged
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
allowPrivilegeEscalation: true
EOF
```
The output is similar to this:
```
Error from server (Forbidden): error when creating "STDIN": pods "busybox-privileged" is forbidden: violates PodSecurity "restricted:latest": allowPrivilegeEscalation != false (container "busybox" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container "busybox" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "busybox" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "busybox" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
```
Now let's apply the privileged Pod Security level and try again.
```shell
# enforces a "privileged" security policy and warns / audits on baseline
kubectl label --overwrite ns verify-pod-security \
pod-security.kubernetes.io/enforce=privileged \
pod-security.kubernetes.io/warn=baseline \
pod-security.kubernetes.io/audit=baseline
```
```shell
cat <<EOF | kubectl -n verify-pod-security apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-privileged
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
allowPrivilegeEscalation: true
EOF
```
The output is similar to this:
```
pod/busybox-privileged created
```
We can run `kubectl -n verify-pod-security get pods` to verify it is running. Clean up with:
```shell
kubectl -n verify-pod-security delete pod busybox-privileged
```
### Baseline level and workload
The [baseline policy](/docs/concepts/security/pod-security-standards/#baseline) demonstrates sensible defaults while preventing common container exploits.
Let's revert back to a restricted Pod Security level for a quick test.
```shell
# enforces a "restricted" security policy and audits on restricted
kubectl label --overwrite ns verify-pod-security \
pod-security.kubernetes.io/enforce=restricted \
pod-security.kubernetes.io/audit=restricted
```
Apply the workload.
```shell
cat <<EOF | kubectl -n verify-pod-security apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-baseline
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
allowPrivilegeEscalation: false
capabilities:
add:
- NET_BIND_SERVICE
- CHOWN
EOF
```
The output is similar to this:
```
Error from server (Forbidden): error when creating "STDIN": pods "busybox-baseline" is forbidden: violates PodSecurity "restricted:latest": unrestricted capabilities (container "busybox" must set securityContext.capabilities.drop=["ALL"]; container "busybox" must not include "CHOWN" in securityContext.capabilities.add), runAsNonRoot != true (pod or container "busybox" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "busybox" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
```
Let's apply the baseline Pod Security level and try again.
```shell
# enforces a "baseline" security policy and warns / audits on restricted
kubectl label --overwrite ns verify-pod-security \
pod-security.kubernetes.io/enforce=baseline \
pod-security.kubernetes.io/warn=restricted \
pod-security.kubernetes.io/audit=restricted
```
```shell
cat <<EOF | kubectl -n verify-pod-security apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-baseline
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
allowPrivilegeEscalation: false
capabilities:
add:
- NET_BIND_SERVICE
- CHOWN
EOF
```
The output is similar to the following. Note that the warnings match the error message from the test above, but the pod is still successfully created.
```
Warning: would violate PodSecurity "restricted:latest": unrestricted capabilities (container "busybox" must set securityContext.capabilities.drop=["ALL"]; container "busybox" must not include "CHOWN" in securityContext.capabilities.add), runAsNonRoot != true (pod or container "busybox" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "busybox" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
pod/busybox-baseline created
```
Remember, we set the `verify-pod-security` namespace to `warn` based on the restricted profile. We can run `kubectl -n verify-pod-security get pods` to verify it is running. Clean up with:
```shell
kubectl -n verify-pod-security delete pod busybox-baseline
```
### Restricted level and workload
The [restricted policy](/docs/concepts/security/pod-security-standards/#restricted) requires rejection of all privileged parameters. It is the most secure with a trade-off for complexity.
The restricted policy allows containers to add the `NET_BIND_SERVICE` capability only.
While we've already tested restricted as a blocking function, let's try to get something running that meets all the criteria.
First we need to reapply the restricted profile, for the last time.
```shell
# enforces a "restricted" security policy and audits on restricted
kubectl label --overwrite ns verify-pod-security \
pod-security.kubernetes.io/enforce=restricted \
pod-security.kubernetes.io/audit=restricted
```
```shell
cat <<EOF | kubectl -n verify-pod-security apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-restricted
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
allowPrivilegeEscalation: false
capabilities:
add:
- NET_BIND_SERVICE
EOF
```
The output is similar to this:
```
Error from server (Forbidden): error when creating "STDIN": pods "busybox-restricted" is forbidden: violates PodSecurity "restricted:latest": unrestricted capabilities (container "busybox" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "busybox" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "busybox" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
```
This is because the restricted profile explicitly requires that certain values are set to the most secure parameters.
By requiring explicit values, manifests become more declarative and your entire security model can shift left. With the `restricted` level of enforcement, a company could audit their cluster's compliance based on permitted manifests.
Let's fix each warning resulting in the following file:
```shell
cat <<EOF | kubectl -n verify-pod-security apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-restricted
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
seccompProfile:
type: RuntimeDefault
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop:
- ALL
add:
- NET_BIND_SERVICE
EOF
```
The output is similar to this:
```
pod/busybox-restricted created
```
Run `kubectl -n verify-pod-security get pods` to verify it is running. The output is similar to this:
```
NAME READY STATUS RESTARTS AGE
busybox-restricted 0/1 CreateContainerConfigError 0 2m26s
```
Let's figure out why the container is not starting with `kubectl -n verify-pod-security describe pod busybox-restricted`. The output is similar to this:
```
Events:
Type Reason Age From Message
---- ------ ---- ---- -------
Warning Failed 2m29s (x8 over 3m55s) kubelet Error: container has runAsNonRoot and image will run as root (pod: "busybox-restricted_verify-pod-security(a4c6a62d-2166-41a9-b288-20df17cf5c90)", container: busybox)
```
To solve this, set the effective UID (`runAsUser`) to a non-zero (root) value or use the `nobody` UID (65534).
```shell
# delete the original pod
kubectl -n verify-pod-security delete pod busybox-restricted
# create the pod again with new runAsUser
cat <<EOF | kubectl -n verify-pod-security apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-restricted
spec:
securityContext:
runAsUser: 65534
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
seccompProfile:
type: RuntimeDefault
runAsNonRoot: true
allowPrivilegeEscalation: false
capabilities:
drop:
- ALL
add:
- NET_BIND_SERVICE
EOF
```
Run `kubectl -n verify-pod-security get pods` to verify it is running. The output is similar to this:
```
NAME READY STATUS RESTARTS AGE
busybox-restricted 1/1 Running 0 25s
```
Clean up the demo (restricted pod and namespace) with:
```shell
kubectl delete namespace verify-pod-security
```
At this point, if you wanted to dive deeper into linux permissions or what is permitted for a certain container, exec into the control plane and play around with `containerd` and `crictl inspect`.
```shell
# if using docker, shell into the control plane
docker exec -it kind-control-plane bash
# list running containers
crictl ps
# inspect each one by container ID
crictl inspect <CONTAINER ID>
```
### Applying a cluster-wide policy
In addition to applying labels to namespaces to configure policy you can also configure cluster-wide policies and exemptions using the AdmissionConfiguration resource.
Using this resource, policy definitions are applied cluster-wide by default and any policy that is applied via namespace labels will take precedence.
There is no runtime configurable API for the `AdmissionConfiguration` configuration file so a cluster administrator would need to specify a path to the file below via the `--admission-control-config-file` flag on the API server.
In the following resource we are enforcing the baseline policy and warning and auditing the baseline policy. We are also making the kube-system namespace exempt from this policy.
It's not recommended to alter control plane / clusters after install, so let's build a new cluster with a default policy on all namespaces.
First, delete the current cluster.
```shell
kind delete cluster
```
Create a Pod Security configuration that `enforce` and `audit` baseline policies while using a restricted profile to `warn` the end user.
```shell
cat <<EOF > pod-security.yaml
apiVersion: apiserver.config.k8s.io/v1
kind: AdmissionConfiguration
plugins:
- name: PodSecurity
configuration:
apiVersion: pod-security.admission.config.k8s.io/v1beta1
kind: PodSecurityConfiguration
defaults:
enforce: "baseline"
enforce-version: "latest"
audit: "baseline"
audit-version: "latest"
warn: "restricted"
warn-version: "latest"
exemptions:
# Array of authenticated usernames to exempt.
usernames: []
# Array of runtime class names to exempt.
runtimeClasses: []
# Array of namespaces to exempt.
namespaces: [kube-system]
EOF
```
For additional options, check out the official [_standards admission controller_](/docs/tasks/configure-pod-container/enforce-standards-admission-controller/#configure-the-admission-controller) docs.
We now have a default baseline policy. Next pass it to the kind configuration to enable the `--admission-control-config-file` API server argument and pass the policy file. To pass a file to a kind cluster, use a configuration file to pass additional setup instructions. Kind uses `kubeadm` to provision the cluster and the configuration file has the ability to pass `kubeadmConfigPatches` for further customization. In our case, the local file is mounted into the control plane node as `/etc/kubernetes/policies/pod-security.yaml` which is then mounted into the `apiServer` container. We also pass the `--admission-control-config-file` argument pointing to the policy's location.
```shell
cat <<EOF > kind-config.yaml
kind: Cluster
apiVersion: kind.x-k8s.io/v1alpha4
nodes:
- role: control-plane
kubeadmConfigPatches:
- |
kind: ClusterConfiguration
apiServer:
# enable admission-control-config flag on the API server
extraArgs:
admission-control-config-file: /etc/kubernetes/policies/pod-security.yaml
# mount new file / directories on the control plane
extraVolumes:
- name: policies
hostPath: /etc/kubernetes/policies
mountPath: /etc/kubernetes/policies
readOnly: true
pathType: "DirectoryOrCreate"
# mount the local file on the control plane
extraMounts:
- hostPath: ./pod-security.yaml
containerPath: /etc/kubernetes/policies/pod-security.yaml
readOnly: true
EOF
```
Create a new cluster using the kind configuration file defined above.
```shell
kind create cluster --image kindest/node:v1.23.0 --config kind-config.yaml
```
Let's look at the default namespace.
```shell
kubectl describe namespace default
```
The output is similar to this:
```
Name: default
Labels: kubernetes.io/metadata.name=default
Annotations: <none>
Status: Active
No resource quota.
No LimitRange resource.
```
Let's create a new namespace and see if the labels apply there.
```shell
kubectl create namespace test-defaults
kubectl describe namespace test-defaults
```
Same.
```
Name: test-defaults
Labels: kubernetes.io/metadata.name=test-defaults
Annotations: <none>
Status: Active
No resource quota.
No LimitRange resource.
```
Can a privileged workload be deployed?
```shell
cat <<EOF | kubectl -n test-defaults apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-privileged
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
securityContext:
allowPrivilegeEscalation: true
EOF
```
Hmm... yep. The default `warn` level is working at least.
```
Warning: would violate PodSecurity "restricted:latest": allowPrivilegeEscalation != false (container "busybox" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container "busybox" must set securityContext.capabilities.drop=["ALL"]), runAsNonRoot != true (pod or container "busybox" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container "busybox" must set securityContext.seccompProfile.type to "RuntimeDefault" or "Localhost")
pod/busybox-privileged created
```
Let's delete the pod with `kubectl -n test-defaults delete pod/busybox-privileged`.
Is my config even working?
```shell
# if using docker, shell into the control plane
docker exec -it kind-control-plane bash
# cat out the file we mounted
cat /etc/kubernetes/policies/pod-security.yaml
# check the api server logs
cat /var/log/containers/kube-apiserver*.log
# check the api server config
cat /etc/kubernetes/manifests/kube-apiserver.yaml
```
**UPDATE:** The baseline policy permits `allowPrivilegeEscalation`. While I cannot see the Pod Security default levels of enforcement, they are there. Let's try to provide a manifest that violates the baseline by requesting hostNetwork access.
```shell
# delete the original pod
kubectl -n test-defaults delete pod busybox-privileged
cat <<EOF | kubectl -n test-defaults apply -f -
apiVersion: v1
kind: Pod
metadata:
name: busybox-privileged
spec:
containers:
- name: busybox
image: busybox
args:
- sleep
- "1000000"
hostNetwork: true
EOF
```
The output is similar to this:
```
Error from server (Forbidden): error when creating "STDIN": pods "busybox-privileged" is forbidden: violates PodSecurity "baseline:latest": host namespaces (hostNetwork=true)
```
#### Yes!!! It worked! 🎉🎉🎉 {#it-worked}
I later found out, another way to check if things are operating as intended is to check the raw API server metrics endpoint.
Run the following command:
```
kubectl get --raw /metrics | grep pod_security_evaluations_total
```
The output is similar to this:
```
# HELP pod_security_evaluations_total [ALPHA] Number of policy evaluations that occurred, not counting ignored or exempt requests.
# TYPE pod_security_evaluations_total counter
pod_security_evaluations_total{decision="allow",mode="enforce",policy_level="baseline",policy_version="latest",request_operation="create",resource="pod",subresource=""} 2
pod_security_evaluations_total{decision="allow",mode="enforce",policy_level="privileged",policy_version="latest",request_operation="create",resource="pod",subresource=""} 0
pod_security_evaluations_total{decision="allow",mode="enforce",policy_level="privileged",policy_version="latest",request_operation="update",resource="pod",subresource=""} 0
pod_security_evaluations_total{decision="deny",mode="audit",policy_level="baseline",policy_version="latest",request_operation="create",resource="pod",subresource=""} 1
pod_security_evaluations_total{decision="deny",mode="enforce",policy_level="baseline",policy_version="latest",request_operation="create",resource="pod",subresource=""} 1
pod_security_evaluations_total{decision="deny",mode="warn",policy_level="restricted",policy_version="latest",request_operation="create",resource="controller",subresource=""} 2
pod_security_evaluations_total{decision="deny",mode="warn",policy_level="restricted",policy_version="latest",request_operation="create",resource="pod",subresource=""} 2
```
A monitoring tool could ingest these metrics too for reporting, assessments, or measuring trends.
## Clean up
When finished, delete the kind cluster.
```shell
kind delete cluster
```
## Auditing
Auditing is another way to track what policies are being enforced in your cluster. To set up auditing with kind, review the official docs for [enabling auditing](https://kind.sigs.k8s.io/docs/user/auditing/). As of [version 1.11](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.11.md#sig-auth), Kubernetes audit logs include two annotations that indicate whether or not a request was authorized (`authorization.k8s.io/decision`) and the reason for the decision (`authorization.k8s.io/reason`). Audit events can be streamed to a webhook for monitoring, tracking, or alerting.
The audit events look similar to the following:
```yaml
{"authorization.k8s.io/decision":"allow","authorization.k8s.io/reason":"","pod-security.kubernetes.io/audit":"allowPrivilegeEscalation != false (container \"busybox\" must set securityContext.allowPrivilegeEscalation=false), unrestricted capabilities (container \"busybox\" must set securityContext.capabilities.drop=[\"ALL\"]), runAsNonRoot != true (pod or container \"busybox\" must set securityContext.runAsNonRoot=true), seccompProfile (pod or container \"busybox\" must set securityContext.seccompProfile.type to \"RuntimeDefault\" or \"Localhost\")"}}
```
Auditing is also a good first step in evaluating your cluster's current compliance with Pod Security. The Kubernetes Enhancement Proposal (KEP) hints at a future where `baseline` [could be the default for unlabeled namespaces](https://github.com/kubernetes/enhancements/blob/master/keps/sig-auth/2579-psp-replacement/README.md#rollout-of-baseline-by-default-for-unlabeled-namespaces).
Example `audit-policy.yaml` configuration tuned for Pod Security events:
```
apiVersion: audit.k8s.io/v1
kind: Policy
rules:
- level: RequestResponse
resources:
- group: "" # core API group
resources: ["pods", "pods/ephemeralcontainers", "podtemplates", "replicationcontrollers"]
- group: "apps"
resources: ["daemonsets", "deployments", "replicasets", "statefulsets"]
- group: "batch"
resources: ["cronjobs", "jobs"]
verbs: ["create", "update"]
omitStages:
- "RequestReceived"
- "ResponseStarted"
- "Panic"
```
Once auditing is enabled, look at the configured local file if using `--audit-log-path` or the destination of a webhook if using `--audit-webhook-config-file`.
If using a file (`--audit-log-path`), run `cat /PATH/TO/API/AUDIT.log | grep "is forbidden:"` to see all rejected workloads audited.
## PSP migrations
If you're already using PSP, SIG Auth has created a guide and [published the steps to migrate off of PSP](/docs/tasks/configure-pod-container/migrate-from-psp/).
To summarize the process:
- Update all existing PSPs to be non-mutating
- Apply Pod Security policies in `warn` or `audit` mode
- Upgrade Pod Security policies to `enforce` mode
- Remove `PodSecurityPolicy` from `--enable-admission-plugins`
Listed as "optional future extensions" and currently out of scope, SIG Auth has kicked around the idea of providing a tool to assist with migrations. More [details in the KEP](https://github.com/kubernetes/enhancements/blob/master/keps/sig-auth/2579-psp-replacement/README.md#automated-psp-migration-tooling).
## Wrap up
Pod Security is a promising new feature that provides an out-of-the-box way to allow users to improve the security posture of their workloads. Like any new enhancement that has matured to beta, we ask that you try it out, provide feedback, or share your experience via either raising a Github issue or joining SIG Auth community meetings. It's our hope that Pod Security will be deployed on every cluster in our ongoing pursuit as a community to make Kubernetes security a priority.
For a step by step guide on how to enable "baseline" Pod Security Standards with Pod Security Admission feature please refer to these dedicated [tutorials](/docs/tutorials/security/) that cover the configuration needed at cluster level and namespace level.
## Additional resources
- [Official Pod Security Docs](/docs/concepts/security/pod-security-admission/)
- [Enforce Pod Security Standards with Namespace Labels](/docs/tasks/configure-pod-container/enforce-standards-namespace-labels/)
- [Enforce Pod Security Standards by Configuring the Built-in Admission Controller](/docs/tasks/configure-pod-container/enforce-standards-admission-controller/)
- [Official Kubernetes Enhancement Proposal](https://github.com/kubernetes/enhancements/blob/master/keps/sig-auth/2579-psp-replacement/README.md) (KEP)
- [PodSecurityPolicy Deprecation: Past, Present, and Future](/blog/2021/04/06/podsecuritypolicy-deprecation-past-present-and-future/)
- [Hands on with Kubernetes Pod Security](https://medium.com/@LachlanEvenson/hands-on-with-kubernetes-pod-security-admission-b6cac495cd11)
@@ -0,0 +1,135 @@
---
layout: blog
title: "Kubernetes 1.23: Kubernetes In-Tree to CSI Volume Migration Status Update"
date: 2021-12-10
slug: storage-in-tree-to-csi-migration-status-update
---
**Author:** Jiawei Wang (Google)
The Kubernetes in-tree storage plugin to [Container Storage Interface (CSI)](/blog/2019/01/15/container-storage-interface-ga/) migration infrastructure has already been [beta](/blog/2019/12/09/kubernetes-1-17-feature-csi-migration-beta/) since v1.17. CSI migration was introduced as alpha in Kubernetes v1.14.
Since then, SIG Storage and other Kubernetes special interest groups are working to ensure feature stability and compatibility in preparation for GA.
This article is intended to give a status update to the feature as well as changes between Kubernetes 1.17 and 1.23. In addition, I will also cover the future roadmap for the CSI migration feature GA for each storage plugin.
## Quick recap: What is CSI Migration, and why migrate?
The Container Storage Interface (CSI) was designed to help Kubernetes replace its existing, in-tree storage driver mechanisms - especially vendor specific plugins.
Kubernetes support for the [Container Storage Interface](https://github.com/container-storage-interface/spec/blob/master/spec.md#README) has been
[generally available](/blog/2019/01/15/container-storage-interface-ga/) since Kubernetes v1.13.
Support for using CSI drivers was introduced to make it easier to add and maintain new integrations between Kubernetes and storage backend technologies. Using CSI drivers allows for for better maintainability (driver authors can define their own release cycle and support lifecycle) and reduce the opportunity for vulnerabilities (with less in-tree code, the risks of a mistake are reduced, and cluster operators can select only the storage drivers that their cluster requires).
As more CSI Drivers were created and became production ready, SIG Storage group wanted all Kubernetes users to benefit from the CSI model. However, we cannot break API compatibility with the existing storage API types. The solution we came up with was CSI migration: a feature that translates in-tree APIs to equivalent CSI APIs and delegates operations to a replacement CSI driver.
The CSI migration effort enables the replacement of existing in-tree storage plugins such as `kubernetes.io/gce-pd` or `kubernetes.io/aws-ebs` with a corresponding [CSI driver](https://kubernetes-csi.github.io/docs/introduction.html) from the storage backend.
If CSI Migration is working properly, Kubernetes end users shouldnt notice a difference. Existing `StorageClass`, `PersistentVolume` and `PersistentVolumeClaim` objects should continue to work.
When a Kubernetes cluster administrator updates a cluster to enable CSI migration, existing workloads that utilize PVCs which are backed by in-tree storage plugins will continue to function as they always have.
However, behind the scenes, Kubernetes hands control of all storage management operations (previously targeting in-tree drivers) to CSI drivers.
For example, suppose you are a `kubernetes.io/gce-pd` user, after CSI migration, you can still use `kubernetes.io/gce-pd` to provision new volumes, mount existing GCE-PD volumes or delete existing volumes. All existing API/Interface will still function correctly. However, the underlying function calls are all going through the [GCE PD CSI driver](https://github.com/kubernetes-sigs/gcp-compute-persistent-disk-csi-driver) instead of the in-tree Kubernetes function.
This enables a smooth transition for end users. Additionally as storage plugin developers, we can reduce the burden of maintaining the in-tree storage plugins and eventually remove them from the core Kubernetes binary.
## What has been changed, and what's new?
Building on the work done in Kubernetes v1.17 and earlier, the releases since then have
made a series of changes:
### New feature gates
The Kubernetes v1.21 release deprecated the `CSIMigration{provider}Complete` feature flags, and stopped honoring them. In their place came new feature flags named `InTreePlugin{vendor}Unregister`, that replace the old feature flag and retain all the functionality that `CSIMigration{provider}Complete` provided.
`CSIMigration{provider}Complete` was introduced before as a supplementary feature gate once CSI migration is enabled on all of the nodes. This flag unregisters the in-tree storage plugin you specify with the `{provider}` part of the flag name.
When you enable that feature gate, then instead of using the in-tree driver code, your cluster directly selects and uses the relevant CSI driver. This happens without any check for whether CSI migration is enabled on the node, or whether you have in fact deployed that CSI driver.
While this feature gate is a great helper, SIG Storage (and, I'm sure, lots of cluster operators) also wanted a feature gate that lets you disable an in-tree storage plugin, even without also enabling CSI migration. For example, you might want to disable the EBS storage plugin on a GCE cluster, because EBS volumes are specific to a different vendor's cloud (AWS).
To make this possible, Kubernetes v1.21 introduced a new feature flag set: `InTreePlugin{vendor}Unregister`.
`InTreePlugin{vendor}Unregister` is a standalone feature gate that can be enabled and disabled independently from CSI Migration. When enabled, the component will not register the specific in-tree storage plugin to the supported list. If the cluster operator only enables this flag, end users will get an error from PVC saying it cannot find the plugin when the plugin is used. The cluster operator may want to enable this regardless of CSI Migration if they do not want to support the legacy in-tree APIs and only support CSI moving forward.
### Observability
Kubernetes v1.21 introduced [metrics](https://github.com/kubernetes/kubernetes/issues/98279) for tracking CSI migration.
You can use these metrics to observe how your cluster is using storage services and whether access to that storage is using the legacy in-tree driver or its CSI-based replacement.
| Components | Metrics | Notes |
| -------------------------------------------- | ---------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Kube-Controller-Manager | storage_operation_duration_seconds | A new label `migrated` is added to the metric to indicate whether this storage operation is a CSI migration operation(string value `true` for enabled and `false` for not enabled). |
| Kubelet | csi_operations_seconds | The new metric exposes labels including `driver_name`, `method_name`, `grpc_status_code` and `migrated`. The meaning of these labels is identical to `csi_sidecar_operations_seconds`. |
| CSI Sidecars(provisioner, attacher, resizer) | csi_sidecar_operations_seconds | A new label `migrated` is added to the metric to indicate whether this storage operation is a CSI migration operation(string value `true` for enabled and `false` for not enabled). |
### Bug fixes and feature improvement
We have fixed numerous bugs like dangling attachment, garbage collection, incorrect topology label through the help of our beta testers.
### Cloud Provider && Cluster Lifecycle Collaboration
SIG Storage has been working closely with SIG Cloud Provider and SIG Cluster Lifecycle on the rollout of CSI migration.
If you are a user of a managed Kubernetes service, check with your provider if anything needs to be done. In many cases, the provider will manage the migration and no additional work is required.
If you use a distribution of Kubernetes, check its official documentation for information about support for this feature. For the CSI Migration feature graduation to GA, SIG Storage and SIG Cluster Lifecycle are collaborating towards making the migration mechanisms available in tooling (such as kubeadm) as soon as they're available in Kubernetes itself.
## What is the timeline / status? {#timeline-and-status}
The current and targeted releases for each individual driver is shown in the table below:
| Driver | Alpha | Beta (in-tree deprecated) | Beta (on-by-default) | GA | Target "in-tree plugin" removal |
| ---------------- | ----- | ------------------------- | -------------------- | ------------- | ------------------------------- |
| AWS EBS | 1.14 | 1.17 | 1.23 | 1.24 (Target) | 1.26 (Target) |
| GCE PD | 1.14 | 1.17 | 1.23 | 1.24 (Target) | 1.26 (Target) |
| OpenStack Cinder | 1.14 | 1.18 | 1.21 | 1.24 (Target) | 1.26 (Target) |
| Azure Disk | 1.15 | 1.19 | 1.23 | 1.24 (Target) | 1.26 (Target) |
| Azure File | 1.15 | 1.21 | 1.24 (Target) | 1.25 (Target) | 1.27 (Target) |
| vSphere | 1.18 | 1.19 | 1.24 (Target) | 1.25 (Target) | 1.27 (Target) |
| Ceph RBD | 1.23 |
| Portworx | 1.23 |
The following storage drivers will not have CSI migration support. The ScaleIO driver was already removed; the others are deprecated and will be removed from core Kubernetes.
| Driver | Deprecated | Code Removal |
| --------- | ---------- | ------------- |
| ScaleIO | 1.16 | 1.22 |
| Flocker | 1.22 | 1.25 (Target) |
| Quobyte | 1.22 | 1.25 (Target) |
| StorageOS | 1.22 | 1.25 (Target) |
## What's next?
With more CSI drivers graduating to GA, we hope to soon mark the overall CSI Migration feature as GA. We are expecting cloud provider in-tree storage plugins code removal to happen by Kubernetes v1.26 and v1.27.
## What should I do as a user?
Note that all new features for the Kubernetes storage system (such as volume snapshotting) will only be added to the CSI interface. Therefore, if you are starting up a new cluster, creating stateful applications for the first time, or require these new features we recommend using CSI drivers natively (instead of the in-tree volume plugin API). Follow the [updated user guides for CSI drivers](https://kubernetes-csi.github.io/docs/drivers.html) and use the new CSI APIs.
However, if you choose to roll a cluster forward or continue using specifications with the legacy volume APIs, CSI Migration will ensure we continue to support those deployments with the new CSI drivers. However, if you want to leverage new features like snapshot, it will require a manual migration to re-import an existing intree PV as a CSI PV.
## How do I get involved?
The Kubernetes Slack channel [#csi-migration](https://kubernetes.slack.com/messages/csi-migration) along with any of the standard [SIG Storage communication channels](https://github.com/kubernetes/community/blob/master/sig-storage/README.md#contact) are great mediums to reach out to the SIG Storage and migration working group teams.
This project, like all of Kubernetes, is the result of hard work by many contributors from diverse backgrounds working together. We offer a huge thank you to the contributors who stepped up these last quarters to help move the project forward:
* Michelle Au (msau42)
* Jan Šafránek (jsafrane)
* Hemant Kumar (gnufied)
Special thanks to the following people for the insightful reviews, thorough consideration and valuable contribution to the CSI migration feature:
* Andy Zhang (andyzhangz)
* Divyen Patel (divyenpatel)
* Deep Debroy (ddebroy)
* Humble Devassy Chirammal (humblec)
* Jing Xu (jingxu97)
* Jordan Liggitt (liggitt)
* Matthew Cary (mattcary)
* Matthew Wong (wongma7)
* Neha Arora (nearora-msft)
* Oksana Naumov (trierra)
* Saad Ali (saad-ali)
* Tim Bannister (sftim)
* Xing Yang (xing-yang)
Those interested in getting involved with the design and development of CSI or any part of the Kubernetes Storage system, join the [Kubernetes Storage Special Interest Group (SIG)](https://github.com/kubernetes/community/tree/master/sig-storage). Were rapidly growing and always welcome new contributors.
@@ -0,0 +1,199 @@
---
layout: blog
title: "Kubernetes 1.23: Prevent PersistentVolume leaks when deleting out of order"
date: 2021-12-15T10:00:00-08:00
slug: kubernetes-1-23-prevent-persistentvolume-leaks-when-deleting-out-of-order
---
**Author:** Deepak Kinni (VMware)
[PersistentVolume](/docs/concepts/storage/persistent-volumes/) (or PVs for short) are
associated with [Reclaim Policy](https://kubernetes.io/docs/concepts/storage/persistent-volumes/#reclaim-policy).
The Reclaim Policy is used to determine the actions that need to be taken by the storage
backend on deletion of the PV.
Where the reclaim policy is `Delete`, the expectation is that the storage backend
releases the storage resource that was allocated for the PV. In essence, the reclaim
policy needs to honored on PV deletion.
With the recent Kubernetes v1.23 release, an alpha feature lets you configure your
cluster to behave that way and honor the configured reclaim policy.
## How did reclaim work in previous Kubernetes releases?
[PersistentVolumeClaim](/docs/concepts/storage/persistent-volumes/#Introduction) (or PVC for short) is
a request for storage by a user. A PV and PVC are considered [Bound](/docs/concepts/storage/persistent-volumes/#Binding)
if there is a newly created PV or a matching PV is found. The PVs themselves are
backed by a volume allocated by the storage backend.
Normally, if the volume is to be deleted, then the expectation is to delete the
PVC for a bound PV-PVC pair. However, there are no restrictions to delete a PV
prior to deleting a PVC.
First, I'll demonstrate the behavior for clusters that are running an older version of Kubernetes.
#### Retrieve an PVC that is bound to a PV
Retrieve an existing PVC `example-vanilla-block-pvc`
```
kubectl get pvc example-vanilla-block-pvc
```
The following output shows the PVC and it's `Bound` PV, the PV is shown under the `VOLUME` column:
```
NAME STATUS VOLUME CAPACITY ACCESS MODES STORAGECLASS AGE
example-vanilla-block-pvc Bound pvc-6791fdd4-5fad-438e-a7fb-16410363e3da 5Gi RWO example-vanilla-block-sc 19s
```
#### Delete PV
When I try to delete a bound PV, the cluster blocks and the `kubectl` tool does
not return back control to the shell; for example:
```
kubectl delete pv pvc-6791fdd4-5fad-438e-a7fb-16410363e3da
```
```
persistentvolume "pvc-6791fdd4-5fad-438e-a7fb-16410363e3da" deleted
^C
```
Retrieving the PV:
```
kubectl get pv pvc-6791fdd4-5fad-438e-a7fb-16410363e3da
```
It can be observed that the PV is in `Terminating` state
```
NAME CAPACITY ACCESS MODES RECLAIM POLICY STATUS CLAIM STORAGECLASS REASON AGE
pvc-6791fdd4-5fad-438e-a7fb-16410363e3da 5Gi RWO Delete Terminating default/example-vanilla-block-pvc example-vanilla-block-sc 2m23s
```
#### Delete PVC
```
kubectl delete pvc example-vanilla-block-pvc
```
The following output is seen if the PVC gets successfully deleted:
```
persistentvolumeclaim "example-vanilla-block-pvc" deleted
```
The PV object from the cluster also gets deleted. When attempting to retrieve the PV
it will be observed that the PV is no longer found:
```
kubectl get pv pvc-6791fdd4-5fad-438e-a7fb-16410363e3da
```
```
Error from server (NotFound): persistentvolumes "pvc-6791fdd4-5fad-438e-a7fb-16410363e3da" not found
```
Although the PV is deleted the underlying storage resource is not deleted, and
needs to be removed manually.
To sum it up, the reclaim policy associated with the Persistent Volume is currently
ignored under certain circumstance. For a `Bound` PV-PVC pair the ordering of PV-PVC
deletion determines whether the PV reclaim policy is honored. The reclaim policy
is honored if the PVC is deleted first, however, if the PV is deleted prior to
deleting the PVC then the reclaim policy is not exercised. As a result of this behavior,
the associated storage asset in the external infrastructure is not removed.
## PV reclaim policy with Kubernetes v1.23
The new behavior ensures that the underlying storage object is deleted from the backend when users attempt to delete a PV manually.
#### How to enable new behavior?
To make use of the new behavior, you must have upgraded your cluster to the v1.23 release of Kubernetes.
You need to make sure that you are running the CSI [`external-provisioner`](https://github.com/kubernetes-csi/external-provisioner) version `4.0.0`, or later.
You must also enable the `HonorPVReclaimPolicy` [feature gate](/docs/reference/command-line-tools-reference/feature-gates/) for the
`external-provisioner` and for the `kube-controller-manager`.
If you're not using a CSI driver to integrate with your storage backend, the fix isn't
available. The Kubernetes project doesn't have a current plan to fix the bug for in-tree
storage drivers: the future of those in-tree drivers is deprecation and migration to CSI.
#### How does it work?
The new behavior is achieved by adding a finalizer `external-provisioner.volume.kubernetes.io/finalizer` on new and existing PVs, the finalizer is only removed after the storage from backend is deleted.
An example of a PV with the finalizer, notice the new finalizer in the finalizers list
```
kubectl get pv pvc-a7b7e3ba-f837-45ba-b243-dec7d8aaed53 -o yaml
```
```yaml
apiVersion: v1
kind: PersistentVolume
metadata:
annotations:
pv.kubernetes.io/provisioned-by: csi.vsphere.vmware.com
creationTimestamp: "2021-11-17T19:28:56Z"
finalizers:
- kubernetes.io/pv-protection
- external-provisioner.volume.kubernetes.io/finalizer
name: pvc-a7b7e3ba-f837-45ba-b243-dec7d8aaed53
resourceVersion: "194711"
uid: 087f14f2-4157-4e95-8a70-8294b039d30e
spec:
accessModes:
- ReadWriteOnce
capacity:
storage: 1Gi
claimRef:
apiVersion: v1
kind: PersistentVolumeClaim
name: example-vanilla-block-pvc
namespace: default
resourceVersion: "194677"
uid: a7b7e3ba-f837-45ba-b243-dec7d8aaed53
csi:
driver: csi.vsphere.vmware.com
fsType: ext4
volumeAttributes:
storage.kubernetes.io/csiProvisionerIdentity: 1637110610497-8081-csi.vsphere.vmware.com
type: vSphere CNS Block Volume
volumeHandle: 2dacf297-803f-4ccc-afc7-3d3c3f02051e
persistentVolumeReclaimPolicy: Delete
storageClassName: example-vanilla-block-sc
volumeMode: Filesystem
status:
phase: Bound
```
The presence of the finalizer prevents the PV object from being removed from the
cluster. As stated previously, the finalizer is only removed from the PV object
after it is successfully deleted from the storage backend. To learn more about
finalizers, please refer to [Using Finalizers to Control Deletion](/blog/2021/05/14/using-finalizers-to-control-deletion/).
#### What about CSI migrated volumes?
The fix is applicable to CSI migrated volumes as well. However, when the feature
`HonorPVReclaimPolicy` is enabled on 1.23, and CSI Migration is disabled, the finalizer
is removed from the PV object if it exists.
### Some caveats
1. The fix is applicable only to CSI volumes and migrated volumes. In-tree volumes will exhibit older behavior.
2. The fix is introduced as an alpha feature in the [external-provisioner](https://github.com/kubernetes-csi/external-provisioner) under the feature gate `HonorPVReclaimPolicy`. The feature is disabled by default, and needs to be enabled explicitly.
### References
* [KEP-2644](https://github.com/kubernetes/enhancements/tree/master/keps/sig-storage/2644-honor-pv-reclaim-policy)
* [Volume leak issue](https://github.com/kubernetes-csi/external-provisioner/issues/546)
### How do I get involved?
The Kubernetes Slack channel [SIG Storage communication channels](https://github.com/kubernetes/community/blob/master/sig-storage/README.md#contact) are great mediums to reach out to the SIG Storage and migration working group teams.
Special thanks to the following people for the insightful reviews, thorough consideration and valuable contribution:
* Jan Šafránek (jsafrane)
* Xing Yang (xing-yang)
* Matthew Wong (wongma7)
Those interested in getting involved with the design and development of CSI or any part of the Kubernetes Storage system, join the [Kubernetes Storage Special Interest Group (SIG)](https://github.com/kubernetes/community/tree/master/sig-storage). Were rapidly growing and always welcome new contributors.
@@ -0,0 +1,103 @@
---
layout: blog
title: 'Kubernetes 1.23: StatefulSet PVC Auto-Deletion (alpha)'
date: 2021-12-16
slug: kubernetes-1-23-statefulset-pvc-auto-deletion
---
**Author:** Matthew Cary (Google)
Kubernetes v1.23 introduced a new, alpha-level policy for
[StatefulSets](/docs/concepts/workloads/controllers/statefulset/) that controls the lifetime of
[PersistentVolumeClaims](/docs/concepts/storage/persistent-volumes/) (PVCs) generated from the
StatefulSet spec template for cases when they should be deleted automatically when the StatefulSet
is deleted or pods in the StatefulSet are scaled down.
## What problem does this solve?
A StatefulSet spec can include Pod and PVC templates. When a replica is first created, the
Kubernetes control plane creates a PVC for that replica if one does not already exist. The behavior
before Kubernetes v1.23 was that the control plane never cleaned up the PVCs created for
StatefulSets - this was left up to the cluster administrator, or to some add-on automation that
youd have to find, check suitability, and deploy. The common pattern for managing PVCs, either
manually or through tools such as Helm, is that the PVCs are tracked by the tool that manages them,
with explicit lifecycle. Workflows that use StatefulSets must determine on their own what PVCs are
created by a StatefulSet and what their lifecycle should be.
Before this new feature, when a StatefulSet-managed replica disappears, either because the
StatefulSet is reducing its replica count, or because its StatefulSet is deleted, the PVC and its
backing volume remains and must be manually deleted. While this behavior is appropriate when the
data is critical, in many cases the persistent data in these PVCs is either temporary, or can be
reconstructed from another source. In those cases, PVCs and their backing volumes remaining after
their StatefulSet or replicas have been deleted are not necessary, incur cost, and require manual
cleanup.
## The new StatefulSet PVC retention policy
If you enable the alpha feature, a StatefulSet spec includes a PersistentVolumeClaim retention
policy. This is used to control if and when PVCs created from a StatefulSets `volumeClaimTemplate`
are deleted. This first iteration of the retention policy contains two situations where PVCs may be
deleted.
The first situation is when the StatefulSet resource is deleted (which implies that all replicas are
also deleted). This is controlled by the `whenDeleted` policy. The second situation, controlled by
`whenScaled` is when the StatefulSet is scaled down, which removes some but not all of the replicas
in a StatefulSet. In both cases the policy can either be `Retain`, where the corresponding PVCs are
not touched, or `Delete`, which means that PVCs are deleted. The deletion is done with a normal
[object deletion](/docs/concepts/architecture/garbage-collection/), so that, for example, all
retention policies for the underlying PV are respected.
This policy forms a matrix with four cases. Ill walk through and give an example for each one.
* **`whenDeleted` and `whenScaled` are both `Retain`.** This matches the existing behavior for
StatefulSets, where no PVCs are deleted. This is also the default retention policy. Its
appropriate to use when data on StatefulSet volumes may be irreplaceable and should only be
deleted manually.
* **`whenDeleted` is `Delete` and `whenScaled` is `Retain`.** In this case, PVCs are deleted only when
the entire StatefulSet is deleted. If the StatefulSet is scaled down, PVCs are not touched,
meaning they are available to be reattached if a scale-up occurs with any data from the previous
replica. This might be used for a temporary StatefulSet, such as in a CI instance or ETL
pipeline, where the data on the StatefulSet is needed only during the lifetime of the
StatefulSet lifetime, but while the task is running the data is not easily reconstructible. Any
retained state is needed for any replicas that scale down and then up.
* **`whenDeleted` and `whenScaled` are both `Delete`.** PVCs are deleted immediately when their
replica is no longer needed. Note this does not include when a Pod is deleted and a new version
rescheduled, for example when a node is drained and Pods need to migrate elsewhere. The PVC is
deleted only when the replica is no longer needed as signified by a scale-down or StatefulSet
deletion. This use case is for when data does not need to live beyond the life of its
replica. Perhaps the data is easily reconstructable and the cost savings of deleting unused PVCs
is more important than quick scale-up, or perhaps that when a new replica is created, any data
from a previous replica is not usable and must be reconstructed anyway.
* **`whenDeleted` is `Retain` and `whenScaled` is `Delete`.** This is similar to the previous case,
when there is little benefit to keeping PVCs for fast reuse during scale-up. An example of a
situation where you might use this is an Elasticsearch cluster. Typically you would scale that
workload up and down to match demand, whilst ensuring a minimum number of replicas (for example:
3). When scaling down, data is migrated away from removed replicas and there is no benefit to
retaining those PVCs. However, it can be useful to bring the entire Elasticsearch cluster down
temporarily for maintenance. If you need to take the Elasticsearch system offline, you can do
this by temporarily deleting the StatefulSet, and then bringing the Elasticsearch cluster back
by recreating the StatefulSet. The PVCs holding the Elasticsearch data will still exist and the
new replicas will automatically use them.
Visit the
[documentation](/docs/concepts/workloads/controllers/statefulset/#persistentvolumeclaim-policies) to
see all the details.
## Whats next?
Enable the feature and try it out! Enable the `StatefulSetAutoDeletePVC` feature gate on a cluster,
then create a StatefulSet using the new policy. Test it out and tell us what you think!
I'm very curious to see if this owner reference mechanism works well in practice. For example, we
realized there is no mechanism in Kubernetes for knowing who set a reference, so its possible that
the StatefulSet controller may fight with custom controllers that set their own
references. Fortunately, maintaining the existing retention behavior does not involve any new owner
references, so default behavior will be compatible.
Please tag any issues you report with the label `sig/apps` and assign them to Matthew Cary
([@mattcary](https://github.com/mattcary) at GitHub).
Enjoy!
@@ -0,0 +1,148 @@
---
layout: blog
title: "What's new in Security Profiles Operator v0.4.0"
date: 2021-12-17
slug: security-profiles-operator
---
**Authors:** Jakub Hrozek, Juan Antonio Osorio, Paulo Gomes, Sascha Grunert
---
The [Security Profiles Operator (SPO)](https://sigs.k8s.io/security-profiles-operator)
is an out-of-tree Kubernetes enhancement to make the management of
[seccomp](https://en.wikipedia.org/wiki/Seccomp),
[SELinux](https://en.wikipedia.org/wiki/Security-Enhanced_Linux) and
[AppArmor](https://en.wikipedia.org/wiki/AppArmor) profiles easier and more
convenient. We're happy to announce that we recently [released
v0.4.0](https://github.com/kubernetes-sigs/security-profiles-operator/releases/tag/v0.4.0)
of the operator, which contains a ton of new features, fixes and usability
improvements.
## What's new
It has been a while since the last
[v0.3.0](https://github.com/kubernetes-sigs/security-profiles-operator/releases/tag/v0.3.0)
release of the operator. We added new features, fine-tuned existing ones and
reworked our documentation in 290 commits over the past half year.
One of the highlights is that we're now able to record seccomp and SELinux
profiles using the operators [log enricher](https://github.com/kubernetes-sigs/security-profiles-operator/blob/71b3915/installation-usage.md#log-enricher-based-recording).
This allows us to reduce the dependencies required for profile recording to have
[auditd](https://linux.die.net/man/8/auditd) or
[syslog](https://en.wikipedia.org/wiki/Syslog) (as fallback) running on the
nodes. All profile recordings in the operator work in the same way by using the
`ProfileRecording` CRD as well as their corresponding [label
selectors](/docs/concepts/overview/working-with-objects/labels). The log
enricher itself can be also used to gather meaningful insights about seccomp and
SELinux messages of a node. Checkout the [official
documentation](https://github.com/kubernetes-sigs/security-profiles-operator/blob/71b3915/installation-usage.md#using-the-log-enricher)
to learn more about it.
### seccomp related improvements
Beside the log enricher based recording we now offer an alternative to record
seccomp profiles by utilizing [ebpf](https://ebpf.io). This optional feature can
be enabled by setting `enableBpfRecorder` to `true`. This results in running a
dedicated container, which ships a custom bpf module on every node to collect
the syscalls for containers. It even supports older Kernel versions which do not
expose the [BPF Type Format (BTF)](https://www.kernel.org/doc/html/latest/bpf/btf.html) per
default as well as the `amd64` and `arm64` architectures. Checkout
[our documentation](https://github.com/kubernetes-sigs/security-profiles-operator/blob/71b3915/installation-usage.md#ebpf-based-recording)
to see it in action. By the way, we now add the seccomp profile architecture of
the recorder host to the recorded profile as well.
We also graduated the seccomp profile API from `v1alpha1` to `v1beta1`. This
aligns with our overall goal to stabilize the CRD APIs over time. The only thing
which has changed is that the seccomp profile type `Architectures` now points to
`[]Arch` instead of `[]*Arch`.
### SELinux enhancements
Managing SELinux policies (an equivalent to using `semodule` that
you would normally call on a single server) is not done by SPO
itself, but by another container called selinuxd to provide better
isolation. This release switched to using selinuxd containers from
a personal repository to images located under [our team's quay.io
repository](https://quay.io/organization/security-profiles-operator).
The selinuxd repository has moved as well to [the containers GitHub
organization](https://github.com/containers/selinuxd).
Please note that selinuxd links dynamically to `libsemanage` and mounts the
SELinux directories from the nodes, which means that the selinuxd container
must be running the same distribution as the cluster nodes. SPO defaults
to using CentOS-8 based containers, but we also build Fedora based ones.
If you are using another distribution and would like us to add support for
it, please file [an issue against selinuxd](https://github.com/containers/selinuxd/issues).
#### Profile Recording
This release adds support for recording of SELinux profiles.
The recording itself is managed via an instance of a `ProfileRecording` Custom
Resource as seen in an
[example](https://github.com/kubernetes-sigs/security-profiles-operator/blob/main/examples/profilerecording-selinux-logs.yaml)
in our repository. From the user's point of view it works pretty much the same
as recording of seccomp profiles.
Under the hood, to know what the workload is doing SPO installs a special
permissive policy called [selinuxrecording](https://github.com/kubernetes-sigs/security-profiles-operator/blob/main/deploy/base/profiles/selinuxrecording.cil)
on startup which allows everything and logs all AVCs to `audit.log`.
These AVC messages are scraped by the log enricher component and when
the recorded workload exits, the policy is created.
#### `SELinuxProfile` CRD graduation
An `v1alpha2` version of the `SelinuxProfile` object has been introduced. This
removes the raw Common Intermediate Language (CIL) from the object itself and
instead adds a simple policy language to ease the writing and parsing
experience.
Alongside, a `RawSelinuxProfile` object was also introduced. This contains a
wrapped and raw representation of the policy. This was intended for folks to be
able to take their existing policies into use as soon as possible. However, on
validations are done here.
### AppArmor support
This version introduces the initial support for AppArmor, allowing users to load and
unload AppArmor profiles into cluster nodes by using the new [AppArmorProfile](https://github.com/kubernetes-sigs/security-profiles-operator/blob/main/deploy/base/crds/apparmorprofile.yaml) CRD.
To enable AppArmor support use the [enableAppArmor feature gate](https://github.com/kubernetes-sigs/security-profiles-operator/blob/main/examples/config.yaml#L10) switch of your SPO configuration.
Then use our [apparmor example](https://github.com/kubernetes-sigs/security-profiles-operator/blob/main/examples/apparmorprofile.yaml) to deploy your first profile across your cluster.
### Metrics
The operator now exposes metrics, which are described in detail in
our new [metrics documentation](https://github.com/kubernetes-sigs/security-profiles-operator/blob/71b3915/installation-usage.md#using-metrics).
We decided to secure the metrics retrieval process by using
[kube-rbac-proxy](https://github.com/brancz/kube-rbac-proxy), while we ship an
additional `spo-metrics-client` cluster role (and binding) to retrieve the
metrics from within the cluster. If you're using
[OpenShift](https://www.redhat.com/en/technologies/cloud-computing/openshift),
then we provide an out of the box working
[`ServiceMonitor`](https://github.com/kubernetes-sigs/security-profiles-operator/blob/71b3915/installation-usage.md#automatic-servicemonitor-deployment)
to access the metrics.
#### Debuggability and robustness
Beside all those new features, we decided to restructure parts of the Security
Profiles Operator internally to make it better to debug and more robust. For
example, we now maintain an internal [gRPC](https://grpc.io) API to communicate
within the operator across different features. We also improved the performance
of the log enricher, which now caches results for faster retrieval of the log
data. The operator can be put into a more [verbose log mode](https://github.com/kubernetes-sigs/security-profiles-operator/blob/71b3915/installation-usage.md#set-logging-verbosity)
by setting `verbosity` from `0` to `1`.
We also print the used `libseccomp` and `libbpf` versions on startup, as well as
expose CPU and memory profiling endpoints for each container via the
[`enableProfiling` option](https://github.com/kubernetes-sigs/security-profiles-operator/blob/71b3915/installation-usage.md#enable-cpu-and-memory-profiling).
Dedicated liveness and startup probes inside of the operator daemon will now
additionally improve the life cycle of the operator.
## Conclusion
Thank you for reading this update. We're looking forward to future enhancements
of the operator and would love to get your feedback about the latest release.
Feel free to reach out to us via the Kubernetes slack
[#security-profiles-operator](https://kubernetes.slack.com/messages/security-profiles-operator)
for any feedback or question.
@@ -0,0 +1,108 @@
---
layout: blog
title: "Using Admission Controllers to Detect Container Drift at Runtime"
date: 2021-12-21
slug: admission-controllers-for-container-drift
---
**Author:** Saifuding Diliyaer (Box)
{{< figure src="intro-illustration.png" alt="Introductory illustration" attr="Illustration by Munire Aireti" >}}
At Box, we use Kubernetes (K8s) to manage hundreds of micro-services that enable Box to stream data at a petabyte scale. When it comes to the deployment process, we run [kube-applier](https://github.com/box/kube-applier) as part of the GitOps workflows with declarative configuration and automated deployment. Developers declare their K8s apps manifest into a Git repository that requires code reviews and automatic checks to pass, before any changes can get merged and applied inside our K8s clusters. With `kubectl exec` and other similar commands, however, developers are able to directly interact with running containers and alter them from their deployed state. This interaction could then subvert the change control and code review processes that are enforced in our CI/CD pipelines. Further, it allows such impacted containers to continue receiving traffic long-term in production.
To solve this problem, we developed our own K8s component called [kube-exec-controller](https://github.com/box/kube-exec-controller) along with its corresponding [kubectl plugin](https://github.com/box/kube-exec-controller#kubectl-pi). They function together in detecting and terminating potentially mutated containers (caused by interactive kubectl commands), as well as revealing the interaction events directly to the target Pods for better visibility.
## Admission control for interactive kubectl commands
Once a request is sent to K8s, it needs to be authenticated and authorized by the API server to proceed. Additionally, K8s has a separate layer of protection called [admission controllers](/docs/reference/access-authn-authz/admission-controllers/), which can intercept the request before an object is persisted in *etcd*. There are various predefined admission controls compiled into the API server binary (e.g. ResourceQuota to enforce hard resource usage limits per namespace). Besides, there are two dynamic admission controls named [MutatingAdmissionWebhook](/docs/reference/access-authn-authz/admission-controllers/#mutatingadmissionwebhook) and [ValidatingAdmissionWebhook](/docs/reference/access-authn-authz/admission-controllers/#validatingadmissionwebhook), used for mutating or validating K8s requests respectively. The latter is what we adopted to detect container drift at runtime caused by interactive kubectl commands. This whole process can be divided into three steps as explained in detail below.
### 1. Admit interactive kubectl command requests
First of all, we needed to enable a validating webhook that sends qualified requests to *kube-exec-controller*. To add the new validation mechanism applying to interactive kubectl commands specifically, we configured the webhooks rules with resources as `[pods/exec, pods/attach]`, and operations as `CONNECT`. These rules tell the cluster's API server that all `exec` and `attach` requests should be subject to our admission control webhook. In the ValidatingAdmissionWebhook that we configured, we specified a `service` reference (could also be replaced with `url` that gives the location of the webhook) and `caBundle` to allow validating its X.509 certificate, both under the `clientConfig` stanza.
Here is a short example of what our ValidatingWebhookConfiguration object looks like:
```yaml
apiVersion: admissionregistration.k8s.io/v1
kind: ValidatingWebhookConfiguration
metadata:
name: example-validating-webhook-config
webhooks:
- name: validate-pod-interaction.example.com
sideEffects: None
rules:
- apiGroups: ["*"]
apiVersions: ["*"]
operations: ["CONNECT"]
resources: ["pods/exec", "pods/attach"]
failurePolicy: Fail
clientConfig:
service:
# reference to kube-exec-controller service deployed inside the K8s cluster
name: example-service
namespace: kube-exec-controller
path: "/admit-pod-interaction"
caBundle: "{{VALUE}}" # PEM encoded CA bundle to validate kube-exec-controller's certificate
admissionReviewVersions: ["v1", "v1beta1"]
```
### 2. Label the target Pod with potentially mutated containers
Once a request of `kubectl exec` comes in, *kube-exec-controller* makes an internal note to label the associated Pod. The added labels mean that we can not only query all the affected Pods, but also enable the security mechanism to retrieve previously identified Pods, in case the controller service itself gets restarted.
The admission control process cannot directly modify the targeted in its admission response. This is because the `pods/exec` request is against a subresource of the Pod API, and the API kind for that subresource is `PodExecOptions`. As a result, there is a separate process in *kube-exec-controller* that patches the labels asynchronously. The admission control always permits the `exec` request, then acts as a client of the K8s API to label the target Pod and to log related events. Developers can check whether their Pods are affected or not using `kubectl` or similar tools. For example:
```
$ kubectl get pod --show-labels
NAME READY STATUS RESTARTS AGE LABELS
test-pod 1/1 Running 0 2s box.com/podInitialInteractionTimestamp=1632524400,box.com/podInteractorUsername=username-1,box.com/podTTLDuration=1h0m0s
$ kubectl describe pod test-pod
...
Events:
Type Reason Age    From                            Message
----       ------       ----   ----                            -------
Warning PodInteraction 5s admission-controller-service Pod was interacted with 'kubectl exec' command by user 'username-1' initially at time 2021-09-24 16:00:00 -0800 PST
Warning PodInteraction 5s admission-controller-service Pod will be evicted at time 2021-09-24 17:00:00 -0800 PST (in about 1h0m0s).
```
### 3. Evict the target Pod after a predefined period
As you can see in the above event messages, the affected Pod is not evicted immediately. At times, developers might have to get into their running containers necessarily for debugging some live issues. Therefore, we define a time to live (TTL) of affected Pods based on the environment of clusters they are running. In particular, we allow a longer time in our dev clusters as it is more common to run `kubectl exec` or other interactive commands for active development.
For our production clusters, we specify a lower time limit so as to avoid the impacted Pods serving traffic abidingly. The *kube-exec-controller* internally sets and tracks a timer for each Pod that matches the associated TTL. Once the timer is up, the controller evicts that Pod using K8s API. The eviction (rather than deletion) is to ensure service availability, since the cluster respects any configured [PodDisruptionBudget](/docs/concepts/workloads/pods/disruptions/) (PDB). Let's say if a user has defined *x* number of Pods as critical in their PDB, the eviction (as requested by *kube-exec-controller*) does not continue when the target workload has fewer than *x* Pods running.
Here comes a sequence diagram of the entire workflow mentioned above:
<!-- Mermaid Live Editor link - https://mermaid-js.github.io/mermaid-live-editor/edit/#pako:eNp9kjFPAzEMhf-KlalIbWd0QpUQdGJB3JrFTUyJmjhHzncFof53nGtpqYTYEuu958-Wv4zLnkxjenofiB09BtwWTJbRSS6QCLCHu01ZPdJIMXdUYNZTGYOjRd4zlRvLHRYJLnTIArvbtozV83TbAnZhUcVUrkXo04OU2I6uKu99Cn0fMsNDZik5Rm3SHntYTrRYrabUBl4GBmt2w4acRKAPcrBcLq0Bl1NC9pYnoRouHZopX9RX9aotddJeADaf4DDGwFuQN4IRY_Ao9bunzVvOO13COeYCcR9j3k-OCQDP9KfgC8TJsFbZIHSxnGljzp1lgKs2v9HXugMBwe2WPHTZ94CvottB6Ap5eg2s9cBaUnrLVEP_Yp5ynrOf3fxPV2V1lBOhmZtEJWHweiFfldQa1SWyptGnAuAQxRrLB5UOna6P1j7o4ZhGykBzg4Pk9pPdz_-oOR3ZsXj4BjrP5rU-->
![Sequence Diagram](/images/sequence_diagram.svg)
## A new kubectl plugin for better user experience
Our admission controller component works great for solving the container drift issue we had on the platform. It is also able to submit all related Events to the target Pod that has been affected. However, K8s clusters don't retain Events very long (the default retention period is one hour). We need to provide other ways for developers to get their Pod interaction activity. A [kubectl plugin](/docs/tasks/extend-kubectl/kubectl-plugins/) is a perfect choice for us to expose this information. We named our plugin `kubectl pi` (short for `pod-interaction`) and provide two subcommands: `get` and `extend`.
When the `get` subcommand is called, the plugin checks the metadata attached by our admission controller and transfers it to human-readable information. Here is an example output from running `kubectl pi get`:
```
$ kubectl pi get test-pod
POD-NAME INTERACTOR POD-TTL EXTENSION EXTENSION-REQUESTER EVICTION-TIME
test-pod  username-1  1h0m0s   /          /                    2021-09-24 17:00:00 -0800 PST
```
The plugin can also be used to extend the TTL for a Pod that is marked for future eviction. This is useful in case developers need extra time to debug ongoing issues. To achieve this, a developer uses the `kubectl pi extend` subcommand, where the plugin patches the relevant *annotations* for the given Pod. These *annotations* include the duration and username who made the extension request for transparency (displayed in the table returned from the `kubectl pi get` command).
Correspondingly, there is another webhook defined in *kube-exec-controller* which admits valid annotation updates. Once admitted, those updates reset the eviction timer of the target Pod as requested. An example of requesting the extension from the developer side would be:
```
$ kubectl pi extend test-pod --duration=30m
Successfully extended the termination time of pod/test-pod with a duration=30m
 
$ kubectl pi get test-pod
POD-NAME  INTERACTOR  POD-TTL  EXTENSION  EXTENSION-REQUESTER  EVICTION-TIME
test-pod  username-1  1h0m0s   30m        username-2           2021-09-24 17:30:00 -0800 PST
```
## Future improvement
Although our admission controller service works great in handling interactive requests to a Pod, it could as well evict the Pod while the actual commands are no-op in these requests. For instance, developers sometimes run `kubectl exec` merely to check their service logs stored on hosts. Nevertheless, the target Pods would still get bounced despite the state of their containers not changing at all. One of the improvements here could be adding the ability to distinguish the commands that are passed to the interactive requests, so that no-op commands should not always force a Pod eviction. However, this becomes challenging when developers get a shell to a running container and execute commands inside the shell, since they will no longer be visible to our admission controller service.
Another item worth pointing out here is the choice of using K8s *labels* and *annotations*. In our design, we decided to have all immutable metadata attached as *labels* for better enforcing the immutability in our admission control. Yet some of these metadata could fit better as *annotations*. For instance, we had a label with the key `box.com/podInitialInteractionTimestamp` used to list all affected Pods in *kube-exec-controller* code, although its value would be unlikely to query for. As a more ideal design in the K8s world, a single *label* could be preferable in our case for identification with other metadata applied as *annotations* instead.
## Summary
With the power of admission controllers, we are able to secure our K8s clusters by detecting potentially mutated containers at runtime, and evicting their Pods without affecting service availability. We also utilize kubectl plugins to provide flexibility of the eviction time and hence, bringing a better and more self-independent experience to service owners. We are proud to announce that we have open-sourced the whole project for the community to leverage in their own K8s clusters. Any contribution is more than welcomed and appreciated. You can find this project hosted on GitHub at https://github.com/box/kube-exec-controller
*Special thanks to Ayush Sobti and Ethan Goldblum for their technical guidance on this project.*
Binary file not shown.

After

Width:  |  Height:  |  Size: 796 KiB

File diff suppressed because it is too large Load Diff

After

Width:  |  Height:  |  Size: 519 KiB

@@ -0,0 +1,201 @@
---
layout: blog
title: "Kubernetes-in-Kubernetes and the WEDOS PXE bootable server farm"
slug: kubernetes-in-kubernetes-and-pxe-bootable-server-farm
date: 2021-12-22
---
**Author**: Andrei Kvapil (WEDOS)
When you own two data centers, thousands of physical servers, virtual machines and hosting for hundreds of thousands sites, Kubernetes can actually simplify the management of all these things. As practice has shown, by using Kubernetes, you can declaratively describe and manage not only applications, but also the infrastructure itself. I work for the largest Czech hosting provider **WEDOS Internet a.s** and today I'll show you two of my projects — [Kubernetes-in-Kubernetes](https://github.com/kvaps/kubernetes-in-kubernetes) and [Kubefarm](https://github.com/kvaps/kubefarm).
With their help you can deploy a fully working Kubernetes cluster inside another Kubernetes using Helm in just a couple of commands. How and why?
Let me introduce you to how our infrastructure works. All our physical servers can be divided into two groups: **control-plane** and **compute** nodes. Control plane nodes are usually set up manually, have a stable OS installed, and designed to run all cluster services including Kubernetes control-plane. The main task of these nodes is to ensure the smooth operation of the cluster itself. Compute nodes do not have any operating system installed by default, instead they are booting the OS image over the network directly from the control plane nodes. Their work is to carry out the workload.
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/scheme01.svg" alt="Kubernetes cluster layout" >}}
Once nodes have downloaded their image, they can continue to work without keeping connection to the PXE server. That is, a PXE server is just keeping rootfs image and does not hold any other complex logic. After our nodes have booted, we can safely restart the PXE server, nothing critical will happen to them.
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/scheme02.svg" alt="Kubernetes cluster after bootstrapping" >}}
After booting, the first thing our nodes do is join to the existing Kubernetes cluster, namely, execute the **kubeadm join** command so that kube-scheduler could schedule some pods on them and launch various workloads afterwards. From the beginning we used the scheme when nodes were joined into the same cluster used for the control-plane nodes.
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/scheme03.svg" alt="Kubernetes scheduling containers to the compute nodes" >}}
This scheme worked stably for over two years. However later we decided to add containerized Kubernetes to it. And now we can spawn new Kubernetes-clusters very easily right on our control-plane nodes which are now member special admin-clusters. Now, compute nodes can be joined directly to their own clusters - depending on the configuration.
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/scheme04.svg" alt="Multiple clusters are running in single Kubernetes, compute nodes joined to them" >}}
## Kubefarm
This project came with the goal of enabling anyone to deploy such an infrastructure in just a couple of commands using Helm and get about the same in the end.
At this time, we moved away from the idea of a monocluster. Because it turned out to be not very convenient for managing work of several development teams in the same cluster. The fact is that Kubernetes was never designed as a multi-tenant solution and at the moment it does not provide sufficient means of isolation between projects. Therefore, running separate clusters for each team turned out to be a good idea. However, there should not be too many clusters, to let them be convenient to manage. Nor is it too small to have sufficient independence between development teams.
The scalability of our clusters became noticeably better after that change. The more clusters you have per number of nodes, the smaller the failure domain and the more stable they work. And as a bonus, we got a fully declaratively described infrastructure. Thus, now you can deploy a new Kubernetes cluster in the same way as deploying any other application in Kubernetes.
It uses [Kubernetes-in-Kubernetes](http://github.com/kvaps/kubernetes-in-kubernetes) as a basis, [LTSP](https://github.com/ltsp/ltsp/) as PXE-server from which the nodes are booted, and automates the DHCP server configuration using [dnsmasq-controller](https://github.com/kvaps/dnsmasq-controller):
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/kubefarm.png" alt="Kubefarm" >}}
## How it works
Now let's see how it works. In general, if you look at Kubernetes as from an application perspective, you can note that it follows all the principles of [The Twelve-Factor App](https://12factor.net/), and is actually written very well. Thus, it means running Kubernetes as an app in a different Kubernetes shouldn't be a big deal.
### Running Kubernetes in Kubernetes
Now let's take a look at the [Kubernetes-in-Kubernetes](https://github.com/kvaps/kubernetes-in-kubernetes) project, which provides a ready-made Helm chart for running Kubernetes in Kubernetes.
Here is the parameters that you can pass to Helm in the values file:
* [**kubernetes/values.yaml**](https://github.com/kvaps/kubernetes-in-kubernetes/tree/v0.13.1/deploy/helm/kubernetes)
<img alt="Kubernetes is just five binaries" style="float: right; max-height: 280px;" src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/5binaries.png">
Beside **persistence** (storage parameters for the cluster), the Kubernetes control-plane components are described here: namely: **etcd cluster**, **apiserver**, **controller-manager** and **scheduler**. These are pretty much standard Kubernetes components. There is a light-hearted saying that “Kubernetes is just five binaries”. So here is where the configuration for these binaries is located.
If you ever tried to bootstrap a cluster using kubeadm, then this config will remind you it's configuration. But in addition to Kubernetes entities, you also have an admin container. In fact, it is a container which holds two binaries inside: **kubectl** and **kubeadm**. They are used to generate kubeconfig for the above components and to perform the initial configuration for the cluster. Also, in an emergency, you can always exec into it to check and manage your cluster.
After the release [has been deployed](https://asciinema.org/a/407280), you can see a list of pods: **admin-container**, **apiserver** in two replicas, **controller-manager**, **etcd-cluster**, **scheduller** and the initial job that initializes the cluster. In the end you have a command, which allows you to get shell into the admin container, you can use it to see what is happening inside:
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot01.svg)](https://asciinema.org/a/407280?autoplay=1)
Also, let's take look at the certificates. If you've ever installed Kubernetes, then you know that it has a _scary_ directory `/etc/kubernetes/pki` with a bunch of some certificates. In case of Kubernetes-in-Kubernetes, you have fully automated management of them with cert-manager. Thus, it is enough to pass all certificates parameters to Helm during installation, and all the certificates will automatically be generated for your cluster.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot02.svg)](https://asciinema.org/a/407280?t=15&autoplay=1)
Looking at one of the certificates, eg. apiserver, you can see that it has a list of DNS names and IP addresses. If you want to make this cluster accessible outside, then just describe the additional DNS names in the values file and update the release. This will update the certificate resource, and cert-manager will regenerate the certificate. You'll no longer need to think about this. If kubeadm certificates need to be renewed at least once a year, here the cert-manager will take care and automatically renew them.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot03.svg)](https://asciinema.org/a/407280?t=25&autoplay=1)
Now let's log into the admin container and look at the cluster and nodes. Of course, there are no nodes, yet, because at the moment you have deployed just the blank control-plane for Kubernetes. But in kube-system namespace you can see some coredns pods waiting for scheduling and configmaps already appeared. That is, you can conclude that the cluster is working:
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot04.svg)](https://asciinema.org/a/407280?t=30&autoplay=1)
Here is the [diagram of the deployed cluster](https://kvaps.github.io/images/posts/Kubernetes-in-Kubernetes-and-PXE-bootable-servers-farm/Argo_CD_kink_network.html). You can see services for all Kubernetes components: **apiserver**, **controller-manager**, **etcd-cluster** and **scheduler**. And the pods on right side to which they forward traffic.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/argocd01.png)](https://kvaps.github.io/images/posts/Kubernetes-in-Kubernetes-and-PXE-bootable-servers-farm/Argo_CD_kink_network.html)
*By the way, the diagram, is drawn in [ArgoCD](https://argoproj.github.io/argo-cd/) — the GitOps tool we use to manage our clusters, and cool diagrams are one of its features.*
### Orchestrating physical servers
OK, now you can see the way how is our Kubernetes control-plane deployed, but what about worker nodes, how are we adding them? As I already said, all our servers are bare metal. We do not use virtualization to run Kubernetes, but we orchestrate all physical servers by ourselves.
Also, we do use Linux network boot feature very actively. Moreover, this is exactly the booting, not some kind of automation of the installation. When the nodes are booting, they just run a ready-made system image for them. That is, to update any node, we just need to reboot it - and it will download a new image. It is very easy, simple and convenient.
For this, the [Kubefarm](https://github.com/kvaps/kubefarm) project was created, which allows you to automate this. The most commonly used examples can be found in the [examples](https://github.com/kvaps/kubefarm/tree/v0.13.1/examples) directory. The most standard of them named [generic](https://github.com/kvaps/kubefarm/tree/v0.13.1/examples/generic). Let's take a look at values.yaml:
* [**generic/values.yaml**](https://github.com/kvaps/kubefarm/blob/v0.13.1/examples/generic/values.yaml)
Here you can specify the parameters which are passed into the upstream Kubernetes-in-Kubernetes chart. In order for you control-plane to be accessible from the outside, it is enough to specify the IP address here, but if you wish, you can specify some DNS name here.
In the PXE server configuration you can specify a timezone. You can also add an SSH key for logging in without a password (but you can also specify a password), as well as kernel modules and parameters that should be applied during booting the system.
Next comes the **nodePools** configuration, i.e. the nodes themselves. If you've ever used a terraform module for gke, then this logic will remind you of it. Here you statically describe all nodes with a set of parameters:
- **Name** (hostname);
- **MAC-addresses** — we have nodes with two network cards, and each one can boot from any of the MAC addresses specified here.
- **IP-address**, which the DHCP server should issue to this node.
In this example, you have two pools: the first has five nodes, the second has only one, the second pool has also two tags assigned. Tags are the way to describe configuration for specific nodes. For example, you can add specific DHCP options for some pools, options for the PXE server for booting (e.g. here is debug option enabled) and set of **kubernetesLabels** and **kubernetesTaints** options. What does that mean?
For example, in this configuration you have a second nodePool with one node. The pool has **debug** and **foo** tags assigned. Now see the options for **foo** tag in **kubernetesLabels**. This means that the m1c43 node will boot with these two labels and taint assigned. Everything seems to be simple. Now [let's try](https://asciinema.org/a/407282) this in practice.
### Demo
Go to [examples](https://github.com/kvaps/kubefarm/tree/v0.13.1/examples) and update previously deployed chart to Kubefarm. Just use the [generic](https://github.com/kvaps/kubefarm/tree/v0.13.1/examples/generic) parameters and look at the pods. You can see that a PXE server and one more job were added. This job essentially goes to the deployed Kubernetes cluster and creates a new token. Now it will run repeatedly every 12 hours to generate a new token, so that the nodes can connect to your cluster.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot05.svg)](https://asciinema.org/a/407282?autoplay=1)
In a [graphical representation](https://kvaps.github.io/images/posts/Kubernetes-in-Kubernetes-and-PXE-bootable-servers-farm/Argo_CD_Applications_kubefarm-network.html), it looks about the same, but now apiserver started to be exposed outside.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/argocd02.png)](https://kvaps.github.io/images/posts/Kubernetes-in-Kubernetes-and-PXE-bootable-servers-farm/Argo_CD_Applications_kubefarm-network.html)
In the diagram, the IP is highlighted in green, the PXE server can be reached through it. At the moment, Kubernetes does not allow creating a single LoadBalancer service for TCP and UDP protocols by default, so you have to create two different services with the same IP address. One is for TFTP, and the second for HTTP, through which the system image is downloaded.
But this simple example is not always enough, sometimes you might need to modify the logic at boot. For example, here is a directory [advanced_network](https://github.com/kvaps/kubefarm/tree/v0.13.1/examples/advanced_network), inside which there is a [values file](https://github.com/kvaps/kubefarm/tree/v0.13.1/examples/advanced_network) with a simple shell script. Let's call it `network.sh`:
* [**network.sh**](https://github.com/kvaps/kubefarm/blob/v0.13.1/examples/advanced_network/values.yaml#L14-L78)
All this script does is take environment variables at boot time, and generates a network configuration based on them. It creates a directory and puts the netplan config inside. For example, a bonding interface is created here. Basically, this script can contain everything you need. It can hold the network configuration or generate the system services, add some hooks or describe any other logic. Anything that can be described in bash or shell languages will work here, and it will be executed at boot time.
Let's see how it can be [deployed](https://asciinema.org/a/407284). Let's pass the generic values file as the first parameter, and an additional values file as the second parameter. This is a standard Helm feature. This way you can also pass the secrets, but in this case, the configuration is just expanded by the second file:
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot06.svg)](https://asciinema.org/a/407284?autoplay=1)
Let's look at the configmap **foo-kubernetes-ltsp** for the netboot server and make sure that `network.sh` script is really there. These commands used to configure the network at boot time:
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot07.svg)](https://asciinema.org/a/407284?t=15&autoplay=1)
[Here](https://asciinema.org/a/407286) you can see how it works in principle. The chassis interface (we use HPE Moonshots 1500) have the nodes, you can enter `show node list` command to get a list of all the nodes. Now you can see the booting process.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot08.svg)](https://asciinema.org/a/407286?autoplay=1)
You can also get their MAC addresses by `show node macaddr all` command. We have a clever operator that collects MAC-addresses from chassis automatically and passes them to the DHCP server. Actually, it's just creating custom configuration resources for dnsmasq-controller which is running in same admin Kubernetes cluster. Also, trough this interface you can control the nodes themselves, e.g. turn them on and off.
If you have no such opportunity to enter the chassis through iLO and collect a list of MAC addresses for your nodes, you can consider using [catchall cluster](https://asciinema.org/a/407287) pattern. Purely speaking, it is just a cluster with a dynamic DHCP pool. Thus, all nodes that are not described in the configuration to other clusters will automatically join to this cluster.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot09.svg)](https://asciinema.org/a/407287?autoplay=1)
For example, you can see a special cluster with some nodes. They are joined to the cluster with an auto-generated name based on their MAC address. Starting from this point you can connect to them and see what happens there. Here you can somehow prepare them, for example, set up the file system and then rejoin them to another cluster.
Now let's try connecting to the node terminal and see how it is booting. After the BIOS, the network card is configured, here it sends a request to the DHCP server from a specific MAC address, which redirects it to a specific PXE server. Later the kernel and initrd image are downloaded from the server using the standard HTTP protocol:
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot10.svg)](https://asciinema.org/a/407286?t=28&autoplay=1)
After loading the kernel, the node downloads the rootfs image and transfers control to systemd. Then the booting proceeds as usual, and after that the node joins Kubernetes:
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot11.svg)](https://asciinema.org/a/407286?t=80&autoplay=1)
If you take a look at **fstab**, you can see only two entries there: **/var/lib/docker** and **/var/lib/kubelet**, they are mounted as **tmpfs** (in fact, from RAM). At the same time, the root partition is mounted as **overlayfs**, so all changes that you make here on the system will be lost on the next reboot.
Looking into the block devices on the node, you can see some nvme disk, but it has not yet been mounted anywhere. There is also a loop device - this is the exact rootfs image downloaded from the server. At the moment it is located in RAM, occupies 653 MB and mounted with the **loop** option.
If you look in **/etc/ltsp**, you find the `network.sh` file that was executed at boot. From containers, you can see running `kube-proxy` and `pause` container for it.
[![](/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/screenshot12.svg)](https://asciinema.org/a/407286?t=100&autoplay=1)
## Details
### Network Boot Image
But where does the main image come from? There is a little trick here. The image for the nodes is built through the [Dockerfile](https://github.com/kvaps/kubefarm/tree/v0.13.1/build/ltsp) along with the server. The [Docker multi-stage build](https://docs.docker.com/develop/develop-images/multistage-build/) feature allows you to easily add any packages and kernel modules exactly at the stage of the image build. It looks like this:
* [**Dockerfile**](https://github.com/kvaps/kubefarm/blob/v0.13.1/build/ltsp/Dockerfile)
What's going on here? First, we take a regular Ubuntu 20.04 and install all the packages we need. First of all we install the **kernel**, **lvm**, **systemd**, **ssh**. In general, everything that you want to see on the final node should be described here. Here we also install `docker` with `kubelet` and `kubeadm`, which are used to join the node to the cluster.
And then we perform an additional configuration. In the last stage, we simply install `tftp` and `nginx` (which serves our image to clients), **grub** (bootloader). Then root of the previous stages copied into the final image and generate squashed image from it. That is, in fact, we get a docker image, which has both the server and the boot image for our nodes. At the same time, it can be easily updated by changing the Dockerfile.
### Webhooks and API aggregation layer
I want to pay special attention to the problem of webhooks and aggregation layer. In general, webhooks is a Kubernetes feature that allows you to respond to the creation or modification of any resources. Thus, you can add a handler so that when resources are applied, Kubernetes must send request to some pod and check if configuration of this resource is correct, or make additional changes to it.
But the point is, in order for the webhooks to work, the apiserver must have direct access to the cluster for which it is running. And if it is started in a separate cluster, like our case, or even separately from any cluster, then Konnectivity service can help us here. Konnectivity is one of the optional but officially supported Kubernetes components.
Let's take cluster of four nodes for example, each of them is running a `kubelet` and we have other Kubernetes components running outside: `kube-apiserver`, `kube-scheduler` and `kube-controller-manager`. By default, all these components interact with the apiserver directly - this is the most known part of the Kubernetes logic. But in fact, there is also a reverse connection. For example, when you want to view the logs or run a `kubectl exec command`, the API server establishes a connection to the specific kubelet independently:
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/konnectivity01.svg" alt="Kubernetes apiserver reaching kubelet" >}}
But the problem is that if we have a webhook, then it usually runs as a standard pod with a service in our cluster. And when apiserver tries to reach it, it will fail because it will try to access an in-cluster service named **webhook.namespace.svc** being outside of the cluster where it is actually running:
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/konnectivity02.svg" alt="Kubernetes apiserver can't reach webhook" >}}
And here Konnectivity comes to our rescue. Konnectivity is a tricky proxy server developed especially for Kubernetes. It can be deployed as a server next to the apiserver. And Konnectivity-agent is deployed in several replicas directly in the cluster you want to access. The agent establishes a connection to the server and sets up a stable channel to make apiserver able to access all webhooks and all kubelets in the cluster. Thus, now all communication with the cluster will take place through the Konnectivity-server:
{{< figure src="/images/blog/2021-12-22-kubernetes-in-kubernetes-and-pxe-bootable-server-farm/konnectivity03.svg" alt="Kubernetes apiserver reaching webhook via konnectivity" >}}
## Our plans
Of course, we are not going to stop at this stage. People interested in the project often write to me. And if there will be a sufficient number of interested people, I hope to move Kubernetes-in-Kubernetes project under [Kubernetes SIGs](https://github.com/kubernetes-sigs), by representing it in form of the official Kubernetes Helm chart. Perhaps, by making this project independent we'll gather an even larger community.
I am also thinking of integrating it with the Machine Controller Manager, which would allow creating worker nodes, not only of physical servers, but also, for example, for creating virtual machines using kubevirt and running them in the same Kubernetes cluster. By the way, it also allows to spawn virtual machines in the clouds, and have a control-plane deployed locally.
I am also considering the option of integrating with the Cluster-API so that you can create physical Kubefarm clusters directly through the Kubernetes environment. But at the moment I'm not completely sure about this idea. If you have any thoughts on this matter, I'll be happy to listen to them.
@@ -0,0 +1,103 @@
---
layout: blog
title: "Kubernetes is Moving on From Dockershim: Commitments and Next Steps"
date: 2022-01-07
slug: kubernetes-is-moving-on-from-dockershim
---
**Authors:** Sergey Kanzhelev (Google), Jim Angel (Google), Davanum Srinivas (VMware), Shannon Kularathna (Google), Chris Short (AWS), Dawn Chen (Google)
Kubernetes is removing dockershim in the upcoming v1.24 release. We're excited
to reaffirm our community values by supporting open source container runtimes,
enabling a smaller kubelet, and increasing engineering velocity for teams using
Kubernetes. If you [use Docker Engine as a container runtime](/docs/tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use/)
for your Kubernetes cluster, get ready to migrate in 1.24! To check if you're
affected, refer to [Check whether dockershim deprecation affects you](/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you/).
## Why were moving away from dockershim
Docker was the first container runtime used by Kubernetes. This is one of the
reasons why Docker is so familiar to many Kubernetes users and enthusiasts.
Docker support was hardcoded into Kubernetes a component the project refers to
as dockershim.
As containerization became an industry standard, the Kubernetes project added support
for additional runtimes. This culminated in the implementation of the
container runtime interface (CRI), letting system components (like the kubelet)
talk to container runtimes in a standardized way. As a result, dockershim became
an anomaly in the Kubernetes project.
Dependencies on Docker and dockershim have crept into various tools
and projects in the CNCF ecosystem ecosystem, resulting in fragile code.
By removing the
dockershim CRI, we're embracing the first value of CNCF: "[Fast is better than
slow](https://github.com/cncf/foundation/blob/master/charter.md#3-values)".
Stay tuned for future communications on the topic!
## Deprecation timeline
We [formally announced](/blog/2020/12/08/kubernetes-1-20-release-announcement/) the dockershim deprecation in December 2020. Full removal is targeted
in Kubernetes 1.24, in April 2022. This timeline
aligns with our [deprecation policy](/docs/reference/using-api/deprecation-policy/#deprecating-a-feature-or-behavior),
which states that deprecated behaviors must function for at least 1 year
after their announced deprecation.
We'll support Kubernetes version 1.23, which includes
dockershim, for another year in the Kubernetes project. For managed
Kubernetes providers, vendor support is likely to last even longer, but this is
dependent on the companies themselves. Regardless, we're confident all cluster operations will have
time to migrate. If you have more questions about the dockershim removal, refer
to the [Dockershim Deprecation FAQ](/dockershim).
We asked you whether you feel prepared for the migration from dockershim in this
survey: [Are you ready for Dockershim removal](/blog/2021/11/12/are-you-ready-for-dockershim-removal/).
We had over 600 responses. To everybody who took time filling out the survey,
thank you.
The results show that we still have a lot of ground to cover to help you to
migrate smoothly. Other container runtimes exist, and have been promoted
extensively. However, many users told us they still rely on dockershim,
and sometimes have dependencies that need to be re-worked. Some of these
dependencies are outside of your control. Based on your feedback, here are some
of the steps we are taking to help.
## Our next steps
Based on the feedback you provided:
- CNCF and the 1.24 release team are committed to delivering documentation in
time for the 1.24 release. This includes more informative blog posts like this
one, updating existing code samples, tutorials, and tasks, and producing a
migration guide for cluster operators.
- We are reaching out to the rest of the CNCF community to help prepare them for
this change.
If you're part of a project with dependencies on dockershim, or if you're
interested in helping with the migration effort, please join us! There's always
room for more contributors, whether to our transition tools or to our
documentation. To get started, say hello in the
[#sig-node](https://kubernetes.slack.com/archives/C0BP8PW9G)
channel on [Kubernetes Slack](https://slack.kubernetes.io/)!
## Final thoughts
As a project, we've already seen cluster operators increasingly adopt other
container runtimes through 2021.
We believe there are no major blockers to migration. The steps we're taking to
improve the migration experience will light the path more clearly for you.
We understand that migration from dockershim is yet another action you may need to
do to keep your Kubernetes infrastructure up to date. For most of you, this step
will be straightforward and transparent. In some cases, you will encounter
hiccups or issues. The community has discussed at length whether postponing the
dockershim removal would be helpful. For example, we recently talked about it in
the [SIG Node discussion on November 11th](https://docs.google.com/document/d/1Ne57gvidMEWXR70OxxnRkYquAoMpt56o75oZtg-OeBg/edit#bookmark=id.r77y11bgzid)
and in the [Kubernetes Steering committee meeting held on December 6th](https://docs.google.com/document/d/1qazwMIHGeF3iUh5xMJIJ6PDr-S3bNkT8tNLRkSiOkOU/edit#bookmark=id.m0ir406av7jx).
We already [postponed](https://github.com/kubernetes/enhancements/pull/2481/) it
once in 2021 because the adoption rate of other
runtimes was lower than we wanted, which also gave us more time to identify
potential blocking issues.
At this point, we believe that the value that you (and Kubernetes) gain from
dockershim removal makes up for the migration effort you'll have. Start planning
now to avoid surprises. We'll have more updates and guides before Kubernetes
1.24 is released.
@@ -0,0 +1,106 @@
---
layout: blog
title: "Meet Our Contributors - APAC (India region)"
date: 2022-01-10T12:00:00+0000
slug: meet-our-contributors-india-ep-01
canonicalUrl: https://kubernetes.dev/blog/2022/01/10/meet-our-contributors-india-ep-01/
---
**Authors & Interviewers:** [Anubhav Vardhan](https://github.com/anubha-v-ardhan), [Atharva Shinde](https://github.com/Atharva-Shinde), [Avinesh Tripathi](https://github.com/AvineshTripathi), [Debabrata Panigrahi](https://github.com/Debanitrkl), [Kunal Verma](https://github.com/verma-kunal), [Pranshu Srivastava](https://github.com/PranshuSrivastava), [Pritish Samal](https://github.com/CIPHERTron), [Purneswar Prasad](https://github.com/PurneswarPrasad), [Vedant Kakde](https://github.com/vedant-kakde)
**Editor:** [Priyanka Saggu](https://psaggu.com)
---
Good day, everyone 👋
Welcome to the first episode of the APAC edition of the "Meet Our Contributors" blog post series.
In this post, we'll introduce you to five amazing folks from the India region who have been actively contributing to the upstream Kubernetes projects in a variety of ways, as well as being the leaders or maintainers of numerous community initiatives.
💫 *Let's get started, so without further ado…*
## [Arsh Sharma](https://github.com/RinkiyaKeDad)
Arsh is currently employed with Okteto as a Developer Experience engineer. As a new contributor, he realised that 1:1 mentorship opportunities were quite beneficial in getting him started with the upstream project.
He is presently a CI Signal shadow on the Kubernetes 1.23 release team. He is also contributing to the SIG Testing and SIG Docs projects, as well as to the [cert-manager](https://github.com/cert-manager/infrastructure) tools development work that is being done under the aegis of SIG Architecture.
To the newcomers, Arsh helps plan their early contributions sustainably.
> _I would encourage folks to contribute in a way that's sustainable. What I mean by that
> is that it's easy to be very enthusiastic early on and take up more stuff than one can
> actually handle. This can often lead to burnout in later stages. It's much more sustainable
> to work on things iteratively._
## [Kunal Kushwaha](https://github.com/kunal-kushwaha)
Kunal Kushwaha is a core member of the Kubernetes marketing council. He is also a CNCF ambassador and one of the founders of the [CNCF Students Program](https://community.cncf.io/cloud-native-students/).. He also served as a Communications role shadow during the 1.22 release cycle.
At the end of his first year, Kunal began contributing to the [fabric8io kubernetes-client](https://github.com/fabric8io/kubernetes-client) project. He was then selected to work on the same project as part of Google Summer of Code. Kunal mentored people on the same project, first through Google Summer of Code then through Google Code-in.
As an open-source enthusiast, he believes that diverse participation in the community is beneficial since it introduces new perspectives and opinions and respect for one's peers. He has worked on various open-source projects, and his participation in communities has considerably assisted his development as a developer.
> _I believe if you find yourself in a place where you do not know much about the
> project, that's a good thing because now you can learn while contributing and the
> community is there to help you. It has helped me a lot in gaining skills, meeting
> people from around the world and also helping them. You can learn on the go,
> you don't have to be an expert. Make sure to also check out no code contributions
> because being a beginner is a skill and you can bring new perspectives to the
> organisation._
## [Madhav Jivarajani](https://github.com/MadhavJivrajani)
Madhav Jivarajani works on the VMware Upstream Kubernetes stability team. He began contributing to the Kubernetes project in January 2021 and has since made significant contributions to several areas of work under SIG Architecture, SIG API Machinery, and SIG ContribEx (contributor experience).
Among several significant contributions are his recent efforts toward the Archival of [design proposals](https://github.com/kubernetes/community/issues/6055), refactoring the ["groups" codebase](https://github.com/kubernetes/k8s.io/pull/2713) under k8s-infra repository to make it mockable and testable, and improving the functionality of the [GitHub k8s bot](https://github.com/kubernetes/test-infra/issues/23129).
In addition to his technical efforts, Madhav oversees many projects aimed at assisting new contributors. He organises bi-weekly "KEP reading club" sessions to help newcomers understand the process of adding new features, deprecating old ones, and making other key changes to the upstream project. He has also worked on developing [Katacoda scenarios](https://github.com/kubernetes-sigs/contributor-katacoda) to assist new contributors to become acquainted with the process of contributing to k/k. In addition to his current efforts to meet with community members every week, he has organised several [new contributors workshops (NCW)](https://www.youtube.com/watch?v=FgsXbHBRYIc).
> _I initially did not know much about Kubernetes. I joined because the community was
> super friendly. But what made me stay was not just the people, but the project itself.
> My solution to not feeling overwhelmed in the community was to gain as much context
> and knowledge into the topics that I was interested in and were being discussed. And
> as a result I continued to dig deeper into Kubernetes and the design of it.
> I am a systems nut & thus Kubernetes was an absolute goldmine for me._
## [Rajas Kakodkar](https://github.com/rajaskakodkar)
Rajas Kakodkar currently works at VMware as a Member of Technical Staff. He has been engaged in many aspects of the upstream Kubernetes project since 2019.
He is now a key contributor to the Testing special interest group. He is also active in the SIG Network community. Lately, Rajas has contributed significantly to the [NetworkPolicy++](https://docs.google.com/document/d/1AtWQy2fNa4qXRag9cCp5_HsefD7bxKe3ea2RPn8jnSs/) and [`kpng`](https://github.com/kubernetes-sigs/kpng) sub-projects.
One of the first challenges he ran across was that he was in a different time zone than the upstream project's regular meeting hours. However, async interactions on community forums progressively corrected that problem.
> _I enjoy contributing to Kubernetes not just because I get to work on
> cutting edge tech but more importantly because I get to work with
> awesome people and help in solving real world problems._
## [Rajula Vineet Reddy](https://github.com/rajula96reddy)
Rajula Vineet Reddy, a Junior Engineer at CERN, is a member of the Marketing Council team under SIG ContribEx . He also served as a release shadow for SIG Release during the 1.22 and 1.23 Kubernetes release cycles.
He started looking at the Kubernetes project as part of a university project with the help of one of his professors. Over time, he spent a significant amount of time reading the project's documentation, Slack discussions, GitHub issues, and blogs, which helped him better grasp the Kubernetes project and piqued his interest in contributing upstream. One of his key contributions was his assistance with automation in the SIG ContribEx Upstream Marketing subproject.
According to Rajula, attending project meetings and shadowing various project roles are vital for learning about the community.
> _I find the community very helpful and it's always_
> “you get back as much as you contribute”.
> _The more involved you are, the more you will understand, get to learn and
> contribute new things._
>
> _The first step to_ “come forward and start” _is hard. But it's all gonna be
> smooth after that. Just take that jump._
---
If you have any recommendations/suggestions for who we should interview next, please let us know in #sig-contribex. We're thrilled to have other folks assisting us in reaching out to even more wonderful individuals of the community. Your suggestions would be much appreciated.
We'll see you all in the next one. Everyone, till then, have a happy contributing! 👋
@@ -0,0 +1,44 @@
---
layout: blog
title: "Securing Admission Controllers"
date: 2022-01-19
slug: secure-your-admission-controllers-and-webhooks
---
**Author:** Rory McCune (Aqua Security)
[Admission control](/docs/reference/access-authn-authz/admission-controllers/) is a key part of Kubernetes security, alongside authentication and authorization. Webhook admission controllers are extensively used to help improve the security of Kubernetes clusters in a variety of ways including restricting the privileges of workloads and ensuring that images deployed to the cluster meet organizations security requirements.
However, as with any additional component added to a cluster, security risks can present themselves. A security risk example is if the deployment and management of the admission controller are not handled correctly. To help admission controller users and designers manage these risks appropriately, the [security documentation](https://github.com/kubernetes/community/tree/master/sig-security#security-docs) subgroup of SIG Security has spent some time developing a [threat model for admission controllers](https://github.com/kubernetes/sig-security/tree/main/sig-security-docs/papers/admission-control). This threat model looks at likely risks which may arise from the incorrect use of admission controllers, which could allow security policies to be bypassed, or even allow an attacker to get unauthorised access to the cluster.
From the threat model, we developed a set of security best practices that should be adopted to ensure that cluster operators can get the security benefits of admission controllers whilst avoiding any risks from using them.
## Admission controllers and good practices for security
From the threat model, a couple of themes emerged around how to ensure the security of admission controllers.
### Secure webhook configuration
Its important to ensure that any security component in a cluster is well configured and admission controllers are no different here. There are a couple of security best practices to consider when using admission controllers
* **Correctly configured TLS for all webhook traffic**. Communications between the API server and the admission controller webhook should be authenticated and encrypted to ensure that attackers who may be in a network position to view or modify this traffic cannot do so. To achieve this access the API server and webhook must be using certificates from a trusted certificate authority so that they can validate their mutual identities
* **Only authenticated access allowed**. If an attacker can send an admission controller large numbers of requests, they may be able to overwhelm the service causing it to fail. Ensuring all access requires strong authentication should mitigate that risk.
* **Admission controller fails closed**. This is a security practice that has a tradeoff, so whether a cluster operator wants to configure it will depend on the clusters threat model. If an admission controller fails closed, when the API server cant get a response from it, all deployments will fail. This stops attackers bypassing the admission controller by disabling it, but, can disrupt the clusters operation. As clusters can have multiple webhooks, one approach to hit a middle ground might be to have critical controls on a fail closed setups and less critical controls allowed to fail open.
* **Regular reviews of webhook configuration**. Configuration mistakes can lead to security issues, so its important that the admission controller webhook configuration is checked to make sure the settings are correct. This kind of review could be done automatically by an Infrastructure As Code scanner or manually by an administrator.
### Secure cluster configuration for admission control
In most cases, the admission controller webhook used by a cluster will be installed as a workload in the cluster. As a result, its important to ensure that Kubernetes' security features that could impact its operation are well configured.
* **Restrict [RBAC](/docs/reference/access-authn-authz/rbac/) rights**. Any user who has rights which would allow them to modify the configuration of the webhook objects or the workload that the admission controller uses could disrupt its operation. So its important to make sure that only cluster administrators have those rights.
* **Prevent privileged workloads**. One of the realities of container systems is that if a workload is given certain privileges, it will be possible to break out to the underlying cluster node and impact other containers on that node. Where admission controller services run in the cluster theyre protecting, its important to ensure that any requirement for privileged workloads is carefully reviewed and restricted as much as possible.
* **Strictly control external system access**. As a security service in a cluster admission controller systems will have access to sensitive information like credentials. To reduce the risk of this information being sent outside the cluster, [network policies](/docs/concepts/services-networking/network-policies/) should be used to restrict the admission controller services access to external networks.
* **Each cluster has a dedicated webhook**. Whilst it may be possible to have admission controller webhooks that serve multiple clusters, there is a risk when using that model that an attack on the webhook service would have a larger impact where its shared. Also where multiple clusters use an admission controller there will be increased complexity and access requirements, making it harder to secure.
### Admission controller rules
A key element of any admission controller used for Kubernetes security is the rulebase it uses. The rules need to be able to accurately meet their goals avoiding false positive and false negative results.
* **Regularly test and review rules**. Admission controller rules need to be tested to ensure their accuracy. They also need to be regularly reviewed as the Kubernetes API will change with each new version, and rules need to be assessed with each Kubernetes release to understand any changes that may be required to keep them up to date.
@@ -0,0 +1,63 @@
---
layout: blog
title: "Spotlight on SIG Multicluster"
date: 2022-02-07
slug: sig-multicluster-spotlight-2022
canonicalUrl: https://www.kubernetes.dev/blog/2022/02/04/sig-multicluster-spotlight-2022/
---
**Authors:** Dewan Ahmed (Aiven) and Chris Short (AWS)
## Introduction
[SIG Multicluster](https://github.com/kubernetes/community/tree/master/sig-multicluster) is the SIG focused on how Kubernetes concepts are expanded and used beyond the cluster boundary. Historically, Kubernetes resources only interacted within that boundary - KRU or Kubernetes Resource Universe (not an actual Kubernetes concept). Kubernetes clusters, even now, don't really know anything about themselves or, about other clusters. Absence of cluster identifiers is a case in point. With the growing adoption of multicloud and multicluster deployments, the work SIG Multicluster doing is gaining a lot of attention. In this blog, [Jeremy Olmsted-Thompson, Google](https://twitter.com/jeremyot) and [Chris Short, AWS](https://twitter.com/ChrisShort) discuss the interesting problems SIG Multicluster is solving and how you can get involved. Their initials **JOT** and **CS** will be used for brevity.
## A summary of their conversation
**CS**: How long has the SIG Multicluster existed and how was the SIG in its infancy? How long have you been with this SIG?
**JOT**: I've been around for almost two years in the SIG Multicluster. All I know about the infancy years is from the lore but even in the early days, it was always about solving this same problem. Early efforts have been things like [KubeFed](https://github.com/kubernetes-sigs/kubefed). I think there are still folks using KubeFed but it's a smaller slice. Back then, I think people out there deploying large numbers of Kubernetes clusters were really not at a point where we had a ton of real concrete use cases. Projects like KubeFed and [Cluster Registry](https://github.com/kubernetes-retired/cluster-registry) were developed around that time and the need back then can be associated to these projects. The motivation for these projects were how do we solve the problems that we think people are **going to have**, when they start expanding to multiple clusters. Honestly, in some ways, it was trying to do too much at that time.
**CS**: How does KubeFed differ from the current state of SIG Multicluster? How does the **lore** differ from the **now**?
**JOT**: Yeah, it was like trying to get ahead of potential problems instead of addressing specific problems. I think towards the end of 2019, there was a slow down in SIG multicluster work and we kind of picked it back up with one of the most active recent projects that is the [SIG Multicluster services (MCS)](https://github.com/kubernetes-sigs/mcs-api).
Now this is the shift to solving real specific problems. For example,
> I've got workloads that are spread across multiple clusters and I need them to talk to each other.
Okay, that's very straightforward and we know that we need to solve that. To get started, let's make sure that these projects can work together on a common API so you get the same kind of portability that you get with Kubernetes.
There's a few implementations of the MCS API out there and more are being developed. But, we didn't build an implementation because depending on how you're deploying things there could be hundreds of implementations. As long as you only need the basic Multicluster service functionality, it'll just work on whatever background you want, whether it's Submariner, GKE, or a service mesh.
My favorite example of "then vs. now" is cluster ID. A few years ago, there was an effort to define a cluster ID. A lot of really good thought went into this concept, for example, how do we make a cluster ID is unique across multiple clusters. How do we make this ID globally unique so it'll work in every contact? Let's say, there's an acquisition or merger of teams - does the cluster IDs still remain unique for those teams?
With Multicluster services, we found the need for an actual cluster ID, and it has a very specific need. To address this specific need, we're no longer considering every single Kubernetes cluster out there rather the ClusterSets - a grouping of clusters that work together in some kind of bounds. That's a much narrower scope than considering clusters everywhere in time and space. It also leaves flexibility for an implementer to define the boundary (a ClusterSet) beyond which this cluster ID will no longer be unique.
**CS**: How do you feel about the current state of SIG Multicluster versus where you're hoping to be in future?
**JOT**: There's a few projects that are kind of getting started, for example, Work API. In the future, I think that some common practices around how do we deploy things across clusters are going to develop.
> If I have clusters deployed in a bunch of different regions; what's the best way to actually do that?
The answer is, almost always, "it depends". Why are you doing this? Is it because there's some kind of compliance that makes you care about locality? Is it performance? Is it availability?
I think revisiting registry patterns will probably be a natural step after we have cluster IDs, that is, how do you actually associate these clusters together? Maybe you've got a distributed deployment that you run in your own data centers all over the world. I imagine that expanding the API in that space is going to be important as more multi cluster features develop. It really depends on what the community starts doing with these tools.
**CS**: In the early days of Kubernetes, we used to have a few large Kubernetes clusters and now we're dealing with many small Kubernetes clusters - even multiple clusters for our own dev environments. How has this shift from a few large clusters to many small clusters affected the SIG? Has it accelerated the work or make it challenging in any way?
**JOT**: I think that it has created a lot of ambiguity that needs solving. Originally, you'd have a dev cluster, a staging cluster, and a prod cluster. When the multi region thing came in, we started needing dev/staging/prod clusters, per region. And then, sometimes clusters really need more isolation due to compliance or some regulations issues. Thus, we're ending up with a lot of clusters. I think figuring out the right balance on how many clusters should you actually have is important. The power of Kubernetes is being able to deploy a lot of things managed by a single control plane. So, it's not like every single workload that gets deployed should be in its own cluster. But I think it's pretty clear that we can't put every single workload in a single cluster.
**CS**: What are some of your favorite things about this SIG?
**JOT**: The complexity of the problems, the people and the newness of the space. We don't have right answers and we have to figure this out. At the beginning, we couldn't even think about multi clusters because there was no way to connect services across clusters. Now there is and we're starting to go tackle those problems, I think that this is a really fun place to be in because I expect that the SIG is going to get a lot busier the next couple of years. It's a very collaborative group and we definitely would like more people to come join us, get involved, raise their problems and bring their ideas.
**CS**: What do you think keeps people in this group? How has the pandemic affected you?
**JOT**: I think it definitely got a little bit quieter during the pandemic. But for the most part; it's a very distributed group so whether you're calling in to our weekly meetings from a conference room or from your home, it doesn't make that huge of a difference. During the pandemic, a lot of people had time to focus on what's next for their scale and growth. I think that's what keeps people in the group - we have real problems that need to be solved which are very new in this space. And it's fun :)
## Wrap up
**CS**: That's all we have for today. Thanks Jeremy for your time.
**JOT**: Thanks Chris. Everybody is welcome at our [bi-weekly meetings](https://github.com/kubernetes/community/tree/master/sig-multicluster#meetings). We love as many people to come as possible and welcome all questions and all ideas. It's a new space and it'd be great to grow the community.
@@ -0,0 +1,192 @@
---
layout: blog
title: 'SIG Node CI Subproject Celebrates Two Years of Test Improvements'
date: 2022-02-16
slug: sig-node-ci-subproject-celebrates
canonicalUrl: https://www.kubernetes.dev/blog/2022/02/16/sig-node-ci-subproject-celebrates-two-years-of-test-improvements/
---
**Authors:** Sergey Kanzhelev (Google), Elana Hashman (Red Hat)
Ensuring the reliability of SIG Node upstream code is a continuous effort
that takes a lot of behind-the-scenes effort from many contributors.
There are frequent releases of Kubernetes, base operating systems,
container runtimes, and test infrastructure that result in a complex matrix that
requires attention and steady investment to "keep the lights on."
In May 2020, the Kubernetes node special interest group ("SIG Node") organized a new
subproject for continuous integration (CI) for node-related code and tests. Since its
inauguration, the SIG Node CI subproject has run a weekly meeting, and even the full hour
is often not enough to complete triage of all bugs, test-related PRs and issues, and discuss all
related ongoing work within the subgroup.
Over the past two years, we've fixed merge-blocking and release-blocking tests, reducing time to merge Kubernetes contributors' pull requests thanks to reduced test flakes. When we started, Node test jobs only passed 42% of the time, and through our efforts, we now ensure a consistent >90% job pass rate. We've closed 144 test failure issues and merged 176 pull requests just in kubernetes/kubernetes. And we've helped subproject participants ascend the Kubernetes contributor ladder, with 3 new org members, 6 new reviewers, and 2 new approvers.
The Node CI subproject is an approachable first stop to help new contributors
get started with SIG Node. There is a low barrier to entry for new contributors
to address high-impact bugs and test fixes, although there is a long
road before contributors can climb the entire contributor ladder:
it took over a year to establish two new approvers for the group.
The complexity of all the different components that power Kubernetes nodes
and its test infrastructure requires a sustained investment over a long period
for developers to deeply understand the entire system,
both at high and low levels of detail.
We have several regular contributors at our meetings, however; our reviewers
and approvers pool is still small. It is our goal to continue to grow
contributors to ensure a sustainable distribution of work
that does not just fall to a few key approvers.
It's not always obvious how subprojects within SIGs are formed, operate,
and work. Each is unique to its sponsoring SIG and tailored to the projects
that the group is intended to support. As a group that has welcomed many
first-time SIG Node contributors, we'd like to share some of the details and
accomplishments over the past two years,
helping to demystify our inner workings and celebrate the hard work
of all our dedicated contributors!
## Timeline
***May 2020.*** SIG Node CI group was formed on May 11, 2020, with more than
[30 volunteers](https://docs.google.com/document/d/1fb-ugvgdSVIkkuJ388_nhp2pBTy_4HEVg5848Xy7n5U/edit#bookmark=id.vsb8pqnf4gib)
signed up, to improve SIG Node CI signal and overall observability.
Victor Pickard focused on getting
[testgrid jobs](https://testgrid.k8s.io/sig-node) passing
when Ning Liao suggested forming a group around this effort and came up with
the [original group charter document](https://docs.google.com/document/d/1yS-XoUl6GjZdjrwxInEZVHhxxLXlTIX2CeWOARmD8tY/edit#heading=h.te6sgum6s8uf).
The SIG Node chairs sponsored group creation with Victor as a subproject lead.
Sergey Kanzhelev joined Victor shortly after as a co-lead.
At the kick-off meeting, we discussed which tests to concentrate on fixing first
and discussed merge-blocking and release-blocking tests, many of which were failing due
to infrastructure issues or buggy test code.
The subproject launched weekly hour-long meetings to discuss ongoing work
discussion and triage.
***June 2020.*** Morgan Bauer, Karan Goel, and Jorge Alarcon Ochoa were
recognized as reviewers for the SIG Node CI group for their contributions,
helping significantly with the early stages of the subproject.
David Porter and Roy Yang also joined the SIG test failures GitHub team.
***August 2020.*** All merge-blocking and release-blocking tests were passing,
with some flakes. However, only 42% of all SIG Node test jobs were green, as there
were many flakes and failing tests.
***October 2020.*** Amim Knabben becomes a Kubernetes org member for his
contributions to the subproject.
***January 2021.*** With healthy presubmit and critical periodic jobs passing,
the subproject discussed its goal for cleaning up the rest of periodic tests
and ensuring they passed without flakes.
Elana Hashman joined the subproject, stepping up to help lead it after
Victor's departure.
***February 2021.*** Artyom Lukianov becomes a Kubernetes org member for his
contributions to the subproject.
***August 2021.*** After SIG Node successfully ran a [bug scrub](https://groups.google.com/g/kubernetes-dev/c/w2ghO4ihje0/m/VeEql1LJBAAJ)
to clean up its bug backlog, the scope of the meeting was extended to
include bug triage to increase overall reliability, anticipating issues
before they affect the CI signal.
Subproject leads Elana Hashman and Sergey Kanzhelev are both recognized as
approvers on all node test code, supported by SIG Node and SIG Testing.
***September 2021.*** After significant deflaking progress with serial tests in
the 1.22 release spearheaded by Francesco Romani, the subproject set a goal
for getting the serial job fully passing by the 1.23 release date.
Mike Miranda becomes a Kubernetes org member for his contributions
to the subproject.
***November 2021.*** Throughout 2021, SIG Node had no merge or
release-blocking test failures. Many flaky tests from past releases are removed
from release-blocking dashboards as they had been fully cleaned up.
Danielle Lancashire was recognized as a reviewer for SIG Node's subgroup, test code.
The final node serial tests were completely fixed. The serial tests consist of
many disruptive and slow tests which tend to be flakey and are hard
to troubleshoot. By the 1.23 release freeze, the last serial tests were
fixed and the job was passing without flakes.
[![Slack announcement that Serial tests are green](serial-tests-green.png)](https://kubernetes.slack.com/archives/C0BP8PW9G/p1638211041322900)
The 1.23 release got a special shout out for the tests quality and CI signal.
The SIG Node CI subproject was proud to have helped contribute to such
a high-quality release, in part due to our efforts in identifying
and fixing flakes in Node and beyond.
[![Slack shoutout that release was mostly green](release-mostly-green.png)](https://kubernetes.slack.com/archives/C92G08FGD/p1637175755023200)
***December 2021.*** An estimated 90% of test jobs were passing at the time of
the 1.23 release (up from 42% in August 2020).
Dockershim code was removed from Kubernetes. This affected nearly half of SIG Node's
test jobs and the SIG Node CI subproject reacted quickly and retargeted all the
tests. SIG Node was the first SIG to complete test migrations off dockershim,
providing examples for other affected SIGs. The vast majority of new jobs passed
at the time of introduction without further fixes required. The [effort of
removing dockershim](https://k8s.io/dockershim)) from Kubernetes is ongoing.
There are still some wrinkles from the dockershim removal as we uncover more
dependencies on dockershim, but we plan to stabilize all test jobs
by the 1.24 release.
## Statistics
Our regular meeting attendees and subproject participants for the past few months:
- Aditi Sharma
- Artyom Lukianov
- Arnaud Meukam
- Danielle Lancashire
- David Porter
- Davanum Srinivas
- Elana Hashman
- Francesco Romani
- Matthias Bertschy
- Mike Miranda
- Paco Xu
- Peter Hunt
- Ruiwen Zhao
- Ryan Phillips
- Sergey Kanzhelev
- Skyler Clark
- Swati Sehgal
- Wenjun Wu
The [kubernetes/test-infra](https://github.com/kubernetes/test-infra/) source code repository contains test definitions. The number of
Node PRs just in that repository:
- 2020 PRs (since May): [183](https://github.com/kubernetes/test-infra/pulls?q=is%3Apr+is%3Aclosed+label%3Asig%2Fnode+created%3A2020-05-01..2020-12-31+-author%3Ak8s-infra-ci-robot+)
- 2021 PRs: [264](https://github.com/kubernetes/test-infra/pulls?q=is%3Apr+is%3Aclosed+label%3Asig%2Fnode+created%3A2021-01-01..2021-12-31+-author%3Ak8s-infra-ci-robot+)
Triaged issues and PRs on CI board (including triaging away from the subgroup scope):
- 2020 (since May): [132](https://github.com/issues?q=project%3Akubernetes%2F43+created%3A2020-05-01..2020-12-31)
- 2021: [532](https://github.com/issues?q=project%3Akubernetes%2F43+created%3A2021-01-01..2021-12-31+)
## Future
Just "keeping the lights on" is a bold task and we are committed to improving this experience.
We are working to simplify the triage and review processes for SIG Node.
Specifically, we are working on better test organization, naming,
and tracking:
- https://github.com/kubernetes/enhancements/pull/3042
- https://github.com/kubernetes/test-infra/issues/24641
- [Kubernetes SIG-Node CI Testgrid Tracker](https://docs.google.com/spreadsheets/d/1IwONkeXSc2SG_EQMYGRSkfiSWNk8yWLpVhPm-LOTbGM/edit#gid=0)
We are also constantly making progress on improved tests debuggability and de-flaking.
If any of this interests you, we'd love for you to join us!
There's plenty to learn in debugging test failures, and it will help you gain
familiarity with the code that SIG Node maintains.
You can always find information about the group on the
[SIG Node](https://github.com/kubernetes/community/tree/master/sig-node) page.
We give group updates at our maintainer track sessions, such as
[KubeCon + CloudNativeCon Europe 2021](https://kccnceu2021.sched.com/event/iE8E/kubernetes-sig-node-intro-and-deep-dive-elana-hashman-red-hat-sergey-kanzhelev-google) and
[KubeCon + CloudNative North America 2021](https://kccncna2021.sched.com/event/lV9D/kubenetes-sig-node-intro-and-deep-dive-elana-hashman-derek-carr-red-hat-sergey-kanzhelev-dawn-chen-google?iframe=no&w=100%&sidebar=yes&bg=no).
Join us in our mission to keep the kubelet and other SIG Node components reliable and ensure smooth and uneventful releases!
Binary file not shown.

After

Width:  |  Height:  |  Size: 99 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 58 KiB

@@ -0,0 +1,218 @@
---
layout: blog
title: "Updated: Dockershim Removal FAQ"
linkTitle: "Dockershim Removal FAQ"
date: 2022-02-17
slug: dockershim-faq
aliases: [ '/dockershim' ]
---
**This is an update to the original [Dockershim Deprecation FAQ](/blog/2020/12/02/dockershim-faq/) article,
published in late 2020.**
This document goes over some frequently asked questions regarding the
deprecation and removal of _dockershim_, that was
[announced](/blog/2020/12/08/kubernetes-1-20-release-announcement/)
as a part of the Kubernetes v1.20 release. For more detail
on what that means, check out the blog post
[Don't Panic: Kubernetes and Docker](/blog/2020/12/02/dont-panic-kubernetes-and-docker/).
Also, you can read [check whether dockershim removal affects you](/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you/)
to determine how much impact the removal of dockershim would have for you
or for your organization.
As the Kubernetes 1.24 release has become imminent, we've been working hard to try to make this a smooth transition.
- We've written a blog post detailing our [commitment and next steps](/blog/2022/01/07/kubernetes-is-moving-on-from-dockershim/).
- We believe there are no major blockers to migration to [other container runtimes](/docs/setup/production-environment/container-runtimes/#container-runtimes).
- There is also a [Migrating from dockershim](/docs/tasks/administer-cluster/migrating-from-dockershim/) guide available.
- We've also created a page to list
[articles on dockershim removal and on using CRI-compatible runtimes](/docs/reference/node/topics-on-dockershim-and-cri-compatible-runtimes/).
That list includes some of the already mentioned docs, and also covers selected external sources
(including vendor guides).
### Why is the dockershim being removed from Kubernetes?
Early versions of Kubernetes only worked with a specific container runtime:
Docker Engine. Later, Kubernetes added support for working with other container runtimes.
The CRI standard was [created](/blog/2016/12/container-runtime-interface-cri-in-kubernetes/) to
enable interoperability between orchestrators (like Kubernetes) and many different container
runtimes.
Docker Engine doesn't implement that interface (CRI), so the Kubernetes project created
special code to help with the transition, and made that _dockershim_ code part of Kubernetes
itself.
The dockershim code was always intended to be a temporary solution (hence the name: shim).
You can read more about the community discussion and planning in the
[Dockershim Removal Kubernetes Enhancement Proposal][drkep].
In fact, maintaining dockershim had become a heavy burden on the Kubernetes maintainers.
Additionally, features that were largely incompatible with the dockershim, such
as cgroups v2 and user namespaces are being implemented in these newer CRI
runtimes. Removing support for the dockershim will allow further development in
those areas.
[drkep]: https://github.com/kubernetes/enhancements/tree/master/keps/sig-node/2221-remove-dockershim
### Can I still use Docker Engine in Kubernetes 1.23?
Yes, the only thing changed in 1.20 is a single warning log printed at [kubelet]
startup if using Docker Engine as the runtime. You'll see this warning in all versions up to 1.23. The dockershim removal occurs in Kubernetes 1.24.
[kubelet]: /docs/reference/command-line-tools-reference/kubelet/
### When will dockershim be removed?
Given the impact of this change, we are using an extended deprecation timeline.
Removal of dockershim is scheduled for Kubernetes v1.24, see [Dockershim Removal Kubernetes Enhancement Proposal][drkep].
The Kubernetes project will be working closely with vendors and other ecosystem groups to ensure
a smooth transition and will evaluate things as the situation evolves.
### Can I still use Docker Engine as my container runtime?
First off, if you use Docker on your own PC to develop or test containers: nothing changes.
You can still use Docker locally no matter what container runtime(s) you use for your
Kubernetes clusters. Containers make this kind of interoperability possible.
Mirantis and Docker have [committed][mirantis] to maintaining a replacement adapter for
Docker Engine, and to maintain that adapter even after the in-tree dockershim is removed
from Kubernetes. The replacement adapter is named [`cri-dockerd`](https://github.com/Mirantis/cri-dockerd).
[mirantis]: https://www.mirantis.com/blog/mirantis-to-take-over-support-of-kubernetes-dockershim-2/
### Will my existing container images still work?
Yes, the images produced from `docker build` will work with all CRI implementations.
All your existing images will still work exactly the same.
#### What about private images?
Yes. All CRI runtimes support the same pull secrets configuration used in
Kubernetes, either via the PodSpec or ServiceAccount.
### Are Docker and containers the same thing?
Docker popularized the Linux containers pattern and has been instrumental in
developing the underlying technology, however containers in Linux have existed
for a long time. The container ecosystem has grown to be much broader than just
Docker. Standards like OCI and CRI have helped many tools grow and thrive in our
ecosystem, some replacing aspects of Docker while others enhance existing
functionality.
### Are there examples of folks using other runtimes in production today?
All Kubernetes project produced artifacts (Kubernetes binaries) are validated
with each release.
Additionally, the [kind] project has been using containerd for some time and has
seen an improvement in stability for its use case. Kind and containerd are leveraged
multiple times every day to validate any changes to the Kubernetes codebase. Other
related projects follow a similar pattern as well, demonstrating the stability and
usability of other container runtimes. As an example, OpenShift 4.x has been
using the [CRI-O] runtime in production since June 2019.
For other examples and references you can look at the adopters of containerd and
CRI-O, two container runtimes under the Cloud Native Computing Foundation ([CNCF]).
- [containerd](https://github.com/containerd/containerd/blob/master/ADOPTERS.md)
- [CRI-O](https://github.com/cri-o/cri-o/blob/master/ADOPTERS.md)
[CRI-O]: https://cri-o.io/
[kind]: https://kind.sigs.k8s.io/
[CNCF]: https://cncf.io
### People keep referencing OCI, what is that?
OCI stands for the [Open Container Initiative], which standardized many of the
interfaces between container tools and technologies. They maintain a standard
specification for packaging container images (OCI image-spec) and running containers
(OCI runtime-spec). They also maintain an actual implementation of the runtime-spec
in the form of [runc], which is the underlying default runtime for both
[containerd] and [CRI-O]. The CRI builds on these low-level specifications to
provide an end-to-end standard for managing containers.
[Open Container Initiative]: https://opencontainers.org/about/overview/
[runc]: https://github.com/opencontainers/runc
[containerd]: https://containerd.io/
### Which CRI implementation should I use?
Thats a complex question and it depends on a lot of factors. If Docker is
working for you, moving to containerd should be a relatively easy swap and
will have strictly better performance and less overhead. However, we encourage you
to explore all the options from the [CNCF landscape] in case another would be an
even better fit for your environment.
[CNCF landscape]: https://landscape.cncf.io/card-mode?category=container-runtime&grouping=category
### What should I look out for when changing CRI implementations?
While the underlying containerization code is the same between Docker and most
CRIs (including containerd), there are a few differences around the edges. Some
common things to consider when migrating are:
- Logging configuration
- Runtime resource limitations
- Node provisioning scripts that call docker or use docker via it's control socket
- Kubectl plugins that require docker CLI or the control socket
- Tools from the Kubernetes project that require direct access to Docker Engine
(for example: the deprecated `kube-imagepuller` tool)
- Configuration of functionality like `registry-mirrors` and insecure registries
- Other support scripts or daemons that expect Docker Engine to be available and are run
outside of Kubernetes (for example, monitoring or security agents)
- GPUs or special hardware and how they integrate with your runtime and Kubernetes
If you use Kubernetes resource requests/limits or file-based log collection
DaemonSets then they will continue to work the same, but if youve customized
your `dockerd` configuration, youll need to adapt that for your new container
runtime where possible.
Another thing to look out for is anything expecting to run for system maintenance
or nested inside a container when building images will no longer work. For the
former, you can use the [`crictl`][cr] tool as a drop-in replacement (see [mapping from docker cli to crictl](https://kubernetes.io/docs/tasks/debug/debug-cluster/crictl/#mapping-from-docker-cli-to-crictl)) and for the
latter you can use newer container build options like [img], [buildah],
[kaniko], or [buildkit-cli-for-kubectl] that dont require Docker.
[cr]: https://github.com/kubernetes-sigs/cri-tools
[img]: https://github.com/genuinetools/img
[buildah]: https://github.com/containers/buildah
[kaniko]: https://github.com/GoogleContainerTools/kaniko
[buildkit-cli-for-kubectl]: https://github.com/vmware-tanzu/buildkit-cli-for-kubectl
For containerd, you can start with their [documentation] to see what configuration
options are available as you migrate things over.
[documentation]: https://github.com/containerd/cri/blob/master/docs/registry.md
For instructions on how to use containerd and CRI-O with Kubernetes, see the
Kubernetes documentation on [Container Runtimes].
[Container Runtimes]: /docs/setup/production-environment/container-runtimes/
### What if I have more questions?
If you use a vendor-supported Kubernetes distribution, you can ask them about
upgrade plans for their products. For end-user questions, please post them
to our end user community forum: https://discuss.kubernetes.io/.
You can discuss the decision to remove dockershim via a dedicated
[GitHub issue](https://github.com/kubernetes/kubernetes/issues/106917).
You can also check out the excellent blog post
[Wait, Docker is deprecated in Kubernetes now?][dep] a more in-depth technical
discussion of the changes.
[dep]: https://dev.to/inductor/wait-docker-is-deprecated-in-kubernetes-now-what-do-i-do-e4m
### Is there any tooling that can help me find dockershim in use
Yes! The [Detector for Docker Socket (DDS)][dds] is a kubectl plugin that you can
install and then use to check your cluster. DDS can detect if active Kubernetes workloads
are mounting the Docker Engine socket (`docker.sock`) as a volume.
Find more details and usage patterns in the DDS project's [README][dds].
[dds]: https://github.com/aws-containers/kubectl-detector-for-docker-socket
### Can I have a hug?
Yes, we're still giving hugs as requested. 🤗🤗🤗
@@ -0,0 +1,78 @@
---
layout: blog
title: "Meet Our Contributors - APAC (Aus-NZ region)"
date: 2022-03-16T12:00:00+0000
slug: meet-our-contributors-au-nz-ep-02
canonicalUrl: https://www.kubernetes.dev/blog/2022/03/14/meet-our-contributors-au-nz-ep-02/
---
**Authors & Interviewers:** [Anubhav Vardhan](https://github.com/anubha-v-ardhan), [Atharva Shinde](https://github.com/Atharva-Shinde), [Avinesh Tripathi](https://github.com/AvineshTripathi), [Brad McCoy](https://github.com/bradmccoydev), [Debabrata Panigrahi](https://github.com/Debanitrkl), [Jayesh Srivastava](https://github.com/jayesh-srivastava), [Kunal Verma](https://github.com/verma-kunal), [Pranshu Srivastava](https://github.com/PranshuSrivastava), [Priyanka Saggu](github.com/Priyankasaggu11929/), [Purneswar Prasad](https://github.com/PurneswarPrasad), [Vedant Kakde](https://github.com/vedant-kakde)
---
Good day, everyone 👋
Welcome back to the second episode of the "Meet Our Contributors" blog post series for APAC.
This post will feature four outstanding contributors from the Australia and New Zealand regions, who have played diverse leadership and community roles in the Upstream Kubernetes project.
So, without further ado, let's get straight to the blog.
## [Caleb Woodbine](https://github.com/BobyMCbobs)
Caleb Woodbine is currently a member of the ii.nz organisation.
He began contributing to the Kubernetes project in 2018 as a member of the Kubernetes Conformance working group. His experience was positive, and he benefited from early guidance from [Hippie Hacker](https://github.com/hh), a fellow contributor from New Zealand.
He has made major contributions to Kubernetes project since then through `SIG k8s-infra` and `k8s-conformance` working group.
Caleb is also a co-organizer of the [CloudNative NZ](https://www.meetup.com/cloudnative-nz/) community events, which aim to expand the reach of Kubernetes project throughout New Zealand in order to encourage technical education and improved employment opportunities.
> _There need to be more outreach in APAC and the educators and universities must pick up Kubernetes, as they are very slow and about 8+ years out of date. NZ tends to rather pay overseas than educate locals on the latest cloud tech Locally._
## [Dylan Graham](https://github.com/DylanGraham)
Dylan Graham is a cloud engineer from Adeliade, Australia. He has been contributing to the upstream Kubernetes project since 2018.
He stated that being a part of such a large-scale project was initially overwhelming, but that the community's friendliness and openness assisted him in getting through it.
He began by contributing to the project documentation and is now mostly focused on the community support for the APAC region.
He believes that consistent attendance at community/project meetings, taking on project tasks, and seeking community guidance as needed can help new aspiring developers become effective contributors.
> _The feeling of being a part of a large community is really special. I've met some amazing people, even some before the pandemic in real life :)_
## [Hippie Hacker](https://github.com/hh)
Hippie has worked for the CNCF.io as a Strategic Initiatives contractor from New Zealand for almost 5+ years. He is an active contributor to k8s-infra, API conformance testing, Cloud provider conformance submissions, and apisnoop.cncf.io domains of the upstream Kubernetes & CNCF projects.
He recounts their early involvement with the Kubernetes project, which began roughly 5 years ago when their firm, ii.nz, demonstrated [network booting from a Raspberry Pi using PXE and running Gitlab in-cluster to install Kubernetes on servers](https://ii.nz/post/bringing-the-cloud-to-your-community/).
He describes their own contributing experience as someone who, at first, tried to do all of the hard lifting on their own, but eventually saw the benefit of group contributions which reduced burnout and task division which allowed folks to keep moving forward on their own momentum.
He recommends that new contributors use pair programming.
> _The cross pollination of approaches and two pairs of eyes on the same work can often yield a much more amplified effect than a PR comment / approval alone can afford._
## [Nick Young](https://github.com/youngnick)
Nick Young works at VMware as a technical lead for Contour, a CNCF ingress controller. He was active with the upstream Kubernetes project from the beginning, and eventually became the chair of the LTS working group, where he advocated user concerns. He is currently the SIG Network Gateway API subproject's maintainer.
His contribution path was notable in that he began working on major areas of the Kubernetes project early on, skewing his trajectory.
He asserts the best thing a new contributor can do is to "start contributing". Naturally, if it is relevant to their employment, that is excellent; however, investing non-work time in contributing can pay off in the long run in terms of work. He believes that new contributors, particularly those who are currently Kubernetes users, should be encouraged to participate in higher-level project discussions.
> _Just being active and contributing will get you a long way. Once you've been active for a while, you'll find that you're able to answer questions, which will mean you're asked questions, and before you know it you are an expert._
---
If you have any recommendations/suggestions for who we should interview next, please let us know in #sig-contribex. Your suggestions would be much appreciated. We're thrilled to have additional folks assisting us in reaching out to even more wonderful individuals of the community.
We'll see you all in the next one. Everyone, till then, have a happy contributing! 👋
@@ -0,0 +1,34 @@
---
layout: blog
title: "Is Your Cluster Ready for v1.24?"
date: 2022-03-31
slug: ready-for-dockershim-removal
---
**Author:** Kat Cosgrove
Way back in December of 2020, Kubernetes announced the [deprecation of Dockershim](/blog/2020/12/02/dont-panic-kubernetes-and-docker/). In Kubernetes, dockershim is a software shim that allows you to use the entire Docker engine as your container runtime within Kubernetes. In the upcoming v1.24 release, we are removing Dockershim - the delay between deprecation and removal in line with the [projects policy](https://kubernetes.io/docs/reference/using-api/deprecation-policy/) of supporting features for at least one year after deprecation. If you are a cluster operator, this guide includes the practical realities of what you need to know going into this release. Also, what do you need to do to ensure your cluster doesnt fall over!
## First, does this even affect you?
If you are rolling your own cluster or are otherwise unsure whether or not this removal affects you, stay on the safe side and [check to see if you have any dependencies on Docker Engine](/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you/). Please note that using Docker Desktop to build your application containers is not a Docker dependency for your cluster. Container images created by Docker are compliant with the [Open Container Initiative (OCI)](https://opencontainers.org/), a Linux Foundation governance structure that defines industry standards around container formats and runtimes. They will work just fine on any container runtime supported by Kubernetes.
If you are using a managed Kubernetes service from a cloud provider, and you havent explicitly changed the container runtime, there may be nothing else for you to do. Amazon EKS, Azure AKS, and Google GKE all default to containerd now, though you should make sure they do not need updating if you have any node customizations. To check the runtime of your nodes, follow [Find Out What Container Runtime is Used on a Node](/docs/tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use/).
Regardless of whether you are rolling your own cluster or using a managed Kubernetes service from a cloud provider, you may need to [migrate telemetry or security agents that rely on Docker Engine](/docs/tasks/administer-cluster/migrating-from-dockershim/migrating-telemetry-and-security-agents/).
## I have a Docker dependency. What now?
If your Kubernetes cluster depends on Docker Engine and you intend to upgrade to Kubernetes v1.24 (which you should eventually do for security and similar reasons), you will need to change your container runtime from Docker Engine to something else or use [cri-dockerd](https://github.com/Mirantis/cri-dockerd). Since [containerd](https://containerd.io/) is a graduated CNCF project and the runtime within Docker itself, its a safe bet as an alternative container runtime. Fortunately, the Kubernetes project has already documented the process of [changing a nodes container runtime](/docs/tasks/administer-cluster/migrating-from-dockershim/change-runtime-containerd/), using containerd as an example. Instructions are similar for switching to one of the other supported runtimes.
## I want to upgrade Kubernetes, and I need to maintain compatibility with Docker as a runtime. What are my options?
Fear not, you arent being left out in the cold and you dont have to take the security risk of staying on an old version of Kubernetes. Mirantis and Docker have jointly released, and are maintaining, a replacement for dockershim. That replacement is called [cri-dockerd](https://github.com/Mirantis/cri-dockerd). If you do need to maintain compatibility with Docker as a runtime, install cri-dockerd following the instructions in the projects documentation.
## Is that it?
Yes. As long as you go into this release aware of the changes being made and the details of your own clusters, and you make sure to communicate clearly with your development teams, it will be minimally dramatic. You may have some changes to make to your cluster, application code, or scripts, but all of these requirements are documented. Switching from using Docker Engine as your runtime to using [one of the other supported container runtimes](/docs/setup/production-environment/container-runtimes/) effectively means removing the middleman, since the purpose of dockershim is to access the container runtime used by Docker itself. From a practical perspective, this removal is better both for you and for Kubernetes maintainers in the long-run.
If you still have questions, please first check the [Dockershim Removal FAQ](/blog/2022/02/17/dockershim-faq/).
@@ -0,0 +1,133 @@
---
layout: blog
title: "Kubernetes Removals and Deprecations In 1.24"
date: 2022-04-07
slug: upcoming-changes-in-kubernetes-1-24
---
**Author**: Mickey Boxell (Oracle)
As Kubernetes evolves, features and APIs are regularly revisited and removed. New features may offer
an alternative or improved approach to solving existing problems, motivating the team to remove the
old approach.
We want to make sure you are aware of the changes coming in the Kubernetes 1.24 release. The release will
**deprecate** several (beta) APIs in favor of stable versions of the same APIs. The major change coming
in the Kubernetes 1.24 release is the
[removal of Dockershim](https://github.com/kubernetes/enhancements/tree/master/keps/sig-node/2221-remove-dockershim).
This is discussed below and will be explored in more depth at release time. For an early look at the
changes coming in Kubernetes 1.24, take a look at the in-progress
[CHANGELOG](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.24.md).
## A note about Dockershim
It's safe to say that the removal receiving the most attention with the release of Kubernetes 1.24
is Dockershim. Dockershim was deprecated in v1.20. As noted in the [Kubernetes 1.20 changelog](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.20.md#deprecation):
"Docker support in the kubelet is now deprecated and will be removed in a future release. The kubelet
uses a module called "dockershim" which implements CRI support for Docker and it has seen maintenance
issues in the Kubernetes community." With the upcoming release of Kubernetes 1.24, the Dockershim will
finally be removed.
In the article [Don't Panic: Kubernetes and Docker](/blog/2020/12/02/dont-panic-kubernetes-and-docker/),
the authors succinctly captured the change's impact and encouraged users to remain calm:
> Docker as an underlying runtime is being deprecated in favor of runtimes that use the
> Container Runtime Interface (CRI) created for Kubernetes. Docker-produced images
> will continue to work in your cluster with all runtimes, as they always have.
Several guides have been created with helpful information about migrating from dockershim
to container runtimes that are directly compatible with Kubernetes. You can find them on the
[Migrating from dockershim](/docs/tasks/administer-cluster/migrating-from-dockershim/)
page in the Kubernetes documentation.
For more information about why Kubernetes is moving away from dockershim, check out the aptly
named: [Kubernetes is Moving on From Dockershim](/blog/2022/01/07/kubernetes-is-moving-on-from-dockershim/)
and the [updated dockershim removal FAQ](/blog/2022/02/17/dockershim-faq/).
Take a look at the [Is Your Cluster Ready for v1.24?](/blog/2022/03/31/ready-for-dockershim-removal/) post to learn about how to ensure your cluster continues to work after upgrading from v1.23 to v1.24.
## The Kubernetes API removal and deprecation process
Kubernetes contains a large number of components that evolve over time. In some cases, this
evolution results in APIs, flags, or entire features, being removed. To prevent users from facing
breaking changes, Kubernetes contributors adopted a feature [deprecation policy](/docs/reference/using-api/deprecation-policy/).
This policy ensures that stable APIs may only be deprecated when a newer stable version of that
same API is available and that APIs have a minimum lifetime as indicated by the following stability levels:
* Generally available (GA) or stable API versions may be marked as deprecated but must not be removed within a major version of Kubernetes.
* Beta or pre-release API versions must be supported for 3 releases after deprecation.
* Alpha or experimental API versions may be removed in any release without prior deprecation notice.
Removals follow the same deprecation policy regardless of whether an API is removed due to a beta feature
graduating to stable or because that API was not proven to be successful. Kubernetes will continue to make
sure migration options are documented whenever APIs are removed.
**Deprecated** APIs are those that have been marked for removal in a future Kubernetes release. **Removed**
APIs are those that are no longer available for use in current, supported Kubernetes versions after having
been deprecated. These removals have been superseded by newer, stable/generally available (GA) APIs.
## API removals, deprecations, and other changes for Kubernetes 1.24
* [Dynamic kubelet configuration](https://github.com/kubernetes/enhancements/issues/281): `DynamicKubeletConfig` is used to enable the dynamic configuration of the kubelet. The `DynamicKubeletConfig` flag was deprecated in Kubernetes 1.22. In v1.24, this feature gate will be removed from the kubelet. See [Reconfigure kubelet](/docs/tasks/administer-cluster/reconfigure-kubelet/). Refer to the ["Dynamic kubelet config is removed" KEP](https://github.com/kubernetes/enhancements/issues/281) for more information.
* [Dynamic log sanitization](https://github.com/kubernetes/kubernetes/pull/107207): The experimental dynamic log sanitization feature is deprecated and will be removed in v1.24. This feature introduced a logging filter that could be applied to all Kubernetes system components logs to prevent various types of sensitive information from leaking via logs. Refer to [KEP-1753: Kubernetes system components logs sanitization](https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/1753-logs-sanitization#deprecation) for more information and an [alternative approach](https://github.com/kubernetes/enhancements/tree/master/keps/sig-instrumentation/1753-logs-sanitization#alternatives=).
* In-tree provisioner to CSI driver migration: This applies to a number of in-tree plugins, including [Portworx](https://github.com/kubernetes/enhancements/issues/2589). Refer to the [In-tree Storage Plugin to CSI Migration Design Doc](https://github.com/kubernetes/design-proposals-archive/blob/main/storage/csi-migration.md#background-and-motivations) for more information.
* [Removing Dockershim from kubelet](https://github.com/kubernetes/enhancements/issues/2221): the Container Runtime Interface (CRI) for Docker (i.e. Dockershim) is currently a built-in container runtime in the kubelet code base. It was deprecated in v1.20. As of v1.24, the kubelet will no longer have dockershim. Check out this blog on [what you need to do be ready for v1.24](/blog/2022/03/31/ready-for-dockershim-removal/).
* [Storage capacity tracking for pod scheduling](https://github.com/kubernetes/enhancements/issues/1472): The CSIStorageCapacity API supports exposing currently available storage capacity via CSIStorageCapacity objects and enhances scheduling of pods that use CSI volumes with late binding. In v1.24, the CSIStorageCapacity API will be stable. The API graduating to stable initates the deprecation of the v1beta1 CSIStorageCapacity API. Refer to the [Storage Capacity Constraints for Pod Scheduling KEP](https://github.com/kubernetes/enhancements/tree/master/keps/sig-storage/1472-storage-capacity-tracking) for more information.
* [The `master` label is no longer present on kubeadm control plane nodes](https://github.com/kubernetes/kubernetes/pull/107533). For new clusters, the label 'node-role.kubernetes.io/master' will no longer be added to control plane nodes, only the label 'node-role.kubernetes.io/control-plane' will be added. For more information, refer to [KEP-2067: Rename the kubeadm "master" label and taint](https://github.com/kubernetes/enhancements/tree/master/keps/sig-cluster-lifecycle/kubeadm/2067-rename-master-label-taint).
* [VolumeSnapshot v1beta1 CRD will be removed](https://github.com/kubernetes/enhancements/issues/177). Volume snapshot and restore functionality for Kubernetes and the [Container Storage Interface](https://github.com/container-storage-interface/spec/blob/master/spec.md) (CSI), which provides standardized APIs design (CRDs) and adds PV snapshot/restore support for CSI volume drivers, entered beta in v1.20. VolumeSnapshot v1beta1 was deprecated in v1.21 and is now unsupported. Refer to [KEP-177: CSI Snapshot](https://github.com/kubernetes/enhancements/tree/master/keps/sig-storage/177-volume-snapshot#kep-177-csi-snapshot) and [kubernetes-csi/external-snapshotter](https://github.com/kubernetes-csi/external-snapshotter/releases/tag/v4.1.0) for more information.
## What to do
### Dockershim removal
As stated earlier, there are several guides about
[Migrating from dockershim](/docs/tasks/administer-cluster/migrating-from-dockershim/).
You can start with [Finding what container runtime are on your nodes](/docs/tasks/administer-cluster/migrating-from-dockershim/find-out-runtime-you-use/).
If your nodes are using dockershim, there are other possible Docker Engine dependencies such as
Pods or third-party tools executing Docker commands or private registries in the Docker configuration file. You can follow the
[Check whether Dockershim deprecation affects you](/docs/tasks/administer-cluster/migrating-from-dockershim/check-if-dockershim-deprecation-affects-you/) guide to review possible
Docker Engine dependencies. Before upgrading to v1.24, you decide to either remain using Docker Engine and
[Migrate Docker Engine nodes from dockershim to cri-dockerd](/docs/tasks/administer-cluster/migrating-from-dockershim/migrate-dockershim-dockerd/) or migrate to a CRI-compatible runtime. Here's a guide to
[change the container runtime on a node from Docker Engine to containerd](/docs/tasks/administer-cluster/migrating-from-dockershim/change-runtime-containerd/).
### `kubectl convert`
The [`kubectl convert`](/docs/tasks/tools/included/kubectl-convert-overview/) plugin for `kubectl`
can be helpful to address migrating off deprecated APIs. The plugin facilitates the conversion of
manifests between different API versions, for example, from a deprecated to a non-deprecated API
version. More general information about the API migration process can be found in the [Deprecated API Migration Guide](/docs/reference/using-api/deprecation-guide/).
Follow the [install `kubectl convert` plugin](https://kubernetes.io/docs/tasks/tools/install-kubectl-linux/#install-kubectl-convert-plugin)
documentation to download and install the `kubectl-convert` binary.
### Looking ahead
The Kubernetes 1.25 and 1.26 releases planned for later this year will stop serving beta versions
of several currently stable Kubernetes APIs. The v1.25 release will also remove PodSecurityPolicy,
which was deprecated with Kubernetes 1.21 and will not graduate to stable. See [PodSecurityPolicy
Deprecation: Past, Present, and Future](/blog/2021/04/06/podsecuritypolicy-deprecation-past-present-and-future/) for more information.
The official [list of API removals planned for Kubernetes 1.25](/docs/reference/using-api/deprecation-guide/#v1-25) is:
* The beta CronJob API (batch/v1beta1)
* The beta EndpointSlice API (discovery.k8s.io/v1beta1)
* The beta Event API (events.k8s.io/v1beta1)
* The beta HorizontalPodAutoscaler API (autoscaling/v2beta1)
* The beta PodDisruptionBudget API (policy/v1beta1)
* The beta PodSecurityPolicy API (policy/v1beta1)
* The beta RuntimeClass API (node.k8s.io/v1beta1)
The official [list of API removals planned for Kubernetes 1.26](/docs/reference/using-api/deprecation-guide/#v1-26) is:
* The beta FlowSchema and PriorityLevelConfiguration APIs (flowcontrol.apiserver.k8s.io/v1beta1)
* The beta HorizontalPodAutoscaler API (autoscaling/v2beta2)
### Want to know more?
Deprecations are announced in the Kubernetes release notes. You can see the announcements of pending deprecations in the release notes for:
* [Kubernetes 1.21](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.21.md#deprecation)
* [Kubernetes 1.22](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.22.md#deprecation)
* [Kubernetes 1.23](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.23.md#deprecation)
* We will formally announce the deprecations that come with [Kubernetes 1.24](https://github.com/kubernetes/kubernetes/blob/master/CHANGELOG/CHANGELOG-1.24.md#deprecation) as part of the CHANGELOG for that release.
For information on the process of deprecation and removal, check out the official Kubernetes [deprecation policy](/docs/reference/using-api/deprecation-policy/#deprecating-parts-of-the-api) document.
@@ -0,0 +1,155 @@
---
layout: blog
title: 'Increasing the security bar in Ingress-NGINX v1.2.0'
date: 2022-04-28
slug: ingress-nginx-1-2-0
---
**Authors:** Ricardo Katz (VMware), James Strong (Chainguard)
The [Ingress](/docs/concepts/services-networking/ingress/) may be one of the most targeted components
of Kubernetes. An Ingress typically defines an HTTP reverse proxy, exposed to the Internet, containing
multiple websites, and with some privileged access to Kubernetes API (such as to read Secrets relating to
TLS certificates and their private keys).
While it is a risky component in your architecture, it is still the most popular way to properly expose your services.
Ingress-NGINX has been part of security assessments that figured out we have a big problem: we don't
do all proper sanitization before turning the configuration into an `nginx.conf` file, which may lead to information
disclosure risks.
While we understand this risk and the real need to fix this, it's not an easy process to do, so we took another approach to reduce (but not remove!) this risk in the current (v1.2.0) release.
## Meet Ingress NGINX v1.2.0 and the chrooted NGINX process
One of the main challenges is that Ingress-NGINX runs the web proxy server (NGINX) alongside the Ingress
controller (the component that has access to Kubernetes API that and that creates the `nginx.conf` file).
So, NGINX does have the same access to the filesystem of the controller (and Kubernetes service account token, and other configurations from the container). While splitting those components is our end goal, the project needed a fast response; that lead us to the idea of using `chroot()`.
Let's take a look into what an Ingress-NGINX container looked like before this change:
![Ingress NGINX pre chroot](ingress-pre-chroot.png)
As we can see, the same container (not the Pod, the container!) that provides HTTP Proxy is the one that watches Ingress objects and writes the Container Volume
Now, meet the new architecture:
![Ingress NGINX post chroot](ingress-post-chroot.png)
What does all of this mean? A basic summary is: that we are isolating the NGINX service as a container inside the
controller container.
While this is not strictly true, to understand what was done here, it's good to understand how
Linux containers (and underlying mechanisms such as kernel namespaces) work.
You can read about cgroups in the Kubernetes glossary: [`cgroup`](https://kubernetes.io/docs/reference/glossary/?fundamental=true#term-cgroup) and learn more about cgroups interact with namespaces in the NGINX project article
[What Are Namespaces and cgroups, and How Do They Work?](https://www.nginx.com/blog/what-are-namespaces-cgroups-how-do-they-work/).
(As you read that, bear in mind that Linux kernel namespaces are a different thing from
[Kubernetes namespaces](/docs/concepts/overview/working-with-objects/namespaces/)).
## Skip the talk, what do I need to use this new approach?
While this increases the security, we made this feature an opt-in in this release so you can have
time to make the right adjustments in your environment(s). This new feature is only available from
release v1.2.0 of the Ingress-NGINX controller.
There are two required changes in your deployments to use this feature:
* Append the suffix "-chroot" to the container image name. For example: `gcr.io/k8s-staging-ingress-nginx/controller-chroot:v1.2.0`
* In your Pod template for the Ingress controller, find where you add the capability `NET_BIND_SERVICE` and add the capability `SYS_CHROOT`. After you edit the manifest, you'll see a snippet like:
```yaml
capabilities:
drop:
- ALL
add:
- NET_BIND_SERVICE
- SYS_CHROOT
```
If you deploy the controller using the official Helm chart then change the following setting in
`values.yaml`:
```yaml
controller:
image:
chroot: true
```
Ingress controllers are normally set up cluster-wide (the IngressClass API is cluster scoped). If you manage the
Ingress-NGINX controller but you're not the overall cluster operator, then check with your cluster admin about
whether you can use the `SYS_CHROOT` capability, **before** you enable it in your deployment.
## OK, but how does this increase the security of my Ingress controller?
Take the following configuration snippet and imagine, for some reason it was added to your `nginx.conf`:
```
location /randomthing/ {
alias /;
autoindex on;
}
```
If you deploy this configuration, someone can call `http://website.example/randomthing` and get some listing (and access) to the whole filesystem of the Ingress controller.
Now, can you spot the difference between chrooted and non chrooted Nginx on the listings below?
| Without extra `chroot()` | With extra `chroot()` |
|----------------------------|--------|
| `bin` | `bin` |
| `dev` | `dev` |
| `etc` | `etc` |
| `home` | |
| `lib` | `lib` |
| `media` | |
| `mnt` | |
| `opt` | `opt` |
| `proc` | `proc` |
| `root` | |
| `run` | `run` |
| `sbin` | |
| `srv` | |
| `sys` | |
| `tmp` | `tmp` |
| `usr` | `usr` |
| `var` | `var` |
| `dbg` | |
| `nginx-ingress-controller` | |
| `wait-shutdown` | |
The one in left side is not chrooted. So NGINX has full access to the filesystem. The one in right side is chrooted, so a new filesystem with only the required files to make NGINX work is created.
## What about other security improvements in this release?
We know that the new `chroot()` mechanism helps address some portion of the risk, but still, someone
can try to inject commands to read, for example, the `nginx.conf` file and extract sensitive information.
So, another change in this release (this is opt-out!) is the _deep inspector_.
We know that some directives or regular expressions may be dangerous to NGINX, so the deep inspector
checks all fields from an Ingress object (during its reconciliation, and also with a
[validating admission webhook](/docs/reference/access-authn-authz/admission-controllers/#validatingadmissionwebhook))
to verify if any fields contains these dangerous directives.
The ingress controller already does this for annotations, and our goal is to move this existing validation to happen inside
deep inspection as part of a future release.
You can take a look into the existing rules in [https://github.com/kubernetes/ingress-nginx/blob/main/internal/ingress/inspector/rules.go](https://github.com/kubernetes/ingress-nginx/blob/main/internal/ingress/inspector/rules.go).
Due to the nature of inspecting and matching all strings within relevant Ingress objects, this new feature may consume a bit more CPU. You can disable it by running the ingress controller with the command line argument `--deep-inspect=false`.
## What's next?
This is not our final goal. Our final goal is to split the control plane and the data plane processes.
In fact, doing so will help us also achieve a [Gateway](https://gateway-api.sigs.k8s.io/) API implementation,
as we may have a different controller as soon as it "knows" what to provide to the data plane
(we need some help here!!)
Some other projects in Kubernetes already take this approach
(like [KPNG](https://github.com/kubernetes-sigs/kpng), the proposed replacement for `kube-proxy`),
and we plan to align with them and get the same experience for Ingress-NGINX.
## Further reading
If you want to take a look into how chrooting was done in Ingress NGINX, take a look
into [https://github.com/kubernetes/ingress-nginx/pull/8337](https://github.com/kubernetes/ingress-nginx/pull/8337)
The release v1.2.0 containing all the changes can be found at
[https://github.com/kubernetes/ingress-nginx/releases/tag/controller-v1.2.0](https://github.com/kubernetes/ingress-nginx/releases/tag/controller-v1.2.0)
Binary file not shown.

After

Width:  |  Height:  |  Size: 59 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 51 KiB

@@ -0,0 +1,319 @@
---
layout: blog
title: "Frontiers, fsGroups and frogs: the Kubernetes 1.23 release interview"
date: 2022-04-29
---
**Author**: Craig Box (Google)
One of the highlights of hosting the weekly [Kubernetes Podcast from Google](https://kubernetespodcast.com/) is talking to the release managers for each new Kubernetes version. The release team is constantly refreshing. Many working their way from small documentation fixes, step up to shadow roles, and then eventually lead a release.
As we prepare for the 1.24 release next week, [in accordance with long-standing tradition](https://www.google.com/search?q=%22release+interview%22+site%3Akubernetes.io%2Fblog), I'm pleased to bring you a look back at the story of 1.23. The release was led by [Rey Lejano](https://twitter.com/reylejano), a Field Engineer at SUSE. [I spoke to Rey](https://kubernetespodcast.com/episode/167-kubernetes-1.23/) in December, as he was awaiting the birth of his first child.
Make sure you [subscribe, wherever you get your podcasts](https://kubernetespodcast.com/subscribe/), so you hear all our stories from the Cloud Native community, including the story of 1.24 next week.
*This transcript has been lightly edited and condensed for clarity.*
---
**CRAIG BOX: I'd like to start with what is, of course, on top of everyone's mind at the moment. Let's talk African clawed frogs!**
REY LEJANO: [CHUCKLES] Oh, you mean [Xenopus lavis](https://en.wikipedia.org/wiki/African_clawed_frog), the scientific name for the African clawed frog?
**CRAIG BOX: Of course.**
REY LEJANO: Not many people know, but my background and my degree is actually in microbiology, from the University of California Davis. I did some research for about four years in biochemistry, in a biochemistry lab, and I [do have a research paper published](https://www.sciencedirect.com/science/article/pii/). It's actually on glycoproteins, particularly something called "cortical granule lectin". We used frogs, because they generate lots and lots of eggs, from which we can extract the protein. That protein prevents polyspermy. When the sperm goes into the egg, the egg releases a glycoprotein, cortical granule lectin, to the membrane, and prevents any other sperm from going inside the egg.
**CRAIG BOX: Were you able to take anything from the testing that we did on frogs and generalize that to higher-order mammals, perhaps?**
REY LEJANO: Yes. Since mammals also have cortical granule lectin, we were able to analyze both the convergence and the evolutionary pattern, not just from multiple species of frogs, but also into mammals as well.
**CRAIG BOX: Now, there's a couple of different threads to unravel here. When you were young, what led you into the fields of biology, and perhaps more the technical side of it?**
REY LEJANO: I think it was mostly from family, since I do have a family history in the medical field that goes back generations. So I kind of felt like that was the natural path going into college.
**CRAIG BOX: Now, of course, you're working in a more abstract tech field. What led you out of microbiology?**
REY LEJANO: [CHUCKLES] Well, I've always been interested in tech. Taught myself a little programming when I was younger, before high school, did some web dev stuff. Just kind of got burnt out being in a lab. I was literally in the basement. I had a great opportunity to join a consultancy that specialized in [ITIL](https://www.axelos.com/certifications/itil-service-management/what-is-itil). I actually started off with application performance management, went into monitoring, went into operation management and also ITIL, which is aligning your IT asset management and service managements with business services. Did that for a good number of years, actually.
**CRAIG BOX: It's very interesting, as people describe the things that they went through and perhaps the technologies that they worked on, you can pretty much pinpoint how old they might be. There's a lot of people who come into tech these days that have never heard of ITIL. They have no idea what it is. It's basically just SRE with more process.**
REY LEJANO: Yes, absolutely. It's not very cloud native. [CHUCKLES]
**CRAIG BOX: Not at all.**
REY LEJANO: You don't really hear about it in the cloud native landscape. Definitely, you can tell someone's been in the field for a little bit, if they specialize or have worked with ITIL before.
**CRAIG BOX: You mentioned that you wanted to get out of the basement. That is quite often where people put the programmers. Did they just give you a bit of light in the new basement?**
REY LEJANO: [LAUGHS] They did give us much better lighting. Able to get some vitamin D sometimes, as well.
**CRAIG BOX: To wrap up the discussion about your previous career — over the course of the last year, with all of the things that have happened in the world, I could imagine that microbiology skills may be more in demand than perhaps they were when you studied them?**
REY LEJANO: Oh, absolutely. I could definitely see a big increase of numbers of people going into the field. Also, reading what's going on with the world currently kind of brings back all the education I've learned in the past, as well.
**CRAIG BOX: Do you keep in touch with people you went through school with?**
REY LEJANO: Just some close friends, but not in the microbiology field.
**CRAIG BOX: One thing that I think will probably happen as a result of the pandemic is a renewed interest in some of these STEM fields. It will be interesting to see what impact that has on society at large.**
REY LEJANO: Yeah. I think that'll be great.
**CRAIG BOX: You mentioned working at a consultancy doing IT management, application performance monitoring, and so on. When did Kubernetes come into your professional life?**
REY LEJANO: One of my good friends at the company I worked at, left in mid-2015. He went on to a company that was pretty heavily into Docker. He taught me a little bit. I did my first "docker run" around 2015, maybe 2016. Then, one of the applications we were using for the ITIL framework was containerized around 2018 or so, also in Kubernetes. At that time, it was pretty buggy. That was my initial introduction to Kubernetes and containerised applications.
Then I left that company, and I actually joined my friend over at [RX-M](https://rx-m.com/), which is a cloud native consultancy and training firm. They specialize in Docker and Kubernetes. I was able to get my feet wet. I got my CKD, got my CKA as well. And they were really, really great at encouraging us to learn more about Kubernetes and also to be involved in the community.
**CRAIG BOX: You will have seen, then, the life cycle of people adopting Kubernetes and containerization at large, through your own initial journey and then through helping customers. How would you characterize how that journey has changed from the early days to perhaps today?**
REY LEJANO: I think the early days, there was a lot of questions of, why do I have to containerize? Why can't I just stay with virtual machines?
**CRAIG BOX: It's a line item on your CV.**
REY LEJANO: [CHUCKLES] It is. And nowadays, I think people know the value of using containers, of orchestrating containers with Kubernetes. I don't want to say "jumping on the bandwagon", but it's become the de-facto standard to orchestrate containers.
**CRAIG BOX: It's not something that a consultancy needs to go out and pitch to customers that they should be doing. They're just taking it as, that will happen, and starting a bit further down the path, perhaps.**
REY LEJANO: Absolutely.
**CRAIG BOX: Working at a consultancy like that, how much time do you get to work on improving process, perhaps for multiple customers, and then looking at how you can upstream that work, versus paid work that you do for just an individual customer at a time?**
REY LEJANO: Back then, it would vary. They helped me introduce myself, and I learned a lot about the cloud native landscape and Kubernetes itself. They helped educate me as to how the cloud native landscape, and the tools around it, can be used together. My boss at that company, Randy, he actually encouraged us to start contributing upstream, and encouraged me to join the release team. He just said, this is a great opportunity. Definitely helped me with starting with the contributions early on.
**CRAIG BOX: Was the release team the way that you got involved with upstream Kubernetes contribution?**
REY LEJANO: Actually, no. My first contribution was with SIG Docs. I met Taylor Dolezal — he was the release team lead for 1.19, but he is involved with SIG Docs as well. I met him at KubeCon 2019, I sat at his table during a luncheon. I remember Paris Pittman was hosting this luncheon at the Marriott. Taylor says he was involved with SIG Docs. He encouraged me to join. I started joining into meetings, started doing a few drive-by PRs. That's what we call them — drive-by — little typo fixes. Then did a little bit more, started to send better or higher quality pull requests, and also reviewing PRs.
**CRAIG BOX: When did you first formally take your release team role?**
REY LEJANO: That was in [1.18](https://github.com/kubernetes/sig-release/blob/master/releases/release-1.18/release_team.md), in December. My boss at the time encouraged me to apply. I did, was lucky enough to get accepted for the release notes shadow. Then from there, stayed in with release notes for a few cycles, then went into Docs, naturally then led Docs, then went to Enhancements, and now I'm the release lead for 1.23.
**CRAIG BOX: I don't know that a lot of people think about what goes into a good release note. What would you say does?**
REY LEJANO: [CHUCKLES] You have to tell the end user what has changed or what effect that they might see in the release notes. It doesn't have to be highly technical. It could just be a few lines, and just saying what has changed, what they have to do if they have to do anything as well.
**CRAIG BOX: As you moved through the process of shadowing, how did you learn from the people who were leading those roles?**
REY LEJANO: I said this a few times when I was the release lead for this cycle. You get out of the release team as much as you put in, or it directly aligns to how much you put in. I learned a lot. I went into the release team having that mindset of learning from the role leads, learning from the other shadows, as well. That's actually a saying that my first role lead told me. I still carry it to heart, and that was back in 1.18. That was Eddie, in the very first meeting we had, and I still carry it to heart.
**CRAIG BOX: You, of course, were [the release lead for 1.23](https://github.com/kubernetes/sig-release/tree/master/releases/release-1.23). First of all, congratulations on the release.**
REY LEJANO: Thank you very much.
**CRAIG BOX: The theme for this release is [The Next Frontier](https://kubernetes.io/blog/2021/12/07/kubernetes-1-23-release-announcement/). Tell me the story of how we came to the theme and then the logo.**
REY LEJANO: The Next Frontier represents a few things. It not only represents the next enhancements in this release, but Kubernetes itself also has a history of Star Trek references. The original codename for Kubernetes was Project Seven, a reference to Seven of Nine, originally from Star Trek Voyager. Also the seven spokes in the helm in the logo of Kubernetes as well. And, of course, Borg, the predecessor to Kubernetes.
The Next Frontier continues that Star Trek reference. It's a fusion of two titles in the Star Trek universe. One is [Star Trek V, the Final Frontier](https://en.wikipedia.org/wiki/Star_Trek_V:_The_Final_Frontier), and the Star Trek: The Next Generation.
**CRAIG BOX: Do you have any opinion on the fact that Star Trek V was an odd-numbered movie, and they are [canonically referred to as being lesser than the even-numbered ones](https://screenrant.com/star-trek-movies-odd-number-curse-explained/)?**
REY LEJANO: I can't say, because I am such a sci-fi nerd that I love all of them even though they're bad. Even the post-Next Generation movies, after the series, I still liked all of them, even though I know some weren't that great.
**CRAIG BOX: Am I right in remembering that Star Trek V was the one directed by William Shatner?**
REY LEJANO: Yes, that is correct.
**CRAIG BOX: I think that says it all.**
REY LEJANO: [CHUCKLES] Yes.
**CRAIG BOX: Now, I understand that the theme comes from a part of the [SIG Release charter](https://github.com/kubernetes/community/blob/master/sig-release/charter.md)?**
REY LEJANO: Yes. There's a line in the SIG Release charter, "ensure there is a consistent group of community members in place to support the release process across time." With the release team, we have new shadows that join every single release cycle. With this, we're growing with this community. We're growing the release team members. We're growing SIG Release. We're growing the Kubernetes community itself. For a lot of people, this is their first time contributing to open source, so that's why I say it's their new open source frontier.
**CRAIG BOX: And the logo is obviously very Star Trek-inspired. It sort of surprised me that it took that long for someone to go this route.**
REY LEJANO: I was very surprised as well. I had to relearn Adobe Illustrator to create the logo.
**CRAIG BOX: This your own work, is it?**
REY LEJANO: This is my own work.
**CRAIG BOX: It's very nice.**
REY LEJANO: Thank you very much. Funny, the galaxy actually took me the longest time versus the ship. Took me a few days to get that correct. I'm always fine-tuning it, so there might be a final change when this is actually released.
**CRAIG BOX: No frontier is ever truly final.**
REY LEJANO: True, very true.
**CRAIG BOX: Moving now from the theme of the release to the substance, perhaps, what is new in 1.23?**
REY LEJANO: We have 47 enhancements. I'm going to run through most of the stable ones, if not all of them, some of the key Beta ones, and a few of the Alpha enhancements for 1.23.
One of the key enhancements is [dual-stack IPv4/IPv6](https://github.com/kubernetes/enhancements/issues/563), which went GA in 1.23.
Some background info: dual-stack was introduced as Alpha in 1.15. You probably saw a keynote at KubeCon 2019. Back then, the way dual-stack worked was that you needed two services — you needed a service per IP family. You would need a service for IPv4 and a service for IPv6. It was refactored in 1.20. In 1.21, it was in Beta; clusters were enabled to be dual-stack by default.
And then in 1.23 we did remove the IPv6 dual-stack feature flag. It's not mandatory to use dual-stack. It's actually not "default" still. The pods, the services still default to single-stack. There are some requirements to be able to use dual-stack. The nodes have to be routable on IPv4 and IPv6 network interfaces. You need a CNI plugin that supports dual-stack. The pods themselves have to be configured to be dual-stack. And the services need the ipFamilyPolicy field to specify prefer dual-stack, or require dual-stack.
**CRAIG BOX: This sounds like there's an implication in this that v4 is still required. Do you see a world where we can actually move to v6-only clusters?**
REY LEJANO: I think we'll be talking about IPv4 and IPv6 for many, many years to come. I remember a long time ago, they kept saying "it's going to be all IPv6", and that was decades ago.
**CRAIG BOX: I think I may have mentioned on the show before, but there was [a meeting in London that Vint Cerf attended](https://www.youtube.com/watch?v=AEaJtZVimqs), and he gave a public presentation at the time to say, now is the time of v6. And that was 10 years ago at least. It's still not the time of v6, and my desktop still doesn't have Linux on it. One day.**
REY LEJANO: [LAUGHS] In my opinion, that's one of the big key features that went stable for 1.23.
One of the other highlights of 1.23 is [pod security admission going to Beta](/blog/2021/12/09/pod-security-admission-beta/). I know this feature is going to Beta, but I highlight this because as some people might know, PodSecurityPolicy, which was deprecated in 1.21, is targeted to be removed in 1.25. Pod security admission replaces pod security policy. It's an admission controller. It evaluates the pods against a predefined set of pod security standards to either admit or deny the pod for running.
There's three levels of pod security standards. Privileged, that's totally open. Baseline, known privileges escalations are minimized. Or Restricted, which is hardened. And you could set pod security standards either to run in three modes, which is enforce: reject any pods that are in violation; to audit: pods are allowed to be created, but the violations are recorded; or warn: it will send a warning message to the user, and the pod is allowed.
**CRAIG BOX: You mentioned there that PodSecurityPolicy is due to be deprecated in two releases' time. Are we lining up these features so that pod security admission will be GA at that time?**
REY LEJANO: Yes. Absolutely. I'll talk about that for another feature in a little bit as well. There's also another feature that went to GA. It was an API that went to GA, and therefore the Beta API is now deprecated. I'll talk about that a little bit.
**CRAIG BOX: All right. Let's talk about what's next on the list.**
REY LEJANO: Let's move on to more stable enhancements. One is the [TTL controller](https://github.com/kubernetes/enhancements/issues/592). This cleans up jobs and pods after the jobs are finished. There is a TTL timer that starts when the job or pod is finished. This TTL controller watches all the jobs, and ttlSecondsAfterFinished needs to be set. The controller will see if the ttlSecondsAfterFinished, combined with the last transition time, if it's greater than now. If it is, then it will delete the job and the pods of that job.
**CRAIG BOX: Loosely, it could be called a garbage collector?**
REY LEJANO: Yes. Garbage collector for pods and jobs, or jobs and pods.
**CRAIG BOX: If Kubernetes is truly becoming a programming language, it of course has to have a garbage collector implemented.**
REY LEJANO: Yeah. There's another one, too, coming in Alpha. [CHUCKLES]
**CRAIG BOX: Tell me about that.**
REY LEJANO: That one is coming in in Alpha. It's actually one of my favorite features, because there's only a few that I'm going to highlight today. [PVCs for StafeulSet will be cleaned up](https://github.com/kubernetes/enhancements/issues/1847). It will auto-delete PVCs created by StatefulSets, when you delete that StatefulSet.
**CRAIG BOX: What's next on our tour of stable features?**
REY LEJANO: Next one is, [skip volume ownership change goes to stable](https://github.com/kubernetes/enhancements/issues/695). This is from SIG Storage. There are times when you're running a stateful application, like many databases, they're sensitive to permission bits changing underneath. Currently, when a volume is bind mounted inside the container, the permissions of that volume will change recursively. It might take a really long time.
Now, there's a field, the fsGroupChangePolicy, which allows you, as a user, to tell Kubernetes how you want the permission and ownership change for that volume to happen. You can set it to always, to always change permissions, or just on mismatch, to only do it when the permission ownership changes at the top level is different from what is expected.
**CRAIG BOX: It does feel like a lot of these enhancements came from a very particular use case where someone said, "hey, this didn't work for me and I've plumbed in a feature that works with exactly the thing I need to have".**
REY LEJANO: Absolutely. People create issues for these, then create Kubernetes enhancement proposals, and then get targeted for releases.
**CRAIG BOX: Another GA feature in this release — ephemeral volumes.**
REY LEJANO: We've always been able to use empty dir for ephemeral volumes, but now we could actually have [ephemeral inline volumes](https://github.com/kubernetes/enhancements/issues/1698), meaning that you could take your standard CSI driver and be able to use ephemeral volumes with it.
**CRAIG BOX: And, a long time coming, [CronJobs](https://github.com/kubernetes/enhancements/issues/19).**
REY LEJANO: CronJobs is a funny one, because it was stable before 1.23. For 1.23, it was still tracked,but it was just cleaning up some of the old controller. With CronJobs, there's a v2 controller. What was cleaned up in 1.23 is just the old v1 controller.
**CRAIG BOX: Were there any other duplications or major cleanups of note in this release?**
REY LEJANO: Yeah. There were a few you might see in the major themes. One's a little tricky, around FlexVolumes. This is one of the efforts from SIG Storage. They have an effort to migrate in-tree plugins to CSI drivers. This is a little tricky, because FlexVolumes were actually deprecated in November 2020. We're [formally announcing it in 1.23](https://github.com/kubernetes/community/blob/master/sig-storage/volume-plugin-faq.md#kubernetes-volume-plugin-faq-for-storage-vendors).
**CRAIG BOX: FlexVolumes, in my mind, predate CSI as a concept. So it's about time to get rid of them.**
REY LEJANO: Yes, it is. There's another deprecation, just some [klog specific flags](https://kubernetes.io/docs/concepts/cluster-administration/system-logs/#klog), but other than that, there are no other big deprecations in 1.23.
**CRAIG BOX: The buzzword of the last KubeCon, and in some ways the theme of the last 12 months, has been secure software supply chain. What work is Kubernetes doing to improve in this area?**
REY LEJANO: For 1.23, Kubernetes is now SLSA compliant at Level 1, which means that provenance attestation files that describe the staging and release phases of the release process are satisfactory for the SLSA framework.
**CRAIG BOX: What needs to happen to step up to further levels?**
REY LEJANO: Level 1 means a few things — that the build is scripted; that the provenance is available, meaning that the artifacts are verified and they're handed over from one phase to the next; and describes how the artifact is produced. Level 2 means that the source is version-controlled, which it is, provenance is authenticated, provenance is service-generated, and there is a build service. There are four levels of SLSA compliance.
**CRAIG BOX: It does seem like the levels were largely influenced by what it takes to build a big, secure project like this. It doesn't seem like it will take a lot of extra work to move up to verifiable provenance, for example. There's probably just a few lines of script required to meet many of those requirements.**
REY LEJANO: Absolutely. I feel like we're almost there; we'll see what will come out of 1.24. And I do want to give a big shout-out to SIG Release and Release Engineering, primarily to Adolfo García Veytia, who is aka Puerco on GitHub and on Slack. He's been driving this forward.
**CRAIG BOX: You've mentioned some APIs that are being graduated in time to replace their deprecated version. Tell me about the new HPA API.**
REY LEJANO: The [horizontal pod autoscaler v2 API](https://github.com/kubernetes/enhancements/issues/2702), is now stable, which means that the v2beta2 API is deprecated. Just for everyone's knowledge, the v1 API is not being deprecated. The difference is that v2 adds support for multiple and custom metrics to be used for HPA.
**CRAIG BOX: There's also now a facility to validate my CRDs with an expression language.**
REY LEJANO: Yeah. You can use the [Common Expression Language, or CEL](https://github.com/google/cel-spec), to validate your CRDs, so you no longer need to use webhooks. This also makes the CRDs more self-contained and declarative, because the rules are now kept within the CRD object definition.
**CRAIG BOX: What new features, perhaps coming in Alpha or Beta, have taken your interest?**
REY LEJANO: Aside from pod security policies, I really love [ephemeral containers](https://github.com/kubernetes/enhancements/issues/277) supporting kubectl debug. It launches an ephemeral container and a running pod, shares those pod namespaces, and you can do all your troubleshooting with just running kubectl debug.
**CRAIG BOX: There's also been some interesting changes in the way that events are handled with kubectl.**
REY LEJANO: Yeah. kubectl events has always had some issues, like how things weren't sorted. [kubectl events improved](https://github.com/kubernetes/enhancements/issues/1440) that so now you can do `--watch`, and it will also sort with the `--watch` option as well. That is something new. You can actually combine fields and custom columns. And also, you can list events in the timeline with doing the last N number of minutes. And you can also sort events using other criteria as well.
**CRAIG BOX: You are a field engineer at SUSE. Are there any things that are coming in that your individual customers that you deal with are looking out for?**
REY LEJANO: More of what I look out for to help the customers.
**CRAIG BOX: Right.**
REY LEJANO: I really love kubectl events. Really love the PVCs being cleaned up with StatefulSets. Most of it's for selfish reasons that it will improve troubleshooting efforts. [CHUCKLES]
**CRAIG BOX: I have always hoped that a release team lead would say to me, "yes, I have selfish reasons. And I finally got something I wanted in."**
REY LEJANO: [LAUGHS]
**CRAIG BOX: Perhaps I should run to be release team lead, just so I can finally get init containers fixed once and for all.**
REY LEJANO: Oh, init containers, I've been looking for that for a while. I've actually created animated GIFs on how init containers will be run with that Kubernetes enhancement proposal, but it's halted currently.
**CRAIG BOX: One day.**
REY LEJANO: One day. Maybe I shouldn't stay halted.
**CRAIG BOX: You mentioned there are obviously the things you look out for. Are there any things that are coming down the line, perhaps Alpha features or maybe even just proposals you've seen lately, that you're personally really looking forward to seeing which way they go?**
REY LEJANO: Yeah. Oone is a very interesting one, it affects the whole community, so it's not just for personal reasons. As you may have known, Dockershim is deprecated. And we did release a blog that it will be removed in 1.24.
**CRAIG BOX: Scared a bunch of people.**
REY LEJANO: Scared a bunch of people. From a survey, we saw that a lot of people are still using Docker and Dockershim. One of the enhancements for 1.23 is, [kubelet CRI goes to Beta](https://github.com/kubernetes/enhancements/issues/2040). This promotes the CRI API, which is required. This had to be in Beta for Dockershim to be removed in 1.24.
**CRAIG BOX: Now, in the last release team lead interview, [we spoke with Savitha Raghunathan](https://kubernetespodcast.com/episode/157-kubernetes-1.22/), and she talked about what she would advise you as her successor. It was to look out for the mental health of the team members. How were you able to take that advice on board?**
REY LEJANO: That was great advice from Savitha. A few things I've made note of with each release team meeting. After each release team meeting, I stop the recording, because we do record all the meetings and post them on YouTube. And I open up the floor to anyone who wants to say anything that's not recorded, that's not going to be on the agenda. Also, I tell people not to work on weekends. I broke this rule once, but other than that, I told people it could wait. Just be mindful of your mental health.
**CRAIG BOX: It's just been announced that [James Laverack from Jetstack](https://twitter.com/JamesLaverack/status/1466834312993644551) will be the release team lead for 1.24. James and I shared an interesting Mexican dinner at the last KubeCon in San Diego.**
REY LEJANO: Oh, nice. I didn't know you knew James.
**CRAIG BOX: The British tech scene. We're a very small world. What will your advice to James be?**
REY LEJANO: What I would tell James for 1.24 is use teachable moments in the release team meetings. When you're a shadow for the first time, it's very daunting. It's very difficult, because you don't know the repos. You don't know the release process. Everyone around you seems like they know the release process, and very familiar with what the release process is. But as a first-time shadow, you don't know all the vernacular for the community. I just advise to use teachable moments. Take a few minutes in the release team meetings to make it a little easier for new shadows to ramp up and to be familiar with the release process.
**CRAIG BOX: Has there been major evolution in the process in the time that you've been involved? Or do you think that it's effectively doing what it needs to do?**
REY LEJANO: It's always evolving. I remember my first time in release notes, 1.18, we said that our goal was to automate and program our way out so that we don't have a release notes team anymore. That's changed [CHUCKLES] quite a bit. Although there's been significant advancements in the release notes process by Adolfo and also James, they've created a subcommand in krel to generate release notes.
But nowadays, all their release notes are richer. Still not there at the automation process yet. Every release cycle, there is something a little bit different. For this release cycle, we had a production readiness review deadline. It was a soft deadline. A production readiness review is a review by several people in the community. It's actually been required since 1.21, and it ensures that the enhancements are observable, scalable, supportable, and it's safe to operate in production, and could also be disabled or rolled back. In 1.23, we had a deadline to have the production readiness review completed by a specific date.
**CRAIG BOX: How have you found the change of schedule to three releases per year rather than four?**
REY LEJANO: Moving to three releases a year from four, in my opinion, has been an improvement, because we support the last three releases, and now we can actually support the last releases in a calendar year instead of having 9 months out of 12 months of the year.
**CRAIG BOX: The next event on the calendar is a [Kubernetes contributor celebration](https://www.kubernetes.dev/events/kcc2021/) starting next Monday. What can we expect from that event?**
REY LEJANO: This is our second time running this virtual event. It's a virtual celebration to recognize the whole community and all of our accomplishments of the year, and also contributors. There's a number of events during this week of celebration. It starts the week of December 13.
There's events like the Kubernetes Contributor Awards, where SIGs honor and recognize the hard work of the community and contributors. There's also a DevOps party game as well. There is a cloud native bake-off. I do highly suggest people to go to [kubernetes.dev/celebration](https://www.kubernetes.dev/events/past-events/2021/kcc2021/) to learn more.
**CRAIG BOX: How exactly does one judge a virtual bake-off?**
REY LEJANO: That I don't know. [CHUCKLES]
**CRAIG BOX: I tasted my scones. I think they're the best. I rate them 10 out of 10.**
REY LEJANO: Yeah. That is very difficult to do virtually. I would have to say, probably what the dish is, how closely it is tied with Kubernetes or open source or to CNCF. There's a few judges. I know Josh Berkus and Rin Oliver are a few of the judges running the bake-off.
**CRAIG BOX: Yes. We spoke with Josh about his love of the kitchen, and so he seems like a perfect fit for that role.**
REY LEJANO: He is.
**CRAIG BOX: Finally, your wife and yourself are expecting your first child in January. Have you had a production readiness review for that?**
REY LEJANO: I think we failed that review. [CHUCKLES]
**CRAIG BOX: There's still time.**
REY LEJANO: We are working on refactoring. We're going to refactor a little bit in December, and `--apply` again.
---
_[Rey Lejano](https://twitter.com/reylejano) is a field engineer at SUSE, by way of Rancher Labs, and was the release team lead for Kubernetes 1.23. He is now also a co-chair for SIG Docs. His son Liam is now 3 and a half months old._
_You can find the [Kubernetes Podcast from Google](http://www.kubernetespodcast.com/) at [@KubernetesPod](https://twitter.com/KubernetesPod) on Twitter, and you can [subscribe](https://kubernetespodcast.com/subscribe/) so you never miss an episode._
@@ -0,0 +1,25 @@
---
layout: blog
title: "Dockershim: The Historical Context"
date: 2022-05-03
slug: dockershim-historical-context
---
**Author:** Kat Cosgrove
Dockershim has been removed as of Kubernetes v1.24, and this is a positive move for the project. However, context is important for fully understanding something, be it socially or in software development, and this deserves a more in-depth review. Alongside the dockershim removal in Kubernetes v1.24, weve seen some confusion (sometimes at a panic level) and dissatisfaction with this decision in the community, largely due to a lack of context around this removal. The decision to deprecate and eventually remove dockershim from Kubernetes was not made quickly or lightly. Still, its been in the works for so long that many of todays users are newer than that decision, and certainly newer than the choices that led to the dockershim being necessary in the first place.
So what is the dockershim, and why is it going away?
In the early days of Kubernetes, we only supported one container runtime. That runtime was Docker Engine. Back then, there werent really a lot of other options out there and Docker was the dominant tool for working with containers, so this was not a controversial choice. Eventually, we started adding more container runtimes, like rkt and hypernetes, and it became clear that Kubernetes users want a choice of runtimes working best for them. So Kubernetes needed a way to allow cluster operators the flexibility to use whatever runtime they choose.
The [Container Runtime Interface](/blog/2016/12/container-runtime-interface-cri-in-kubernetes/) (CRI) was released to allow that flexibility. The introduction of CRI was great for the project and users alike, but it did introduce a problem: Docker Engines use as a container runtime predates CRI, and Docker Engine is not CRI-compatible. To solve this issue, a small software shim (dockershim) was introduced as part of the kubelet component specifically to fill in the gaps between Docker Engine and CRI, allowing cluster operators to continue using Docker Engine as their container runtime largely uninterrupted.
However, this little software shim was never intended to be a permanent solution. Over the course of years, its existence has introduced a lot of unnecessary complexity to the kubelet itself. Some integrations are inconsistently implemented for Docker because of this shim, resulting in an increased burden on maintainers, and maintaining vendor-specific code is not in line with our open source philosophy. To reduce this maintenance burden and move towards a more collaborative community in support of open standards, [KEP-2221 was introduced](https://github.com/kubernetes/enhancements/tree/master/keps/sig-node/2221-remove-dockershim), proposing the removal of the dockershim. With the release of Kubernetes v1.20, the deprecation was official.
We didnt do a great job communicating this, and unfortunately, the deprecation announcement led to some panic within the community. Confusion around what this meant for Docker as a company, if container images built by Docker would still run, and what Docker Engine actually is led to a conflagration on social media. This was our fault; we should have more clearly communicated what was happening and why at the time. To combat this, we released [a blog](/blog/2020/12/02/dont-panic-kubernetes-and-docker/) and [accompanying FAQ](/blog/2020/12/02/dockershim-faq/) to allay the communitys fears and correct some misconceptions about what Docker is and how containers work within Kubernetes. As a result of the communitys concerns, Docker and Mirantis jointly agreed to continue supporting the dockershim code in the form of [cri-dockerd](https://www.mirantis.com/blog/the-future-of-dockershim-is-cri-dockerd/), allowing you to continue using Docker Engine as your container runtime if need be. For the interest of users who want to try other runtimes, like containerd or cri-o, [migration documentation was written](/docs/tasks/administer-cluster/migrating-from-dockershim/change-runtime-containerd/).
We later [surveyed the community](https://kubernetes.io/blog/2021/11/12/are-you-ready-for-dockershim-removal/) and [discovered that there are still many users with questions and concerns](/blog/2022/01/07/kubernetes-is-moving-on-from-dockershim). In response, Kubernetes maintainers and the CNCF committed to addressing these concerns by extending documentation and other programs. In fact, this blog post is a part of this program. With so many end users successfully migrated to other runtimes, and improved documentation, we believe that everyone has a paved way to migration now.
Docker is not going away, either as a tool or as a company. Its an important part of the cloud native community and the history of the Kubernetes project. We wouldnt be where we are without them. That said, removing dockershim from kubelet is ultimately good for the community, the ecosystem, the project, and open source at large. This is an opportunity for all of us to come together to support open standards, and were glad to be doing so with the help of Docker and the community.
@@ -0,0 +1,79 @@
---
layout: blog
title: "Storage Capacity Tracking reaches GA in Kubernetes 1.24"
date: 2022-05-06
slug: storage-capacity-ga
---
**Authors:** Patrick Ohly (Intel)
The v1.24 release of Kubernetes brings [storage capacity](/docs/concepts/storage/storage-capacity/)
tracking as a generally available feature.
## Problems we have solved
As explained in more detail in the [previous blog post about this
feature](/blog/2021/04/14/local-storage-features-go-beta/), storage capacity
tracking allows a CSI driver to publish information about remaining
capacity. The kube-scheduler then uses that information to pick suitable nodes
for a Pod when that Pod has volumes that still need to be provisioned.
Without this information, a Pod may get stuck without ever being scheduled onto
a suitable node because kube-scheduler has to choose blindly and always ends up
picking a node for which the volume cannot be provisioned because the
underlying storage system managed by the CSI driver does not have sufficient
capacity left.
Because CSI drivers publish storage capacity information that gets used at a
later time when it might not be up-to-date anymore, it can still happen that a
node is picked that doesn't work out after all. Volume provisioning recovers
from that by informing the scheduler that it needs to try again with a
different node.
[Load
tests](https://github.com/kubernetes-csi/csi-driver-host-path/blob/master/docs/storage-capacity-tracking.md)
that were done again for promotion to GA confirmed that all storage in a
cluster can be consumed by Pods with storage capacity tracking whereas Pods got
stuck without it.
## Problems we have *not* solved
Recovery from a failed volume provisioning attempt has one known limitation: if a Pod
uses two volumes and only one of them could be provisioned, then all future
scheduling decisions are limited by the already provisioned volume. If that
volume is local to a node and the other volume cannot be provisioned there, the
Pod is stuck. This problem pre-dates storage capacity tracking and while the
additional information makes it less likely to occur, it cannot be avoided in
all cases, except of course by only using one volume per Pod.
An idea for solving this was proposed in a [KEP
draft](https://github.com/kubernetes/enhancements/pull/1703): volumes that were
provisioned and haven't been used yet cannot have any valuable data and
therefore could be freed and provisioned again elsewhere. SIG Storage is
looking for interested developers who want to continue working on this.
Also not solved is support in Cluster Autoscaler for Pods with volumes. For CSI
drivers with storage capacity tracking, a prototype was developed and discussed
in [a PR](https://github.com/kubernetes/autoscaler/pull/3887). It was meant to
work with arbitrary CSI drivers, but that flexibility made it hard to configure
and slowed down scale up operations: because autoscaler was unable to simulate
volume provisioning, it only scaled the cluster by one node at a time, which
was seen as insufficient.
Therefore that PR was not merged and a different approach with tighter coupling
between autoscaler and CSI driver will be needed. For this a better
understanding is needed about which local storage CSI drivers are used in
combination with cluster autoscaling. Should this lead to a new KEP, then users
will have to try out an implementation in practice before it can move to beta
or GA. So please reach out to SIG Storage if you have an interest in this
topic.
## Acknowledgements
Thanks a lot to the members of the community who have contributed to this
feature or given feedback including members of [SIG
Scheduling](https://github.com/kubernetes/community/tree/master/sig-scheduling),
[SIG
Autoscaling](https://github.com/kubernetes/community/tree/master/sig-autoscaling),
and of course [SIG
Storage](https://github.com/kubernetes/community/tree/master/sig-storage)!
@@ -0,0 +1,162 @@
---
layout: blog
title: "Kubernetes 1.24: Volume Populators Graduate to Beta"
date: 2022-05-16
slug: volume-populators-beta
---
**Author:**
Ben Swartzlander (NetApp)
The volume populators feature is now two releases old and entering beta! The `AnyVolumeDataSouce` feature
gate defaults to enabled in Kubernetes v1.24, which means that users can specify any custom resource
as the data source of a PVC.
An [earlier blog article](/blog/2021/08/30-volume-populators-redesigned/) detailed how the
volume populators feature works. In short, a cluster administrator can install a CRD and
associated populator controller in the cluster, and any user who can create instances of
the CR can create pre-populated volumes by taking advantage of the populator.
Multiple populators can be installed side by side for different purposes. The SIG storage
community is already seeing some implementations in public, and more prototypes should
appear soon.
Cluster administrations are **strongly encouraged** to install the
volume-data-source-validator controller and associated `VolumePopulator` CRD before installing
any populators so that users can get feedback about invalid PVC data sources.
## New Features
The [lib-volume-populator](https://github.com/kubernetes-csi/lib-volume-populator) library
on which populators are built now includes metrics to help operators monitor and detect
problems. This library is now beta and latest release is v1.0.1.
The [volume data source validator](https://github.com/kubernetes-csi/volume-data-source-validator)
controller also has metrics support added, and is in beta. The `VolumePopulator` CRD is
beta and the latest release is v1.0.1.
## Trying it out
To see how this works, you can install the sample "hello" populator and try it
out.
First install the volume-data-source-validator controller.
```shell
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/volume-data-source-validator/v1.0.1/client/config/crd/populator.storage.k8s.io_volumepopulators.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/volume-data-source-validator/v1.0.1/deploy/kubernetes/rbac-data-source-validator.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/volume-data-source-validator/v1.0.1/deploy/kubernetes/setup-data-source-validator.yaml
```
Next install the example populator.
```shell
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/lib-volume-populator/v1.0.1/example/hello-populator/crd.yaml
kubectl apply -f https://raw.githubusercontent.com/kubernetes-csi/lib-volume-populator/87a47467b86052819e9ad13d15036d65b9a32fbb/example/hello-populator/deploy.yaml
```
Your cluster now has a new CustomResourceDefinition that provides a test API named Hello.
Create an instance of the `Hello` custom resource, with some text:
```yaml
apiVersion: hello.example.com/v1alpha1
kind: Hello
metadata:
name: example-hello
spec:
fileName: example.txt
fileContents: Hello, world!
```
Create a PVC that refers to that CR as its data source.
```yaml
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: example-pvc
spec:
accessModes:
- ReadWriteOnce
resources:
requests:
storage: 10Mi
dataSourceRef:
apiGroup: hello.example.com
kind: Hello
name: example-hello
volumeMode: Filesystem
```
Next, run a Job that reads the file in the PVC.
```yaml
apiVersion: batch/v1
kind: Job
metadata:
name: example-job
spec:
template:
spec:
containers:
- name: example-container
image: busybox:latest
command:
- cat
- /mnt/example.txt
volumeMounts:
- name: vol
mountPath: /mnt
restartPolicy: Never
volumes:
- name: vol
persistentVolumeClaim:
claimName: example-pvc
```
Wait for the job to complete (including all of its dependencies).
```shell
kubectl wait --for=condition=Complete job/example-job
```
And last examine the log from the job.
```shell
kubectl logs job/example-job
```
The output should be:
```terminal
Hello, world!
```
Note that the volume already contained a text file with the string contents from
the CR. This is only the simplest example. Actual populators can set up the volume
to contain arbitrary contents.
## How to write your own volume populator
Developers interested in writing new poplators are encouraged to use the
[lib-volume-populator](https://github.com/kubernetes-csi/lib-volume-populator) library
and to only supply a small controller wrapper around the library, and a pod image
capable of attaching to volumes and writing the appropriate data to the volume.
Individual populators can be extremely generic such that they work with every type
of PVC, or they can do vendor specific things to rapidly fill a volume with data
if the volume was provisioned by a specific CSI driver from the same vendor, for
example, by communicating directly with the storage for that volume.
## How can I learn more?
The enhancement proposal,
[Volume Populators](https://github.com/kubernetes/enhancements/tree/master/keps/sig-storage/1495-volume-populators), includes lots of detail about the history and technical implementation
of this feature.
[Volume populators and data sources](/docs/concepts/storage/persistent-volumes/#volume-populators-and-data-sources), within the documentation topic about persistent volumes,
explains how to use this feature in your cluster.
Please get involved by joining the Kubernetes storage SIG to help us enhance this
feature. There are a lot of good ideas already and we'd be thrilled to have more!
+2 -2
View File
@@ -20,7 +20,7 @@ case_study_details:
<h2>Solution</h2>
<p>In 2016, the company began moving their code from Heroku to <a href="https://www.docker.com/">Docker</a> containers running on <a href="https://cloud.google.com/kubernetes-engine/">Google Kubernetes Engine</a>, orchestrated by <a href="http://kubernetes.io/">Kubernetes</a> and monitored with <a href="https://prometheus.io/">Prometheus</a>.</p>
<p>In 2016, the company began moving their code from Heroku to containers running on <a href="https://cloud.google.com/kubernetes-engine/">Google Kubernetes Engine</a>, orchestrated by <a href="http://kubernetes.io/">Kubernetes</a> and monitored with <a href="https://prometheus.io/">Prometheus</a>.</p>
<h2>Impact</h2>
@@ -42,7 +42,7 @@ With the speed befitting a startup, Pear Deck delivered its first prototype to c
<p>On top of that, many of Pear Deck's customers are behind government firewalls and connect through Firebase, not Pear Deck's servers, making troubleshooting even more difficult.</p>
<p>The team began looking around for another solution, and finally decided in early 2016 to start moving the app from Heroku to <a href="https://www.docker.com/">Docker</a> containers running on <a href="https://cloud.google.com/kubernetes-engine/">Google Kubernetes Engine</a>, orchestrated by <a href="http://kubernetes.io/">Kubernetes</a> and monitored with <a href="https://prometheus.io/">Prometheus</a>.</p>
<p>The team began looking around for another solution, and finally decided in early 2016 to start moving the app from Heroku to containers running on <a href="https://cloud.google.com/kubernetes-engine/">Google Kubernetes Engine</a>, orchestrated by <a href="http://kubernetes.io/">Kubernetes</a> and monitored with <a href="https://prometheus.io/">Prometheus</a>.</p>
{{< case-studies/quote image="/images/case-studies/peardeck/banner1.jpg" >}}
"When it became clear that Google Kubernetes Engine was going to have a lot of support from Google and be a fully-managed Kubernetes platform, it seemed very obvious to us that was the way to go," says Eynon-Lynch.
+1 -1
View File
@@ -70,7 +70,7 @@ If you haven't set foot in a school in awhile, you might be surprised by what yo
<p>Recently, the team launched a new single sign-on solution for use in an internal application. "Due to the resource based architecture of the Kubernetes platform, we were able to bring that application into an entirely new production environment in less than a day, most of that time used for testing after applying the already well-known resource definitions from staging to the new environment," says van den Bosch. "On a traditional VM this would have likely cost a day or two, and then probably a few weeks to iron out the kinks in our provisioning scripts as we apply updates."</p>
<p>Legacy applications are also being moved to Kubernetes. Not long ago, the team needed to set up a Java-based application for compiling and running a frontend. "On a traditional VM, it would have taken quite a bit of time to set it up and keep it up to date, not to mention maintenance for that setup down the line," says van den Bosch. Instead, it took less than half a day to Dockerize it and get it running on Kubernetes. "It was much easier, and we were able to save costs too because we didn't have to spin up new VMs specially for it."</p>
<p>Legacy applications are also being moved to Kubernetes. Not long ago, the team needed to set up a Java-based application for compiling and running a frontend. "On a traditional VM, it would have taken quite a bit of time to set it up and keep it up to date, not to mention maintenance for that setup down the line," says van den Bosch. Instead, it took less than half a day to containerize it and get it running on Kubernetes. "It was much easier, and we were able to save costs too because we didn't have to spin up new VMs specially for it."</p>
{{< case-studies/quote author="VICTOR VAN DEN BOSCH, SENIOR DEVOPS ENGINEER, PROWISE" >}}
"We're really trying to deliver integrated solutions with our hardware and software and making it as easy as possible for users to use and collaborate from different places," says van den Bosch. And, says Haalstra, "We cannot do it without Kubernetes."
@@ -46,7 +46,7 @@ Since it was started in a dorm room in 2003, Squarespace has made it simple for
After experimenting with another container orchestration platform and "breaking it in very painful ways," Lynch says, the team began experimenting with Kubernetes in mid-2016 and found that it "answered all the questions that we had."
{{< /case-studies/quote >}}
<p>Within a couple months, they had a stable cluster for their internal use, and began rolling out Kubernetes for production. They also added Zipkin and CNCF projects <a href="https://prometheus.io/">Prometheus</a> and <a href="https://www.fluentd.org/">fluentd</a> to their cloud native stack. "We switched to Kubernetes, a new world, and we revamped all our other tooling as well," says Lynch. "It allowed us to streamline our process, so we can now easily create an entire microservice project from templates, generate the code and deployment pipeline for that, generate the Docker file, and then immediately just ship a workable, deployable project to Kubernetes." Deployments across Dev/QA/Stage/Prod were also "simplified drastically," Lynch adds. "Now there is little configuration variation."</p>
<p>Within a couple months, they had a stable cluster for their internal use, and began rolling out Kubernetes for production. They also added Zipkin and CNCF projects <a href="https://prometheus.io/">Prometheus</a> and <a href="https://www.fluentd.org/">fluentd</a> to their cloud native stack. "We switched to Kubernetes, a new world, and we revamped all our other tooling as well," says Lynch. "It allowed us to streamline our process, so we can now easily create an entire microservice project from templates, generate the code and deployment pipeline for that, generate the Dockerfile, and then immediately just ship a workable, deployable project to Kubernetes." Deployments across Dev/QA/Stage/Prod were also "simplified drastically," Lynch adds. "Now there is little configuration variation."</p>
<p>And the whole process takes only five minutes, an almost 85% reduction in time compared to their VM deployment. "From end to end that probably took half an hour, and that's not accounting for the fact that an infrastructure engineer would be responsible for doing that, so there's some business delay in there as well."</p>
+3 -3
View File
@@ -58,9 +58,9 @@ How many people does it take to turn on a light bulb?
<p>In addition, Wink had other requirements: horizontal scalability, the ability to encrypt everything quickly, connections that could be easily brought back up if something went wrong. "Looking at this whole structure we started, we decided to make a secure socket-based service," says Klein. "We've always used, I would say, some sort of clustering technology to deploy our services and so the decision we came to was, this thing is going to be containerized, running on Docker."</p>
<p>At the time just over two years ago Docker wasn't yet widely used, but as Klein points out, "it was certainly understood by the people who were on the frontier of technology. We started looking at potential technologies that existed. One of the limiting factors was that we needed to deploy multi-port non-http/https services. It wasn't really appropriate for some of the early cluster technology. We liked the project a lot and we ended up using it on other stuff for a while, but initially it was too targeted toward http workloads."</p>
<p>In 2015, Docker wasn't yet widely used, but as Klein points out, "it was certainly understood by the people who were on the frontier of technology. We started looking at potential technologies that existed. One of the limiting factors was that we needed to deploy multi-port non-http/https services. It wasn't really appropriate for some of the early cluster technology. We liked the project a lot and we ended up using it on other stuff for a while, but initially it was too targeted toward http workloads."</p>
<p>Once Wink's backend engineering team decided on a Dockerized workload, they had to make decisions about the OS and the container orchestration platform. "Obviously you can't just start the containers and hope everything goes well," Klein says with a laugh. "You need to have a system that is helpful [in order] to manage where the workloads are being distributed out to. And when the container inevitably dies or something like that, to restart it, you have a load balancer. All sorts of housekeeping work is needed to have a robust infrastructure."</p>
<p>Once Wink's backend engineering team decided on a containerized workload, they had to make decisions about the OS and the container orchestration platform. "Obviously you can't just start the containers and hope everything goes well," Klein says with a laugh. "You need to have a system that is helpful [in order] to manage where the workloads are being distributed out to. And when the container inevitably dies or something like that, to restart it, you have a load balancer. All sorts of housekeeping work is needed to have a robust infrastructure."</p>
{{< case-studies/quote image="/images/case-studies/wink/banner4.jpg" >}}
"Obviously you can't just start the containers and hope everything goes well," Klein says with a laugh. "You need to have a system that is helpful [in order] to manage where the workloads are being distributed out to. And when the container inevitably dies or something like that, to restart it, you have a load balancer. All sorts of housekeeping work is needed to have a robust infrastructure."
@@ -68,7 +68,7 @@ How many people does it take to turn on a light bulb?
<p>Wink considered building directly on a general purpose Linux distro like Ubuntu (which would have required installing tools to run a containerized workload) and cluster management systems like Mesos (which was targeted toward enterprises with larger teams/workloads), but ultimately set their sights on CoreOS Container Linux. "A container-optimized Linux distribution system was exactly what we needed," he says. "We didn't have to futz around with trying to take something like a Linux distro and install everything. It's got a built-in container orchestration system, which is Fleet, and an easy-to-use API. It's not as feature-rich as some of the heavier solutions, but we realized that, at that moment, it was exactly what we needed."</p>
<p>Wink's hub (along with a revamped app) was introduced in July 2014 with a short-term deployment, and within the first month, they had moved the service to the Dockerized CoreOS deployment. Since then, they've moved almost every other piece of their infrastructure from third-party cloud-to-cloud integrations to their customer service and payment portals onto CoreOS Container Linux clusters.</p>
<p>Wink's hub (along with a revamped app) was introduced in July 2014 with a short-term deployment, and within the first month, they had moved the service to the containerized CoreOS deployment. Since then, they've moved almost every other piece of their infrastructure from third-party cloud-to-cloud integrations to their customer service and payment portals onto CoreOS Container Linux clusters.</p>
<p>Using this setup did require some customization. "Fleet is really nice as a basic container orchestration system, but it doesn't take care of routing, sharing configurations, secrets, et cetera, among instances of a service," Klein says. "All of those layers of functionality can be implemented, of course, but if you don't want to spend a lot of time writing unit files manually which of course nobody does you need to create a tool to automate some of that, which we did."</p>
+183 -257
View File
@@ -1,257 +1,183 @@
---
title: Community
layout: basic
cid: community
---
<div class="newcommunitywrapper">
<div class="banner1">
<img src="/images/community/kubernetes-community-final-02.jpg" alt="Kubernetes Conference Gallery" style="width:100%;padding-left:0px" class="desktop">
<img src="/images/community/kubernetes-community-02-mobile.jpg" alt="Kubernetes Conference Gallery" style="width:100%;padding-left:0px" class="mobile">
</div>
<div class="intro">
<br class="mobile">
<p>The Kubernetes community -- users, contributors, and the culture we've built together -- is one of the biggest reasons for the meteoric rise of this open source project. Our culture and values continue to grow and change as the project itself grows and changes. We all work together toward constant improvement of the project and the ways we work on it.
<br><br>We are the people who file issues and pull requests, attend SIG meetings, Kubernetes meetups, and KubeCon, advocate for its adoption and innovation, run <code>kubectl get pods</code>, and contribute in a thousand other vital ways. Read on to learn how you can get involved and become part of this amazing community.</p>
<br class="mobile">
</div>
<div class="community__navbar">
<a href="https://www.kubernetes.dev/">Contributor Community</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#values">Community Values</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#conduct">Code of conduct </a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#videos">Videos</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#discuss">Discussions</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#events">Events and meetups</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#news">News</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="/releases">Releases</a>
</div>
<br class="mobile"><br class="mobile">
<div class="imagecols">
<br class="mobile">
<div class="imagecol">
<img src="/images/community/kubernetes-community-final-03.jpg" alt="Kubernetes Conference Gallery" style="width:100%" class="desktop">
</div>
<div class="imagecol">
<img src="/images/community/kubernetes-community-final-04.jpg" alt="Kubernetes Conference Gallery" style="width:100%" class="desktop">
</div>
<div class="imagecol" style="margin-right:0% important">
<img src="/images/community/kubernetes-community-final-05.jpg" alt="Kubernetes Conference Gallery" style="width:100%;margin-right:0% important" class="desktop">
</div>
<img src="/images/community/kubernetes-community-04-mobile.jpg" alt="Kubernetes Conference Gallery" style="width:100%;margin-bottom:3%" class="mobile">
<a name="values"></a>
</div>
<div><a name="values"></a></div>
<div class="conduct">
<div class="conducttext">
<br class="mobile"><br class="mobile">
<br class="tablet"><br class="tablet">
<div class="conducttextnobutton" style="margin-bottom:2%"><h1>Community Values</h1>
The Kubernetes Community values are the keystone to the ongoing success of the project.<br>
These principles guide every aspect of the Kubernetes project.
<br>
<a href="/community/values/">
<br class="mobile"><br class="mobile">
<span class="fullbutton">
READ MORE
</span>
</a>
</div><a name="conduct"></a>
</div>
</div>
<div class="conduct">
<div class="conducttext">
<br class="mobile"><br class="mobile">
<br class="tablet"><br class="tablet">
<div class="conducttextnobutton" style="margin-bottom:2%"><h1>Code of Conduct</h1>
The Kubernetes community values respect and inclusiveness, and enforces a Code of Conduct in all interactions. If you notice a violation of the Code of Conduct at an event or meeting, in Slack, or in another communication mechanism, reach out to the Kubernetes Code of Conduct Committee at <a href="mailto:conduct@kubernetes.io" style="color:#0662EE;font-weight:300">conduct@kubernetes.io</a>. All reports are kept confidential. You can read about the committee&nbsp;<a href="https://github.com/kubernetes/community/tree/master/committee-code-of-conduct" style="color:#0662EE;font-weight:300">here</a>.
<br>
<a href="https://kubernetes.io/community/code-of-conduct/">
<br class="mobile"><br class="mobile">
<span class="fullbutton">
READ MORE
</span>
</a>
</div><a name="videos"></a>
</div>
</div>
<div class="videos">
<br class="mobile"><br class="mobile">
<br class="tablet"><br class="tablet">
<h1 style="margin-top:0px">Videos</h1>
<div style="margin-bottom:4%;font-weight:300;text-align:center;padding-left:10%;padding-right:10%">We're on YouTube, a lot. Subscribe for a wide range of&nbsp;topics.</div>
<div class="videocontainer">
<div class="video">
<iframe width="100%" height="250" src="https://www.youtube.com/embed/videoseries?list=PL69nYSiGNLP3azFUvYJjGn45YbF6C-uIg" title="Monthly office hours" frameborder="0" allow="autoplay; encrypted-media" allowfullscreen></iframe>
<a href="https://www.youtube.com/playlist?list=PL69nYSiGNLP3azFUvYJjGn45YbF6C-uIg">
<div class="videocta">
Watch monthly office hours&nbsp;&#9654;</div>
</a>
</div>
<div class="video">
<iframe width="100%" height="250" src="https://www.youtube.com/embed/videoseries?list=PL69nYSiGNLP1pkHsbPjzAewvMgGUpkCnJ" title="Weekly community meetings" frameborder="0" allow="autoplay; encrypted-media" allowfullscreen></iframe>
<a href="https://www.youtube.com/playlist?list=PL69nYSiGNLP1pkHsbPjzAewvMgGUpkCnJ">
<div class="videocta">
Watch weekly community meetings&nbsp;&#9654;
</div>
</a>
</div>
<div class="video">
<iframe width="100%" height="250" src="https://www.youtube.com/embed/videoseries?list=PL69nYSiGNLP3QpQrhZq_sLYo77BVKv09F" title="Talk from a community member" frameborder="0" allow="autoplay; encrypted-media" allowfullscreen></iframe>
<a href="https://www.youtube.com/playlist?list=PL69nYSiGNLP3QpQrhZq_sLYo77BVKv09F">
<div class="videocta">
Watch a talk from a community member&nbsp;&#9654;
</div>
</a>
<a name="discuss"></a>
</div>
</div>
</div>
<div class="resources">
<br class="mobile"><br class="mobile">
<br class="tablet"><br class="tablet">
<h1 style="padding-top:1%">Discussions</h1>
<div style="font-weight:300;text-align:center">We talk a lot. Find us and join the conversation on any of these&nbsp;platforms.</div>
<div class="resourcecontainer">
<div class="resourcebox">
<img src="/images/community/discuss.png" alt=Forum" style="width:80%;padding-bottom:2%">
<a href="https://discuss.kubernetes.io/" style="color:#0662EE;display:block;margin-top:1%">
forum&nbsp;&#9654;
</a>
<div class="resourceboxtext" style="font-size:12px;text-transform:none !important;font-weight:300;line-height:1.4em;color:#333333;margin-top:4%">
Topic-based technical discussions that bridge docs, StackOverflow, and so much&nbsp;more
</div>
</div>
<div class="resourcebox">
<img src="/images/community/twitter.png" alt="Twitter" style="width:80%;padding-bottom:2%">
<a href="https://twitter.com/kubernetesio" style="color:#0662EE;display:block;margin-top:1%">
twitter&nbsp;&#9654;
</a>
<div class="resourceboxtext" style="font-size:12px;text-transform:none !important;font-weight:300;line-height:1.4em;color:#333333;margin-top:4%">Real-time announcements of blog posts, events, news, ideas
</div>
</div>
<div class="resourcebox">
<img src="/images/community/github.png" alt="GitHub" style="width:80%;padding-bottom:2%">
<a href="https://github.com/kubernetes/kubernetes" style="color:#0662EE;display:block;margin-top:1%">
github&nbsp;&#9654;
</a>
<div class="resourceboxtext" style="font-size:12px;text-transform:none !important;font-weight:300;line-height:1.4em;color:#333333;margin-top:4%">
All the project and issue tracking, plus of course code
</div>
</div>
<div class="resourcebox">
<img src="/images/community/stack.png" alt="Stack Overflow" style="width:80%;padding-bottom:2%">
<a href="https://stackoverflow.com/search?q=kubernetes" style="color:#0662EE;display:block;margin-top:1%">
stack overflow&nbsp;&#9654;
</a>
<div class="resourceboxtext" style="font-size:12px;text-transform:none !important;font-weight:300;line-height:1.4em;color:#333333;margin-top:4%">
Technical troubleshooting for any use&nbsp;case
<a name="events"></a>
</div>
</div>
<!--
<div class="resourcebox">
<img src="/images/community/slack.png" style="width:80%">
slack&nbsp;&#9654;
<div class="resourceboxtext" style="font-size:11px;text-transform:none !important;font-weight:200;line-height:1.4em;color:#333333;margin-top:4%">
With 170+ channels, you'll find one that fits your needs.
</div>
</div>-->
</div>
</div>
<div class="events">
<br class="mobile"><br class="mobile">
<br class="tablet"><br class="tablet">
<div class="eventcontainer">
<h1 style="color:white !important">Upcoming Events</h1>
{{< upcoming-events >}}
</div>
</div>
<div class="meetups">
<div class="meetupcol">
<div class="meetuptext">
<h1 style="text-align:left">Global Community</h1>
With over 150 meetups in the world and growing, go find your local kube people. If one isn't near, take charge and create your own.
</div>
<a href="https://www.meetup.com/topics/kubernetes/">
<div class="button">
FIND A MEETUP
</div>
</a>
<a name="news"></a>
</div>
</div>
<!--
<div class="contributor">
<div class="contributortext">
<br>
<h1 style="text-align:left">
New Contributors Site
</h1>
Text about new contributors site.
<br><br>
<div class="button">
VISIT SITE
</div>
</div>
</div>
-->
<div class="news">
<br class="mobile"><br class="mobile">
<br class="tablet"><br class="tablet">
<h1 style="margin-bottom:2%">Recent News</h1>
<br>
<div class="twittercol1">
<a class="twitter-timeline" data-tweet-limit="1" href="https://twitter.com/kubernetesio?ref_src=twsrc%5Etfw">Tweets by kubernetesio</a> <script async src="https://platform.twitter.com/widgets.js" charset="utf-8"></script>
</div>
<br>
<br><br><br><br>
</div>
</div>
---
title: Community
layout: basic
cid: community
community_styles_migrated: true
---
<img
id="banner"
srcset="/images/community/kubernetes-community-final-02.jpg 1500w, /images/community/kubernetes-community-02-mobile.jpg 900w"
sizes="(max-width: 900px) 900px, (max-width: 1920px) 1500px"
src="/images/community/kubernetes-community-final-02.jpg"
alt="Kubernetes conference photo">
<div class="community-section" id="introduction">
<p>The Kubernetes community users, contributors, and the culture we've
built together — is one of the biggest reasons for the meteoric rise of
this open source project. Our culture and values continue to grow and change
as the project itself grows and changes. We all work together toward constant
improvement of the project and the ways we work on it.</p>
<p> We are the people who file issues and pull requests, attend SIG meetings,
Kubernetes meetups, and KubeCon, advocate for its adoption and innovation,
run <code>kubectl get pods</code>, and contribute in a thousand other vital
ways. Read on to learn how you can get involved and become part of this amazing
community.</p>
</div>
<div id="navigation-items">
<div class="community-nav-item external-link">
<a href="https://www.kubernetes.dev/">Contributor community</a>
</div>
<div class="community-nav-item">
<a href="#values">Community values</a>
</div>
<div class="community-nav-item">
<a href="#conduct">Code of conduct</a>
</div>
<div class="community-nav-item">
<a href="#videos">Videos</a>
</div>
<div class="community-nav-item">
<a href="#discuss">Discussions</a>
</div>
<div class="community-nav-item">
<a href="#meetups">Meetups</a>
</div>
<div class="community-nav-item">
<a href="#news">News</a>
</div>
<div class="community-nav-item">
<a href="/releases">Releases</a>
</div>
</div>
<div class="community-section" id="gallery">
<img src="/images/community/kubernetes-community-final-03.jpg" alt="Kubernetes conference gallery photo" class="community-gallery-desktop">
<img src="/images/community/kubernetes-community-final-04.jpg" alt="Kubernetes conference gallery photo" class="community-gallery-desktop">
<img src="/images/community/kubernetes-community-final-05.jpg" alt="Kubernetes conference gallery photo" class="community-gallery-desktop">
<img src="/images/community/kubernetes-community-04-mobile.jpg" alt="Kubernetes conference gallery photo" class="community-gallery-mobile">
</div>
<div class="community-section" id="values">
<h2>Community Values</h2>
<p>The Kubernetes Community values are the keystone to the ongoing success of the project.<br class="optional"/>
These principles guide every aspect of the Kubernetes project.</p>
<a href="https://www.kubernetes.dev/community/values/" class="community-cta-button">
<span class="community-cta">Read more</span>
</a>
</div>
<div class="community-section" id="conduct">
<h2>Code of Conduct</h2>
<p>The Kubernetes community values respect and inclusiveness, and enforces a Code of Conduct in all interactions.</p>
<p>If you notice a violation of the Code of Conduct at an event or meeting, in <a href="#slack">Slack</a>, or in another communication mechanism, reach out to the Kubernetes Code of Conduct Committee at <a href="mailto:conduct@kubernetes.io">conduct@kubernetes.io</a>. All reports are kept confidential. You can read <a href="https://github.com/kubernetes/community/tree/master/committee-code-of-conduct">about the committee</a> in the Kubernetes community repository on GitHub.</p>
<a href="/community/code-of-conduct/" class="community-cta-button">
<span class="community-cta">Read more</span>
</a>
</div>
<div id="videos" class="community-section">
<h2>Videos</h2>
<p class="community-simple">Kubernetes is on YouTube, a lot. Subscribe for a wide range of&nbsp;topics.</p>
<div class="container">
<div class="video youtube">
<iframe src="https://www.youtube.com/embed/videoseries?list=PL69nYSiGNLP3azFUvYJjGn45YbF6C-uIg" title="Monthly office hours" allow="camera 'none'; microphone 'none'; geolocation 'none'; fullscreen https://www.youtube.com/" ></iframe>
<a href="https://www.youtube.com/playlist?list=PL69nYSiGNLP3azFUvYJjGn45YbF6C-uIg">
<span class="videocta">Watch monthly office hours&nbsp;&#9654;</span>
</a>
</div>
<div class="video youtube">
<iframe src="https://www.youtube.com/embed/videoseries?list=PL69nYSiGNLP1pkHsbPjzAewvMgGUpkCnJ" title="Weekly community meetings" allow="camera 'none'; microphone 'none'; geolocation 'none'; fullscreen https://www.youtube.com/"></iframe>
<a href="https://www.youtube.com/playlist?list=PL69nYSiGNLP1pkHsbPjzAewvMgGUpkCnJ">
<span class="videocta">Watch weekly community meetings&nbsp;&#9654;</span>
</a>
</div>
<div class="video youtube" id="discuss">
<iframe src="https://www.youtube.com/embed/videoseries?list=PL69nYSiGNLP3QpQrhZq_sLYo77BVKv09F" title="Talk from a community member" allow="camera 'none'; microphone 'none'; geolocation 'none'; fullscreen https://www.youtube.com/"></iframe>
<a href="https://www.youtube.com/playlist?list=PL69nYSiGNLP3QpQrhZq_sLYo77BVKv09F">
<span class="videocta">Watch a talk from a community member&nbsp;&#9654;</span>
</a>
</div>
</div>
</div>
<div id="resources" class="community-section">
<h2>Discussions</h2>
<p class="community-simple">We talk a lot. Find us and join the conversation on any of these&nbsp;platforms.</p>
<div class="container">
<div class="community-resource">
<a href="https://discuss.kubernetes.io/">
<img src="/images/community/discuss.png" alt="Forum">
</a>
<a href="https://discuss.kubernetes.io/">Community forums&nbsp;&#9654;</a>
<p>Topic-based technical discussions that bridge docs,
troubleshooting, and so much&nbsp;more.</p>
</div>
<div id="twitter" class="community-resource">
<a href="https://twitter.com/kubernetesio">
<img src="/images/community/twitter.png" alt="Twitter">
</a>
<a href="https://twitter.com/kubernetesio">Twitter&nbsp;&#9654;</a>
<p><em>#kubernetesio</em></p>
<p>Real-time announcements of blog posts, events, news, ideas.</p>
</div>
<div id="github" class="community-resource">
<a href="https://github.com/kubernetes/kubernetes">
<img src="/images/community/github.png" alt="GitHub">
</a>
<a href="https://github.com/kubernetes/kubernetes">GitHub&nbsp;&#9654;</a>
<p>All the project and issue tracking, plus of course code.</p>
</div>
<div id="server-fault" class="community-resource">
<a href="https://serverfault.com/questions/tagged/kubernetes">
<img src="/images/community/serverfault.png" alt="Server Fault">
</a>
<a href="https://serverfault.com/questions/tagged/kubernetes">Server Fault&nbsp;&#9654;</a>
<p>Kubernetes-related discussion on Server Fault. Ask a question, or answer one.</p>
</div>
<div id="slack" class="community-resource">
<a href="https://kubernetes.slack.com/">
<img src="/images/community/slack.png" alt="Slack">
</a>
<a href="https://kubernetes.slack.com/">Slack&nbsp;&#9654;</a>
<p>With 170+ channels, you'll find one that fits your needs.</p>
<details><summary><em>Need an invitation?</em></summary>
Visit <a href="https://slack.k8s.io/">https://slack.k8s.io/</a>
for an invitation.</details>
</div>
</div>
</div>
<div class="community-section" id="events">
<div class="container">
<h2>Upcoming Events</h2>
{{< upcoming-events >}}
</div>
</div>
<div class="community-section" id="meetups">
<h2>Global community</h2>
<p>
With over 150 meetups in the world and growing, go find your local kube people. If one isn't near, take charge and create your own.
</p>
<a href="https://www.meetup.com/topics/kubernetes/" class="community-cta-button">
<span class="community-cta">Find a meetup</span>
</a>
</div>
<div class="community-section community-frame" id="news">
<h2>Recent News</h2>
<div class="twittercol1">
<a class="twitter-timeline" data-tweet-limit="1" href="https://twitter.com/kubernetesio?ref_src=twsrc%5Etfw">Tweets by kubernetesio</a>
</div>
</div>
+9 -7
View File
@@ -1,27 +1,29 @@
---
title: Community
title: Kubernetes Community Code of Conduct
layout: basic
cid: community
css: /css/community.css
community_styles_migrated: true
---
<div class="community_main">
<h1>Kubernetes Community Code of Conduct</h1>
<div class="community-section" id="cncf-code-of-conduct-intro">
<p>
Kubernetes follows the
<a href="https://github.com/cncf/foundation/blob/master/code-of-conduct.md">CNCF Code of Conduct</a>.
The text of the CNCF CoC is replicated below, as of
<a href="https://github.com/cncf/foundation/blob/214585e24aab747fb85c2ea44fbf4a2442e30de6/code-of-conduct.md">commit 214585e</a>.
If you notice that this is out of date, please
<a href="https://github.com/kubernetes/website/issues/new">file an issue</a>.
</p>
<p>
If you notice a violation of the Code of Conduct at an event or meeting, in
Slack, or in another communication mechanism, reach out to
the <a href="https://git.k8s.io/community/committee-code-of-conduct">Kubernetes Code of Conduct Committee</a>.
You can reach us by email at <a href="mailto:conduct@kubernetes.io">conduct@kubernetes.io</a>.
Your anonymity will be protected.
</p>
</div>
<div class="cncf_coc_container">
<div id="cncf-code-of-conduct">
{{< include "/static/cncf-code-of-conduct.md" >}}
</div>
</div>
+7
View File
@@ -0,0 +1,7 @@
# See the OWNERS docs at https://go.k8s.io/owners
# Disable inheritance to encourage careful review of any changes here.
options:
no_parent_owners: true
approvers:
- sig-docs-leads
+4 -1
View File
@@ -1,2 +1,5 @@
The files in this directory have been imported from other sources. Do not
edit them directly, except by replacing them with new versions.
edit them directly, except by replacing them with new versions.
Localization note: you do not need to create localized versions of any of
the files in this directory.
+12 -7
View File
@@ -1,13 +1,18 @@
---
title: Community
title: Kubernetes Community Values
layout: basic
cid: community
css: /css/community.css
community_styles_migrated: true
# this page is deprecated
# canonical page is https://www.kubernetes.dev/community/values/
sitemap:
priority: 0.1
---
<div class="community_main">
<div class="cncf_coc_container">
<div class="community-section" id="values-legacy">
{{< include "/static/community-values.md" >}}
</div>
</div>
<!-- no need to localize this file, nor the contents of the static directory -->
<!-- if localizing, find the appropriate localized version of the CNCF code of
conduct, and link directly to that -->
@@ -78,7 +78,7 @@ when you declare a Service resource that requires them.
## Authorization
This section breaks down the access that the cloud controller managers requires
This section breaks down the access that the cloud controller manager requires
on various API objects, in order to perform its operations.
### Node controller {#authorization-node-controller}
+1 -1
View File
@@ -15,7 +15,7 @@ each Node in your cluster, so that the
{{< glossary_tooltip text="kubelet" term_id="kubelet" >}} can launch
{{< glossary_tooltip text="Pods" term_id="pod" >}} and their containers.
{{< glossary_definition term_id="container-runtime-interface" length="all" >}}
{{< glossary_definition prepend="The Container Runtime Interface (CRI) is" term_id="container-runtime-interface" length="all" >}}
<!-- body -->

Some files were not shown because too many files have changed in this diff Show More