Compare commits

..

2151 Commits

Author SHA1 Message Date
Kubernetes Prow Robot 628b9d2115 Merge pull request #27901 from jihoon-seo/210507_Update_outdated_files_in_dev-1.20-ko.8_p3
[ko] Update outdated files in dev-1.20-ko.8 (p3)
2021-05-11 03:53:36 -07:00
Jihoon Seo d1751c8101 [ko] Update outdated files in dev-1.20-ko.8 (p3) 2021-05-10 10:11:33 +09:00
Kubernetes Prow Robot 318ae0b7fe Merge pull request #27760 from jihoon-seo/210428_Update_outdated_files_in_dev-1.20-ko.8_p2
[ko] Update outdated files in dev-1.20-ko.8 (p2)
2021-05-06 06:05:17 -07:00
Kubernetes Prow Robot 5f1bdf56b9 Merge pull request #27728 from jihoon-seo/210426_Update_outdated_files_in_dev-1.20-ko.8_p1
[ko] Update outdated files in dev-1.20-ko.8 (p1)
2021-05-06 06:03:16 -07:00
Jihoon Seo d38d6a4631 [ko] Update outdated files in dev-1.20-ko.8 (p2) 2021-05-04 09:24:19 +09:00
Jihoon Seo 0d17ba6f58 [ko] Update outdated files in dev-1.20-ko.8 (p1) 2021-05-04 09:22:05 +09:00
Kubernetes Prow Robot 8da84d2c2e Merge pull request #27477 from reylejano/fix-release-1.20-config.toml
Fix config.toml for release-1.20 branch
2021-04-09 01:18:47 -07:00
Rey Lejano b7403d2140 fix config.toml for release-1.20 branch 2021-04-08 14:52:05 -07:00
Kubernetes Prow Robot dc2ffc1833 Merge pull request #27455 from reylejano/update-release-1.20-config.toml
Update 1.20 config.toml for release 1.21
2021-04-08 12:30:03 -07:00
Rey Lejano 05de8ac4d0 update release-1.20 config.toml for release 1.21 2021-04-07 16:18:32 -07:00
Kubernetes Prow Robot 6d252624b2 Merge pull request #27387 from Arhell/label
[ja] updated labels for cli command in the PHP Guestbook tutorial
2021-04-07 07:53:53 -07:00
Kubernetes Prow Robot d1c650d2a6 Merge pull request #27247 from Arhell/remove
[ja] remove command from output block
2021-04-07 07:51:54 -07:00
Kubernetes Prow Robot 835499b156 Merge pull request #27442 from tengqm/tune-code-style
Tune code style in tables
2021-04-07 03:45:53 -07:00
Kubernetes Prow Robot dcd7fb8cb9 Merge pull request #27383 from zhiguo-lu/zh-trans-reference-labels-annotations-taints
[zh] translate reference/Well-Known Labels, Annotations and Taints
2021-04-07 01:59:53 -07:00
Kubernetes Prow Robot da022325b9 Merge pull request #27054 from Arhell/fix
[vi] update invalid web page link for api group
2021-04-07 01:17:53 -07:00
Kubernetes Prow Robot 460f44bdf8 Merge pull request #27441 from CaoDonghui123/fixissues2
[zh] update service.md
2021-04-07 01:01:53 -07:00
Qiming Teng a149f9c2d2 Tune code style in tables
This is a follow up of #26595 and kubernetes-sigs/reference-docs#220.
2021-04-07 15:58:04 +08:00
Kubernetes Prow Robot 9f7f648e1b Merge pull request #26319 from tengqm/zh-sync-feature-gate
[zh] Sync changes to feature-gates
2021-04-07 00:49:54 -07:00
Kubernetes Prow Robot e6e597b2c4 Merge pull request #27378 from Arhell/fix-bind
[ja] fix bind-address on scheduler
2021-04-07 00:43:53 -07:00
caodonghui d9d4a7cdf8 [zh] update service.md and endpoint-slices.md 2021-04-07 15:40:58 +08:00
Kubernetes Prow Robot fc545595f7 Merge pull request #27423 from srcmesh/fix/wrong-zh-translation
Fix wrong chinese translation (SELinux note)
2021-04-06 22:21:52 -07:00
Ta-Ching Chen 5391a59dc4 Update doc for future tracking 2021-04-07 12:29:29 +08:00
Ta-Ching Chen f6fef933b7 minor fix 2021-04-07 12:24:37 +08:00
Ta-Ching Chen 44b902cdf9 sync with upstream English version 2021-04-07 12:21:06 +08:00
Edson C. (aka tuxpilgrim) 2e519b024b [PT] Update content/pt/docs/concepts/architecture/control-plane-node-communication.md (#27415)
* Update doc to follow wg naming

* Rename master to control plane

* Add Konnectivity topic

* Remove unstranslated topic

* Fix some typos

* Remove blank lines

* Fix md typo

* Fix minor typos

* Fix typo (by review)
2021-04-06 12:04:20 -07:00
Kubernetes Prow Robot 863d0bc3ba Merge pull request #27369 from tabbysable/psp-blog
Add blog post describing PSP deprecation and next steps.
2021-04-06 11:42:20 -07:00
Kubernetes Prow Robot 41f8e9da78 Merge pull request #27418 from joostas/docker-cli-to-kubectl-ru
[ru] "kubectl for Docker Users" use "kubectl create deployment" command
2021-04-06 08:47:33 -07:00
Tabitha Sable ca6008c67f Apply suggestions from tallclair
Co-authored-by: Tim Allclair <timallclair@gmail.com>
2021-04-05 22:59:01 -05:00
Ta-Ching Chen c48c5fd3c0 Fix wrong chinese translation 2021-04-06 09:45:07 +08:00
Kubernetes Prow Robot b890226ee2 Merge pull request #27356 from fancc/tokens
resolve some format errors
2021-04-05 18:43:33 -07:00
Kubernetes Prow Robot 3b1b77b837 Merge pull request #27366 from tocado/patch-1
Update kubespray.md for link to ansible doc
2021-04-05 18:09:19 -07:00
Kubernetes Prow Robot 7841e9e509 Merge pull request #26725 from cristiklein/patch-1
Change to inclusive naming
2021-04-05 17:39:19 -07:00
joostas 17b5158f24 [ru] "kubectl for Docker Users" use "kubectl create deployment" command to run pod
Before:
Example runs pod without creating deployment
```sh
kubectl run --image=nginx nginx-app --port=80
```
But later in document mentions:
```
deployment "nginx-app" created
```
After:
Pod is created with deployment. (Aligned with other language examples)
2021-04-05 21:36:32 +03:00
Kubernetes Prow Robot 924f4a317c Merge pull request #27396 from joostas/using-sourceIP-turorial
Fix label selector in Using Source IP tutorial
2021-04-05 07:31:12 -07:00
Ricardo Katz 8441afaac1 Add initial portuguese translation to runtime class (#27302)
* Add initial portuguese translation to runtime class

* Apply suggestions from code review

Co-authored-by: Diego W. Antunes <devlware@gmail.com>

* Typo correct

Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-04-05 06:28:13 -07:00
Kubernetes Prow Robot fb976d5844 Merge pull request #27364 from jailton/en/docs/tutorials/stateless-application
Fix content/en/docs/tutorials/stateless-application/guestbook.md
2021-04-04 23:58:15 -07:00
Kubernetes Prow Robot 8b2ecd55ec Merge pull request #27386 from nicks/patch-1
Fixed errors in instructions for generating ref docs
2021-04-04 23:56:14 -07:00
Kubernetes Prow Robot c6194a2473 Merge pull request #27263 from npu21/node-id
Fix line separation in concepts/architecture/nodes
2021-04-04 23:54:15 -07:00
Tabitha Sable 6c4e752016 Adopt several suggestions from review. 2021-04-05 00:36:22 -05:00
Tabitha Sable e0b7222f1a Rename file to match publication date 2021-04-05 00:36:05 -05:00
Kubernetes Prow Robot ce94ae337b Merge pull request #27388 from ariscahyadi/id-remove-task-template
[ID] remove task template to sync with EN
2021-04-04 22:32:15 -07:00
Kubernetes Prow Robot 5f4e60db56 Merge pull request #27403 from ariscahyadi/id-update-pod-overhead
[ID] moving pod-overhead into scheduling-eviction.
2021-04-04 21:54:14 -07:00
Justas fe9e5a80ad Fix label selector in Using Source IP tutorial
Before:
```sh
controlplane $ kubectl delete svc -l run=source-ip-app
No resources found
```
```sh
k get svc --show-labels
NAME           TYPE           CLUSTER-IP       EXTERNAL-IP   PORT(S)        AGE     LABELS
clusterip      ClusterIP      10.110.247.112   <none>        80/TCP         28m     app=source-ip-app
kubernetes     ClusterIP      10.96.0.1        <none>        443/TCP        49m     component=apiserver,provider=kubernetes
loadbalancer   LoadBalancer   10.111.123.206   <pending>     80:31111/TCP   9m59s   app=source-ip-app
nodeport       NodePort       10.108.129.31    <none>        80:32503/TCP   22m     app=source-ip-app
```
After:
```sh
controlplane $ kubectl delete svc -l app=source-ip-app
service "clusterip" deleted
service "loadbalancer" deleted
service "nodeport" deleted
```

Update source-ip.md

Update source-ip.md

Update source-ip.md
2021-04-04 20:52:13 +03:00
Aris Cahyadi Risdianto 2325d540bf moving pod-overhead into scheduling-eviction. 2021-04-04 22:57:41 +08:00
Kubernetes Prow Robot 7f2b282dbe Merge pull request #26602 from tengqm/kube-scheduler-policy-config
Add reference doc for kube-scheduler policy
2021-04-03 10:02:12 -07:00
Kubernetes Prow Robot 4556399e99 Merge pull request #26608 from tengqm/client-auth-config
Add reference for client-authentication v1beta1
2021-04-03 09:42:12 -07:00
Kubernetes Prow Robot 973caa38b1 Merge pull request #26606 from tengqm/audit-policy-config
Add reference for audit API group
2021-04-03 09:12:12 -07:00
Kubernetes Prow Robot ba51164bfc Merge pull request #27389 from ariscahyadi/id-remove-administer-cluster
[ID] remove cluster management to sync with upstream.
2021-04-03 04:44:11 -07:00
Aris Cahyadi Risdianto be40912057 remove cluster management to sync with upstream. 2021-04-03 19:06:52 +08:00
Aris Cahyadi Risdianto 411f732ae3 remove example task template to sync with upstream. 2021-04-03 18:34:46 +08:00
Kubernetes Prow Robot 25d8a13220 Merge pull request #27241 from krol3/sec-overview
[es] Add content/es/docs/concepts/security/overview
2021-04-02 22:56:11 -07:00
Tabitha Sable b20641723c Fix typo in relative URL 2021-04-02 23:11:31 -05:00
Tabitha Sable 4e15cffdf9 Update links to be site-relative
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-04-02 23:10:15 -05:00
Arhell 5767f39fd1 [ja] updated labels for cli command in the PHP Guestbook tutorial 2021-04-03 02:20:18 +03:00
carol valencia 9717c5bb3b chore: raelga review 2021-04-02 18:44:03 -03:00
Nick Santos 34f1d61c60 Fixed errors in instructions for generating ref docs
Some minor mistakes I noticed:
- WEB_ROOT is actually K8S_WEBROOT (https://github.com/kubernetes-sigs/reference-docs/blob/master/Makefile#L12)
- copysrc puts the code in gen-apidocs/build, not gen-apidocs/generators/build (https://github.com/kubernetes-sigs/reference-docs/blob/master/Makefile#L89)
- K8S_VERSION must have a patch number, because all kubernetes tags have patch numbers (https://github.com/kubernetes/kubernetes/tree/v1.17 vs https://github.com/kubernetes/kubernetes/tree/v1.17.0)
2021-04-02 14:20:37 -04:00
Kubernetes Prow Robot 6864166901 Merge pull request #27291 from tengqm/zh-sync-admin-cluster
[zh] Resync cluster administration
2021-04-02 07:44:11 -07:00
luzg ae317a06fb [zh] translate reference/Well-Known Labels, Annotations and Taints 2021-04-02 21:28:30 +08:00
Kubernetes Prow Robot c45c5746b2 Merge pull request #27322 from zhiguo-lu/zh-trans-task-install-kubectl-on-linux
[zh] translate task/Install and Set Up kubectl on Linux
2021-04-02 05:18:12 -07:00
Ricardo Katz a806f40897 Add portuguese translation for networking concepts (#27300)
* Add portuguese translation for networking concepts

* Correct minor typos

* Apply suggestions from code review

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Correct typos

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-04-01 21:20:11 -07:00
Kubernetes Prow Robot 8b45d0f687 Merge pull request #27346 from luolanzone/antrea
add antrea in network addon list
2021-04-01 20:22:12 -07:00
Qiming Teng 4d20ce5b29 Add reference doc for kube-scheduler policy
This is a reference for kube-scheduler policy config generated from
kubernetes-sigs/reference-docs/genref tool.
More specifically, it is generated using the following command:

```
./genref --include kube-scheduler-policy-config
```
2021-04-02 10:57:58 +08:00
Qiming Teng 94e021ccf6 Add reference for audit API group
This is a reference for audit.k8s.io/v1 API group generated from kubernetes-sigs/reference-docs/genref tool.
More specifically, it is generated using the following command:

```shell
./genref -include apiserver-audit
```
2021-04-02 10:01:12 +08:00
Qiming Teng b28250b68f Add reference for client-authentication v1beta1
This is a reference for client authentication API generated from kubernetes-sigs/reference-docs/genref tool.
More specifically, it is generated using the following command:

```shell
./genref -include client-authentication
```
2021-04-02 09:48:59 +08:00
Kubernetes Prow Robot 065cbfb9d0 Merge pull request #26596 from tengqm/kube-scheduler-config
Kube scheduler config
2021-04-01 18:48:11 -07:00
luzg d439f4dd17 [zh] translate task/Install and Set Up kubectl on Linux 2021-04-02 09:33:54 +08:00
Kubernetes Prow Robot 7101158992 Merge pull request #26590 from tengqm/kubelet-config
Document kubelet config format
2021-04-01 18:30:11 -07:00
Kubernetes Prow Robot 029d2f6ed8 Merge pull request #27374 from kubernetes/dev-1.20-ko.7
[ko] Seventh Korean l10n work for release-1.20
2021-04-01 16:40:11 -07:00
Kubernetes Prow Robot 871e2ad8d6 Merge pull request #27375 from seokho-son/resolve-conflict-ko.7
[ko] Resolve conflicts on dev-1.20-ko.7 branch
2021-04-01 16:38:11 -07:00
Arhell 89277ad575 [ja] fix bind-address on scheduler 2021-04-02 02:04:38 +03:00
seokho-son cf780b6545 Resolve conflicts on dev-1.20-ko.7 branch 2021-04-02 00:18:10 +09:00
Kubernetes Prow Robot 2047c9bd7f Merge pull request #27196 from ysyukr/dev-1.20-ko.7-outdated-part-1
[ko] Update to Outdated files in the dev-1.20-ko.7 (p1)
2021-04-01 07:03:22 -07:00
Kubernetes Prow Robot fb5f0b7a93 Merge pull request #27219 from jmyung/jesang/tls/v0.1
[ko] Translate tasks/tls/managing-tls-in-a-cluster.md in Korean
2021-04-01 07:01:21 -07:00
Qiming Teng ce76e0f875 Add reference for kube-scheduler config 2021-04-01 21:58:58 +08:00
Qiming Teng 79845b0c4a Add kubelet config reference
This is a reference for kubelet config generated from
github.com/tengqm/genref tool using the following command:

./genref -include kubelet-config
2021-04-01 21:53:14 +08:00
Luo Lan c8d20ea228 update antrea link based on review comment 2021-04-01 21:31:22 +08:00
jmyung e172a7e264 translate Manage TLS Certificates in a Cluster in Korean 2021-04-01 22:11:29 +09:00
Yuk, Yongsu b59a32dfbc Update to Outdated files in the dev-1.20-ko.7 branch part. 1. 2021-04-01 21:34:26 +09:00
Kubernetes Prow Robot 8eefd68e4f Merge pull request #27304 from Arhell/error
[zh] fix: errors in base64 and sed commands
2021-04-01 03:21:22 -07:00
Kubernetes Prow Robot 1a6dcc8639 Merge pull request #27314 from klinghang/master
[zh] modify:zh/docs/concepts/workloads/pods/_index.md
2021-04-01 03:13:21 -07:00
Kubernetes Prow Robot 9c0ea12189 Merge pull request #27318 from jihoon-seo/210330-zh-Fix-custom-heading-ID
[zh] Fix custom heading ID
2021-04-01 03:09:21 -07:00
Kubernetes Prow Robot c71ba4c54c Merge pull request #27327 from gaoguangze111/correct-translation-connect-applications-service
Correct translation connect-applications-service.md
2021-04-01 02:55:21 -07:00
Kubernetes Prow Robot 38a9e33a2e Merge pull request #27325 from Shubham82/fix-AppArmor
Corrected the description in 'Restrict a Container's Access to Resources with AppArmor'
2021-04-01 02:45:22 -07:00
Kubernetes Prow Robot 714fed8d7f Merge pull request #27337 from Arhell/update
[zh] update control-plane-flags.md to fix bind-address on scheduler
2021-04-01 02:41:21 -07:00
Qiming Teng 816725246d [zh] Sync changes to feature-gates
Also fixed some nits in the upstream.
2021-04-01 17:38:56 +08:00
Kubernetes Prow Robot 0db87652fb Merge pull request #27363 from mengjiao-liu/sync-pv
[zh] Sync content/en/docs/concepts/storage/persistent-volumes.md
2021-04-01 02:35:21 -07:00
Kubernetes Prow Robot ec6d03d84d Merge pull request #26595 from tengqm/kube-proxy-config
Add kube-proxy config reference
2021-04-01 01:33:21 -07:00
Tabitha Sable c43c40e1b0 Add blog post describing PSP deprecation and next steps. 2021-04-01 01:48:51 -05:00
mengjiao.liu 692e997105 [zh] Sync content/en/docs/concepts/storage/persistent-volumes.md 2021-04-01 14:26:12 +08:00
Kubernetes Prow Robot a8035792af Merge pull request #27355 from wwgfhf/master-self-hosting
Update zh translation in self-hosting.md
2021-03-31 23:03:21 -07:00
Kubernetes Prow Robot d1556f7dfd Merge pull request #27365 from mengjiao-liu/sync-overview-components
[zh] sync content/en/docs/concepts/overview/components.md
2021-03-31 22:57:21 -07:00
Kubernetes Prow Robot 19b961a89d Merge pull request #27362 from Arhell/fixes
fix bind-address on scheduler
2021-03-31 22:23:21 -07:00
Juan Sebastian Romero a66fec504e Update kubespray.md
update link to playbook variables in ansible
2021-04-01 01:04:01 -03:00
mengjiao.liu d4597c7c24 [zh] sync content/en/docs/concepts/overview/components.md 2021-04-01 11:51:27 +08:00
Jailton Lopes d5b1793351 Update "Deploying PHP Guestbook application with MongoDB" Tutorial to fix the following issues:
* #26765 - Ordered lists with wrong indexes
* The wrong output of "kubectl get service frontend" on LoadBalancer Service Type example.
* Fixing format

Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-04-01 00:42:41 -03:00
Kubernetes Prow Robot 936e2c60ce Merge pull request #27289 from SataQiu/update-create-cluster-kubeadm-20210329
kubeadm: update create-cluster-kubeadm page as kubeadm will not do e2e tests against Calico CNI anymore
2021-03-31 17:41:21 -07:00
Kubernetes Prow Robot 5f3e13e820 Merge pull request #27341 from kbhawkey/fix-replication-controll-text
fixup rc text
2021-03-31 17:31:21 -07:00
Qiming Teng 0d7d7470dd Add kube-proxy config reference
This is a reference for kube-proxy config generated from kubernetes-sigs/reference-docs/genref tool.
More specifically, it is generated using the following command:

./genref -include kube-proxy
2021-04-01 08:26:17 +08:00
Kubernetes Prow Robot 0da4bfb533 Merge pull request #27251 from seokho-son/sync-1.20-ko.7
[ko] Update outdated files in dev-1.20-ko.7 (p2)
2021-03-31 16:59:21 -07:00
Arhell c72828aadf fix bind-address on scheduler 2021-04-01 01:28:21 +03:00
Kubernetes Prow Robot 5fac89acb0 Merge pull request #27093 from pacoxu/init-container/behavior
init container image change or container GC will not restart Pod sinc…
2021-03-31 11:35:21 -07:00
Kubernetes Prow Robot 971412c3fd Merge pull request #27344 from jimangel/clickjack
adding header config for netlify
2021-03-31 09:05:01 -07:00
Kubernetes Prow Robot 8b8650eff1 Merge pull request #27303 from rikatz/extend-net
Add pt translation for extend networking
2021-03-31 08:33:02 -07:00
bryan 96ab2b0dac resolve some format erros 2021-03-31 20:06:36 +08:00
wwgfhf e77f730256 Update self-hosting.md 2021-03-31 20:05:29 +08:00
Kubernetes Prow Robot 10fa5744bf Merge pull request #27343 from jimangel/update-hugo-82
updating hugo
2021-03-31 04:39:00 -07:00
Kubernetes Prow Robot ba4914fdb2 Merge pull request #27170 from Arhell/col
[ja] fix column alignment
2021-03-31 02:36:58 -07:00
Luo Lan ae1650b2db add antrea in network addon list 2021-03-31 15:28:47 +08:00
Jim Angel 2885caa95c adding header config for netlify 2021-03-30 21:14:20 -05:00
Jim Angel 5467cf82a0 updating hugo 2021-03-30 21:08:05 -05:00
Karen Bradshaw fe2f1e2da6 fixup rc text 2021-03-30 21:03:57 -04:00
Arhell f219e4e61a [zh] update control-plane-flags.md to fix bind-address on scheduler 2021-03-31 01:49:46 +03:00
Kubernetes Prow Robot 6bff481ebc Merge pull request #27330 from oomichi/redirect-kubeadm-pl
pl: Replace redirect links of kubeadm
2021-03-30 10:51:59 -07:00
seokho-son 39c82936d9 Update outdated files in dev-1.20-ko.7 (p2) 2021-03-31 02:27:44 +09:00
Kenichi Omichi f98a672883 pl: Replace redirect links of kubeadm
/docs/reference/setup-tools/kubeadm/kubeadm/ is redirected to /docs/reference/setup-tools/kubeadm/
This replaces the redirect links of kubeadm with the direct links.

NOTE: The pull request for `en` language has been already merged as https://github.com/kubernetes/website/pull/26919
2021-03-30 16:58:04 +00:00
Kubernetes Prow Robot eba27a0e2a Merge pull request #27285 from ganeshniyer/patch-3
Made small typo corrections
2021-03-30 09:45:57 -07:00
Kubernetes Prow Robot 293745deed Merge pull request #27211 from habibrosyad/task-tutorial-prereqs
[id] Sync task-tutorial-prereqs.md
2021-03-30 09:23:56 -07:00
Kubernetes Prow Robot edd2882e3d Merge pull request #27213 from habibrosyad/supported-doc-versions
[id] Sync supported-doc-versions.md
2021-03-30 09:19:56 -07:00
Kubernetes Prow Robot bf97c371b2 Merge pull request #27292 from CriaHu/hyq-2021032905
Translation optimization
2021-03-30 09:09:57 -07:00
ganeshniyer e6e3f00a44 Corrected a clarification based on the review
removed [ and ] in the command ETCDCTL_API=3 etcdctl --endpoints=https://127.0.0.1:2379 \
  --cacert=<trusted-ca-file> --cert=<cert-file> --key=<key-file> \
  snapshot save <backup-file-location>
2021-03-30 21:30:49 +05:30
Jose Roberto Almaraz 33a84d66df Add content/pt/docs/reference/access-authn-authz/authentication.md (#26928)
* Add content/pt/docs/reference/access-authn-authz/authentication.md

* fixing markdown links

* wrong reference for adding bearer token to request

* wrong reference for adding bearer token to request - reviewed

* addressing review items from rikatz

* addressing review items: typos, wrong reference link for webhook authentication, etc

* fixing typos, adding placeholders for glossary terms

* Fixing glossary reference and adding glossary content

* 2 more reviewed items

* plural for transparentes

* fixing wrong glossary term_id for common-name, using tls-common-name instead

* fixing webhook and proxy authentication links

* fixing wrong gramatic on groups description

* review items on multiple syntax and context/meaning errors
2021-03-30 06:51:58 -07:00
GoodGameZoo f3e31e4ce9 Correct translation connect-applications-service.md 2021-03-30 06:36:33 -07:00
Kubernetes Prow Robot 8e65b8abb1 Merge pull request #27320 from gaoguangze111/correct-translation-create-cluster-kubeadm
Correct typo in page create-cluster-kubeadm.md
2021-03-30 06:19:57 -07:00
Shubham Kuchhal d39d4b4bf7 Corrected the description in 'Restrict a Container's Access to Resources with AppArmor' 2021-03-30 17:03:10 +05:30
Jihoon Seo b6d0d51111 [zh] Fix custom heading ID 2021-03-30 17:13:37 +09:00
GoodGameZoo 8995eaa248 Correct typo in page create-cluster-kubeadm.md 2021-03-30 00:18:42 -07:00
konglinghang cbff017b69 fix a word translation 2021-03-30 14:14:36 +08:00
Kubernetes Prow Robot 15f1a9ca1c Merge pull request #27298 from tengqm/zh-sync-controllers
[zh] Sync changes to workload controllers
2021-03-29 21:21:56 -07:00
KLH 68032faacc [zh] modify: zh/docs/concepts/workloads/_index.md (#27308)
* fix a word translation

* Update content/zh/docs/concepts/workloads/_index.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-29 20:57:56 -07:00
KLH 557a69e959 Update content/zh/docs/concepts/workloads/_index.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-30 11:21:21 +08:00
Kubernetes Prow Robot 61fc601333 Merge pull request #27309 from huangshanhui/patch-1
Update kms-provider.md
2021-03-29 19:55:56 -07:00
Kubernetes Prow Robot c4f5dc94e4 Merge pull request #27135 from santachopa/translate-volumn-plugin
[ko] Translate reference/glossary/volume-plugin.md in Korean
2021-03-29 19:11:56 -07:00
huangshanhui 1cf3ed6403 Update kms-provider.md
fix the translation of "cloud provider"
2021-03-30 10:10:26 +08:00
Arhell 66206ab141 [zh] fix: errors in base64 and sed commands 2021-03-30 00:38:49 +03:00
Ricardo Pchevuzinske Katz 7f66bfd059 Add pt translation for extend networking 2021-03-29 18:25:04 -03:00
carol valencia f6a5a55a55 chore: review fixing text - 3 2021-03-29 16:40:44 -03:00
Kubernetes Prow Robot 377bc93ae8 Merge pull request #27279 from jihoon-seo/210329-ko-Enhance-consistency-of-Ko-translation
[ko] Enhance consistency of Korean translation
2021-03-29 08:42:46 -07:00
Marc Bihlmaier 3ccdb3426a Update kubelet-config-file.md (#27192)
* Update kubelet-config-file.md

add note and link to kubeadm/kubelet-integration

* Update content/en/docs/tasks/administer-cluster/kubelet-config-file.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-29 06:00:45 -07:00
SataQiu 3252fb1d9e kubeadm: update create-cluster-kubeadm page as kubeadm will not do e2e tests against Calico CNI anymore 2021-03-29 20:56:15 +08:00
Qiming Teng 29d6c1135d [zh] Sync changes to workload controllers 2021-03-29 20:43:52 +08:00
huyuqing 66617a0633 Translation optimization of /docs/tasks/job/automated-tasks-with-cron-jobs.md 2021-03-29 19:25:30 +08:00
huyuqing 89a2aec131 Translation optimization of /docs/tasks/job/automated-tasks-with-cron-jobs.md 2021-03-29 19:19:15 +08:00
Qiming Teng 1dbdda9d34 [zh] Resync cluster administration
Main change is to the certificates page which has been migrated into its
own task.
2021-03-29 18:58:30 +08:00
pacoxu ed7c4e7046 init container image change or container GC will not restart Pod since 1.20
Signed-off-by: pacoxu <paco.xu@daocloud.io>
2021-03-29 17:19:56 +08:00
ganeshniyer 5c589626fd Made small typo corrections
(1) the help option for etcdctl is -h and not --h. Corrected the same
(2) in the snapshot command, the --endpoints option's value has been corrected to reflect the right endpoint.
2021-03-29 14:04:48 +05:30
Kubernetes Prow Robot d830ee0f5b Merge pull request #27281 from monsteredc/patch-1
update the correct operator link
2021-03-28 21:32:44 -07:00
Xiaopeng Han ecede1568a update the correct operator link
The original link of `operator pattern` is a meaningless page. This commit updates the link to the correct `operator pattern` page.
2021-03-29 11:54:32 +08:00
santachopa 1b1382bd12 Translate reference/glossary/volume-plugin.md in Korean 2021-03-29 11:20:48 +09:00
Kubernetes Prow Robot 8dbb259bac Merge pull request #24843 from ravisantoshgudimetla/patch-5
Update Resource reservation section
2021-03-28 18:30:44 -07:00
Kubernetes Prow Robot c5851cf9c9 Merge pull request #27254 from ydFu/update-reserve-compute-resources
[zh] Sync tasks pages for reserve-compute-resources.md
2021-03-28 18:26:44 -07:00
Jihoon Seo ab8b27fd6e [ko] Enhance consistency of Korean translation 2021-03-29 10:11:35 +09:00
Kubernetes Prow Robot 7ac667b3bb Merge pull request #27278 from atoato88/add-example-java-configuration-to-tutorials-index
Add configuration java microservice link to tutorials index
2021-03-28 17:30:44 -07:00
Akihito INOH 753ec3f745 Add example java link to tutorials index
This commit adds link of "Example: Configuring a Java Microservice"
to Tutorials index.
2021-03-29 08:30:15 +09:00
Kubernetes Prow Robot ba04c71760 Merge pull request #27208 from habibrosyad/move-monitoring
[id] Move monitoring.md to system-metrics.md and sync with upstream
2021-03-28 08:00:44 -07:00
Kubernetes Prow Robot bd63179912 Merge pull request #27100 from tengqm/zh-sync-install-kubeadm
[zh] Sync install-kubeadm
2021-03-28 05:02:44 -07:00
Kubernetes Prow Robot b8d7f9f72d Merge pull request #27062 from CKchen0726/zh_storage-classes-md
[zh] fix some mistakes in content/zh/docs/concepts/storage/storage-classes.md
2021-03-28 05:00:44 -07:00
Kubernetes Prow Robot 469109c1e3 Merge pull request #27217 from tengqm/zh-sync-security-overview
[zh] Resync security overview
2021-03-28 04:58:45 -07:00
Kubernetes Prow Robot 27d37b9b5f Merge pull request #27266 from ariscahyadi/move-kubeadm
[ID] Update the kubeadm setup tool index
2021-03-27 23:14:44 -07:00
Aris Cahyadi Risdianto e08c5a5333 update the kubeadm setup tool index. 2021-03-28 12:58:48 +08:00
Zhang Yong 23173257c5 Fix line separation in concepts/architecture/nodes 2021-03-28 11:10:52 +08:00
Kubernetes Prow Robot 54baa8a639 Merge pull request #27261 from npu21/node-zh
Fix line separation in concepts/architecture/nodes
2021-03-27 20:08:44 -07:00
Kubernetes Prow Robot edf03d8277 Merge pull request #27260 from npu21/reserve-zh
Explicitly specify kubernetes system daemons in doc
2021-03-27 20:06:45 -07:00
Zhang Yong 579aa6d0a4 revert 2021-03-28 11:00:26 +08:00
Zhang Yong 0721959e1f Fix line separation in concepts/architecture/nodes 2021-03-28 10:51:02 +08:00
Zhang Yong 0a17590014 Fix line separation in concepts/architecture/nodes 2021-03-28 10:40:20 +08:00
Zhang Yong c38481d348 Explicitly specify kubernetes system daemons in doc 2021-03-28 10:17:30 +08:00
Kubernetes Prow Robot cf962dedad Merge pull request #27259 from Arhell/remove-com
[id] remove command from output block
2021-03-27 19:04:44 -07:00
Yong Zhang 08e6a4bd12 Merge pull request #12 from kubernetes/master
merge from upstream
2021-03-28 10:00:54 +08:00
Arhell 229a65e46f [id] remove command from output block 2021-03-28 01:38:43 +02:00
Edson C. (aka tuxpilgrim) 72b37b1c6a Update content/pt/docs/concepts/cluster-administration/_index.md (#27255)
* Update content/pt/docs/concepts/cluster-administration/_index.md

* Update title

* Fix typo MOnitoramento
2021-03-27 13:42:43 -07:00
Kubernetes Prow Robot f5150715cc Merge pull request #26481 from feloy/consistent-singular
Use consistent pluralization for API groupings in reference
2021-03-27 09:58:44 -07:00
ydFu da8012d684 [zh] Sync tasks pages for reserve-compute-resources.md
* Sync with english version in 'Explicitly specify kubernetes system daemons in doc(#27249)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-27 21:33:28 +08:00
Kubernetes Prow Robot 248606110f Merge pull request #27245 from netodeolino/master
renamed incorrect word in Portuguese
2021-03-27 04:06:45 -07:00
Kubernetes Prow Robot d2df5edeff Merge pull request #27249 from bharath-123/fix-node-docs
Explicitly specify kubernetes system daemons in doc
2021-03-27 03:00:43 -07:00
Kubernetes Prow Robot aeca0c62bc Merge pull request #27227 from alecrajeev/Fix-Horizontal-Autoscaling-Link
Fix link for Horizontal Pod Autoscaler enhancement
2021-03-27 02:58:43 -07:00
Kubernetes Prow Robot ab0eec79d2 Merge pull request #27250 from stefan-scheidewig/patch-1
Fixed typo in german setup documentation
2021-03-27 02:54:43 -07:00
Kubernetes Prow Robot 279bf48616 Merge pull request #27143 from allcentury/patch-1
update assign-pod doc
2021-03-27 02:52:43 -07:00
Kubernetes Prow Robot bf966609d6 Merge pull request #27140 from perithompson/Update-Windows-Reviewers
Updated Windows docs reviewers
2021-03-27 02:24:43 -07:00
Stefan Scheidewig c2ab7156ef Fixed typo in german setup documentation 2021-03-27 10:15:54 +01:00
Kubernetes Prow Robot 2d568916a9 Merge pull request #27101 from mengjiao-liu/update-rdb-link
[en] update volume rdb `Rados Block Device` link
2021-03-27 02:14:43 -07:00
Kubernetes Prow Robot 61c6f2f5dd Merge pull request #27097 from vaibhav2107/link-helm
Update the link to install service catalog using Helm
2021-03-27 02:12:43 -07:00
Kubernetes Prow Robot 90d598cf1f Merge pull request #27096 from hantmac/patch-3
Update dns-custom-nameservers.md
2021-03-27 02:10:43 -07:00
Kubernetes Prow Robot 10d741d22b Merge pull request #27003 from buptliuwei/patch-4
fixed  demo deployment create command
2021-03-27 02:04:44 -07:00
Kubernetes Prow Robot f7dc13e923 Merge pull request #26980 from zhiguo-lu/zh-trans-task-install-kubectl-on-mac
[zh] translate task/Install and Set Up kubectl on macOS
2021-03-27 02:02:43 -07:00
Kubernetes Prow Robot 07d6f33b61 Merge pull request #26969 from wasimj/patch-1
Correct server-side-apply.md
2021-03-27 02:00:44 -07:00
Kubernetes Prow Robot 9d6649755d Merge pull request #26947 from jihoon-seo/patch-4
Update href to the anchor in the same page
2021-03-27 01:56:43 -07:00
Kubernetes Prow Robot 2d31364e3c Merge pull request #26920 from SergeyKanzhelev/nameAsIdentifier
added note about the name being an identifier
2021-03-27 01:52:43 -07:00
Henry Liu 2c530c295a Improve "look and feel" of tabs to make it clearer where they start/end (#26828)
* improve "look and feel" of tabs to make it clearer where they start/end

* add border-radius to tab-pane

* remove the .td-content .hightlight margin when inside the tab-content
2021-03-27 01:50:43 -07:00
Bharath Vedartham fa5ef755a2 Explicitly specify kubernetes system daemons 2021-03-27 13:52:54 +05:30
Kubernetes Prow Robot 51aa022352 Merge pull request #27195 from pgy11/master
ko: fix typo in mysql-wordpress-persistent-volume
2021-03-27 00:24:43 -07:00
Arhell 79577607c8 remove command 2021-03-27 00:11:06 +02:00
Neto Deolino a6333facb4 renamed incorrect word in Portuguese 2021-03-26 18:04:37 -03:00
carol valencia 2df104f939 chore: content/es/docs/concepts/security/overview 2021-03-26 15:46:18 -03:00
carol valencia e9783b0cb4 feat: content/es/docs/concepts/security/overview 2021-03-26 12:01:17 -03:00
Kubernetes Prow Robot 3db583a9cd Merge pull request #25733 from leventogut/patch-1
update container-lifecycle-hooks.md for third hook handler i,.e. TCP
2021-03-26 07:06:44 -07:00
Kubernetes Prow Robot 55205a5c1f Merge pull request #27225 from reylejano/update-denyexeconprivileged-removal
Update DenyExecOnPrivileged and DenyEscalatingExec deprecation notice
2021-03-26 06:40:43 -07:00
Marc Bihlmaier f73f6c33e5 Update kubeadm-init.md (#27199)
* Update kubeadm-init.md

fix anchor

* Update content/en/docs/reference/setup-tools/kubeadm/kubeadm-init.md

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>
2021-03-26 06:00:43 -07:00
Kubernetes Prow Robot a180fc3c39 Merge pull request #27224 from Arhell/remove
remove command
2021-03-26 05:02:43 -07:00
Kubernetes Prow Robot dc89dbc502 Merge pull request #26793 from es1o/patch-1
Add information about Parallel Pod Management
2021-03-26 05:00:43 -07:00
Kubernetes Prow Robot 684c388aae Merge pull request #26779 from debugwish/patch-1
unindent code in services-networking/connect-applications-service.md
2021-03-26 04:58:43 -07:00
Kubernetes Prow Robot 12d45e7519 Merge pull request #26760 from neha-viswanathan/26470-update-helm-repo
Update Helm charts repo to ArtifactHub
2021-03-26 04:54:43 -07:00
Kubernetes Prow Robot fba5a42421 Merge pull request #26713 from adisky/patch-4
Update pod-infra-container-image description
2021-03-26 04:52:43 -07:00
Kubernetes Prow Robot d8bed613ff Merge pull request #26701 from juampynr/patch-6
Add example to restore snapshot
2021-03-26 04:50:43 -07:00
Kubernetes Prow Robot 400d6cae16 Merge pull request #26700 from juampynr/patch-5
Demonstrate how to use secure communication
2021-03-26 04:48:43 -07:00
Kubernetes Prow Robot a2bb7a69a9 Merge pull request #26677 from iamhesir/patch-1
Remove duplicate version-check
2021-03-26 04:46:43 -07:00
Kubernetes Prow Robot 6131c455fd Merge pull request #26659 from jailton/en/docs/tasks
Update content/en/docs/tasks/access-application-cluster/port-forward-access-application-cluster.md
2021-03-26 04:44:43 -07:00
Kubernetes Prow Robot 27cf5a0f0d Merge pull request #26574 from AliRezaTaleghani/patch-1
Update cheatsheet.md
2021-03-26 04:42:43 -07:00
Kubernetes Prow Robot 999175b4d6 Merge pull request #26546 from khansuhel/patch-1
Update horizontal-pod-autoscale.md
2021-03-26 04:40:43 -07:00
Kubernetes Prow Robot 7f5b5b22dd Merge pull request #26498 from max-cx/patch-2
Update control-plane-node-communication.md
2021-03-26 04:38:43 -07:00
Kubernetes Prow Robot 7956668252 Merge pull request #26473 from kakarotbyte/patch-1
Update service.md
2021-03-26 04:36:43 -07:00
Kubernetes Prow Robot ec4840824d Merge pull request #26472 from kbhawkey/cleanup-usage-just
clean up use of word: just
2021-03-26 04:34:43 -07:00
Kubernetes Prow Robot 00d15424e9 Merge pull request #26444 from derektamsen/chore/apiserver-access-portname-portnumber
chore(access-cluster): update references of port_name to include usage or port number
2021-03-26 04:32:43 -07:00
Kubernetes Prow Robot 59d1b368c1 Merge pull request #26018 from CharlyRipp/patch-1
Update misleading webhook authentication documentation
2021-03-26 04:22:44 -07:00
Kubernetes Prow Robot 16fcbcba69 Merge pull request #25735 from mpatters72/patch-2
Include missing cert export step
2021-03-26 03:30:45 -07:00
Kubernetes Prow Robot f2df7eff7d Merge pull request #27236 from ydFu/update-change-default-storage-class
[zh] Sync tasks pages for change-default-storage-class.md
2021-03-26 02:16:43 -07:00
ydFu e181b9330b [zh] Sync tasks pages for change-default-storage-class.md
* Sync with english version in 'Update change-default-storage-class.md (#25804)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-26 15:50:17 +08:00
konglinghang e6aa137ac2 fix a word translation 2021-03-26 14:35:21 +08:00
Kubernetes Prow Robot 19505fdce2 Merge pull request #27218 from Xunzhuo/patch-9
Complete Scripts Description
2021-03-25 23:12:43 -07:00
Kubernetes Prow Robot ec7f74d65e Merge pull request #27230 from ydFu/update-hello-minikube
[zh] Sync tutorials pages for hello-minikube.md
2021-03-25 22:48:43 -07:00
ydFu f0de1c3e2b [zh] Sync tutorials pages for hello-minikube.md
* Sync with english version in 'Update hello minikube page (#27212)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-26 13:44:05 +08:00
Qiming Teng 487bd4fa46 [zh] Resync security overview 2021-03-26 13:03:45 +08:00
Kubernetes Prow Robot 50eea90c0a Merge pull request #27232 from jihoon-seo/patch-5
Fix line separation in concepts/architecture/nodes
2021-03-25 22:02:43 -07:00
Jihoon Seo df3eabc37c Fix line separation in concepts/architecture/nodes 2021-03-26 11:39:58 +09:00
Alec Rajeev 10be302dce Fix link for Horizontal Pod Autoscaler enhancement 2021-03-25 21:34:59 -04:00
BITLIU 2eee57c425 Complete scripts descriptions
add lsync.sh hash-files.sh linkchecker.py  description

remove  replace-capture.sh description
2021-03-26 09:30:33 +08:00
BITLIU 357a1225f6 Update scripts/README.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-03-26 09:27:01 +08:00
Rey Lejano a6f829f29a update denyexeconprivileged removal to release 1.21
update denyexeconprivileged removal to release 1.21

update denyexeconprivileged removal to release 1.21
2021-03-25 18:02:29 -07:00
Kubernetes Prow Robot c9f42c1389 Merge pull request #27185 from atoato88/fix-errors-of-linkchecker-part2
Fix errors by linkchecker.py
2021-03-25 16:45:49 -07:00
Kubernetes Prow Robot 3ce2661a68 Merge pull request #27161 from ganeshniyer/patch-2
Update configure-upgrade-etcd.md to give an example use-case for snap…
2021-03-25 16:21:49 -07:00
Arhell 576d580264 remove command 2021-03-26 00:39:27 +02:00
Kubernetes Prow Robot 53a1678b57 Merge pull request #27212 from RA489/updatemkubedash
Update hello minikube page
2021-03-25 09:49:30 -07:00
Federico Gallo 34d5b38801 Updated README-es.md added note and step required for build and serve the image with docker (install git submodules). (#27042) 2021-03-25 08:03:30 -07:00
Kubernetes Prow Robot 5576bdf7a2 Merge pull request #27154 from ariscahyadi/id-fix-minikube-install
[ID] Remove minikube instalasi guide and add index untuk tools to redirect to original minikube install
2021-03-25 07:49:31 -07:00
BITLIU 8cf40d5dea Complete Scripts Description
Add 4 new Scripts to README
2021-03-25 20:50:54 +08:00
Kubernetes Prow Robot 67da6a3ef0 Merge pull request #27184 from ydFu/update-run-replicated-stateful-application
[zh] Sync tasks pages for run-replicated-stateful-application.md
2021-03-25 05:23:29 -07:00
Anynou 5685768847 [es] Add content/es/docs/concepts/configuration/manage-resources-containers.md (#25920)
* content/es/docs/concepts/configuration/manage-resources-containers.md

* Apply review comment

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Apply suggestions

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/configuration/manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update manage-resources-containers.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
Co-authored-by: Rael Garcia <rael@rael.io>
2021-03-25 01:13:29 -07:00
M. Habib Rosyad eb9ea62041 id: move monitoring.md to system-metrics.md and sync with upstream 2021-03-25 14:02:18 +08:00
M. Habib Rosyad 1abf84e7cd id: sync supported-doc-versions.md 2021-03-25 13:55:28 +08:00
RA489 bd18b152ab Update hello minikube page 2021-03-25 11:16:55 +05:30
M. Habib Rosyad 8d7396eb14 id: sync task-tutorial-prereqs.md 2021-03-25 13:42:12 +08:00
ganeshniyer c10d270dc3 Update content/en/docs/tasks/administer-cluster/configure-upgrade-etcd.md
Co-authored-by: Rey Lejano <52760880+reylejano@users.noreply.github.com>
2021-03-24 21:35:19 +05:30
ganeshniyer d00a40c724 Update content/en/docs/tasks/administer-cluster/configure-upgrade-etcd.md
Co-authored-by: Rey Lejano <52760880+reylejano@users.noreply.github.com>
2021-03-24 21:34:58 +05:30
Giyoon Park f2657734f8 ko: fix typo in content/ko/docs/tutorials/stateful-application/mysql-wordpress-persistent-volume.md
This PR fixes typo
2021-03-24 23:20:01 +09:00
Kubernetes Prow Robot b41a02de59 Merge pull request #27186 from WenxingLai/patch-1
correct misleading Chinese translation
2021-03-24 05:12:08 -07:00
Kubernetes Prow Robot 7839d5fc68 Merge pull request #26407 from murillodigital/master
[es] Add content/es/docs/tasks/manage-kubernetes-objects/declarative-…
2021-03-23 23:52:05 -07:00
Akihito INOH b81f63776e Fix errors by linkchecker.py
This commit fixes errors which are shown by linkchecker.py on en/docs/*.
2021-03-24 13:41:56 +09:00
WenxingLai 5544c20819 correct misleading Chinese translation in dns-subdomain-names and dns-label-names 2021-03-24 11:12:26 +08:00
ydFu 11365d493b [zh] Sync tasks pages for run-replicated-stateful-application.md
* Sync with english version in 'Avoid using namespace that is a reserved object (#27128)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-24 10:09:29 +08:00
Kubernetes Prow Robot 00d5073abf Merge pull request #27173 from s-kawamura-w664/patch-ko
delete a illegal code in ko/docs.
2021-03-23 18:16:05 -07:00
Kubernetes Prow Robot 05b596d856 Merge pull request #27168 from oomichi/redirect-kubeadm-ko
ko: Replace redirect links of kubeadm
2021-03-23 18:14:05 -07:00
Kubernetes Prow Robot c2dd2e4e5d Merge pull request #27153 from ariscahyadi/id-relocate-search
[ID] Relocate 'search.md' from 'docs/id' into 'id' directory
2021-03-23 15:56:05 -07:00
Kubernetes Prow Robot 8f81a069fe Merge pull request #27128 from sdwerwed/patch-1
Avoid using namespace that is a reserved object
2021-03-23 15:40:06 -07:00
Kubernetes Prow Robot b66a113b18 Merge pull request #27138 from habibrosyad/remove-sitemap
[id] Remove unused sitemap.md
2021-03-23 08:41:37 -07:00
Kubernetes Prow Robot 75e3171f49 Merge pull request #27137 from habibrosyad/remove-templates
[id] Remove unused templates directory
2021-03-23 08:39:36 -07:00
Aris Cahyadi Risdianto fbdd388005 remove minikube instalasi guide and add index untuk tools.
remove minikube installation guide and add index untuk tools.
2021-03-23 23:33:59 +08:00
Kubernetes Prow Robot 2ddc493bce Merge pull request #27175 from ydFu/update-pr-27172
[zh] Sync task pages for kubeadm-certs,kubeadm-upgrade,_index.md
2021-03-23 04:37:36 -07:00
ydFu 5f943c1ff4 [zh] Umbrella Sync: task pages for kubeadm-certs,kubeadm-upgrade,_index.md
* Sync with english version in 'Fix errors by linkchecker.py in tasks folder (#27172)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-23 16:24:08 +08:00
Kubernetes Prow Robot a6a0ece529 Merge pull request #27160 from ydFu/update-operator
[zh] Sync concepts pages for extend-kubernetes\operator.md
2021-03-22 22:39:35 -07:00
Kubernetes Prow Robot 037bfce5ca Merge pull request #27142 from ydFu/update-container-runtimes
[zh] Sync setup pages for production-environment\container-runtimes.md
2021-03-22 22:37:36 -07:00
Kubernetes Prow Robot 525264a313 Merge pull request #27172 from atoato88/fix-errors-of-linkchecker-in-tasks-folder
Fix errors by linkchecker.py in tasks folder
2021-03-22 20:13:36 -07:00
Akihito INOH d7c2dd670b Fix errors of linkchecker.py in tasks folder
This commit fixes `Should use relative paths` errors which are shown by `linkchecker.py`
on `en/docs/tasks/*`.
2021-03-23 11:13:46 +09:00
Jose Roberto Almaraz aaea5d32d0 Add/pt/docs/reference/access-authn-authz/bootstrap-tokens (#27163)
* adding glossarry terms used in authentication page

* adding bootstrap token translation

* reviewing alternate-x509-schemes.md

* reviewing bootstrap tokens page

* removing files from wrong branch
2021-03-22 18:45:35 -07:00
s-kawamura-w664 9d18f320ee delete a illegal code in ko. 2021-03-23 09:15:28 +09:00
Arhell f755079d15 [ja] fix column alignment 2021-03-23 00:22:35 +02:00
Kenichi Omichi 7e171dfcbe ko: Replace redirect links of kubeadm
/docs/reference/setup-tools/kubeadm/kubeadm/ is redirected to
/docs/reference/setup-tools/kubeadm/
This replaces the redirect links of kubeadm with the direct links.

NOTE: The pull request for `en` language has been already merged as https://github.com/kubernetes/website/pull/26919
2021-03-22 21:13:45 +00:00
ganeshniyer 57b7232ccb Update content/en/docs/tasks/administer-cluster/configure-upgrade-etcd.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-22 17:17:20 +05:30
ganeshniyer 483857e11b Update content/en/docs/tasks/administer-cluster/configure-upgrade-etcd.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-22 17:17:04 +05:30
ganeshniyer 955acb710d Update content/en/docs/tasks/administer-cluster/configure-upgrade-etcd.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-22 17:16:56 +05:30
Kubernetes Prow Robot 18b0019b8e Merge pull request #27164 from ydFu/update-configmap
[zh] Sync concepts pages for configuration\configmap.md
2021-03-22 04:37:45 -07:00
Juampy NR 66e666f307 Add indentation to the cert parameters 2021-03-22 11:36:40 +01:00
ydFu 5214deb8a8 [zh] Sync concepts pages for configuration\configmap.md
* Sync with english version in 'clarify: add that binaryData is base64-encoded (#27066)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-22 16:14:06 +08:00
ganeshniyer 8e8b2819ac Update configure-upgrade-etcd.md to give an example use-case for snapshot using options given by etcdctl 2021-03-22 11:52:56 +05:30
ydFu 02fe081de4 [zh] Sync concepts pages for extend-kubernetes\operator.md
* Sync with english version in 'Update operator page to list tools in alphabetical order (#26676)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-22 13:59:38 +08:00
Kubernetes Prow Robot ca2219f567 Merge pull request #27134 from jihoon-seo/origin/patch-3
[ko] Update link href to translated page
2021-03-21 19:51:43 -07:00
Jihoon Seo 918ac7ecae [ko] Update link href to translated page 2021-03-22 11:10:09 +09:00
Kubernetes Prow Robot 52997fc40d Merge pull request #26929 from jralmaraz/Update/Pt/README
Update/pt/readme
2021-03-21 11:23:43 -07:00
Leonardo Murillo d0c5dbd808 Arreglando typo 2021-03-21 17:13:33 +00:00
Kubernetes Prow Robot 75c1c400bc Merge pull request #27157 from ydFu/update-control-plane-node-communication
[zh] Sync concepts pages for control-plane-node-communication.md
2021-03-21 04:45:42 -07:00
ydFu 71c5a8ee22 [zh] Sync concepts pages for architecture\control-plane-node-communication.md
* Sync with english version in 'Update control-plane-node-communication.md (#27123)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-21 19:11:59 +08:00
Kubernetes Prow Robot ac76abfcf8 Merge pull request #27151 from ydFu/update-kubeadm-certs
[zh] Sync tasks pages for kubeadm\kubeadm-certs.md
2021-03-21 02:07:42 -07:00
Aris Cahyadi Risdianto 392b1e5cda move the search.md from content/id/docs into content/id 2021-03-21 11:46:27 +08:00
ydFu eb75932e01 [zh] Sync tasks pages for kubeadm\kubeadm-certs.md
* Sync with english version in 'remove usage of the certificates API for cert renewal (#26841)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-20 21:11:52 +08:00
Kubernetes Prow Robot dab012522b Merge pull request #27149 from ydFu/update-managing-secret-using-kubectl
[zh] Sync tasks pages for managing-secret-using-kubectl.md
2021-03-20 01:51:42 -07:00
ydFu c5d6010935 [zh] Sync tasks pages for configmap-secret\managing-secret-using-kubectl.md
* Sync with english version in 'Improvement: Managing Secret using kubectl (#27136)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-20 16:13:03 +08:00
ydFu b0192d224e [zh] Sync setup pages for production-environment\container-runtimes.md
* Sync with english version in 'container-runtimes: include note about latest validated docker (#26966)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-20 15:58:44 +08:00
Kubernetes Prow Robot c3098c0d01 Merge pull request #27130 from Arhell/indent
fix indentation
2021-03-20 00:49:42 -07:00
Kubernetes Prow Robot e924620433 Merge pull request #27111 from mengjiao-liu/update-rdb-link-zh
[zh] update volume rdb `Rados Block Device` link
2021-03-19 21:09:42 -07:00
Kubernetes Prow Robot 4851540886 Merge pull request #27146 from Arhell/update
fix indent
2021-03-19 21:07:42 -07:00
Leonardo Murillo 343b912550 Nueva iteración de revisiones 2021-03-20 01:10:43 +00:00
Arhell 7d1e4408fe fix indent 2021-03-20 01:13:42 +02:00
Kubernetes Prow Robot d79edc1438 Merge pull request #27110 from edsoncelio/pt_m1_containers_lifecycle_hooks
Add content/pt/docs/concepts/containers/container-lifecycle-hooks.md
2021-03-19 12:37:44 -07:00
edsoncelio b12cbb5a0d Fix the typos suggested by code review
* manispulador -> manipulador
* dentro do cgroup e namespace do container -> dentro dos cgroups e namespaces
* tcpSocker -> tcpSocket
* conêiner-> contêiner
* Os logs para um manipulador de _hook_ não expostos em eventos de Pod -> Os logs para um manipulador de _hook_ não são expostos em eventos de Pod.
* failedPreStopHook -> FailedPreStopHook
2021-03-19 16:26:36 -03:00
Kubernetes Prow Robot 99516971c5 Merge pull request #27105 from AlexDamiao86/pt-Scale-your-app
[pt] Add scale your app in Portuguese
2021-03-19 12:17:45 -07:00
Peri Thompson 64c16a5836 Updated Windows doc reviewers 2021-03-19 18:40:30 +00:00
Anthony Ross 7be3cdcc91 update assign-pod doc
General grammar and spelling fixes.
2021-03-19 10:19:43 -07:00
Kubernetes Prow Robot 48df7ceb37 Merge pull request #27059 from ydFu/update-container-runtimes
[zh] Sync setup pages for production-environment\container-runtimes.md
2021-03-19 06:08:33 -07:00
Kubernetes Prow Robot 8c837edc4b Merge pull request #27133 from kubernetes/dev-1.20-ko.6
[ko] Sixth Korean l10n work for release-1.20
2021-03-19 05:02:33 -07:00
Kubernetes Prow Robot 0a6e7bf8f4 Merge pull request #27136 from Shubham82/fix-Managing_Secret_using_kubectl
Improvement: Managing Secret using kubectl
2021-03-19 02:16:34 -07:00
Leonardo Murillo a94ff065fc Merge branch 'master' of github.com:kubernetes/website 2021-03-19 09:10:29 +00:00
M. Habib Rosyad 811018f8ab id: remove unused sitemap.md 2021-03-19 16:14:18 +08:00
M. Habib Rosyad a3e344419b id: remove unused templates directory 2021-03-19 16:08:23 +08:00
Shubham Kuchhal 41dff008af Improvement: Managing Secret using kubectl 2021-03-19 12:41:19 +05:30
Kubernetes Prow Robot 25c236728e Merge pull request #27012 from oomichi/redirect-kubeadm-id
id: Replace redirect links of kubeadm
2021-03-18 19:54:36 -07:00
sdwerwed 388a2730f1 Avoid using namespace that is a reserved object 2021-03-19 02:16:25 +01:00
Kubernetes Prow Robot e2f760ca26 Merge pull request #26983 from illidan33/patch-1
create a secret failed
2021-03-18 17:52:36 -07:00
Derek Tamsen 525192372f chore(access-cluster): update references of port_name to include usage of port number 2021-03-18 17:52:01 -07:00
Arhell 04cc5ed8c6 fix indentation 2021-03-19 00:42:49 +02:00
ravisantoshgudimetla a9918c4af3 Update Resource reservation section
Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
Co-authored-by: James Sturtevant <jsturtevant@gmail.com>
2021-03-18 18:37:10 -04:00
Cristian Klein c5e0cc66d8 Update content/en/docs/concepts/overview/components.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-03-18 21:10:04 +01:00
Kubernetes Prow Robot a4289a390f Merge pull request #27123 from pierreilki/patch-1
Update control-plane-node-communication.md
2021-03-18 11:45:07 -07:00
Alexandre Maia 1b56b273da Update scale-intro.html
Replace "Rolling updates" for "Atualizações graduais"
2021-03-18 14:16:32 -03:00
Kubernetes Prow Robot e19bef4f17 Merge pull request #25804 from gprasath/patch-3
Update change-default-storage-class.md
2021-03-18 10:11:20 -07:00
pierre villard d0645e2384 Update control-plane-node-communication.md
Kubernetes Service is located on Default namespace. Not in all nespaces
2021-03-18 15:58:06 +01:00
Kubernetes Prow Robot 94e3f1775a Merge pull request #26949 from jihoon-seo/210308-Update-outdated-files-in-dev-1.20-ko.6
[ko] Update outdated files in dev-1.20-ko.6 (p2)
2021-03-18 07:03:19 -07:00
Kubernetes Prow Robot 57141814a4 Merge pull request #27112 from mengjiao-liu/update-rdb-link-ko
[ko] update volume rdb `Rados Block Device` link
2021-03-17 22:39:18 -07:00
Kubernetes Prow Robot cb7edbf398 Merge pull request #27113 from mengjiao-liu/sync-dynamic-provisioning-zh
[zh] sync content/en/docs/concepts/storage/dynamic-provisioning.md
2021-03-17 20:55:20 -07:00
Kubernetes Prow Robot 38a11d43ee Merge pull request #27102 from mengjiao-liu/sync-volume
[zh] Sync content/en/docs/concepts/storage/volumes.md
2021-03-17 20:11:19 -07:00
mengjiao.liu 9c9366a36e [zh] sync content/en/docs/concepts/storage/dynamic-provisioning.md 2021-03-18 11:02:08 +08:00
edsoncelio 90e2984666 Fix title 2021-03-17 23:49:02 -03:00
mengjiao.liu 1aa40b810e [ko] update volume rdb Rados Block Device link 2021-03-18 10:35:18 +08:00
edsoncelio dd89235708 Add extra space at line 90 2021-03-17 23:32:40 -03:00
mengjiao.liu 243317319d [zh] update volume rdb Rados Block Device link 2021-03-18 10:32:30 +08:00
edsoncelio 6863270776 Add the content of content/pt/docs/concepts/containers/container-lifecycle-hooks.md 2021-03-17 23:29:01 -03:00
mengjiao.liu 5ae7283deb update volume rdb Rados Block Device link 2021-03-18 10:27:24 +08:00
Kubernetes Prow Robot cb5e71244b Merge pull request #27044 from Arhell/upd
[zh] update invalid web page link for api group
2021-03-17 17:49:19 -07:00
Karen Bradshaw 3ff5ec1eff clean up use of word: just 2021-03-17 19:57:40 -04:00
Mike Patterson f7506a3d98 Drop vagrant path and use generic name. 2021-03-17 15:38:56 -07:00
Mike Patterson 1c237dabfa Update content/en/docs/reference/access-authn-authz/certificate-signing-requests.md
Co-authored-by: Jordan Liggitt <jordan@liggitt.net>
2021-03-17 15:15:34 -07:00
Kubernetes Prow Robot ee85c6c6c6 Merge pull request #25488 from prankul88/expose-service-update
Update expose service intro
2021-03-17 15:07:19 -07:00
tibetsam 1b12bb9cc4 remove usage of the "certificates" API for cert renewal (#26841)
* remove usage of the "certificates" API for cert renewal

"--use-api" option is removed from kubeadm alpha certs renew command since k8s 1.19

* Update kubeadm-certs.md

* Update content/en/docs/tasks/administer-cluster/kubeadm/kubeadm-certs.md

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>

Co-authored-by: Lubomir I. Ivanov <neolit123@gmail.com>
2021-03-17 13:23:20 -07:00
Kubernetes Prow Robot 70dd1479ad Merge pull request #26484 from max-cx/patch-1
Update nodes.md
2021-03-17 13:21:19 -07:00
Jai Govindani b407a0103b docs(configure-redis-using-configmap): update for clarity (#25712)
* docs(configure-redis-using-configmap): update for clarity

Signed-off-by: Jai Govindani <jai@honestbank.com>

* fix(configure-redis-using-configmap): incorrect volumeMount index

Signed-off-by: Jai Govindani <jai@honestbank.com>

* fix(configure-redis-using-configmap): show Pod status as Running, separate commands from output

Signed-off-by: Jai Govindani <jai@honestbank.com>

* fix(configure-redis-using-configmap): typo

Signed-off-by: Jai Govindani <jai@honestbank.com>

* fix(configure-redis-using-configmap): configmap name

Signed-off-by: Jai Govindani <jai@honestbank.com>
2021-03-17 13:13:19 -07:00
Kubernetes Prow Robot 9a9c2f3f74 Merge pull request #26966 from enyinna1234/fix-docker-version
container-runtimes: include note about latest validated docker
2021-03-17 12:19:18 -07:00
AlexDamiao86 06abcf6b4e Update link explore to expose and expose to scale 2021-03-17 16:09:58 -03:00
Kubernetes Prow Robot 88f1a12bea Merge pull request #23492 from rodrigoporcionato/patch-1
Update _index.html
2021-03-17 11:37:19 -07:00
AlexDamiao86 ebd67aaabd Add Scale your App in Portuguese 2021-03-17 15:31:29 -03:00
Kubernetes Prow Robot b9729f785c Merge pull request #24224 from miry/update-ingress-example-with-new-api-ja
[ja] Use apiversion networking.k8s.io/v1 for ingress
2021-03-17 10:34:32 -07:00
Kubernetes Prow Robot 6f503c98cc Merge pull request #27063 from vaibhav2107/replace-link
Update the link
2021-03-17 10:05:57 -07:00
mengjiao.liu 449d06ec0e [zh] Sync content/en/docs/concepts/storage/volumes.md 2021-03-17 23:05:50 +08:00
Kubernetes Prow Robot 383ce5fee5 Merge pull request #27076 from AlexDamiao86/dev-1.20-pt.M1
[pt] Add Expose Your App Publicly in Portuguese
2021-03-17 07:58:57 -07:00
Qiming Teng 5805ef3738 [zh] Sync install-kubeadm 2021-03-17 20:21:46 +08:00
vaibhav 34f1f44e47 Update the link to install service catalog using Helm 2021-03-17 14:00:09 +05:30
Jeremy 74ce07a55e Update dns-custom-nameservers.md 2021-03-17 16:05:47 +08:00
Sergey Kanzhelev 607e086ffd converted Node to a separate section 2021-03-17 06:26:30 +00:00
Sergey Kanzhelev eb4b67d8a2 Update content/en/docs/concepts/overview/working-with-objects/names.md
Co-authored-by: Celeste Horgan <celeste@cncf.io>
2021-03-16 23:22:10 -07:00
Kubernetes Prow Robot 8513a4d041 Merge pull request #27073 from neolit123/1.21-update-containerd-restart-order
container-runtimes: add note about restarting containerd
2021-03-16 22:36:56 -07:00
Kubernetes Prow Robot 98a1647ff6 Merge pull request #26964 from seokho-son/outdated-1.20-ko.6
[ko] Update outdated files in dev-1.20-ko.6 (p1)
2021-03-16 21:02:56 -07:00
Kubernetes Prow Robot 2ba9ed2300 Merge pull request #26827 from santachopa/persistent-volumne-claim
Translate reference/glossary/persistent-volumn-claim.md in Korean
2021-03-16 19:36:57 -07:00
Jihoon Seo 814b9f92cc [ko] Update outdated files in dev-1.20-ko.6 (p2) 2021-03-17 11:20:09 +09:00
CKchen0726 b891ef312a [zh] fix spelling mistake in content/zh/docs/concepts/storage/storage-classes.md 2021-03-17 10:00:47 +08:00
santachopa 40a5b3b9a5 Translate reference/glossary/persistent-volumn-claim.md in Korean 2021-03-17 08:39:25 +09:00
Alexandre Maia 57fd2ffa47 Update expose-intro.html 2021-03-16 16:12:49 -03:00
Alexandre Maia 088f975916 Update expose-interactive.html 2021-03-16 16:11:33 -03:00
Kubernetes Prow Robot cd800027a5 Merge pull request #27080 from DevLazio/patch-1
Fixed markdown links in french translation
2021-03-16 10:04:36 -07:00
Kubernetes Prow Robot 645d72ca95 Merge pull request #27040 from houjun41544/20210312-schedulerplugin
Remove deprecated scheduling plugin NodeResourceLimits from config.md
2021-03-16 09:54:36 -07:00
Kubernetes Prow Robot 0a2eff62d3 Merge pull request #27074 from atoato88/fix-feature-gate-link
Replace with relative path for feature gate link
2021-03-16 09:28:35 -07:00
DevLazio 71c463ae18 Fixed markdown links in french translation 2021-03-16 14:44:16 +01:00
Kubernetes Prow Robot c65f5f9c28 Merge pull request #26756 from jailton/pt/docs/kubernetes-basics/create-cluster
Update content/pt/docs/tutorials/kubernetes-basics/create-cluster/cluster-intro.html
2021-03-16 06:18:35 -07:00
Kubernetes Prow Robot a8b93818ad Merge pull request #26976 from tengqm/update-compref
Update data type presentation in component reference
2021-03-16 02:42:35 -07:00
AlexDamiao86 c1fb44eb23 [pt] Add Expose Your App Publicly in Portuguese 2021-03-15 22:18:32 -03:00
Kubernetes Prow Robot bc451ce8f9 Merge pull request #27055 from atoato88/fix-install-kubectl-redirect
Replace redirect links of install kubectl
2021-03-15 17:00:34 -07:00
Akihito INOH 45f1017f86 Replace with relative path for featuregate link
This commit replaces abs path link for feature gate with relative
path /docs/reference/command-line-tools-reference/feature-gates/
2021-03-16 07:29:54 +09:00
Lubomir I. Ivanov ddf1157e47 container-runtimes: add note about restarting containerd
Add note about restarting containerd when the cgroup driver
is changed to "systemd".
2021-03-15 22:43:52 +02:00
Kubernetes Prow Robot d267f3b079 Merge pull request #26954 from Kappie37/patch-1
Update broken link in access-cluster-api.md
2021-03-15 12:28:34 -07:00
Kubernetes Prow Robot efc1c2ddf4 Merge pull request #27016 from atoato88/fix-server-side-apply-link-on-setup-release-notes
Fix Transferring Ownership link on kubernetes.io/docs/setup/release/notes/
2021-03-15 12:16:34 -07:00
Kubernetes Prow Robot 6565ae6c90 Merge pull request #26991 from dec5e/patch-1
Update the note ragarding matchLabels vs matchExpressions in the Deployment document
2021-03-15 12:14:34 -07:00
Kubernetes Prow Robot 930a9b2515 Merge pull request #27009 from wjgilmore/patch-1
Corrected port designation in get service output
2021-03-15 12:12:34 -07:00
Kubernetes Prow Robot 47b2ba580c Merge pull request #27027 from vaibhav2107/link-page
Linking a page
2021-03-15 11:41:31 -07:00
Kubernetes Prow Robot 3ca7abce96 Merge pull request #27058 from jihoon-seo/patch-5
Fix broken link
2021-03-15 11:35:32 -07:00
Kubernetes Prow Robot ab2d1fb8b3 Merge pull request #27066 from Shegox/patch-1
clarify: add that binaryData is base64-encoded
2021-03-15 11:19:05 -07:00
Kubernetes Prow Robot a3cd78a22a Merge pull request #27061 from pacoxu/beta/storage
correct the version of beta annotation for storage
2021-03-15 11:17:04 -07:00
Federico Gallo a71d623916 [es] Update content/es/docs/reference/glossary/limitrange.md (#27041)
* Fixed a misconception that I had and I forgot to fix before the merge

* Update content/es/docs/reference/glossary/limitrange.md

Added suggested glossary tooltip : line23.
Thanks

Co-authored-by: Rael Garcia <rael@rael.io>

Co-authored-by: Rael Garcia <rael@rael.io>
2021-03-15 08:25:05 -07:00
Tobias 69172dfd8e clarify: add that binaryData is base64-encoded 2021-03-15 15:38:29 +01:00
Vaibhav Goel 6cb22c90a5 Update content/ja/docs/tasks/run-application/force-delete-stateful-set-pod.md
Co-authored-by: makocchi <makocchi@gmail.com>
2021-03-15 16:59:50 +05:30
vaibhav 402a2f9002 Update the link 2021-03-15 16:25:49 +05:30
Vaibhav Goel 75fa920cf3 Update content/en/docs/tasks/extend-kubernetes/configure-multiple-schedulers.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-15 12:39:28 +05:30
pacoxu 9c7c311ec2 correct the version of beta annotation for storage 2021-03-15 13:27:51 +08:00
ydFu b274911ceb [zh] Sync setup pages for production-environment\container-runtimes.md
* Sync with english version in 'Update Ubuntu/Debian installation instructions to use Signed-By option (#26952)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-15 10:18:10 +08:00
Jihoon Seo bf312020cf Fix broken link 2021-03-15 11:14:11 +09:00
Kubernetes Prow Robot eb94a68937 Merge pull request #26951 from jihoon-seo/210308-Reflect-some-changes-to-dev-1.20-ko.6
Reflect some changes to dev-1.20-ko.6
2021-03-14 16:39:04 -07:00
Akihito INOH f553cbbebc Replace redirect links of install kubectl
/docs/tasks/tools/install-kubectl/ is redirected to
/docs/tasks/tools/
This commit replace the redirect links for installing kubectl
with direct links.
2021-03-15 08:22:29 +09:00
Arhell 004df073c4 [vi] update invalid web page link for api group 2021-03-15 00:29:41 +02:00
Kubernetes Prow Robot 885daa22bf Merge pull request #26646 from jailton/en/concepts/storage
Fix content/en/docs/concepts/storage/volumes.md
2021-03-14 14:49:05 -07:00
Federico Gallo 365af1356b [es] Fix/Update content/es/docs/concepts/policy/_index.md (#27043)
* Fix: title is put in quotes. Update: Added description, probably deleted by mistake reviewing change suggestions

* Apply suggestions from code review

Realmente no estoy entendiendo por qué el "Commit suggestions" no está realizando el commit al fork. Lo voy a intentar nuevamente, pero esta vez haciendo un review ...

Éste mensaje se corresponde con el Commit suggestion al utilizar el "Add  suggestion to batch" no creo que funcione tampoco en cuyo caso voy a intentar hacer (como mencioné en el párrafo anterior) un review para que los cambios persistan.

Co-authored-by: Rael Garcia <rael@rael.io>

Co-authored-by: Rael Garcia <rael@rael.io>
2021-03-14 11:09:04 -07:00
edsoncelio 3a71a0064f Add partial translation 2021-03-14 09:55:39 -03:00
Arhell 59e056c086 [zh] update invalid web page link for api group 2021-03-14 14:27:57 +02:00
Jailton Lopes 3f6343225d Rewriting the description in the background section of how the volume behaves when a pod ceases to exist.
Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-03-13 23:03:21 -03:00
Kubernetes Prow Robot ffd02da080 Merge pull request #27020 from CKchen0726/ja_user-guide-windows-containers
[ja] fix spelling mistake
2021-03-13 08:51:04 -08:00
houjun 22415dbc29 Remove deprecated scheduling plugin NodeResourcesFit from config.md 2021-03-13 23:34:31 +08:00
Kubernetes Prow Robot 8028d4ee1a Merge pull request #26922 from oke-py/26911
Translate docs/tasks/configmap-secret/managing-secret-using-kubectl/ into Japanese
2021-03-13 03:21:04 -08:00
Kubernetes Prow Robot 6dff5ec1f3 Merge pull request #26674 from shuuji3/contribute/review/reviewing-prs
Translate contribute/review/reviewing-prs into Japanese
2021-03-13 03:19:04 -08:00
Kubernetes Prow Robot f2aa6904a9 Merge pull request #26782 from dragoneena12/horizontal-pod-autoscale-walkthrough-ja
Translate tasks/run-application/horizontal-pod-autoscale-walkthrough/ into Japanese
2021-03-13 03:17:05 -08:00
Kubernetes Prow Robot d0aca8bba8 Merge pull request #27023 from wardenlym/master
[zh] fix format mistake
2021-03-13 02:23:04 -08:00
Kubernetes Prow Robot 3c17a7e50b Merge pull request #27019 from CKchen0726/zh_connect-applications-service
[zh] fix spelling mistake in ./content/zh/docs/concepts/service-networking/connect-applications-service.md
2021-03-12 19:19:04 -08:00
Kubernetes Prow Robot faf889af8e Merge pull request #27029 from oomichi/redirect-kubeadm-zh
zh: Replace redirect links of kubeadm
2021-03-12 19:13:03 -08:00
Kubernetes Prow Robot 5e9aed04e1 Merge pull request #27030 from Arhell/upd
[zh] update link to Cinder CSI driver documentation
2021-03-12 19:11:03 -08:00
Kubernetes Prow Robot 8d779533c6 Merge pull request #26945 from jihoon-seo/patch-3
Fix typo (Linux -> macOS)
2021-03-12 17:41:04 -08:00
Arhell ca5680fa49 [zh] update link to Cinder CSI driver documentation 2021-03-13 01:05:36 +02:00
Kenichi Omichi 70db6c1fcb zh: Replace redirect links of kubeadm
/docs/reference/setup-tools/kubeadm/kubeadm/ is redirected to /docs/reference/setup-tools/kubeadm/
This replaces the redirect links of kubeadm with the direct links.

NOTE: The pull request for `en` language has been already merged as https://github.com/kubernetes/website/pull/26919
2021-03-12 22:10:58 +00:00
vaibhav b87508b7fb Linking a page 2021-03-12 21:31:00 +05:30
wardenlym a8634b88c5 fix format mistake in zh/docs/setup/production-environment/tools/kubeadm/kubelet-integration.md 2021-03-12 22:37:16 +08:00
Edson (aka tuxpilgrim) ba4cf5f99e Update content/pt/docs/concepts/scheduling-eviction/ (#26924)
* Move pod-overhead.md to schedulling-eviction

* Add pod-overhead.md translation

* Update content/pt/docs/concepts/scheduling-eviction/pod-overhead.md

* Fix name: test-Pod to name: test-pod

* Small fixes

* remove reviewers
* change 'fonte' to 'código fonte'

* Add the suggestion by code review

* Update the references with the original doc

* Update the _index.md
2021-03-12 05:08:18 -08:00
Kubernetes Prow Robot 35eea8db79 Merge pull request #26960 from edsoncelio/pt_m1_containers_environment
Add content/pt/docs/concepts/containers/container-environment.md
2021-03-12 03:06:17 -08:00
Kubernetes Prow Robot 0d36ee6479 Merge pull request #26623 from rikatz/patch-3
Propose Jailton, Yago and Ricardo as pt approvers
2021-03-12 02:10:18 -08:00
Kubernetes Prow Robot e2f4b96503 Merge pull request #26939 from Iceber/update-access-cluster-api
[zh] update access-cluster-api.md
2021-03-12 01:54:18 -08:00
Iceber Gu d1025ef5ab [zh] update access-cluster-api.md
Signed-off-by: Iceber Gu <wei.cai-nat@daocloud.io>
2021-03-12 17:48:44 +08:00
Kubernetes Prow Robot 2fa6617f32 Merge pull request #27006 from maciaszczykm/fix/resize-images
Restore images in Kubernetes Dashboard blog post
2021-03-12 01:26:17 -08:00
Akihito INOH 51f72c50ff Fix transferring-ownership link
This commit fixes transferring-ownership link on `/docs/setup/release/notes/`.
2021-03-12 14:47:43 +09:00
edsoncelio 465d5dcd7a Starting translation to pt 2021-03-11 22:54:11 -03:00
Sergey Kanzhelev 40950997be Update content/en/docs/concepts/architecture/nodes.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-03-11 17:19:23 -08:00
Jose Almaraz 4062beca2d addressing section title content afer review 2021-03-12 11:29:57 +11:00
Kenichi Omichi 3c204eddf9 id: Replace redirect links of kubeadm
/docs/reference/setup-tools/kubeadm/kubeadm/ is redirected to
/docs/reference/setup-tools/kubeadm/
This replaces the redirect links of kubeadm with the direct links.
2021-03-11 23:53:58 +00:00
Federico Gallo 3ae3c7c7e7 [es] Add content/es/docs/concepts/policy/limit-range.md (#26816)
* README.md Added description/suggestion to install git submodules.
Created _index.md for es/docs/concept/policy.
Created limit-range.md, content-type:concept for es/docs/concepts/policy

* Changes to the README-es.md file discarded to apply a separate commit for it

* Fast fix, missed word

* Update content/es/docs/concepts/policy/limit-range.md

Suggestion, Remove "en" (fix). Personal note: I'm not sure if the suggested change makes clear that the system administrator can force the users to follow specifications with new politics.. Not always the user have control on the cluster

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

lgtm

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

Nice

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

look at that trained eye! Good job thnaks

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

lgtm

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

Not sure about the translation, it sound better but it should be clear with terminology. A pod or container request resources it's not a requirement. But the same time we have [this definition](https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/))
"Requests describes the minimum amount of compute resources required. If Requests is omitted for a container, it defaults to Limits if that is explicitly specified, otherwise to an implementation-defined value."

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

Lgtm

Co-authored-by: Rael Garcia <rael@rael.io>

* Suggested change discarded, reason: Contenedores is not defined

* Sorry my bad, Contenedores definition was there but as a singular noun not plural. Fiexed (line 51).. as well as pods (line 53

* Apply suggestions from code review

Wrong button last time. Added suggestions (as single commit)

Co-authored-by: Rael Garcia <rael@rael.io>
Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* · Added: description/overview,         file: content/es/docs/concepts/policy/_index.md
· Added: description,                  file: content/es/docs/concepts/policy/limit-range.md
· Midified: structure and dreafting,   file: content/es/docs/concepts/policy/limit-range.md
· Added: term to glossary (es),        file: content/es/docs/reference/glossary/limitrange.md

* Added Container word I deleted earlier today, lines 25,26,27.
Unnecessary repeated tooltip were removed allowing only once possible new concept per paragraph. Too many tooltip

* Fixed weight property commited by mistake previously.

* Added Suggested change manually

* Fixed Last suggested change

* All right I found the suggested change. Done

* Update content/es/docs/concepts/policy/limit-range.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/policy/limit-range.md

Co-authored-by: Rael Garcia <rael@rael.io>

* Replaced occurrences of "Peticiones" by "Solicitudes" as it was suggested previously for line 29

Co-authored-by: Rael Garcia <rael@rael.io>
Co-authored-by: Victor Morales <chipahuac@hotmail.com>
2021-03-11 13:18:18 -08:00
Enyinna Ochulor 2df5a5226b Remove Docker Version Pinning
This commit fixes the packages not found error during
Docker installation. The packages containerd.io 1.2.13-2,
docker-ce 19.03.11, and docker-cs-cli 19.03.11 are currently not in
Ubuntu 20.10. This commit instead points users to validated
versions of Docker.

fixes https://github.com/kubernetes/kubernetes/issues/99831

Signed-off-by: Enyinna Ochulor <eochulor@vmware.com>
2021-03-11 09:32:53 -08:00
Jason Gilmore 9517a9ab01 Corrected port designation in get service output
Port 6379 was errantly identified as the mongo service port however mongo-service.yaml defines port 27017. I've updated the service command output to reflect that.
2021-03-11 11:22:49 -05:00
Edson (aka tuxpilgrim) d13a76989f Small fixes
* Remove reviewers
* Add suggestions by code review
2021-03-11 10:15:46 -03:00
Kubernetes Prow Robot 875d9e5618 Merge pull request #26757 from edsoncelio/pt_m1_containers_index
Add content/pt/docs/concepts/containers/_index.md
2021-03-11 04:52:24 -08:00
Marcin Maciaszczyk e83eb6ae2b Restore images in Kubernetes Dashboard blog post 2021-03-11 13:41:48 +01:00
jralmaraz 863aa080dc corrections for OOM 2021-03-11 15:47:33 +11:00
jralmaraz ff2da14763 Update README-pt.md - Adding OOM to troubleshooting section 2021-03-11 15:47:33 +11:00
buptliuwei 1ea5f5ee31 fixed demo deployment create command
when use  `kubectl run source-ip-app --image=k8s.gcr.io/echoserver:1.4` . it will be create a pod, the output is: `pod/source-ip-app created`,  but the svc will find `deployment` when use `kubectl expose deployment source-ip-app --name=clusterip --port=80 --target-port=8080`
2021-03-11 11:58:00 +08:00
luzg 22f104c6c3 [zh] translate task/install kubectl on macOS 2021-03-11 11:32:12 +08:00
CKchen0726 4d989b9a67 fix spelling mistake in ./content/zh/***/connect-applications-service.md 2021-03-11 11:18:25 +08:00
CKchen0726 df56f19051 fix spelling mistake in content/ja/***/user-guide-windows-containers.md 2021-03-11 11:14:48 +08:00
edsoncelio 817b03624b Add _index.md with upstream updated 2021-03-10 22:35:54 -03:00
Kubernetes Prow Robot cc7439c331 Merge pull request #26999 from Arhell/fix
[zh] fixed name spelling mistake
2021-03-10 17:08:24 -08:00
Kubernetes Prow Robot 81bc52d878 Merge pull request #26982 from YuikoTakada/redirect-kubernetes-api
Replace redirect links of labels-annotations-taints
2021-03-10 17:04:24 -08:00
Kubernetes Prow Robot 7514bf1d3f Merge pull request #26985 from vaibhav2107/update-hyperlink
Fix-hyperlink in feature gate list
2021-03-10 17:02:23 -08:00
Arhell 3dbb61e149 [zh] fixed name spelling mistake 2021-03-11 00:45:36 +02:00
Kubernetes Prow Robot 0a196b3643 Merge pull request #26952 from tmoschou/update-apt-repo-setup-install-steps
Update Ubuntu/Debian installation instructions to use Signed-By option
2021-03-10 08:07:15 -08:00
Andrei Artemov 4919d66afc Update the note ragarding matchLabels vs matchExpressions in the Deployment document 2021-03-10 15:58:10 +02:00
vaibhav a82eef93bd Fix-hyperlink in feature gate list 2021-03-10 13:07:09 +05:30
illidan dc508bd396 Update connect-applications-service.md
There is an extra space before the field 'type', so to create a secret failed. The message is "error: error parsing nginxsecret.yaml: error converting YAML to JSON: yaml: line 5: did not find expected key".
2021-03-10 14:58:24 +08:00
Yuiko Mouri a9254a9836 Replace redirect links of labels-annotations-taints 2021-03-10 15:01:58 +09:00
Terry Moschou e7e5f0c912 Remove some tabs on container-runtimes.md docs
This simplifies the containerd installation instructions. All Linux distros will
now download from Docker repos, including Ubuntu 18.04 which previously
installed from Ubuntu repos.

The Docker runtime instructions have also been simplified. The RHEL/CentOS
specific option overlay2.override_kernel_check=true option has been removed.
It seems Docker will now autodetect overlay2 support on older Linux kernels
<4.0.0,>=3.10.0-514, which have back-ported overlay2 support on RHEL/CentOS 7.4+
See moby/moby#34368
2021-03-10 15:45:33 +10:30
Kubernetes Prow Robot f476bd34e0 Merge pull request #26926 from Colstuwjx/feat/print-sections
feat: add print directive allows print sections.
2021-03-09 18:37:14 -08:00
Qiming Teng fa183e46a6 Update data type presentation in component reference
Instead of putting "stringSlice" or "mapStringString" as data type for
flag data type, we can show more user friendly data type description
that is not GoLang specific.
2021-03-10 10:26:20 +08:00
Kubernetes Prow Robot 9beb46d8c0 Merge pull request #26676 from chenxuc/master
Update operator page to list tools in alphabetical order
2021-03-09 17:59:13 -08:00
Kubernetes Prow Robot 6dd50320cb Merge pull request #26919 from oomichi/redirect-kubeadm
Replace redirect links of kubeadm
2021-03-09 17:55:14 -08:00
Kubernetes Prow Robot a73c69d8d0 Merge pull request #26975 from kbhawkey/blog-image-test
remove images from dashboard blog page
2021-03-09 17:51:14 -08:00
Karen Bradshaw 4c75e0cb8b remove imageProc 2021-03-09 20:27:09 -05:00
Karen Bradshaw 54daf2e558 test blog page 2021-03-09 20:17:42 -05:00
Kubernetes Prow Robot 34231b5874 Merge pull request #26965 from s-kawamura-w664/patch-1
delete some dirty code from several files in ja
2021-03-09 15:55:05 -08:00
Paulo Simoes fbff88f16a Add Concepts/Overview K8s and Components and some glossary itens in pt language (#26710)
* Add Concepts/Overview for Kubernetes and Components, and glossary itens in pt
Modify Glossary/Control-Plane definition in pt
Changes to be committed:
	new file:   content/pt/docs/concepts/overview/_index.md
	new file:   content/pt/docs/concepts/overview/components.md
	new file:   content/pt/docs/concepts/overview/what-is-kubernetes.md
	new file:   content/pt/docs/reference/glossary/cloud-controller-manager.md
	new file:   content/pt/docs/reference/glossary/cncf.md
	new file:   content/pt/docs/reference/glossary/container-runtime.md
	modified:   content/pt/docs/reference/glossary/control-plane.md
	new file:   content/pt/docs/reference/glossary/etcd.md
	new file:   content/pt/docs/reference/glossary/kube-apiserver.md
	new file:   content/pt/docs/reference/glossary/kube-controller-manager.md
	new file:   content/pt/docs/reference/glossary/kube-proxy.md
	new file:   content/pt/docs/reference/glossary/kube-scheduler.md
	modified:   package-lock.json

* Changes to be committed:
	modified:   package-lock.json

 Untracked files:
	content/pt/docs/concepts/overview/kubernetes-api.md

* Changes to be committed:
	modified:   package-lock.json

 Untracked files:
	content/pt/docs/concepts/overview/kubernetes-api.md

* ---
reviewers:
- lavalamp
- rikatz
title: Componentes do Kubernetes
content_type: concept
description: >
  Um cluster Kubernetes consiste de componentes que representam a camada de gerenciamento, e um conjunto de máquinas chamadas nós.
weight: 20
card:
  name: concepts
  weight: 20
---

<!-- overview -->
Ao implantar o Kubernetes, você obtém um cluster.
{{< glossary_definition term_id="cluster" length="all" prepend="Um cluster Kubernetes consiste em">}}

Este documento descreve os vários componentes que você precisa ter para implantar um cluster Kubernetes completo e funcional.

Esse é o diagrama de um cluster Kubernetes com todos os componentes interligados.

![Componentes do Kubernetes](/images/docs/components-of-kubernetes.svg)

<!-- body -->
## Componentes da camada de gerenciamento

Os componentes da camada de gerenciamento tomam decisões globais sobre o cluster (por exemplo, agendamento de _pods_), bem como detectam e respondem aos eventos do cluster (por exemplo, iniciando um novo _{{< glossary_tooltip text="pod" term_id="pod" >}}_ quando o campo `replicas` de um _Deployment_ não está atendido).

Os componentes da camada de gerenciamento podem ser executados em qualquer máquina do cluster. Contudo, para simplificar, os _scripts_ de configuração normalmente iniciam todos os componentes da camada de gerenciamento na mesma máquina, e não executa contêineres de usuário nesta máquina. Veja [Construindo clusters de alta disponibilidade](/docs/admin/high-availability/) para um exemplo de configuração de múltiplas VMs para camada de gerenciamento (_multi-main-VM_).

### kube-apiserver

{{< glossary_definition term_id="kube-apiserver" length="all" >}}

### etcd

{{< glossary_definition term_id="etcd" length="all" >}}

### kube-scheduler

{{< glossary_definition term_id="kube-scheduler" length="all" >}}

### kube-controller-manager

{{< glossary_definition term_id="kube-controller-manager" length="all" >}}

Alguns tipos desses controladores são:

  * Controlador de nó: responsável por perceber e responder quando os nós caem.
  * Controlador de _Job_: Observa os objetos _Job_ que representam tarefas únicas e, em seguida, cria _pods_ para executar essas tarefas até a conclusão.
  * Controlador de _endpoints_: preenche o objeto _Endpoints_ (ou seja, junta os Serviços e os _pods_).
  * Controladores de conta de serviço e de _token_: crie contas padrão e _tokens_ de acesso de API para novos _namespaces_.

### cloud-controller-manager

{{< glossary_definition term_id="cloud-controller-manager" length="short" >}}

O cloud-controller-manager executa apenas controladores que são específicos para seu provedor de nuvem.
Se você estiver executando o Kubernetes em suas próprias instalações ou em um ambiente de aprendizagem dentro de seu
próprio PC, o cluster não possui um gerenciador de controlador de nuvem.

Tal como acontece com o kube-controller-manager, o cloud-controller-manager combina vários ciclos de controle logicamente independentes em um binário único que você executa como um processo único. Você pode escalar horizontalmente (exectuar mais de uma cópia) para melhorar o desempenho ou para auxiliar na tolerância a falhas.

Os seguintes controladores podem ter dependências de provedor de nuvem:

  * Controlador de nó: para verificar junto ao provedor de nuvem para determinar se um nó foi excluído da nuvem após parar de responder.
  * Controlador de rota: para configurar rotas na infraestrutura de nuvem subjacente.
  * Controlador de serviço: Para criar, atualizar e excluir balanceadores de carga do provedor de nuvem.

## Node Components

Os componentes de nó são executados em todos os nós, mantendo os _pods_ em execução e fornecendo o ambiente de execução do Kubernetes.

### kubelet

{{< glossary_definition term_id="kubelet" length="all" >}}

### kube-proxy

{{< glossary_definition term_id="kube-proxy" length="all" >}}

### Container runtime

{{< glossary_definition term_id="container-runtime" length="all" >}}

## Addons

Complementos (_addons_) usam recursos do Kubernetes ({{< glossary_tooltip term_id="daemonset" >}}, {{< glossary_tooltip term_id="deployment" >}}, etc) para implementar funcionalidades do cluster. Como fornecem funcionalidades em nível do cluster, recursos de _addons_ que necessitem ser criados dentro de um _namespace_ pertencem ao _namespace_ `kube-system`.

Alguns _addons_ selecionados são descritos abaixo; para uma lista estendida dos _addons_ disponíveis, por favor consulte [Addons](/docs/concepts/cluster-administration/addons/).

### DNS

Embora os outros complementos não sejam estritamente necessários, todos os clusters do Kubernetes devem ter um [DNS do cluster](/docs/concepts/services-networking/dns-pod-service/), já que muitos exemplos dependem disso.

O DNS do cluster é um servidor DNS, além de outros servidores DNS em seu ambiente, que fornece registros DNS para serviços do Kubernetes.

Os contêineres iniciados pelo Kubernetes incluem automaticamente esse servidor DNS em suas pesquisas DNS.

### Web UI (Dashboard)

[Dashboard](/docs/tasks/access-application-cluster/web-ui-dashboard/) é uma interface de usuário Web, de uso geral, para clusters do Kubernetes. Ele permite que os usuários gerenciem e solucionem problemas de aplicações em execução no cluster, bem como o próprio cluster.

### Monitoramento de recursos do contêiner

[Monitoramento de recursos do contêiner](/docs/tasks/debug-application-cluster/resource-usage-monitoring/) registra métricas de série temporal genéricas sobre os contêineres em um banco de dados central e fornece uma interface de usuário para navegar por esses dados.

### Logging a nivel do cluster

Um mecanismo de [_logging_ a nível do cluster](/docs/concepts/cluster-administration/logging/) é responsável por guardar os _logs_ dos contêineres em um armazenamento central de _logs_ com um interface para navegação/pesquisa.

## {{% heading "whatsnext" %}}

* Aprenda sobre [Nós](/docs/concepts/architecture/nodes/).
* Aprenda sobre [Controladores](/docs/concepts/architecture/controller/).
* Aprenda sobre [kube-scheduler](/docs/concepts/scheduling-eviction/kube-scheduler/).
* Leia a [documentação](https://etcd.io/docs/) oficial do **etcd**.

* ---
reviewers:
title: Componentes do Kubernetes
content_type: concept
description: >
  Um cluster Kubernetes consiste de componentes que representam a camada de gerenciamento, e um conjunto de máquinas chamadas nós.
weight: 20
card:
  name: concepts
  weight: 20
---

<!-- overview -->
Ao implantar o Kubernetes, você obtém um cluster.
{{< glossary_definition term_id="cluster" length="all" prepend="Um cluster Kubernetes consiste em">}}

Este documento descreve os vários componentes que você precisa ter para implantar um cluster Kubernetes completo e funcional.

Esse é o diagrama de um cluster Kubernetes com todos os componentes interligados.

![Componentes do Kubernetes](/images/docs/components-of-kubernetes.svg)

<!-- body -->
## Componentes da camada de gerenciamento

Os componentes da camada de gerenciamento tomam decisões globais sobre o cluster (por exemplo, agendamento de _pods_), bem como detectam e respondem aos eventos do cluster (por exemplo, iniciando um novo _{{< glossary_tooltip text="pod" term_id="pod" >}}_ quando o campo `replicas` de um _Deployment_ não está atendido).

Os componentes da camada de gerenciamento podem ser executados em qualquer máquina do cluster. Contudo, para simplificar, os _scripts_ de configuração normalmente iniciam todos os componentes da camada de gerenciamento na mesma máquina, e não executa contêineres de usuário nesta máquina. Veja [Construindo clusters de alta disponibilidade](/docs/admin/high-availability/) para um exemplo de configuração de múltiplas VMs para camada de gerenciamento (_multi-main-VM_).

### kube-apiserver

{{< glossary_definition term_id="kube-apiserver" length="all" >}}

### etcd

{{< glossary_definition term_id="etcd" length="all" >}}

### kube-scheduler

{{< glossary_definition term_id="kube-scheduler" length="all" >}}

### kube-controller-manager

{{< glossary_definition term_id="kube-controller-manager" length="all" >}}

Alguns tipos desses controladores são:

  * Controlador de nó: responsável por perceber e responder quando os nós caem.
  * Controlador de _Job_: Observa os objetos _Job_ que representam tarefas únicas e, em seguida, cria _pods_ para executar essas tarefas até a conclusão.
  * Controlador de _endpoints_: preenche o objeto _Endpoints_ (ou seja, junta os Serviços e os _pods_).
  * Controladores de conta de serviço e de _token_: crie contas padrão e _tokens_ de acesso de API para novos _namespaces_.

### cloud-controller-manager

{{< glossary_definition term_id="cloud-controller-manager" length="short" >}}

O cloud-controller-manager executa apenas controladores que são específicos para seu provedor de nuvem.
Se você estiver executando o Kubernetes em suas próprias instalações ou em um ambiente de aprendizagem dentro de seu
próprio PC, o cluster não possui um gerenciador de controlador de nuvem.

Tal como acontece com o kube-controller-manager, o cloud-controller-manager combina vários ciclos de controle logicamente independentes em um binário único que você executa como um processo único. Você pode escalar horizontalmente (exectuar mais de uma cópia) para melhorar o desempenho ou para auxiliar na tolerância a falhas.

Os seguintes controladores podem ter dependências de provedor de nuvem:

  * Controlador de nó: para verificar junto ao provedor de nuvem para determinar se um nó foi excluído da nuvem após parar de responder.
  * Controlador de rota: para configurar rotas na infraestrutura de nuvem subjacente.
  * Controlador de serviço: Para criar, atualizar e excluir balanceadores de carga do provedor de nuvem.

## Node Components

Os componentes de nó são executados em todos os nós, mantendo os _pods_ em execução e fornecendo o ambiente de execução do Kubernetes.

### kubelet

{{< glossary_definition term_id="kubelet" length="all" >}}

### kube-proxy

{{< glossary_definition term_id="kube-proxy" length="all" >}}

### Container runtime

{{< glossary_definition term_id="container-runtime" length="all" >}}

## Addons

Complementos (_addons_) usam recursos do Kubernetes ({{< glossary_tooltip term_id="daemonset" >}}, {{< glossary_tooltip term_id="deployment" >}}, etc) para implementar funcionalidades do cluster. Como fornecem funcionalidades em nível do cluster, recursos de _addons_ que necessitem ser criados dentro de um _namespace_ pertencem ao _namespace_ `kube-system`.

Alguns _addons_ selecionados são descritos abaixo; para uma lista estendida dos _addons_ disponíveis, por favor consulte [Addons](/docs/concepts/cluster-administration/addons/).

### DNS

Embora os outros complementos não sejam estritamente necessários, todos os clusters do Kubernetes devem ter um [DNS do cluster](/docs/concepts/services-networking/dns-pod-service/), já que muitos exemplos dependem disso.

O DNS do cluster é um servidor DNS, além de outros servidores DNS em seu ambiente, que fornece registros DNS para serviços do Kubernetes.

Os contêineres iniciados pelo Kubernetes incluem automaticamente esse servidor DNS em suas pesquisas DNS.

### Web UI (Dashboard)

[Dashboard](/docs/tasks/access-application-cluster/web-ui-dashboard/) é uma interface de usuário Web, de uso geral, para clusters do Kubernetes. Ele permite que os usuários gerenciem e solucionem problemas de aplicações em execução no cluster, bem como o próprio cluster.

### Monitoramento de recursos do contêiner

[Monitoramento de recursos do contêiner](/docs/tasks/debug-application-cluster/resource-usage-monitoring/) registra métricas de série temporal genéricas sobre os contêineres em um banco de dados central e fornece uma interface de usuário para navegar por esses dados.

### Logging a nivel do cluster

Um mecanismo de [_logging_ a nível do cluster](/docs/concepts/cluster-administration/logging/) é responsável por guardar os _logs_ dos contêineres em um armazenamento central de _logs_ com um interface para navegação/pesquisa.

## {{% heading "whatsnext" %}}

* Aprenda sobre [Nós](/docs/concepts/architecture/nodes/).
* Aprenda sobre [Controladores](/docs/concepts/architecture/controller/).
* Aprenda sobre [kube-scheduler](/docs/concepts/scheduling-eviction/kube-scheduler/).
* Leia a [documentação](https://etcd.io/docs/) oficial do **etcd**.

* ---
reviewers:
title: O que é Kubernetes?
description: >
  Kubernetes é um plataforma de código aberto, portável e extensiva para o gerenciamento de cargas de trabalho e serviços distribuídos em contêineres, que facilita tanto a configuração declarativa quanto a automação. Ele possui um ecossistema grande, e de rápido crescimento.  Serviços, suporte, e ferramentas para Kubernetes estão amplamente disponíveis.
content_type: concept
weight: 10
card:
  name: concepts
  weight: 10
sitemap:
  priority: 0.9
---

<!-- overview -->
Essa página é uma visão geral do Kubernetes.

<!-- body -->
Kubernetes é um plataforma de código aberto, portável e extensiva para o gerenciamento de cargas de trabalho e serviços distribuídos em contêineres, que facilita tanto a configuração declarativa quanto a automação. Ele possui um ecossistema grande, e de rápido crescimento.  Serviços, suporte, e ferramentas para Kubernetes estão amplamente disponíveis.

O Google tornou Kubernetes um projeto de código-aberto em 2014. O Kubernetes combina [mais de 15 anos de experiência do Google](/blog/2015/04/borg-predecessor-to-kubernetes/) executando cargas de trabalho produtivas em escala, com as melhores idéias e práticas da comunidade.

O nome **Kubernetes** tem origem no Grego, significando _timoneiro_ ou _piloto_. **K8s** é a abreviação derivada pela troca das oito letras "ubernete" por "8", se tornado _K"8"s_.

## Voltando no tempo

Vamos dar uma olhada no porque o Kubernetes é tão útil, voltando no tempo.

![Evolução das implantações](/images/docs/Container_Evolution.svg)

**Era da implantação tradicional:** No início, as organizações executavam aplicações em servidores físicos. Não havia como definir limites de recursos para aplicações em um mesmo servidor físico, e isso causava problemas de alocação de recursos. Por exemplo, se várias aplicações fossem executadas em um mesmo servidor físico, poderia haver situações em que uma aplicação ocupasse a maior parte dos recursos e, como resultado, o desempenho das outras aplicações seria inferior. Uma solução para isso seria executar cada aplicação em um servidor físico diferente. Mas isso não escalava, pois os recursos eram subutilizados, e se tornava custoso para as organizações manter muitos servidores físicos.

**Era da implantação virtualizada:**  Como solução, a virtualização foi introduzida. Esse modelo permite que você execute várias máquinas virtuais (VMs) em uma única CPU de um servidor físico. A virtualização permite que as aplicações sejam isoladas entre as VMs, e ainda fornece um nível de segurança, pois as informações de uma aplicação não podem ser acessadas livremente por outras aplicações.

A virtualização permite melhor utilização de recursos em um servidor físico, e permite melhor escalabilidade porque uma aplicação pode ser adicionada ou atualizada facilmente, reduz os custos de hardware e muito mais. Com a virtualização, você pode apresentar um conjunto de recursos físicos como um cluster de máquinas virtuais descartáveis.

Cada VM é uma máquina completa que executa todos os componentes, incluindo seu próprio sistema operacional, além do hardware virtualizado.

**Era da implantação em contêineres:** Contêineres são semelhantes às VMs, mas têm propriedades de isolamento flexibilizados para compartilhar o sistema operacional (SO) entre as aplicações. Portanto, os contêineres são considerados leves. Semelhante a uma VM, um contêiner tem seu próprio sistema de arquivos, compartilhamento de CPU, memória, espaço de processo e muito mais. Como eles estão separados da infraestrutura subjacente, eles são portáveis entre nuvens e distribuições de sistema operacional.

Contêineres se tornaram populares porque eles fornecem benefícios extra, tais como:

* Criação e implantação ágil de aplicações: aumento da facilidade e eficiência na criação de imagem de contêiner comparado ao uso de imagem de VM.
* Desenvolvimento, integração e implantação contínuos: fornece capacidade de criação e de implantação de imagens de contêiner de forma confiável e frequente, com a funcionalidade de efetuar reversões rápidas e eficientes (devido à imutabilidade da imagem).
* Separação de interesses entre Desenvolvimento e Operações: crie imagens de contêineres de aplicações no momento de construção/liberação em vez de no momento de implantação, desacoplando as aplicações da infraestrutura.
* A capacidade de observação (Observabilidade) não apenas apresenta informações e métricas no nível do sistema operacional, mas também a integridade da aplicação e outros sinais.
* Consistência ambiental entre desenvolvimento, teste e produção: funciona da mesma forma em um laptop e na nuvem.
* Portabilidade de distribuição de nuvem e sistema operacional: executa no Ubuntu, RHEL, CoreOS, localmente, nas principais nuvens públicas e em qualquer outro lugar.
* Gerenciamento centrado em aplicações: eleva o nível de abstração da execução em um sistema operacional em hardware virtualizado à execução de uma aplicação em um sistema operacional usando recursos lógicos.
* Microserviços fracamente acoplados, distribuídos, elásticos e livres: as aplicações são divididas em partes menores e independentes e podem ser implantados e gerenciados dinamicamente - não uma pilha monolítica em execução em uma grande máquina de propósito único.
* Isolamento de recursos: desempenho previsível de aplicações.
* Utilização de recursos: alta eficiência e densidade.

## Por que você precisa do Kubernetes e o que ele pode fazer{#why-you-need-kubernetes-and-what-can-it-do}

Os contêineres são uma boa maneira de agrupar e executar suas aplicações. Em um ambiente de produção, você precisa gerenciar os contêineres que executam as aplicações e garantir que não haja tempo de inatividade. Por exemplo, se um contêiner cair, outro contêiner precisa ser iniciado. Não seria mais fácil se esse comportamento fosse controlado por um sistema?

É assim que o Kubernetes vem ao resgate! O Kubernetes oferece uma estrutura para executar sistemas distribuídos de forma resiliente. Ele cuida do escalonamento e do recuperação à falha de sua aplicação, fornece padrões de implantação e muito mais. Por exemplo, o Kubernetes pode gerenciar facilmente uma implantação no método canário para seu sistema.

O Kubernetes oferece a você:

* **Descoberta de serviço e balanceamento de carga**
O Kubernetes pode expor um contêiner usando o nome DNS ou seu próprio endereço IP. Se o tráfego para um contêiner for alto, o Kubernetes pode balancear a carga e distribuir o tráfego de rede para que a implantação seja estável.
* **Orquestração de armazenamento**
O Kubernetes permite que você monte automaticamente um sistema de armazenamento de sua escolha, como armazenamentos locais, provedores de nuvem pública e muito mais.
* **Lançamentos e reversões automatizadas**
Você pode descrever o estado desejado para seus contêineres implantados usando o Kubernetes, e ele pode alterar o estado real para o estado desejado em um ritmo controlada. Por exemplo, você pode automatizar o Kubernetes para criar novos contêineres para sua implantação, remover os contêineres existentes e adotar todos os seus recursos para o novo contêiner.
* **Empacotamento binário automático**
Você fornece ao Kubernetes um cluster de nós que pode ser usado para executar tarefas nos contêineres. Você informa ao Kubernetes de quanta CPU e memória (RAM) cada contêiner precisa. O Kubernetes pode encaixar contêineres em seus nós para fazer o melhor uso de seus recursos.
* **Autocorreção**
O Kubernetes reinicia os contêineres que falham, substitui os contêineres, elimina os contêineres que não respondem à verificação de integridade definida pelo usuário e não os anuncia aos clientes até que estejam prontos para servir.
* **Gerenciamento de configuração e de segredos**
O Kubernetes permite armazenar e gerenciar informações confidenciais, como senhas, tokens OAuth e chaves SSH. Você pode implantar e atualizar segredos e configuração de aplicações sem reconstruir suas imagens de contêiner e sem expor segredos em sua pilha de configuração.

## O que o Kubernetes não é

O Kubernetes não é um sistema PaaS (plataforma como serviço) tradicional e completo. Como o Kubernetes opera no nível do contêiner, e não no nível do hardware, ele fornece alguns recursos geralmente aplicáveis comuns às ofertas de PaaS, como implantação, escalonamento, balanceamento de carga, e permite que os usuários integrem suas soluções de _logging_, monitoramento e alerta. No entanto, o Kubernetes não é monolítico, e essas soluções padrão são opcionais e conectáveis. O Kubernetes fornece os blocos de construção para a construção de plataformas de desenvolvimento, mas preserva a escolha e flexibilidade do usuário onde é importante.

Kubernetes:

* Não limita os tipos de aplicações suportadas. O Kubernetes visa oferecer suporte a uma variedade extremamente diversa de cargas de trabalho, incluindo cargas de trabalho sem estado, com estado e de processamento de dados. Se uma aplicação puder ser executada em um contêiner, ele deve ser executado perfeitamente no Kubernetes.
* Não implanta código-fonte e não constrói sua aplicação. Os fluxos de trabalho de integração contínua, entrega e implantação (CI/CD) são determinados pelas culturas e preferências da organização, bem como pelos requisitos técnicos.
* Não fornece serviços em nível de aplicação, tais como middleware (por exemplo, barramentos de mensagem), estruturas de processamento de dados (por exemplo, Spark), bancos de dados (por exemplo, MySQL), caches, nem sistemas de armazenamento em cluster (por exemplo, Ceph), como serviços integrados. Esses componentes podem ser executados no Kubernetes e/ou podem ser acessados por aplicações executadas no Kubernetes por meio de mecanismos portáteis, como o [Open Service Broker](https://openservicebrokerapi.org/).
* Não dita soluções de _logging_, monitoramento ou alerta. Ele fornece algumas integrações como prova de conceito e mecanismos para coletar e exportar métricas.
* Não fornece nem exige um sistema/idioma de configuração (por exemplo, Jsonnet). Ele fornece uma API declarativa que pode ser direcionada por formas arbitrárias de especificações declarativas.
* Não fornece nem adota sistemas abrangentes de configuração de máquinas, manutenção, gerenciamento ou autocorreção.
* Adicionalmente, o Kubernetes não é um mero sistema de orquestração. Na verdade, ele elimina a necessidade de orquestração. A definição técnica de orquestração é a execução de um fluxo de trabalho definido: primeiro faça A, depois B e depois C. Em contraste, o Kubernetes compreende um conjunto de processos de controle independentes e combináveis que conduzem continuamente o estado atual em direção ao estado desejado fornecido. Não importa como você vai de A para C. O controle centralizado também não é necessário. Isso resulta em um sistema que é mais fácil de usar e mais poderoso, robusto, resiliente e extensível.

## {{% heading "whatsnext" %}}

*   Dê uma olhada em [Componentes do Kubernetes](/docs/concepts/overview/components/).
*   Pronto para [Iniciar](/docs/setup/)?
2021-03-09 12:03:04 -08:00
Ricardo Pchevuzinske Katz 2dd9b3d4fd Add also Jailton to the pt reviewers 2021-03-09 16:09:08 -03:00
Kubernetes Prow Robot 8698adf589 Merge pull request #26668 from floreks/blog/kubernetes-dashboard
The Kubernetes Dashboard Evolution blog post
2021-03-09 08:07:00 -08:00
Kubernetes Prow Robot 2e0968ffe7 Merge pull request #26950 from lsq645599166/add_zh_access-api-from-pod
[zh] add docs/tasks/run-application/access-api-from-pod.md zh version
2021-03-09 07:09:00 -08:00
wasimj 466b4bd806 Update server-side-apply.md
Spelling mistake
2021-03-09 14:17:05 +00:00
Kubernetes Prow Robot 551e38c4ee Merge pull request #26930 from ydFu/update-kustomization
[zh] Sync setup pages for manage-kubernetes-objects\kustomization.md
2021-03-09 04:26:59 -08:00
Sebastian Florek f8e39f2477 Add the blog post about the Kubernetes Dashboard evolution" 2021-03-09 12:33:58 +01:00
Kubernetes Prow Robot 2d1b90694a Merge pull request #26961 from tengqm/reorder-scheduling
Fix section order under scheduling-eviction
2021-03-09 01:25:00 -08:00
Kappie37 e317531fad Update content/en/docs/tasks/administer-cluster/access-cluster-api.md
remove unnecessary 'https://kubernetes.io' from a link

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-09 09:57:28 +01:00
s-kawamura-w664 52315175f1 delete some dirty code from several files in ja 2021-03-09 05:27:29 +00:00
Kubernetes Prow Robot af4acc2bc6 Merge pull request #26942 from jihoon-seo/patch-2
Fix broken anchor
2021-03-08 20:50:59 -08:00
Lapi 94eca67736 Update content/ja/docs/tasks/run-application/horizontal-pod-autoscale-walkthrough.md
Co-authored-by: Kei Ak <kakts.git@gmail.com>
2021-03-09 13:49:43 +09:00
Lapi b4c11fecce Update content/ja/docs/tasks/run-application/horizontal-pod-autoscale-walkthrough.md
Co-authored-by: Kei Ak <kakts.git@gmail.com>
2021-03-09 13:48:44 +09:00
seokho-son 32f22e68fd Update outdated files in dev-1.20-ko.6 (p1) 2021-03-09 11:58:06 +09:00
REN Xiaolei 7fdd756f8e fix Chinese translation about reserved-cpus (#26927)
* fix Chinese translation about reserved-cpus

* fix translation about take precedence
2021-03-08 17:31:00 -08:00
Henry Liu 71ca12a77d fix typo and some translation error 2021-03-09 09:23:12 +08:00
Terry Moschou b1686cc43a Switch to curl, remove code formatting on the product names, use OS family name on tabs 2021-03-09 11:47:15 +10:30
Qiming Teng 285986acda Fix section order under scheduling-eviction 2021-03-09 09:16:03 +08:00
Kubernetes Prow Robot d86a85778f Merge pull request #26959 from Arhell/remove
[zh] remove feature-state tag for categories for CRDs
2021-03-08 16:35:00 -08:00
Miguel Ángel García 5bb9d6a6c8 [es] Add content/es/docs/concepts/containers/runtime-class.md (#26662)
* RuntimeClass translated to Spanish

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Remove forgotten text

* Apply suggestions from code review

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* Apply suggestions from code review

Co-authored-by: Rael Garcia <rael@rael.io>

* Update content/es/docs/concepts/containers/runtime-class.md

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
Co-authored-by: Rael Garcia <rael@rael.io>
2021-03-08 14:59:00 -08:00
Arhell da4074fa1f [zh] remove feature-state tag for categories for CRDs 2021-03-09 00:38:42 +02:00
Kubernetes Prow Robot 2d7940542b Merge pull request #26932 from nikhita/crd-categories-feature-state
Remove feature-state tag for categories for CRDs
2021-03-08 14:08:59 -08:00
Philippe Martin dd2153d2db Use consistent pluralization for API groupings in reference 2021-03-08 18:59:39 +01:00
Kubernetes Prow Robot 8b6bcb79b5 Merge pull request #26938 from Iceber/fix-using-api-index
[zh] fix using-api/_index.md
2021-03-08 05:05:42 -08:00
Kappie37 5f7439095e Update access-cluster-api.md
Update not working link to the correct one about Accessing the API from within a Pod
2021-03-08 13:53:16 +01:00
Terry Moschou 21382af32e Update Ubuntu/Debian installation instructions to use Signed-By option (#26906)
The use of `apt-key` to install has also been removed as it is now deprecated
and will be last available in Debian 11 and Ubuntu 22.04.

Also updates the Docker repository setup instructions in container-runtimes.md,
to now refer to the respective instructions at https://docs.docker.com/engine/install/
which has already made the move to use the signed-by option.
2021-03-08 21:23:53 +10:30
Kubernetes Prow Robot 86bb7aaec1 Merge pull request #26931 from vazmin/zh-volume-csi
Fix CSI spec URL
2021-03-08 02:13:44 -08:00
Iceber Gu ddcdd0687e [zh] fix using-api/_index.md
Signed-off-by: Iceber Gu <wei.cai-nat@daocloud.io>
2021-03-08 18:05:32 +08:00
Jihoon Seo c148e61ba8 Reflect some changes to dev-1.20-ko.6 2021-03-08 17:33:18 +09:00
Kubernetes Prow Robot 6d15d0d011 Merge pull request #26661 from adrianludwin/image-pull-policy
Better document default imagePullPolicy behaviour
2021-03-08 00:15:45 -08:00
Henry Liu c4fddf906c [zh] add docs/tasks/run-application/access-api-from-pod.md zh version 2021-03-08 16:13:22 +08:00
Kubernetes Prow Robot f70878a5ea Merge pull request #26582 from ishii1648/bugfix/source-ip-for-services-with-type-loadbalancer
Fix the translation about Source IP for Services with Type=LoadBalancer
2021-03-08 00:11:48 -08:00
Kubernetes Prow Robot 9107a720dc Merge pull request #26432 from npu21/container_ja
[ja] fix an invalid url
2021-03-08 00:07:44 -08:00
Jihoon Seo c009ad8431 Update href to the anchor in the same page 2021-03-08 16:17:09 +09:00
Jihoon Seo 4af3585b05 Fix typo (Linux -> macOS) 2021-03-08 15:56:59 +09:00
Jihoon Seo c4ded15afe Fix broken anchor
in content/en/docs/setup/production-environment/windows/intro-windows-in-kubernetes.md
2021-03-08 14:21:34 +09:00
Kubernetes Prow Robot f562c53cec Merge pull request #26941 from jihoon-seo/patch-1
Fix typo (form -> from)
2021-03-07 21:13:44 -08:00
Jihoon Seo 07d23cd0e5 Fix typo (form -> from)
in content/en/docs/setup/production-environment/container-runtimes.md
2021-03-08 13:53:27 +09:00
Kubernetes Prow Robot 196145b4c6 Merge pull request #26789 from HugoPfeffer/pt-localization
Add concepts/containers/images.md in pt language
2021-03-07 13:47:42 -08:00
Felipe d2d6f7f334 Update content/pt/docs/concepts/containers/images.md
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-03-07 21:45:11 +00:00
Felipe 86da7892db Update content/pt/docs/concepts/containers/images.md
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-03-07 21:44:59 +00:00
Felipe fb0fe10d20 Update content/pt/docs/concepts/containers/images.md
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-03-07 21:44:21 +00:00
Hugo Pfeffer 52d347b53e Update images.md
fixed typo at line 50
2021-03-07 15:15:41 -03:00
Hugo Pfeffer aabfd4d0a7 Update content/pt/docs/concepts/containers/images.md
femrtnz's suggestion

Co-authored-by: Felipe <felipemartinez+github@improbable.io>
2021-03-07 13:14:49 -03:00
Nikhita Raghunath e5a17756a4 Remove feature-state tag for categories for CRDs
The Categories field for CRDs was documented as beta in 1.10 in #7439
mainly because CRDs were in beta back then.

The `feature-state` tag for this section was added in #2754, however
this section doesn't need a `feature-state` tag because the field is not
gated by any feature gate:

https://github.com/kubernetes/kubernetes/blob/90851a0fb5bbb6f02b3c22715f9f91609f8ee438/staging/src/k8s.io/apiextensions-apiserver/pkg/apis/apiextensions/v1/types.go#L247-L251

It is now safe to remove the feature-state tag. Moreover, CRDs are now
GA so the beta state is not accurate.
2021-03-07 15:01:32 +05:30
vazmin 5dba292da3 Fix CSI spec URL 2021-03-07 17:21:54 +08:00
Kubernetes Prow Robot 23cdd9717d Merge pull request #26813 from zhiguo-lu/zh-trans-task-certificates
[zh] translate task certificates
2021-03-07 00:33:42 -08:00
ydFu ed5fd4a7e7 [zh] Sync setup pages for manage-kubernetes-objects\kustomization.md
* Sync with english version in 'chore: fix an invalid location.hash (#26835)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-03-07 15:39:22 +08:00
colstuwjx 7bc3a7d809 feat: add print directive allows print sections. 2021-03-07 09:11:49 +08:00
edsoncelio de87f4501b Add content/pt/docs/concepts/containers/container-environment.md 2021-03-06 20:01:19 -03:00
Kubernetes Prow Robot 96b4a51cfe Merge pull request #26814 from Colstuwjx/docsy-version-update
updating docsy theme submodule
2021-03-06 09:11:43 -08:00
joao brito junior cffd9c7f39 Add Dont Panic blog post in pt language (#26758)
* Add Dont Panic blog post in pt language

Add Dont Panic blog post in pt language.

Partial fix for kubernetes #13939

* Update content/pt/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update content/pt/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

* Update 2020-12-02-dont-panic-kubernetes-and-docker.md

typo  `:%s/\<kubernetes\>/Kubernetes/gc` and  `:%s/é/e`

* Update 2020-12-02-dont-panic-kubernetes-and-docker.md

removendo depreciação e arrumando typos

* remove enterprise name

* Update content/pt/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Update content/pt/blog/_posts/2020-12-02-dont-panic-kubernetes-and-docker.md

Co-authored-by: Tim Bannister <tim@scalefactory.com>

Update 2020-12-02-dont-panic-kubernetes-and-docker.md

typo  `:%s/\<kubernetes\>/Kubernetes/gc` and  `:%s/é/e`

Update 2020-12-02-dont-panic-kubernetes-and-docker.md

removendo depreciação e arrumando typos

remove enterprise name

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-03-06 08:49:42 -08:00
luzg 5e6da7d397 [zh] translate task certificates 2021-03-06 22:24:24 +08:00
Naoki Oketani 3d384aca2d Translate docs/tasks/configmap-secret/managing-secret-using-kubectl/ into Japanese 2021-03-06 18:30:21 +09:00
Sergey Kanzhelev 7a5da05b95 add inconistency message to Nodes page as well 2021-03-06 07:15:20 +00:00
Sergey Kanzhelev 6c60620ad4 added note about the name being an identifier 2021-03-06 06:42:50 +00:00
Kubernetes Prow Robot e782b7593a Merge pull request #26912 from timyinshi/job
modify the error chinese word
2021-03-05 17:49:41 -08:00
Kenichi Omichi e7a25a823c Replace redirect links of kubeadm
/docs/reference/setup-tools/kubeadm/kubeadm/ is redirected to
/docs/reference/setup-tools/kubeadm/
This replaces the redirect links of kubeadm with the direct links.
2021-03-05 22:45:48 +00:00
Kubernetes Prow Robot 1ca4e86518 Merge pull request #26849 from tengqm/fix-feature-gate
Add a missing feature gate entry
2021-03-05 06:40:22 -08:00
timyinshi b3ac1021a9 modify the error chinese word
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2021-03-05 22:29:24 +08:00
Kubernetes Prow Robot afedddbfa6 Merge pull request #26850 from Alan-Cha/master
Fix GitHub capitalization
2021-03-05 05:06:21 -08:00
Kubernetes Prow Robot 6beb1b12de Merge pull request #24727 from raghvenders/patch-3
Clean up reference section
2021-03-05 01:44:22 -08:00
Kubernetes Prow Robot fa7ece8903 Merge pull request #26837 from kubernetes/dev-1.20-ko.5
[ko] Fifth Korean l10n work for release-1.20
2021-03-04 21:58:22 -08:00
HugoPfeffer 6c44ad9f2d docs: Update /pt/docs/concepts/containers/images.md
Fix typos
Update the file according to devlware's suggestion
2021-03-04 20:34:46 -08:00
Kubernetes Prow Robot b23edad5d1 Merge pull request #26833 from njuptlzf/patch-2
Update flow-control.md
2021-03-04 19:30:21 -08:00
Kubernetes Prow Robot c82d92b61f Merge pull request #26408 from CaoDonghui123/fix-url-2
[zh]fix the link addresses
2021-03-04 19:08:21 -08:00
Tom Kivlin 87e3291aaa Update install-kubectl.md to use tabs for the different Operating Systems (#26682)
* top-level tags and change to included files

* revert content to main windows page

* include gcloud and update toc

* add leading blank line

* add text to avoid YAML error from Netlify

* remove YAML delimiter error

* removed redundant weight key

* add front matter and toc shortcode

* test to see if toc is fixed in included page

* update macos toc to show difference

* use static toc instead of shortcode

* uniqueness for gcloud install headers

* Move to model suggested in https://github.com/kubernetes/website/pull/26682#discussion_r585091797

* correct link to included/install-kubectl-gcloud.md

* correction of links to per-OS pages

* try a different way to use path to per-OS links

* correction of brainfart

* remove .md from link destination for per-OS pages

* modify how auto-competion steps are displayed

* remove redundant file

* correction of include - change % to <

* remove closing tag as not needed

* try and hide this directory from the ToC on the left

* remove erroneous "include="

* addressing feedback: https://github.com/kubernetes/website/pull/26682#discussion_r586325123

* addressing feedback: https://github.com/kubernetes/website/pull/26682#discussion_r586326346

* addressing feedback: https://github.com/kubernetes/website/pull/26682#discussion_r586326604

* addressing feedback: https://github.com/kubernetes/website/pull/26682#discussion_r586327212

* https://github.com/kubernetes/website/pull/26682#discussion_r586327856

* consistent verb usage as per feedback: https://github.com/kubernetes/website/pull/26682#discussion_r586328497

* update redirects as existing page is being deleted
2021-03-04 19:04:21 -08:00
Kubernetes Prow Robot b43aafe2ae Merge pull request #26817 from kubernetes/dev-1.18-ja.2
Second Japanese l10n work for release-1.18
2021-03-04 17:58:21 -08:00
Qiming Teng bb52543a98 Add a missing feature gate entry
The `EnableAggregatedDiscoveryTimeout` (deprecated) is not listed in the
second table. This PR adds it back.
2021-03-05 09:45:11 +08:00
Kubernetes Prow Robot 35e74c709d Merge pull request #25460 from gavinfish/EnableAggregatedDiscoveryTimeout
Remove legacy feature gate EnableAggregatedDiscoveryTimeout for Aggregation layer
2021-03-04 17:16:21 -08:00
Kubernetes Prow Robot 548c3323ad Merge pull request #25621 from joadavis/patch-1
Disabling `enable-cadvisor-json-endpoints` does not disable stats summary endpoint
2021-03-04 17:02:21 -08:00
Kubernetes Prow Robot ce24e8a4bd Merge pull request #26719 from krol3/pt-security-overview
Add content/pt/docs/concepts/security/overview.md in pt language
2021-03-04 16:58:21 -08:00
Kubernetes Prow Robot 203ad6d6a9 Merge pull request #26062 from notchairmk/cheatsheet_deploy_svc
Update cheatsheet: add interacting with Deployments and Services
2021-03-04 16:42:22 -08:00
andrzejsydor b7a3e4c971 address typos docker-cli-kubectl (#26050)
* fix typos

fix typos

* Update docker-cli-to-kubectl.md

* fix typos
2021-03-04 16:34:22 -08:00
Kubernetes Prow Robot 29196d55c4 Merge pull request #26162 from CKchen0726/hello_minikube
add some necessary description after running command 'minikube dashboard'
2021-03-04 16:26:22 -08:00
Kubernetes Prow Robot f40d7fdcdf Merge pull request #26835 from oke-py/invalid-hash
chore: fix an invalid location.hash
2021-03-04 16:20:22 -08:00
Alan Cha d717167e8b Fix GitHub capitalization 2021-03-04 17:14:41 -05:00
Kubernetes Prow Robot b71386970a Merge pull request #26773 from wwgfhf/master-service-catalog
Update zh translation in  service-catalog.md
2021-03-04 04:54:08 -08:00
Naoki Oketani 3c4f29e406 chore: fix an invalid location.hash
The current link results in redirection and location.hash does not work well.
2021-03-04 21:21:37 +09:00
Kubernetes Prow Robot ffeaf39228 Merge pull request #26691 from seokho-son/outdated-1.20-ko.5
ko: update outdated files in dev-1.20-ko.5 (1)
2021-03-04 03:24:09 -08:00
TAKAHASHI Shuuji b349b61088 Fix a typo 2021-03-04 19:21:36 +09:00
TAKAHASHI Shuuji d7ea10e92c Add a missing translation 2021-03-04 19:19:25 +09:00
njuptlzf dfe6623bd0 Update flow-control.md
Fix description
2021-03-04 15:02:17 +08:00
Kubernetes Prow Robot 6c6a9a7376 Merge pull request #26670 from rura6502/patch-1
fix typo
2021-03-03 22:58:00 -08:00
seokho-son 9cc8d0d329 Update outdated files in dev-1.20-ko.5 (1) 2021-03-04 15:30:35 +09:00
Neha Viswanathan 3ff51d4843 Update Helm charts repo to ArtifactHub 2021-03-03 20:13:13 -08:00
Kubernetes Prow Robot 84e2d5ea10 Merge pull request #26468 from magmax/fix-code
fix cronjob code for examples
2021-03-03 18:15:59 -08:00
Kubernetes Prow Robot 41045558f0 Merge pull request #26667 from pjhwa/translate-26666
Translate setup/production-environment/tools/kubeadm/install-kubeadm.…
2021-03-03 17:01:59 -08:00
Kubernetes Prow Robot c3398e8f20 Merge pull request #26824 from Arhell/update
[zh] update client-libraries.md
2021-03-03 16:56:00 -08:00
Jerry Park 5f4d941549 Translate setup/production-environment/tools/kubeadm/install-kubeadm.md into Korean 2021-03-04 09:14:37 +09:00
Arhell 233ca28849 [zh] update client-libraries.md 2021-03-04 00:28:32 +02:00
Kubernetes Prow Robot 29b492b524 Merge pull request #26763 from yoichiro0217/issue-26513
ja: Make docs/setup/production-environment/tools/kubeadm/self-hosting.md follow v1.18 of the original text #26513
2021-03-03 05:05:21 -08:00
Kubernetes Prow Robot 16a12c97da Merge pull request #26697 from hagay3/patch-1
Update client-libraries.md
2021-03-03 03:01:20 -08:00
colstuwjx fa2057b7d7 updating docsy theme submodule 2021-03-03 18:07:08 +08:00
yoinakag 2321a465cc 翻訳スタイルガイド方針に則る微修正 2021-03-03 18:48:27 +09:00
Kubernetes Prow Robot f1e80a9a66 Merge pull request #26405 from geoffcline/gdc-patch-4
update guidance on DNS resolution for services
2021-03-02 19:15:19 -08:00
uhari03 7639bfbf83 Move accessing API from within pod to tasks (#26601)
* Move accessing API from within pod to tasks

* Remove reviewers, version check; Add whatsnext

* Move to run applications

* Fix what's next section link
2021-03-02 19:05:20 -08:00
Kubernetes Prow Robot 1b491be2f5 Merge pull request #26804 from Arhell/fix
modify ttl-after-finish link
2021-03-02 16:51:19 -08:00
Kubernetes Prow Robot 47f06ab62a Merge pull request #26743 from mastermay/patch-1
doc: remove zero-width space character
2021-03-02 16:31:20 -08:00
Arhell 1d772340d1 modify ttl-after-finish link 2021-03-03 00:50:09 +02:00
Geoffrey Cline 5ead4bf8e8 revise docs for service DNS 2021-03-02 20:08:14 +00:00
HugoPfeffer 8b397cb7aa docs: Fix concepts/containers folder name 2021-03-02 09:01:32 -08:00
iamhesir 8b19b36a7e Merge branch 'master' into patch-1 2021-03-02 23:08:06 +08:00
Kubernetes Prow Robot 8def01fc50 Merge pull request #26792 from lsq645599166/caution_callout
change callout from warning to caution
2021-03-02 04:15:19 -08:00
Mastermay e56f663441 Update content/zh/docs/contribute/style/hugo-shortcodes/index.md
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-02 20:01:42 +08:00
Kubernetes Prow Robot 133ec015e7 Merge pull request #26794 from lsq645599166/zh_aliases
remove the duplicated alias in zh version
2021-03-02 03:53:19 -08:00
mastermay b5a83d8d3c docs: improve chinese translation 2021-03-02 18:41:06 +08:00
Henry Liu 5f1435c73a remove the duplicated alias in zh version 2021-03-02 18:40:59 +08:00
CKchen0726 60ffd6fd05 add some necessary description after running command 'minikube dashboard' 2021-03-02 18:06:14 +08:00
Grzegorz Eliszewski 5de7e33eec Add information about Parallel Pod Management
Clarify information that Parallel Pod Management works only during scaling.
2021-03-02 10:35:27 +01:00
Kubernetes Prow Robot b7454141d4 Merge pull request #26652 from MichaelWasher/container-environment
Update container-environment.md with fix about service environment variables not being cluster-wide
2021-03-02 01:13:20 -08:00
Henry Liu 77ecc224b8 change callout from warning to caution 2021-03-02 15:11:18 +08:00
Lapi 999fb1269b add php-apache.yaml 2021-03-02 14:04:38 +09:00
Kubernetes Prow Robot 7f725ae935 Merge pull request #26558 from AnguillaJaponica/troubleshooting-kubeadm-1.18-ja
Update docs/setup/production-environment/tools/kubeadm/troubleshooting-kubeadm.md to follow v1.18 of the original text
2021-03-01 20:37:21 -08:00
iamhesir eb7cbb2845 Remove duplicate version-check 2021-03-02 10:25:46 +08:00
Kubernetes Prow Robot e2672da6b6 Merge pull request #26647 from pjhwa/outdated2-26620
Update outdated files in dev-1.20-ko.5 (2)
2021-03-01 17:19:22 -08:00
HugoPfeffer 3491bbafc1 docs: Add 'Concepts/container/images.md' in pt language 2021-03-01 15:39:33 -08:00
Juampy NR d353fcf367 Fix typo (#26781)
* Fix typo

* Reword fixed typo
2021-03-01 14:30:15 -08:00
Kubernetes Prow Robot 88588e708a Merge pull request #26387 from caleb15/patch-1
add warning about counterintuitive readiness probe
2021-03-01 13:10:16 -08:00
Kubernetes Prow Robot 42baccaf97 Merge pull request #26770 from neha-viswanathan/26722-network-addon
Replace network solution with network add-on
2021-03-01 12:53:26 -08:00
Kubernetes Prow Robot 94d7557f55 Merge pull request #26783 from oke-py/invalid-hash
chore: fix invalid location.hash
2021-03-01 12:47:26 -08:00
Kubernetes Prow Robot ba33ccf33a Merge pull request #26740 from davideimola/feature/ContainerLifecycleHooksITTranslation
Translated in italian the "Container Lifecycle Hook" chapter
2021-03-01 12:45:26 -08:00
Kubernetes Prow Robot 44555ebf11 Merge pull request #26715 from chrisnegus/kubeadm-amazonlinux2
install-kubeadm.md: generalize the list of distributions and install options
2021-03-01 12:35:26 -08:00
Kubernetes Prow Robot 881f0e6075 Merge pull request #26727 from psibi/patch-2
docs: Update the name of the secret in the output
2021-03-01 12:27:26 -08:00
Davide Imola 010a87988e Translated in italian the "Container Lifecycle Hook" chapter 2021-03-01 20:48:59 +01:00
Adrian Ludwin d2239f3d7a Better document default imagePullPolicy behaviour
The `imagePullPolicy` field is set automatically based on the image tag
if it's initially omitted, but it is not updated if the image tag later
changes. This can lead to [confusing
behaviour](https://itnext.io/defaults-are-hard-kubernetes-deployment-edition-3b11095792f2).
This change attempts to warn users of this potential pitfall.
2021-03-01 14:40:03 -05:00
Christopher Negus cb6ba0f63d install-kubeadm:Generalize list of distributions 2021-03-01 19:26:49 +00:00
BITLIU aae1ca4b13 Sync with English version and Update Deprecated URL (#26692)
* Update deprecated URL: Proxy

http://www.haproxy.org/download/1.5/doc/proxy-protocol.txt is deprecated and 403 Forbidden,change it to https://www.haproxy.org/download/1.8/doc/proxy-protocol.txt

* Sync with English version and Update Deprecated URL

* Sync with english version and update URL

* Update source-ip.md

* Update source-ip.md

* Update content/zh/docs/tutorials/services/source-ip.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/tutorials/services/source-ip.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/tutorials/services/source-ip.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

* Update content/zh/docs/tutorials/services/source-ip.md

Co-authored-by: Qiming Teng <tengqm@outlook.com>

Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-03-01 11:09:25 -08:00
Kubernetes Prow Robot b8616ed6e6 Merge pull request #26680 from diegonuevo/patch-1
Corrected Docker(shim) UNIX domain socket file
2021-03-01 10:49:26 -08:00
Yong Zhang e2ba3a895c fix an invalid url (#26433) 2021-03-01 06:57:25 -08:00
Naoki Oketani 5b29859b33 chore: fix invalid location.hash 2021-03-01 22:20:38 +09:00
AnguillaJaponica ab646c8eba translate troubleshooting-kubeadm-1.18-ja 2021-03-01 22:12:52 +09:00
Lapi d62fa45625 fix translation 2021-03-01 21:33:25 +09:00
Lapi 88fd85e27f translate horizontal-pod-autoscale-walkthrough into ja 2021-03-01 21:32:04 +09:00
Carol Valencia 4b2aac6e6e chore: security/overview in pt language 2021-03-01 07:17:14 -03:00
mastermay 9d5b88861e docs: Synchronize Chinese localization with upstream 2021-03-01 17:28:58 +08:00
Kubernetes Prow Robot 1bfa7f92e8 Merge pull request #26746 from gaoguangze111/update-chinese-translation-scheduling-eviction
Update Chinese translation for page scheduling eviction
2021-03-01 01:26:40 -08:00
Kubernetes Prow Robot d3ce79cc96 Merge pull request #26744 from gaoguangze111/update-translation-page-scheduling-config
Update some translation in scheduling config page
2021-03-01 01:24:39 -08:00
debugwish a19a86f9a9 Update connect-applications-service.md 2021-03-01 16:20:33 +08:00
Kubernetes Prow Robot 7356807b68 Merge pull request #26728 from ydcool/zh-links-tutorials
Fix links in tutorials section
2021-02-28 19:34:39 -08:00
Kubernetes Prow Robot 7f1b67e370 Merge pull request #26777 from wwgfhf/master-pod-security-policy
Update zh translation in pod-security-policy.md
2021-02-28 19:30:39 -08:00
wwgfhf 8ee16c8d16 Update pod-security-policy.md 2021-03-01 10:48:47 +08:00
raghvenders c77e38066f Review Comments 2021-02-28 20:40:16 -06:00
Dominic Yin 6e432a5366 Fix links in tutorials section 2021-03-01 09:26:11 +08:00
Kubernetes Prow Robot 60771022a1 Merge pull request #26726 from ydcool/zh-remove-redis-and-master-slave-terminology
[zh] Remove Master/Slave terminology from stateless application tutor…
2021-02-28 17:22:41 -08:00
Dominic Yin a89880b826 [zh] Remove Master/Slave terminology from stateless application tutorial 2021-03-01 09:13:35 +08:00
Kubernetes Prow Robot cc20a191a0 Merge pull request #26769 from wwgfhf/master-logging
Update zh translation in  logging.md
2021-02-28 16:26:39 -08:00
Jerry Park 82355b4bac Update outdated files in dev-1.20-ko.5 (2) 2021-03-01 09:11:40 +09:00
Kubernetes Prow Robot 830d1da569 Merge pull request #26767 from fancc/networking
fix some format errors
2021-02-28 16:06:39 -08:00
Kubernetes Prow Robot 5e5758b10a Merge pull request #26775 from Arhell/fix
[zh] fix landscape URLs
2021-02-28 16:04:40 -08:00
Arhell b7e098340f [zh] fix landscape URLs 2021-03-01 00:39:05 +02:00
Kubernetes Prow Robot 242bc24103 Merge pull request #26496 from sibucan/patch-1
Mention the range of time in which a kubelet might renew a certificate
2021-02-28 13:46:39 -08:00
Kubernetes Prow Robot c5e52425ab Merge pull request #26600 from marosset/windows-containerd-install-disable-defender
Updating containerd on Windows install steps to add Defender Exclusion
2021-02-28 13:26:39 -08:00
Kubernetes Prow Robot eb45cd203a Merge pull request #26296 from bradjones1/clarification/environment-variable-order
Clarify language regarding environment variable order
2021-02-28 12:40:39 -08:00
edsoncelio 8bad612482 Add content/pt/docs/concepts/containers/container-environment.md 2021-02-28 16:44:36 -03:00
Jordi Noguera 6d86df2b49 Fix deprecated landscape URLs (#26251)
* Fix deprecated landscape URLs

* Revert changes to language files
2021-02-28 11:26:39 -08:00
Jailton Lopes 973ac40ef8 Update content/pt/docs/tutorials/kubernetes-basics/create-cluster/cluster-intro.html
- Update create-introl.html to use the "control plane" follow the
  official translation to Portuguese.

Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-02-28 14:46:01 -03:00
wwgfhf f9ab297c2e Update service-catalog.md 2021-03-01 01:13:56 +08:00
Neha Viswanathan 5ea1bfdfe0 Replace network solution with network add-on 2021-02-28 08:36:28 -08:00
wwgfhf 45b81a2733 Update logging.md 2021-02-28 23:44:37 +08:00
bryan 734ded5cc4 fix some format errors 2021-02-28 22:51:27 +08:00
Kubernetes Prow Robot 4f742dbbb6 Merge pull request #26764 from Arhell/update
[zh] update client-libraries.md
2021-02-28 01:40:39 -08:00
Arhell 88948940b1 [zh] update client-libraries.md 2021-02-28 11:29:04 +02:00
Kubernetes Prow Robot 04a4efe38d Merge pull request #26761 from wwgfhf/master-kubeconfig
Update zh translation in  organize-cluster-access-kubeconfig.md
2021-02-27 23:10:41 -08:00
ishii1648 94f6f4945e Fix the translation about Source IP for Services with Type=LoadBalancer
Signed-off-by: ishii1648 <ishiisho0509@gmail.com>
2021-02-28 15:22:13 +09:00
yoinakag af8b86e701 文言微修正 2021-02-28 13:59:56 +09:00
yoinakag 660c251ff7 issue-26513応 2021-02-28 13:43:08 +09:00
wwgfhf c66e170219 Update organize-cluster-access-kubeconfig.md 2021-02-28 11:31:41 +08:00
Kubernetes Prow Robot d54500d55d Merge pull request #25918 from slashr/master
Replaced deprecated ReplicationController with JobController
2021-02-27 19:20:38 -08:00
Kubernetes Prow Robot 451eb86491 Merge pull request #25541 from hezhizhen/patch-2
Fix syntax error
2021-02-27 19:18:38 -08:00
Kubernetes Prow Robot 3f373fd71a Merge pull request #25795 from shu-mutou/update-l10n
Fix `Source files` in localization document.
2021-02-27 18:40:39 -08:00
Kubernetes Prow Robot 903ee369b2 Merge pull request #26119 from neha-viswanathan/25833-migrate-page
Migrate https://kubernetes.io/docs/concepts/cluster-administration/certificates/ to tasks section
2021-02-27 18:26:38 -08:00
Zhizhen He 909dba3bb2 Refine the sentence 2021-02-28 10:23:54 +08:00
Kubernetes Prow Robot f3244d82b0 Merge pull request #25644 from Frankkkkk/patch-1
Update client-libraries.md : add python pykorm lib
2021-02-27 18:22:40 -08:00
Kubernetes Prow Robot 7d051f9a09 Merge pull request #25459 from amyXia1994/patch-1
Update secret.md
2021-02-27 17:52:38 -08:00
Kubernetes Prow Robot 8f4448652c Merge pull request #26750 from oke-py/invalid-hash
chore: fix an invalid location.hash
2021-02-27 16:16:38 -08:00
Kubernetes Prow Robot a7bab8d6ca Merge pull request #26751 from JensHeinrich/JensHeinrich-patch-sentence
Fix sentence
2021-02-27 16:12:39 -08:00
Kubernetes Prow Robot 449a4a2634 Merge pull request #26735 from liggitt/admission-alpha
Clarify stability level of admission plugins
2021-02-27 09:50:39 -08:00
Jordan Liggitt 4103230c18 Clarify stability level of admission plugins 2021-02-27 12:46:20 -05:00
Kubernetes Prow Robot 240251b001 Merge pull request #26755 from jailton/en/docs/tutorials
Update Deploy App Tutorial  to use the "control plane" terminology.
2021-02-27 09:40:38 -08:00
Jailton Lopes e78c03800a Update Tutorial Deploy App to use the "control plane" terminology.
* Update page content/en/docs/tutorials/kubernetes-basics/deploy-app/deploy-intro.html
* Update image content/en/docs/tutorials/kubernetes-basics/public/images/module_02_first_app.svg

Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-02-27 13:44:20 -03:00
Kubernetes Prow Robot 2a515abec4 Merge pull request #26742 from gaoguangze111/Update-translation-in-page-of-scheduler-instruction
Update a word translation in page of scheduler introduction
2021-02-27 06:56:38 -08:00
Jens Heinrich e864d7f3ca Fix sentence
Add missing verb
2021-02-27 15:37:33 +01:00
Naoki Oketani 9d644accea chore: fix an invalid location.hash 2021-02-27 22:24:45 +09:00
GoodGameZoo 35fd22c03a Update page scheduling eviction 2021-02-27 01:04:19 -08:00
Kubernetes Prow Robot a46c896e28 Merge pull request #26637 from tettsu/fix/setup-aws
ja: Make docs/setup/production-environment/turnkey/aws.md follow v1.18 of the original text
2021-02-27 00:00:39 -08:00
machida tetsuro 8b046d0f7d Fixed the usage of "-" to match the original 2021-02-27 16:41:14 +09:00
GoodGameZoo 2c38402aed Update some translation in scheduling config page 2021-02-26 22:59:00 -08:00
Mastermay 2022ef9d18 doc: remove zero-width space character 2021-02-27 11:23:32 +08:00
GoodGameZoo 45fa0931e6 Update a word translation in page of scheduler introduction 2021-02-26 19:20:08 -08:00
Kubernetes Prow Robot eb5a204dc9 Merge pull request #26733 from lanandra/fix_typo_contribute_id_index
Fix typo in contribute id _index.md
2021-02-26 19:16:38 -08:00
Kubernetes Prow Robot 248bad3d56 Merge pull request #26724 from wwgfhf/master-job
Update zh translation in job.md
2021-02-26 17:34:39 -08:00
Carol Valencia ba366192f5 chore: security/overview in pt language 2021-02-26 15:23:17 -03:00
lanandra 4671f7bcf8 Fix typo in contribute id _index.md 2021-02-26 20:53:49 +07:00
Sibi Prabakaran 6a246ed922 docs: Update the name of the secret in the output
I found it confusing that the name of secret is different that the one created. Hopefully this helps.
2021-02-26 16:02:46 +05:30
Cristian Klein 79113f3f68 Change to inclusive naming
See https://inclusivenaming.org/ on why "multi-master" should be avoided.
2021-02-26 10:32:30 +01:00
wwgfhf b9acba6987 Update job.md 2021-02-26 17:27:21 +08:00
Shu Muto de1b4d7635 Fix Source files in localization document.
Fix `Source files` section in localization document, and remove {{< release-branch >}} variable
due to `release-1.20` branch does not exist.

- improve sentence
- Fix latest branch for latest version
- Add description if latest branch does not exist
- Describe about master branch
- Apply suggestions from code review
- Unify `development branch` to` localization branch`
- Remove description for switching upstream branch
- Add description for switching upstream
- Also, add description for merging to master and new release branch.

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
Co-authored-by: Seokho Son <shsongist@gmail.com>
2021-02-26 13:56:24 +09:00
Carol Valencia d362738fc8 feat: security/overview in pt language 2021-02-25 23:53:31 -03:00
Kubernetes Prow Robot 7c94fc38b4 Merge pull request #26716 from sftim/20210225_sftim_blog_reviewer
Add sftim as blog reviewer
2021-02-25 17:26:15 -08:00
Tim Bannister c10057bd5a Add sftim as blog reviewer 2021-02-25 23:44:53 +00:00
Kubernetes Prow Robot 8de202cfa1 Merge pull request #26580 from kbhawkey/update-style-extraneous-words
update style guide (insensitive words)
2021-02-25 13:48:15 -08:00
Kubernetes Prow Robot 18f3eae6ef Merge pull request #26707 from veyu/patch-2
Clarify syntax requirements for label value
2021-02-25 13:36:16 -08:00
Kubernetes Prow Robot d35b1eb093 Merge pull request #26560 from butterv/setup-kubespray-1.18-ja
Update docs/setup/production-environment/tools/kubespray.md to follow v1.18 of the original text
2021-02-25 08:59:25 -08:00
Kubernetes Prow Robot f6d72fe163 Merge pull request #26557 from butterv/setup-gce-1.18-ja
Update docs/setup/production-environment/turnkey/gce.md to follow v1.18 of the original text
2021-02-25 08:57:26 -08:00
Kubernetes Prow Robot ded90a1ddd Merge pull request #26550 from tanaka-takayoshi/patch-26521
Update docs/setup/production-environment/windows/intro-windows-in-kubernetes.md
2021-02-25 08:55:25 -08:00
tanaka_733 43280664fc Update content/ja/docs/setup/production-environment/windows/intro-windows-in-kubernetes.md
Co-authored-by: makocchi <makocchi@gmail.com>
2021-02-26 00:17:13 +09:00
Kubernetes Prow Robot 166348b411 Merge pull request #26561 from butterv/remove-clc-ja
Remove docs/setup/production-environment/turnkey/clc.md to follow v1.18 of the original text
2021-02-25 07:15:25 -08:00
Kubernetes Prow Robot 30107b7b4c Merge pull request #26490 from task4233/add-ja-reference-tools
ja: Make docs/reference/tools.md referencing en/docs/reference/tools.md
2021-02-25 06:51:25 -08:00
Leonardo Murillo 06f1e784b8 Últimos cambios a partir de revisión 2021-02-25 14:28:26 +00:00
Kubernetes Prow Robot f4e3964c02 Merge pull request #26592 from kennygt51/26512
Update docs/setup/production-environment/tools/kubeadm/kubelet-integr…
2021-02-25 06:13:24 -08:00
Kubernetes Prow Robot b993d8d901 Merge pull request #26634 from an-0305/dev-1.18-ja.2-26514
Update docs/setup/production-environment/tools/kubeadm/setup-ha-etcd-with-kubeadm.md to follow v1.18 of the original text
2021-02-25 06:11:25 -08:00
Leonardo Murillo 4a19082f93 Merge branch 'master' of github.com:kubernetes/website 2021-02-25 13:59:46 +00:00
Ricardo Katz fd227a8405 Add EndpointSlice blog post in pt language (#26708)
* Add EndpointSlice blog post in pt language

* Apply corrections into endpointslice blog post translation

Co-authored-by: Jhon Mike <jhon.msdev@gmail.com>

Co-authored-by: Jhon Mike <jhon.msdev@gmail.com>
2021-02-25 05:49:24 -08:00
Aditi Sharma 6d48be986b Update pod-infra-container-image description
Update kubelet flag  pod-infra-container-image description
2021-02-25 17:16:19 +05:30
Kubernetes Prow Robot b4930c03ea Merge pull request #26696 from ydcool/fix-25656
remove period at end of a list line #25656
2021-02-24 23:59:24 -08:00
Kubernetes Prow Robot 0809ac7b29 Merge pull request #26703 from Xunzhuo/patch-7
Fix Helm install instruction URL
2021-02-24 23:33:25 -08:00
Neha Viswanathan 41220636ec Migrate https://kubernetes.io/docs/concepts/cluster-administration/certificates/ to tasks section 2021-02-24 18:33:38 -08:00
Kubernetes Prow Robot 58aef59d6c Merge pull request #26097 from alculquicondor/patch-1
Remove indication that a failed scheduling attempt removes the Pod
2021-02-24 17:41:25 -08:00
veyu bd55d498df Clarify requirements for label value syntax 2021-02-24 18:58:22 +01:00
Kubernetes Prow Robot 960f924ff6 Merge pull request #26699 from Xunzhuo/patch-4
Fix Incorrect URLs
2021-02-24 05:58:50 -08:00
Kubernetes Prow Robot 96ccba050e Merge pull request #26702 from Xunzhuo/patch-6
Update deprecated URL
2021-02-24 02:50:50 -08:00
BITLIU 3a7c478d65 Fix Helm install instruction URL
https://github.com/kubernetes/helm/blob/master/docs/install.md is deprecated
2021-02-24 18:39:13 +08:00
BITLIU 6b092d7548 Update deprecated URL
update https://www.haproxy.org/download/1.5/doc/proxy-protocol.txt to https://www.haproxy.org/download/1.8/doc/proxy-protocol.txt
2021-02-24 18:10:28 +08:00
Juampy NR ce8d33face Add example to restore snapshot 2021-02-24 10:22:38 +01:00
Kubernetes Prow Robot e44726958e Merge pull request #26645 from jailton/en/kubernetes-basics/create-cluster
Update content/en/docs/tutorials/kubernetes-basics/create-cluster/cluster-intro.html to to use the "control plane" terminology
2021-02-24 01:20:50 -08:00
Kubernetes Prow Robot 20f9d28a03 Merge pull request #26644 from jailton/en/docs/tutorials
Update diagram docs/tutorials/kubernetes-basics/public/images/module_01_cluster.svg
2021-02-24 01:18:50 -08:00
Juampy NR a7c7662fb9 Demonstrate how to use secure communication 2021-02-24 10:06:02 +01:00
BITLIU 5f17cfd76e Fix Incorrect URLs 2021-02-24 15:49:08 +08:00
Hagai Ovadia 211fe0cb06 Update client-libraries.md
New maintainer of kubernetes scala client - skuber.
2021-02-24 08:38:10 +02:00
Dominic Yin 0e2aea53be remove period at end of a list line #25656 2021-02-24 14:26:18 +08:00
Michael Washer 4875e21a48 Resolve Control Plane misnaming 2021-02-24 16:00:18 +13:00
Kubernetes Prow Robot 095c51a0d8 Merge pull request #26679 from Xunzhuo/patch-2
Fix Markdown Error
2021-02-23 17:02:50 -08:00
Kubernetes Prow Robot 3e2731b564 Merge pull request #26465 from perithompson/patch-1
Added limitation with windows network services
2021-02-23 10:38:34 -08:00
Kubernetes Prow Robot 2da53bc0d6 Merge pull request #26585 from superbrothers/fix-assign-pod-node-ja
ja: Fix the translation about nodeSelectorTerms of Node affinity
2021-02-23 07:36:03 -08:00
diegonuevo 072ac32064 Corrected Docker(shim) UNIX domain socket file
This page listed `/var/run/docker.sock` as the UNIX domain socket path for the Docker container runtime, but it's actually `/var/run/dockershim.sock`, as the kubelet documentation indicates as the default value for the `--container-runtime-endpoint` argument:

https://kubernetes.io/docs/reference/command-line-tools-reference/kubelet/

The socket file specified (`/var/run/docker.sock`) is where the Docker daemon listens for requests for the Docker API, not the CRI interface.
2021-02-23 16:28:08 +01:00
Kubernetes Prow Robot 26e74d68b4 Merge pull request #26571 from RyuSA/ja-1.18-fix-createclusterkubeadm
Update `ja/create-cluster-kubeadm.md`
2021-02-23 05:48:04 -08:00
BITLIU 13379c974c Fix Markdown Error 2021-02-23 21:37:58 +08:00
Kubernetes Prow Robot 37a379a43f Merge pull request #26636 from guizanelato/master
Add content/pt/docs/concepts/configuration/organize-cluster-access-kubeconfig.md
2021-02-23 03:14:03 -08:00
chenxuc 9548c08e17 List operator tools in alphabetical order
This is to update operator web page to
list operator tools in alphabetical order as well as other
minor improvements.
2021-02-23 18:26:00 +08:00
TAKAHASHI Shuuji a12e551005 Translate en/docs/contribute/review/reviewing-prs into Japanese. 2021-02-23 15:07:22 +09:00
Kubernetes Prow Robot 2daeee3424 Merge pull request #26643 from ysyukr/dev-1.20-ko.5-outdated-part-03
Update to Outdated files in dev-1.20-ko.5 branch (3)
2021-02-22 21:24:03 -08:00
Guilherme Zanelato 7373ebbb38 Add content/pt/docs/concepts/configuration/organize-cluster-access-kubeconfig.md 2021-02-23 00:31:09 -03:00
dev_rr 5f786ed64d fix typo
fix typo
2021-02-23 11:38:07 +09:00
raghvenders 2b6074e8ed changes 2021-02-22 19:13:26 -06:00
Kubernetes Prow Robot ebb3d6a14d Merge pull request #26529 from tengqm/zh-resync-kompose
[zh] Resync translate-compose-kubernetes task
2021-02-22 04:29:42 -08:00
Kubernetes Prow Robot 4e5f386d14 Merge pull request #26665 from seokho-son/ko-fix-typo
ko: fix typo in cloud-controller-manager
2021-02-22 04:15:42 -08:00
seokho-son 0f277a5c87 ko: fix typo in cloud-controller-manager 2021-02-22 19:43:11 +09:00
Kubernetes Prow Robot 767bee3cd7 Merge pull request #26657 from spy1233/fix-mistranslation-1
Fix mistranslation in labels.md
2021-02-21 21:13:42 -08:00
Kubernetes Prow Robot da73ec0cc1 Merge pull request #26626 from CaoDonghui123/fix-issue2
[zh]fix typo
2021-02-21 17:43:42 -08:00
Jailton Lopes 9068e70716 Update content/en/docs/tasks/access-application-cluster/port-forward-access-application-cluster.md
Update page port-forward-access-application-cluster.md to use MongoDB
examples instead of Redis examples

Commit 99029b9 removes the Redis examples.

Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-02-21 20:18:25 -03:00
Kubernetes Prow Robot 641e7c061c Merge pull request #26651 from Billy-The-Squid/patch-1
Fix broken link
2021-02-21 11:53:42 -08:00
Kubernetes Prow Robot b7fd9bc6e2 Merge pull request #26564 from tengqm/fix-26542
Fix links to etcd public documentation
2021-02-21 10:43:42 -08:00
Kubernetes Prow Robot 7a8dc0b56a Merge pull request #26635 from gochist/update-l10n
Describe helper scripts for localization
2021-02-21 10:03:44 -08:00
spy1233 4c3ff2f844 Fix mistranslation in labels.md 2021-02-22 01:10:57 +09:00
Kubernetes Prow Robot d83cc55f5a Merge pull request #26655 from mwu966/issue-26505
ja: Update docs/setup/production-environment/on-premises-vm/cloudstack.md follow v1.18 of the original text
2021-02-21 07:01:42 -08:00
Tim Bannister ad5bebe2aa Add (stub) localization guide for Spanish (#24477)
* Add (stub) localization guide for Spanish

Co-authored-by: Victor Morales <chipahuac@hotmail.com>

* docs: Add brief page introduction

* docs: use archivo as discussed with the team

Co-authored-by: Victor Morales <chipahuac@hotmail.com>
Co-authored-by: Rael Garcia <rael@rael.io>
2021-02-21 03:03:43 -08:00
Colloid ce649efef7 ja: Update docs/setup/production-environment/on-premises-vm/cloudstack.md 2021-02-21 19:32:21 +09:00
Kubernetes Prow Robot 29fc51d5a5 Merge pull request #26639 from mfilocha/synchronize-pl-1.20b
Synchronize Polish localization with upstream
2021-02-21 01:03:43 -08:00
Michael Washer 89d90304c6 Update container-environment.md with fix about service environment variables not being cluster-wide 2021-02-21 18:14:06 +13:00
Will Hanstedt d042a1a687 Fix broken link
Attempt to resolve issue #26641. Redirected the "CoreOS' original article" link to an archived version of the article.
2021-02-20 23:57:53 -05:00
Yuk, Yongsu 2d78104965 Update to Outdated files in dev-1.20-ko.5 branch (3) 2021-02-21 13:02:18 +09:00
Jailton Lopes 25a21cb87a Update content/en/docs/tutorials/kubernetes-basics/create-cluster/cluster-intro.html to to use the "control plane" terminology
Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-02-20 16:17:31 -03:00
Jailton Lopes f381ec8dc3 Update docs/tutorials/kubernetes-basics/public/images/module_01_cluster.svg to to use the "control plane" terminology
Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-02-20 16:04:00 -03:00
Kubernetes Prow Robot 843be43d2a Merge pull request #26616 from mharen/patch-1
updated labels for cli command in the PHP Guestbook tutorial
2021-02-20 05:29:42 -08:00
Kubernetes Prow Robot fa7e9a2e18 Merge pull request #26631 from jailton/en/docs/concepts/policy
Add glossary tooltip for “API server” to Resource Quotas concept
2021-02-20 05:05:41 -08:00
Maciej Filocha 9f4eda2569 Synchronize Polish localization with upstream
Polish translation synchronized up to 544afc8999
2021-02-20 14:00:46 +01:00
machida tetsuro 648832467e Modify the Japanese document according to #26517 2021-02-20 17:56:11 +09:00
Zhizhen He 682d3c2550 Rephrase the sentence 2021-02-20 16:47:02 +08:00
Kubernetes Prow Robot 544afc8999 Merge pull request #26299 from tengqm/zh-resync-hpa
[zh] Resync HPA task
2021-02-19 22:15:41 -08:00
June Yi 27013dfbf5 Describe helper scripts for localization 2021-02-20 12:13:36 +09:00
akari nakamura 3c9bc027c8 update document 2021-02-20 11:56:37 +09:00
Michael Nikitochkin 872e88625d [ja] Update the examples with source code and sync with en version 2021-02-20 00:02:59 +01:00
Michael Nikitochkin 6ea8ce102c Use apiversion networking.k8s.io/v1 for ingress for JA
There is a warning deprecation message for kubernetes v1.19:

```
Warning: networking.k8s.io/v1beta1 Ingress is deprecated in v1.19+, unavailable in v1.22+; use networking.k8s.io/v1 Ingress
```

Switched apiversion in the example to `networking.k8s.io/v1`
2021-02-19 23:47:44 +01:00
Kubernetes Prow Robot 572b62b938 Merge pull request #26567 from mfilocha/synchronize-pl-1.20a
Synchronize Polish localization with upstream
2021-02-19 13:57:41 -08:00
Mike Patterson 67a342aae3 Update certificate-signing-requests.md
Maintain original docs `/home/vagrant/work/`working directory to be consistent.
2021-02-19 13:18:53 -08:00
Jailton Lopes 1077ed896f Add glossary tooltip for “API server” to Resource Quotas concept
Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-02-19 17:42:50 -03:00
Jailton Lopes 49a6df0dbc [pt] Add Explore You App in Portuguese (#26556)
* Translate Explore You App in Portuguese

* Update Explore Your App link in Learn Kubernetes Basics _index.html

* Update link to Explore Interactive page translation in Portuguese

* Fix typo and change the translation of the word *worker*.

Signed-off-by: Jailton Lopes <jailton@gmail.com>

* Fix typo

Signed-off-by: Jailton Lopes <jailton@gmail.com>
2021-02-19 10:22:24 -08:00
Maciej Filocha 6d1f57ebc3 Synchronize Polish localization with upstream
Polish translation synchronized up to fa83273ca5.

Co-authored-by: Karol Pucyński <9209870+kpucynski@users.noreply.github.com>
Co-authored-by: Michał Sochoń <kaszpir@gmail.com>
2021-02-19 17:31:31 +01:00
caodonghui 9303a66890 fix typo 2021-02-19 17:33:16 +08:00
Kubernetes Prow Robot 873977eecf Merge pull request #26619 from Arhell/fix-link
[zh] fix broken link
2021-02-18 22:54:25 -08:00
Kubernetes Prow Robot 7b0dd7dc3f Merge pull request #26395 from ydFu/update-dual-stack
[zh] Resync concepts pages for services-networking\dual-stack.md
2021-02-18 22:52:25 -08:00
Kubernetes Prow Robot a9fd8ee37a Merge pull request #26570 from zhiguo-lu/zh-trans-blog-dont-panic-kubernetes-and-docker
[zh] translate blog "Don't Panic: Kubernetes and Docker"
2021-02-18 21:40:24 -08:00
luzg 837ae37271 [zh] translate blog Don't Panic: Kubernetes and Docker 2021-02-19 13:04:01 +08:00
Ricardo Katz f54652f29b Propose Yago and Ricardo as pt approvers 2021-02-19 00:53:42 -03:00
ydFu 1cb1ac4763 [zh] Resync concepts pages for services-networking\dual-stack.md
* Resync with english version in 'Dual-stack docs correction #26386'

* Update in 'administer-cluster\safely-drain-node.md' #25996

* Fix git rebase in services-networking\dual-stack.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-02-19 11:39:53 +08:00
Kubernetes Prow Robot bbf5e901ad Merge pull request #26607 from pacoxu/patch-3
VolumeSubpath is GA since 1.10
2021-02-18 18:38:24 -08:00
RyuSA ebd929c498 Update content/ja/docs/setup/production-environment/tools/kubeadm/create-cluster-kubeadm.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-02-19 08:39:03 +09:00
Kubernetes Prow Robot fd8ee1d068 Merge pull request #26613 from kubernetes/dev-1.20-ko.4
ko: Fourth Korean l10n work for release-1.20
2021-02-18 15:30:24 -08:00
Arhell b3d9fc8733 [zh] fix broken link 2021-02-19 00:59:11 +02:00
Kubernetes Prow Robot 5b28c549d9 Merge pull request #25955 from georgettica/patch-1
fix(advanced-scheduling): space fixes
2021-02-18 10:42:51 -08:00
Kubernetes Prow Robot 89a8523980 Merge pull request #26579 from JIIOryo/26509
Update: docs/setup/production-environment/tools/kubeadm/ha-topology.md
2021-02-18 08:34:51 -08:00
Michael H 765e98db54 updated labels for cli command 2021-02-18 11:13:01 -05:00
seokho-son 519861d265 Fourth Korean l10n work for release-1.20
- Ko: add l10n contributor name in a blog (#26285)
- Translate reference/glossary/secret.md in Korean (#26391)
- Update outdated files in the dev-1.20-ko.4 branch (2) (#26342)
- Translate reference/glossary/quantity.md in Korean (#26390)
- Update outdated files in the dev-1.20-ko.4 branch (1) (#26427)
- Translate reference/glossary/storage-class.md in Korean (#26419)
- Update outdated files in dev-1.20-ko.4 branch (3) (#26599)

Co-authored-by: seokho-son <shsongist@gmail.com>
Co-authored-by: Jerry Park <jaehwa@gmail.com>
Co-authored-by: santachopa <santachopa@naver.com>
Co-authored-by: jmyung <jesang.myung@gmail.com>
2021-02-18 23:11:23 +09:00
Kubernetes Prow Robot aef9369401 Merge pull request #26610 from oke-py/hash
chore: fix an invalid location.hash
2021-02-18 05:16:51 -08:00
Kubernetes Prow Robot 7c89df0d9d Merge pull request #26439 from yangjiao2/patch-4
[zh] sync and update statefulset.md
2021-02-18 04:16:52 -08:00
Kubernetes Prow Robot 68ba34dffd Merge pull request #26401 from ydFu/update-architecture
[zh] Sync concepts pages for architecture nodes and controller
2021-02-18 04:14:51 -08:00
Kubernetes Prow Robot a6a70006c7 Merge pull request #26555 from m3y/dev-1.18-ja.2
Reflects differences from the original (#26506)
2021-02-18 02:42:51 -08:00
Naoki Oketani e038da9e5e chore: fix an invalid location.hash 2021-02-18 19:19:56 +09:00
Paco Xu 037e767445 VolumeSubpath is GA since 1.10
https://github.com/kubernetes/kubernetes/issues/60813
2021-02-18 16:38:55 +08:00
Satoshi Inoue c4601234ec Update content/ja/docs/setup/production-environment/turnkey/gce.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-02-18 13:56:03 +09:00
Satoshi Inoue 5c727d6901 Update content/ja/docs/setup/production-environment/turnkey/gce.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-02-18 13:55:53 +09:00
Satoshi Inoue 26384e3331 Update content/ja/docs/setup/production-environment/turnkey/gce.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-02-18 13:55:39 +09:00
Mike Patterson 6a166cf511 Update content/en/docs/reference/access-authn-authz/certificate-signing-requests.md
Co-authored-by: Irvi Aini <7439590+irvifa@users.noreply.github.com>
2021-02-17 17:34:31 -08:00
marosset 8cb0137b7c Updating containerd on Windows install steps to add Defender Exclusion 2021-02-17 11:51:05 -08:00
Kubernetes Prow Robot 8267be8a0f Merge pull request #26598 from liggitt/deprecation-fixup
Fix API group typo
2021-02-17 07:53:06 -08:00
Jordan Liggitt 1711809472 Fix API group typo 2021-02-17 10:39:42 -05:00
Kubernetes Prow Robot d07618a2bd Merge pull request #26483 from liggitt/1-22-migration-guide
Add page listing removed beta versions, replacements, and notable changes
2021-02-17 07:31:06 -08:00
RyuSA 5d5b49c8a8 Update ja/networking.md
Add url fragment
2021-02-17 23:14:34 +09:00
JIIOryo 8d61d01068 Update: docs/setup/production-environment/tools/kubeadm/ha-topology.md 2021-02-17 23:09:42 +09:00
Kubernetes Prow Robot ae3b26ad7f Merge pull request #26553 from arisgi/kubeadm-high-availability-1.18-ja
ja: Make docs/setup/production-environment/tools/kubeadm/high-availability.md follow v1.18 of the original text
2021-02-17 05:57:06 -08:00
JIIOryo 1685bc33db Update: docs/setup/production-environment/tools/kubeadm/ha-topology.md 2021-02-17 22:52:47 +09:00
arisgi 3a38a24097 Remove unnecessary space 2021-02-17 22:31:57 +09:00
Kubernetes Prow Robot aa392f3801 Merge pull request #26586 from timyinshi/distruption
modify error word of administrator
2021-02-17 04:51:06 -08:00
Kubernetes Prow Robot a01dffdb64 Merge pull request #26566 from timyinshi/objectmanager
modify the word of and from english to chinese
2021-02-17 04:49:06 -08:00
Kubernetes Prow Robot 6b823ebce9 Merge pull request #26455 from tengqm/fix-26448
[zh] Fix translation of hostname in TLS example
2021-02-17 04:47:06 -08:00
Kubernetes Prow Robot b2cb6c3fb9 Merge pull request #26461 from tengqm/zh-fix-links
[zh] Fix some bad links in tasks section
2021-02-17 04:45:06 -08:00
Kubernetes Prow Robot 08da9c727c Merge pull request #26532 from tengqm/zh-remove-logging
[zh] Sync changes that remove logging solutions
2021-02-17 04:43:06 -08:00
Kubernetes Prow Robot b6f94a5e36 Merge pull request #26568 from timyinshi/controller
modify the error chinese word
2021-02-17 04:41:06 -08:00
Kubernetes Prow Robot a9aa1088f5 Merge pull request #26569 from timyinshi/ccm
modify the error chinese word
2021-02-17 04:39:06 -08:00
kennygt51 fa808a2019 Update docs/setup/production-environment/tools/kubeadm/kubelet-integration.md 2021-02-17 19:12:27 +09:00
Kubernetes Prow Robot 35eedb602d Merge pull request #26559 from butterv/setup-icp-1.18-ja
Update docs/setup/production-environment/turnkey/icp.md to follow v1.18 of the original text
2021-02-17 00:21:06 -08:00
Kubernetes Prow Robot daa80a4bc6 Merge pull request #26552 from tanaka-takayoshi/patch-26526
Remove four files to follow the original.
2021-02-17 00:15:06 -08:00
timyinshi be6292144d modify error word of administrator
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2021-02-17 13:38:11 +08:00
Kazuki Suda d71ec88c5c ja: Fix the translation about nodeSelectorTerms of Node affinity 2021-02-17 12:48:23 +09:00
Kubernetes Prow Robot 06f06b5bf3 Merge pull request #26583 from timyinshi/pod
delete extra words of 'use'
2021-02-16 18:55:06 -08:00
timyinshi c5f6bc8fbb delete extra words of 'use'
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2021-02-17 10:33:54 +08:00
Takayoshi Tanaka e6744d392c Fix typo. 2021-02-17 10:39:27 +09:00
Takayoshi Tanaka 56c6f4845d Improve phrases. 2021-02-17 09:44:08 +09:00
Karen Bradshaw e13661c5fe update style guide 2021-02-16 19:14:13 -05:00
Kubernetes Prow Robot f40f464f5a Merge pull request #26495 from mox692/fix/link
[ja] removed install-minikube.md
2021-02-16 15:37:06 -08:00
Kubernetes Prow Robot b9f9f71889 Merge pull request #26576 from tallclair/pss
Remove "defalut" from the baseline policy name
2021-02-16 12:13:07 -08:00
Tim Allclair 6645f390f6 Remove "defalut" from the baseline policy name 2021-02-16 11:36:36 -08:00
AliRezaTaleghani 5316aaf207 Update cheatsheet.md
fix CLA sign
2021-02-16 20:09:06 +01:00
AliRezaTaleghani 21100c15ee Update cheatsheet.md
activate CLA
2021-02-16 20:01:07 +01:00
AliRezaTaleghani c3245e47d7 Update cheatsheet.md
adding blank space between examples
2021-02-16 19:56:24 +01:00
AliRezaTaleghani c8d58f3d52 Update cheatsheet.md
adding a custom output to format output by listing Images per Pod in table.
2021-02-16 19:48:47 +01:00
task4233 5b83d03add Update content/ja/docs/reference/tools.md
Co-authored-by: Kei Ak <kakts.git@gmail.com>
2021-02-16 23:43:15 +09:00
task4233 7bea1dba77 Update content/ja/docs/reference/tools.md
Co-authored-by: Kei Ak <kakts.git@gmail.com>
2021-02-16 23:42:56 +09:00
Kubernetes Prow Robot 7a8ef52dfe Merge pull request #26565 from tengqm/fix-26494
Fix dockerhub API URL
2021-02-16 02:27:05 -08:00
RyuSA 6f99b6b065 Update ja/create-cluster-kubeadm.md
following v1.18 of the original text
2021-02-16 19:20:43 +09:00
timyinshi 34a66768c2 modify the error chinese word
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2021-02-16 17:25:22 +08:00
timyinshi dbeb198cc9 modify the error chinese word
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2021-02-16 17:03:27 +08:00
timyinshi 3b502ed114 modify the word of and from english to chinese
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2021-02-16 15:40:24 +08:00
Kubernetes Prow Robot 688fa0c028 Merge pull request #26463 from zhiguo-lu/zh-trans-blog-20201202-dockershim-faq
[zh] translate blog "Dockershim Deprecation FAQ"
2021-02-15 21:21:05 -08:00
Kubernetes Prow Robot 9853323dcc Merge pull request #25998 from CKchen0726/labels_annotations_taints
Revise the page to accurately document the well-known labels, annotations and taints
2021-02-15 20:29:05 -08:00
Qiming Teng 18c22d133e Fix dockerhub URL 2021-02-16 12:17:57 +08:00
Qiming Teng 3b916b3366 Drop outdated information from the page 2021-02-16 11:31:31 +08:00
Qiming Teng 9cac41b0a8 Fix links to etcd official documentation 2021-02-16 11:29:50 +08:00
Qiming Teng 092cbba2c3 Wrap long lines and fix the indentation of lists 2021-02-16 10:56:50 +08:00
JIIOryo 248f0bdd97 Update: docs/setup/production-environment/tools/kubeadm/ha-topology.md 2021-02-16 10:21:29 +09:00
butterv c191850106 ja: Make docs/setup/production-environment/tools/kubespray.md follow v1.18 of the original text 2021-02-16 03:32:56 +09:00
butterv cd173526d2 ja: Make docs/setup/production-environment/turnkey/clc.md follow v1.18 of the original text 2021-02-16 03:01:18 +09:00
butterv 860bef874f ja: Make docs/setup/production-environment/turnkey/icp.md follow v1.18 of the original text 2021-02-16 02:22:46 +09:00
m3y 70c0b5cbe0 Reflects differences from the original 2021-02-16 01:45:16 +09:00
butterv a9508411f5 ja: Make docs/setup/production-environment/turnkey/gce.md follow v1.18 of the original text 2021-02-16 01:42:45 +09:00
arisgi 12d82890d7 ja: Make docs/setup/production-environment/tools/kubeadm/high-availability.md follow v1.18 of the original text 2021-02-16 00:46:34 +09:00
Takayoshi Tanaka eabb2018bf Remove four files to follow the original. 2021-02-15 23:54:39 +09:00
Takayoshi Tanaka 9ac8b38115 Update docs/setup/production-environment/windows/intro-windows-in-kubernetes.md. 2021-02-15 23:50:51 +09:00
inductor(Kohei) b3d69ac0e1 Update content/ja/docs/setup/learning-environment/minikube.md 2021-02-15 21:03:14 +09:00
Kubernetes Prow Robot 0dead1b9a6 Merge pull request #26428 from kbhawkey/clean-es-markup
es: clean up capture stmts in Secret concept page
2021-02-15 02:37:06 -08:00
Kubernetes Prow Robot 44b5555ab3 Merge pull request #26531 from task4233/update-ja-setup-user-guide-windows-container
ja: Make docs/setup/production-environment/windows/user-guide-windows-containhers.md follow v1.18 of the original text
2021-02-15 00:51:08 -08:00
Kubernetes Prow Robot 1c998bafe7 Merge pull request #26538 from Arhell/update
update cheatsheet.md
2021-02-15 00:13:05 -08:00
Kubernetes Prow Robot 325c9f0ad2 Merge pull request #26545 from akshayhiremath/patch-2
Fix coreos.com broken link for Operator pattern
2021-02-14 22:01:04 -08:00
Suhel Khan b4cb812a1d Update horizontal-pod-autoscale.md
With `v2beta2` controller can take replication decision on memory and custom metric utilisation as well.
2021-02-15 11:14:18 +05:30
Akshay Hiremath 667b5cfd24 Fix coreos Operator pattern broken link
Operator Pattern link was pointing to https://coreos.com/operator. This link was redirecting to the openshift.com homepage.
Provided new link on openshift.com pointing to Operator Pattern documentation.
2021-02-14 23:36:09 -05:00
Kubernetes Prow Robot f2afde1e71 Merge pull request #26543 from timyinshi/watchisk8s
modify the chinese word of organizations
2021-02-14 19:05:04 -08:00
timyinshi c6557c608e modify the chinese word of organizations
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2021-02-15 09:39:46 +08:00
Kubernetes Prow Robot 5b36e35415 Merge pull request #26528 from xlgao-zju/patch-1
fix for how to enable flowcontrol.apiserver.k8s.io/v1alpha1
2021-02-14 16:47:05 -08:00
Kubernetes Prow Robot 2955360c8e Merge pull request #26500 from n0rad/patch-1
Update control-plane-flags.md to fix bind-address on scheduler
2021-02-14 16:29:05 -08:00
Arhell 0b4bbec54b update cheatsheet.md 2021-02-15 00:42:08 +02:00
Jordan Liggitt ec4df0f2cf Address review comments 2021-02-14 15:50:12 -05:00
Kubernetes Prow Robot 044863c04e Merge pull request #26436 from npu21/dual_stack_zh
[zh] Dual-stack docs correction
2021-02-14 04:57:04 -08:00
Qiming Teng 9ee0e9c077 [zh] Sync changes that remove logging solutions 2021-02-14 20:42:47 +08:00
task4233 99d13e920c ja: Make docs/setup/production-environment/windows/user-guide-windows-containhers.md follow v1.18 of the original text 2021-02-14 20:15:51 +09:00
mox692 485d01df30 fix: _redirects 2021-02-14 20:15:50 +09:00
mox692 61e7cf5fc4 delete /ja/docs/tasks/tools/install-kubectl/ 2021-02-14 17:49:30 +09:00
Xianglin Gao 0ac2e87d87 Update flow-control.md
tiny for how to enable flowcontrol.apiserver.k8s.io/v1alpha1
2021-02-14 16:35:35 +08:00
Qiming Teng b36f2c9658 [zh] Resync translate-compose-kubernetes task 2021-02-14 16:35:21 +08:00
Kubernetes Prow Robot 17660852a8 Merge pull request #26491 from asoorm/patch-1
Tyk Operator list of 3rd party ingress controllers
2021-02-13 19:41:04 -08:00
Kubernetes Prow Robot ca03149d1c Merge pull request #26501 from minchao/patch-1
[zh] Sync taint and toleration example
2021-02-13 19:39:04 -08:00
Kubernetes Prow Robot bab25f4788 Merge pull request #26487 from jailton/pt/docs/tutorials
[pt] Fix links in tutorial section
2021-02-13 18:41:04 -08:00
Minchao 0477c9abbc [zh] Sync taint and toleration example 2021-02-14 09:10:41 +08:00
Leonardo Murillo 38b95756c5 Ediciones posteriores a revisión 2021-02-13 22:59:11 +00:00
Leonardo Murillo ed3db34acc Merge branch 'master' of github.com:kubernetes/website 2021-02-13 22:29:58 +00:00
Arnaud Lemaire c44f397eb8 Update control-plane-flags.md 2021-02-13 23:19:44 +01:00
Max Leonov 9101931018 Update control-plane-node-communication.md
minor edits to improve readability
2021-02-13 19:58:37 +01:00
Jordan Liggitt 6a6fc841d4 Add page listing removed beta versions and notable changes 2021-02-13 12:03:03 -05:00
Kubernetes Prow Robot fdcda624b3 Merge pull request #26474 from shahincsejnu/master
fixed some typos and grammatical mistakes
2021-02-13 08:03:05 -08:00
sibucan f58d7b5d1a Mention time range where kubelet might renew cert
The docs don't mention when the kubelet will attempt to renew a cert,
which causes concern when one notices that certain certificates are being
renewed and others are not. Adding the time frame adds certainty, so that
if an user notices a kubelet cert expiring in less than 30d, they know
something is misconfigured and should be looked at.
2021-02-13 10:16:43 -05:00
Sahadat Hossain 0c7f918653 Update api-concepts.md 2021-02-13 17:26:38 +06:00
Sahadat Hossain 4a0574a083 Update authentication.md 2021-02-13 17:19:13 +06:00
Sahadat Hossain ee8e67ce9a Update controlling-access.md 2021-02-13 17:18:20 +06:00
Ahmet Soormally 4e8a898912 Tyk Operator list of 3rd party ingress controllers
One more ingress Controller to add to the list of 3rd party Ingress providers.
2021-02-13 09:42:00 +00:00
task4233 deabf8430a ja: Make docs/reference/tools.md referencing en/docs/reference/tools.md 2021-02-13 17:49:25 +09:00
Kubernetes Prow Robot a4d3e33105 Merge pull request #26417 from Arhell/fix-typo
[zh] correct name in test.md
2021-02-12 22:55:04 -08:00
Kubernetes Prow Robot a2dee5736b Merge pull request #26204 from Arhell/fix
[zh] fix minor typo
2021-02-12 18:21:04 -08:00
Jailton Lopes 9034961176 [pt] Fix links in tutorial section 2021-02-12 21:22:16 -03:00
Max ce8395deda Update nodes.md
minor punctuation changes to improve readability
2021-02-12 21:22:20 +01:00
Sahadat Hossain 11f542a599 Update authentication.md 2021-02-12 22:38:11 +06:00
Sahadat Hossain 5ad27062f6 Update content/en/docs/reference/access-authn-authz/authentication.md
Co-authored-by: Irvi Aini <7439590+irvifa@users.noreply.github.com>
2021-02-12 22:33:37 +06:00
Sahadat Hossain a93938b00e Update content/en/docs/reference/using-api/api-concepts.md
Co-authored-by: Irvi Aini <7439590+irvifa@users.noreply.github.com>
2021-02-12 22:33:16 +06:00
Kubernetes Prow Robot 0a0dc4de36 Merge pull request #25022 from chiehmin/add-parition-field-for-ebs
docs: add partition field for EBS
2021-02-12 07:41:09 -08:00
Kubernetes Prow Robot 6af44edf31 Merge pull request #26480 from oke-py/26479
chore: fix a broken link "FrameworkHandle"
2021-02-12 07:03:09 -08:00
Naoki Oketani 69e0994fb0 chore: fix a broken link "FrameworkHandle" 2021-02-12 21:40:39 +09:00
Sahadat Hossain 2ae6da3c19 Merge branch 'master' into master 2021-02-12 17:04:39 +06:00
sahadat_hossain c0770869ff fixed some grammatical mistakes 2021-02-12 16:57:50 +06:00
Kubernetes Prow Robot d5105b529e Merge pull request #26464 from oke-py/style
style: separate commands from output
2021-02-12 02:10:47 -08:00
Kubernetes Prow Robot d99604bbaf Merge pull request #26471 from mccricardo/fix/missing-end
fix: add missing end
2021-02-12 02:08:47 -08:00
sahadat_hossain 2c942aeb79 fixed grammatical mistake 2021-02-12 15:27:01 +06:00
Kubernetes Prow Robot e512e4ef78 Merge pull request #25619 from zwindler/patch-1
fix: errors in base64 and sed commands
2021-02-12 01:10:47 -08:00
sahadat_hossain d053563e8b fixed some typos and grammatical mistakes 2021-02-12 14:53:34 +06:00
Yang Jiao 807eeda15f Apply suggestions from code review
Co-authored-by: Qiming Teng <tengqm@outlook.com>
2021-02-12 15:40:54 +08:00
sahadat_hossain 58c3f18336 fixed some typos and grammatical mistakes 2021-02-12 12:36:36 +06:00
kakarotbyte 72d6fb8cd1 Update service.md
The VPC CIDR was switched to Subnet CIDR. Reason why This was changed is because exposing entire VPC CIDR in the SG might have been consider as security threat.

 So updating the Document.

Code referenece 

https://github.com/kubernetes/kubernetes/blob/master/staging/src/k8s.io/legacy-cloud-providers/aws/aws.go#L4008
2021-02-11 16:03:49 -06:00
Kubernetes Prow Robot 9afb531553 Merge pull request #26458 from pierrchen/runtimeclass
security: add container runtime class as an option to provider extra container security
2021-02-11 06:32:16 -08:00
Ricardo Castro f141a3c414 fix: add missing end 2021-02-11 13:16:12 +00:00
luzg 6d1f6e5943 [zh] translate blog Dockershim Deprecation FAQ
fix according to tengqm
2021-02-11 21:10:30 +08:00
Kubernetes Prow Robot 632bd32bb5 Merge pull request #26456 from eTimS/patch-2
Minor - Systemd enable command to enable CRI-O at boot time
2021-02-11 04:00:16 -08:00
Kubernetes Prow Robot 3ff53efc38 Merge pull request #26467 from oke-py/invalid-hash
fix an invalid location.hash
2021-02-11 03:32:15 -08:00
Miguel Angel Garcia a6eb08d778 fix cronjob code for examples 2021-02-11 12:24:35 +01:00
Naoki Oketani e13caad951 fix an invalid location.hash 2021-02-11 20:04:59 +09:00
Peri Thompson 52920a9a85 Added limitation with windows network services 2021-02-11 10:32:24 +00:00
Naoki Oketani e0e68de173 style: separate commands from output 2021-02-11 18:29:01 +09:00
Kubernetes Prow Robot 23d70ea0bd Merge pull request #26409 from zhiguo-lu/zh-trans-task-migrating-telemetry-security-agent-from-dockershim
[zh] translate "Migrating telemetry and security agents from dockershim"
2021-02-11 00:18:15 -08:00
Kubernetes Prow Robot 734865fb71 Merge pull request #26412 from ydFu/fix-url-issue-26382
Fail links in compute-device-assignment.md
2021-02-10 23:22:16 -08:00
Kubernetes Prow Robot 107f4a7d73 Merge pull request #26452 from jacksgt/patch-1
Clarify selection of default HPA scaling policy
2021-02-10 23:20:15 -08:00
Qiming Teng 31b2260133 [zh] Fix some bad links in tasks section 2021-02-11 15:14:47 +08:00
Jack Henschel a33e903e3a Clarify selection of default HPA scaling policy
Without first mentioning where the number 40 is coming from, it was a bit unclear why 40 would be the threshold value for policy selection in this case.
I hope this patch clarifies it.
2021-02-11 09:03:54 +02:00
Bin Chen 9a3347cd2d security: add container runtime class as an option to provider extra container security 2021-02-11 10:41:08 +11:00
eTimS f4a96f4e7c Update content/en/docs/setup/production-environment/container-runtimes.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-02-11 00:27:23 +01:00
Kubernetes Prow Robot a4e48ec21a Merge pull request #26440 from jailton/pt/docs/tutorials
[pt] Add content for hello-minikube in português
2021-02-10 13:06:15 -08:00
Jailton Lopes f26aab795e Fix typo in file docs/tutorials/hello-minikube.md 2021-02-10 17:13:31 -03:00
Kubernetes Prow Robot 3c22c23255 Merge pull request #26446 from pierrchen/headless
service-network: add some clarity to headless service
2021-02-10 06:34:59 -08:00
eTimS dc4836b626 Minor - Systemd enable command to enable CRI-O at boot time
Added "sudo systemctl enable crio enable" to configure systemd to enable CRI-O at boot time, as shown in the CRI-O install.md doc: https://github.com/cri-o/cri-o/blob/master/install.md#user-content-starting-cri-o
2021-02-10 15:22:48 +01:00
Kubernetes Prow Robot ca018cfccb Merge pull request #26453 from oke-py/style
remove command from output block
2021-02-10 05:18:59 -08:00
Jailton Lopes 5d973fa5fd Fix typos in file docs/tutorials/hello-minikube.md 2021-02-10 10:13:46 -03:00
Qiming Teng 29b9263d53 [zh] Fix translation of hostname in TLS example 2021-02-10 20:56:16 +08:00
Naoki Oketani a1f5566dc0 remove command from output block 2021-02-10 21:33:19 +09:00
Kubernetes Prow Robot 8377d08841 Merge pull request #25986 from schollii/master
Clarify binaryData handling by kubectl create and describe
2021-02-10 02:16:59 -08:00
Kubernetes Prow Robot 739c65ceb8 Merge pull request #26451 from jacksgt/patch-1
Fix column alignment in debug-service.md
2021-02-10 02:14:59 -08:00
Kubernetes Prow Robot 484df55083 Merge pull request #26429 from yaodingyd/patch-1
Fix indentation
2021-02-10 02:13:00 -08:00
Jack Henschel ddf8d77d7a Fix column alignment in debug-service.md
Previously, the columns showing one of kubectl's output were misaligned and thereby confusing.
2021-02-10 10:39:32 +01:00
Bin Chen 52f35431d9 service-network: add some clarity to headless service 2021-02-10 16:41:45 +11:00
Jailton Lopes ee5b6e8247 Add content/pt/docs/tutorials/hello-minikube.md 2021-02-09 13:20:06 -03:00
Yao Ding 70ebc7f6ec Update ephemeral-containers.md 2021-02-09 08:11:02 -05:00
Kubernetes Prow Robot 1f3478e635 Merge pull request #26435 from npu21/dualstack_en
Dual-stack docs correction
2021-02-09 05:08:58 -08:00
luzg ecbbb15a59 [zh] translate Migrating telemetry and security agents from dockershim
fix according to howieyuen and tengqm
2021-02-09 21:08:22 +08:00
Kubernetes Prow Robot c24f62c16a Merge pull request #26389 from kbhawkey/fixup-simply-usage
clean up use of word: simply
2021-02-09 02:02:40 -08:00
Kubernetes Prow Robot 539e524882 Merge pull request #26273 from Cweiping/feature/clairly_resource_quota_limit_for_PriorityClass
Clarify ResourceQuota limit for PriorityClass
2021-02-09 01:59:31 -08:00
Weiping Cai 188ccc220b Clairly Resourcequota limit for PriorityClass
Signed-off-by: Weiping Cai <weiping.cai@daocloud.io>
2021-02-09 16:05:04 +08:00
Yang Jiao 2471ced338 [zh] sync and update statefulset.md
update based on English version of statefulset.md

1. added a block inside #stable-network-id
2. sync tables and blocks
3. added a sentence in #parallel-pod-management
2021-02-09 15:36:57 +08:00
Zhang Yong dc1de9e3ae Dual-stack docs correction 2021-02-09 11:21:29 +08:00
Zhang Yong 0ec95934a2 Dual-stack docs correction 2021-02-09 11:05:57 +08:00
Zhang Yong c1cc1e6b06 fix an invalid url 2021-02-09 10:38:40 +08:00
Yong Zhang e6ee962e9f Merge pull request #11 from kubernetes/master
merge
2021-02-09 10:23:39 +08:00
Kubernetes Prow Robot d0a532e473 Merge pull request #26430 from Arhell/upd
[zh] update docker-cli-to-kubectl
2021-02-08 17:50:58 -08:00
Arhell da2d988e67 [zh] update docker-cli-to-kubectl 2021-02-09 00:58:25 +02:00
Kubernetes Prow Robot 15afafb625 Merge pull request #24706 from bobsaintcool/dev-1.19-fr.1
Fix links MD syntax typo in FR documentation
2021-02-08 13:33:07 -08:00
Kubernetes Prow Robot db79dab048 Merge pull request #26388 from jailton/pt/update-readme-20210204
Update README-pt.md
2021-02-08 11:58:19 -08:00
Yao Ding 6b19266c3e fix indentation 2021-02-08 14:43:40 -05:00
Karen Bradshaw 90d92bac06 clean up capture stmts 2021-02-08 12:52:08 -05:00
Kubernetes Prow Robot 7b04c3adb0 Merge pull request #26422 from paranlee/patch-1
Update to sync latest release of the Kompose version from 1.21.0 to 1.22.0
2021-02-08 09:51:23 -08:00
Kubernetes Prow Robot 8637bc9630 Merge pull request #26350 from dippynark/clarify-pre-stop-hook-description
Clarify PreStop hook behaviour
2021-02-08 09:46:34 -08:00
Kubernetes Prow Robot c036f87619 Merge pull request #26397 from girikuncoro/docs-id-owner
Add all docs-id reviewers as owners
2021-02-08 06:31:53 -08:00
Luke Addison cbf7a63a32 Add comma 2021-02-08 10:53:36 +00:00
Luke Addison 892aedc010 Address review comments 2021-02-08 10:52:15 +00:00
Kubernetes Prow Robot e6fb78262b Merge pull request #26421 from childe/patch-1
lose `not` in Chinese translation text
2021-02-08 02:43:12 -08:00
Kubernetes Prow Robot 2e78b33f62 Merge pull request #25775 from puckpuck/patch-1
remove misleading instructions in kubeadm setup docs
2021-02-08 00:19:12 -08:00
Paran Lee af40c89b7b Update Kompose version from 1.21.0 to 1.22.0 2021-02-07 22:46:46 -09:00
childe a0325b1a01 Update taint-and-toleration.md 2021-02-08 14:41:13 +08:00
Kubernetes Prow Robot b3bf683ba7 Merge pull request #26418 from Arhell/list
[zh] Tidy list of generators for “kubectl create”
2021-02-07 18:51:12 -08:00
Kubernetes Prow Robot 4f2070df5d Merge pull request #26402 from ldsdsy/translate_2020_10_01
translate 2020-10-01
2021-02-07 18:49:12 -08:00
Arhell 5ed2b712a2 [zh] Tidy list of generators for “kubectl create” 2021-02-08 01:57:13 +02:00
Arhell 5b77f0b689 correct name in test.md 2021-02-07 21:59:25 +02:00
Karen Bradshaw 3fd65482e8 clean up use of word: simply 2021-02-07 12:15:29 -05:00
ldsdsy d5d4877c25 translate 2020-10-01 2021-02-07 23:10:20 +08:00
ydFu 6c1ffd397c Fail links in compute-device-assignment.md
* Update the links in compute-device-assignment, Fix issue(#26382).

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-02-07 23:04:40 +08:00
Kubernetes Prow Robot 39edec0aac Merge pull request #25814 from mehmetefeumit/master
Replaces the "Using a Service to Expose Your App" Page's Diagrams
2021-02-07 03:39:11 -08:00
Kubernetes Prow Robot f539da6b4d Merge pull request #25425 from salva-gglez/caution_startingDeadlineSeconds
Add a caution message on CronJob Controller workload if using startingDeadlineSeconds
2021-02-07 03:29:12 -08:00
Kubernetes Prow Robot 64b63c0159 Merge pull request #24645 from geoffcline/patch-2
revise style guidelines for capitalization
2021-02-07 03:19:11 -08:00
Kubernetes Prow Robot af76e77672 Merge pull request #26141 from jimangel/remove-redis-and-master-slave-terminology-2
Remove Master/Slave terminology from stateless application tutorial.
2021-02-07 00:13:12 -08:00
caodonghui 5487c3a55a fix issues 2021-02-07 11:05:38 +08:00
Kubernetes Prow Robot 89603ec5c5 Merge pull request #26396 from zhiguo-lu/zh-trans-check-dockershim-deprecation
[zh] translate check if dockershim affects you
2021-02-06 18:51:11 -08:00
Kubernetes Prow Robot ceaf75b41f Merge pull request #26314 from tengqm/zh-sync-probes
[zh] Resync configure-liveness-readiness-startup-probes
2021-02-06 18:49:12 -08:00
Leonardo Murillo 0aae93d295 [es] Add content/es/docs/tasks/manage-kubernetes-objects/declarative-config.md
Signed-off-by: Leonardo Murillo <leonardo@murillodigital.com>
2021-02-06 23:36:15 +00:00
Kubernetes Prow Robot a8dabfdbbd Merge pull request #25545 from ariscahyadi/id-localization-guide
Add special localization guide for ID documentation.
2021-02-06 11:17:11 -08:00
Kubernetes Prow Robot 6c6e697a78 Merge pull request #26068 from mrbobbytables/add-values
Add Kubernetes project values to community page
2021-02-06 11:01:11 -08:00
Kubernetes Prow Robot 58312c232d Merge pull request #24603 from ljnaresh/bug-21436
Replace alpine with busybox image for better response from nslookup
2021-02-06 08:33:11 -08:00
Kubernetes Prow Robot fde6159034 Merge pull request #26218 from feloy/redirect-well-known-labels-page
Redirects "Well-Known Labels, Annotations and Taints" page
2021-02-06 08:19:11 -08:00
Kubernetes Prow Robot c02a6c0ac2 Merge pull request #26086 from tengqm/fix-example-tests
Fix example tests
2021-02-06 06:57:11 -08:00
Kubernetes Prow Robot fb8b89d249 Merge pull request #26207 from jailton/en/update-readme-20210122
Update README.md
2021-02-06 06:47:11 -08:00
Kubernetes Prow Robot 99e31e5574 Merge pull request #26265 from npu21/conduct_vi
Use https for link to contributor covenant
2021-02-06 06:43:11 -08:00
Kubernetes Prow Robot 947281bcd2 Merge pull request #26323 from nasirhm/kompose_up_removal_line
Modify Kompose Page: remove the up command
2021-02-06 06:23:11 -08:00
Kubernetes Prow Robot 4353211d5b Merge pull request #26026 from xiaoping378/patch-1
Update deployment.md
2021-02-06 02:41:13 -08:00
Kubernetes Prow Robot a8128d2e4e Merge pull request #26264 from npu21/conduct_fr
Use https for link to contributor covenant
2021-02-06 00:09:11 -08:00
luzg 02951951b2 [zh] translate check if dockershim affects you
fix according to sftim and tengqm
2021-02-06 11:12:42 +08:00
Kubernetes Prow Robot fa2b8c8b95 Merge pull request #26363 from chenxuc/topo-manager
[zh] Sych web page for topo manager
2021-02-05 18:09:11 -08:00
Kubernetes Prow Robot 6db9ea6a8c Merge pull request #26170 from tengqm/zh-trans-kubelet-tls
[zh] Translate kubelet-tls-bootstrapping
2021-02-05 18:07:12 -08:00
Kubernetes Prow Robot ce6620d46f Merge pull request #26298 from tengqm/zh-sync-connecting-fb
[zh] Resync connecting-frontend-backend
2021-02-05 18:05:11 -08:00
Kubernetes Prow Robot 42da03e2e4 Merge pull request #26380 from HollowMan6/patch-1
fix fullwidth `!`
2021-02-05 18:03:11 -08:00
ydFu 51de3251f7 [zh] Sync concepts pages for architecture\nodes.md and architecture\controller.md
* Update architecture\controller.md and architecture\node.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-02-06 09:49:41 +08:00
Giri Kuncoro 69ce4cd92b Add all docs-id reviewers as owners
Signed-off-by: Giri Kuncoro <giri.kuncoro@go-jek.com>
2021-02-06 08:45:04 +07:00
Geoffrey Cline 96c4813972 revise guidance for Pascal Case 2021-02-05 21:53:37 +00:00
Brad Jones 9ba5ddd01f Clarify language regarding environment variable order 2021-02-05 11:18:16 -07:00
Kubernetes Prow Robot 57648a901c Merge pull request #26400 from oke-py/href-ephemeral-container
fix an invalid location.hash
2021-02-05 08:44:52 -08:00
Naoki Oketani df34ae5314 fix an invalid location.hash 2021-02-05 23:30:29 +09:00
Kubernetes Prow Robot 73365637e1 Merge pull request #26392 from Arhell/correct
correct name in service.md
2021-02-05 05:04:52 -08:00
Arhell 08816b1438 correct name in service.md 2021-02-05 14:29:20 +02:00
Kubernetes Prow Robot 9cff3a52c9 Merge pull request #26394 from ydFu/update-out-of-resource
[zh] Sync task pages for administer-cluster/out-of-resource.md
2021-02-04 21:10:52 -08:00
Kubernetes Prow Robot fc903c08ce Merge pull request #26369 from zhiguo-lu/zh-trans-migrating-from-dockershim
[zh] translate Migrating from dockershim
2021-02-04 21:08:51 -08:00
ydFu 5465e8ed5b [zh] Sync task pages for administer-cluster/out-of-resource.md
* Sync with english version in 'fix default value of nodefs.inodesFree on linux #26256'.

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-02-05 10:55:36 +08:00
Kubernetes Prow Robot 892762cd16 Merge pull request #26288 from sgc109/patch-2
ko: update nodes.md by fixing mistranslation
2021-02-04 18:50:51 -08:00
Sungho Hwang 76a4ec84b6 Update nodes.md by fixing mistranslation 2021-02-05 11:33:31 +09:00
Kubernetes Prow Robot 279343ccad Merge pull request #26354 from guidao/patch-1
[zh] Fix spelling errors
2021-02-04 18:20:51 -08:00
guidao b13328328a Fix spelling errors 2021-02-05 08:32:51 +08:00
Kubernetes Prow Robot 377ca2b768 Merge pull request #26375 from smortex/patch-1
Fix typo
2021-02-04 13:52:52 -08:00
Jailton Lopes a0c2963d11 Update README-pt.md
- Add translation of Building the API reference pages section
 - Fix typos
 - Remove duplicate whitespaces
 - Remove trailing spaces
2021-02-04 17:57:28 -03:00
Kubernetes Prow Robot d2e7f4acab Merge pull request #26352 from kbhawkey/fixup-remove-word-easy
clean up use of word: easy
2021-02-04 10:48:26 -08:00
Kubernetes Prow Robot 8a8f87f708 Merge pull request #26256 from Cweiping/feature/fix_pid_pressure
fix default value of nodefs.inodesFree on linux
2021-02-04 10:42:25 -08:00
Caleb Collins-Parks bee671b579 add warning about counterintuitive readiness probe
As evidenced by https://github.com/kubernetes/kubernetes/issues/27114 the naming leads one to think that a liveness probe executes after a readiness probe. This is not the case.
2021-02-04 10:37:31 -08:00
Kubernetes Prow Robot f1c4f60bc1 Merge pull request #26386 from bridgetkromhout/dual-stack-docs-fix
Dual-stack docs correction
2021-02-04 10:36:25 -08:00
Bridget Kromhout ab5b0f97fd Docs update
Signed-off-by: Bridget Kromhout <bridget@kromhout.org>
2021-02-04 12:30:16 -06:00
Kubernetes Prow Robot bfe91e2516 Merge pull request #26006 from jailton/pt/update-readme-20210107
Update README-pt.md
2021-02-04 10:06:25 -08:00
Bridget Kromhout bed5567056 Dual-stack docs correction
Signed-off-by: Bridget Kromhout <bridget@kromhout.org>
2021-02-04 11:59:21 -06:00
Kubernetes Prow Robot 76399ec89a Merge pull request #26379 from JacobHenner/jacobhenner/remove-serviceaccount-secret-automounting
Remove ServiceAccount Secret automounting section
2021-02-04 06:06:28 -08:00
Kubernetes Prow Robot 2330d8d714 Merge pull request #26381 from yuchunyu97/patch-1
Fix documents in rbac.md
2021-02-04 01:32:29 -08:00
luzg 65b34d02dd [zh] translate Migrating from dockershim
make change according to howieyuen and ydFu
2021-02-04 17:09:29 +08:00
AIsland ec366ff0f1 Fix documents in rbac.md
Fix incorrect namespace and group correspondence in documents

Signed-off-by: AIsland <yuchunyu01@inspur.com>
2021-02-04 15:22:48 +08:00
Kubernetes Prow Robot e1090552f3 Merge pull request #26316 from chenxuc/crictl
[zh] Sync web page for crictl
2021-02-03 22:36:28 -08:00
Hollow Man 57e1fcd7b8 fix fullwidth
the `!` in `!=` should use halfwidth form instead of fullwidth,  otherwise it will cause trouble in K8s.

Signed-off-by: Hollow Man <hollowman@hollowman.ml>
2021-02-04 13:15:12 +08:00
Jacob Henner c59e3f0c27 Remove ServiceAccount Secret automounting section
The "Automatic mounting of manually created Secrets" section of the
Secrets documentation previously suggesting using PodPresets. PodPresets
have been removed, there is no alternate facility described, and it's
unclear if auto-mounting secrets based on associations with
ServiceAccounts was ever supported. Accordingly, the section should be
removed.
2021-02-03 22:38:20 -05:00
chenxuc e54d16c4c6 [zh] Sych web page for topo manager
This is part of work in umbrella issue:
[zh] Umbrella issue: pages out of sync in tasks section #26178

Topology Manageer (L):
 content/zh/docs/tasks/administer-cluster/topology-manager.md
2021-02-04 10:57:20 +08:00
Kubernetes Prow Robot 37bc491a2a Merge pull request #25039 from kedark3/addHostPathVolume
added example linking to hostPath volume definition
2021-02-03 17:14:28 -08:00
Romain Tartière adf70f8a94 Fix typo 2021-02-03 14:42:29 -10:00
Kubernetes Prow Robot 6966decdfe Merge pull request #26196 from Xorima/patch-1
documentation to static-pods for naming of pods
2021-02-03 14:28:28 -08:00
Jason Field 618dcb3cfa Update content/en/docs/tasks/configure-pod-container/static-pod.md
Co-authored-by: Taylor Dolezal <onlydole@users.noreply.github.com>
2021-02-03 22:23:13 +00:00
Karen Bradshaw c4ef1d4b81 Apply suggestions from code review
Thanks for the review. Good suggestions!

Co-authored-by: Celeste Horgan <celeste@cncf.io>
2021-02-03 14:28:28 -05:00
Kubernetes Prow Robot 402da54b48 Merge pull request #26345 from ydFu/update-create-cluster-kubeadm
[zh] Sync setup pages for kubeadm/create-cluster-kubeadm.md
2021-02-03 06:32:29 -08:00
Kedar Vijay Kulkarni 11ef740ede Added code style to hostPath 2021-02-03 09:11:00 -05:00
Kubernetes Prow Robot 3e0b444d90 Merge pull request #26370 from whoif/patch-1
Update controller.md
2021-02-03 05:32:29 -08:00
Kubernetes Prow Robot d148026f23 Merge pull request #26065 from margocrawf/master
Rewording of paragraph about provideClusterInfo key on Authentication page
2021-02-03 03:02:29 -08:00
whoif f07f8d5f01 Update controller.md
Lowercase 's' to prevent misleading APIS as a whole word.
2021-02-03 16:57:01 +08:00
Kubernetes Prow Robot 6e95a6b5ad Merge pull request #24769 from kbhawkey/kb-task-monitoring-stackdriver
remove stackdriver, elastic task pages
2021-02-02 21:14:28 -08:00
Kubernetes Prow Robot 7462297ee3 Merge pull request #26276 from shahincsejnu/master
solved issue #26274
2021-02-02 09:26:28 -08:00
Kubernetes Prow Robot 072d4b41b4 Merge pull request #26291 from tengqm/zh-sync-stateful
[zh] Resync stateful application task
2021-02-02 07:08:28 -08:00
Kubernetes Prow Robot 8bb2064f1f Merge pull request #26287 from tengqm/zh-sync-install-kubectl
[zh] sync install kubectl
2021-02-02 07:06:28 -08:00
Kubernetes Prow Robot 32930a38a5 Merge pull request #26357 from frjonsen/patch-1
Use https for haproxy.org links
2021-02-02 03:34:28 -08:00
Fredrik Jonsén b278dadced Use https for haproxy.org links 2021-02-02 12:19:20 +01:00
Kubernetes Prow Robot 3f29d1aaa2 Merge pull request #26324 from tengqm/cache-scripts-locally
Cache scripts locally
2021-02-02 01:54:27 -08:00
Kubernetes Prow Robot 5172f8742a Merge pull request #26356 from LittleBoy18/patch-5
fix workload translation
2021-02-01 22:36:28 -08:00
Kubernetes Prow Robot 637e8a462a Merge pull request #26355 from LittleBoy18/patch-4
fix typo
2021-02-01 22:34:27 -08:00
Kubernetes Prow Robot 50f84ebb27 Merge pull request #26326 from yangjiao2/patch-3
[zh] sync and update job.md
2021-02-01 21:52:28 -08:00
littleboy 268087e447 Update service.md 2021-02-02 13:30:28 +08:00
littleboy a0c1266dd3 Update scheduling-gpus.md 2021-02-02 13:02:29 +08:00
Kubernetes Prow Robot 1250dabe9a Merge pull request #26349 from wettper/hotfix/doc_err
[zh] 更新 components.md 文档中语句
2021-02-01 19:56:28 -08:00
Yang Jiao f0f8ec98b2 Merge branch 'master' into patch-3 2021-02-02 11:34:00 +08:00
Qiming Teng 30d887e255 [zh] Resync configure-liveness-readiness-startup-probes 2021-02-02 10:07:21 +08:00
Kubernetes Prow Robot bf85335ddd Merge pull request #26302 from RainbowMango/pr_update_admission_controllers
Update validatingadmissionwebhook and mutatingadmissionwebhook docs
2021-02-01 17:58:27 -08:00
Kubernetes Prow Robot 071e987af2 Merge pull request #25893 from surajssd/update-kubelet-config-link
Reconfigure Kubelet: Update kubelet config link
2021-02-01 17:14:27 -08:00
Kubernetes Prow Robot 84e14d0c7d Merge pull request #26104 from andrzejsydor/patch-4
Add example of using `xargs`
2021-02-01 17:00:27 -08:00
Kubernetes Prow Robot 0c26cd90eb Merge pull request #26092 from anapsix/patch-2
Update cheatsheet.md
2021-02-01 16:50:28 -08:00
Margo Crawford 67a750b5e0 Incorporated suggestions for provideClusterInfo paragraph
Signed-off-by: Margo Crawford <margaretc@vmware.com>
2021-02-01 15:35:49 -08:00
Jailton Lopes b84e52e2ad Update README.md
Co-authored-by: Celeste Horgan <celeste@cncf.io>
2021-02-01 18:59:03 -03:00
Karen Bradshaw 7d9916af0c clean up use of word: easy 2021-02-01 15:14:25 -05:00
Kubernetes Prow Robot 2f7b43d2bb Merge pull request #26294 from stmcginnis/openstack-csi
Update link to Cinder CSI driver documentation
2021-02-01 11:57:49 -08:00
Kubernetes Prow Robot cf32de006e Merge pull request #26307 from sgc109/patch-4
Update nodes.md to remove ambiguity
2021-02-01 10:39:49 -08:00
Kubernetes Prow Robot b29a8c9f83 Merge pull request #26333 from chenxuc/fix_link
Update invalid web page link for api group
2021-02-01 10:35:49 -08:00
Luke Addison bfea67aa82 Clarify PreStop hook behaviour 2021-02-01 16:50:06 +00:00
wettper a963cbd45c [zh] 更新 components.md 文档中语句 2021-02-02 00:45:22 +08:00
ydFu 0b09ec82ff [zh] Sync setup pages for kubeadm/create-cluster-kubeadm.md
* sync with english version in 'docs: rephrase sentence missing predicate (#26259)'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-02-01 21:41:45 +08:00
chenxuc 4465ba00af [zh] Sync web page for crictl
This is part of the work in the following umbrella issue:
[zh] Umbrella issue: pages out of sync in tasks section

CRICTL (L)

 content/zh/docs/tasks/debug-application-cluster/crictl.md
2021-02-01 20:33:51 +08:00
Kubernetes Prow Robot 65b1475044 Merge pull request #26268 from hokkai7go/hokkai7go-patch-1
fix typo of MTU
2021-02-01 04:15:49 -08:00
Kubernetes Prow Robot 2527359c13 Merge pull request #25827 from ryicoh/ja-25826
[ja] new file: memory-constraint-namespace.md
2021-02-01 04:15:49 -08:00
Kubernetes Prow Robot 6a7c617a0a Merge pull request #25633 from kosehy/ja-25192
ja: Translate reference/command-line-tools-reference/kubelet-authentication-authorization.md into Japanese
2021-02-01 04:13:49 -08:00
Kubernetes Prow Robot 6d0add9350 Merge pull request #26263 from npu21/conduct_ja
Use https for link to contributor covenant
2021-02-01 04:09:50 -08:00
Kubernetes Prow Robot c9b4e1314c Merge pull request #26259 from ruxandrafed/patch-1
docs: rephrase sentence missing predicate
2021-02-01 04:01:49 -08:00
Kubernetes Prow Robot 58c53ba961 Merge pull request #26262 from chymy/flannel-net-0128
Fix net-conf.json fommat err
2021-02-01 03:59:49 -08:00
Kubernetes Prow Robot a3f6199111 Merge pull request #26301 from surajssd/fix-back-ticks
kubeadm: Add backticks and mention Flatcar
2021-02-01 03:55:50 -08:00
Kubernetes Prow Robot 6fae97ee9f Merge pull request #26322 from ydFu/update-extend-cluster
[zh] Sync concepts pages for extean-cluster.md
2021-02-01 03:41:49 -08:00
Kubernetes Prow Robot 6ec45b3b79 Merge pull request #26329 from Karmavil/patch-1
syntax typo
2021-02-01 03:39:49 -08:00
Kubernetes Prow Robot 19321b7bec Merge pull request #26337 from xieyanker/patch-1
Fix delete secret
2021-02-01 03:37:49 -08:00
Kubernetes Prow Robot 810a23b0ae Merge pull request #25997 from konryd/patch-1
Fix explanation for --[hpa]-stabilization
2021-02-01 02:03:49 -08:00
Kubernetes Prow Robot 85345f1553 Merge pull request #26309 from ydFu/update-job-execution
[zh] Sync concepts pages for job.md
2021-02-01 01:33:48 -08:00
Kubernetes Prow Robot f2deea1a47 Merge pull request #26300 from yangjiao2/patch-1
[zh] sync and update fine-parallel-processing-work-queue
2021-02-01 01:31:49 -08:00
Kubernetes Prow Robot 2d65364f24 Merge pull request #26332 from chenxuc/ha_master
[zh] Sync web page for HA
2021-02-01 01:27:49 -08:00
Kubernetes Prow Robot 002b88e7ae Merge pull request #26289 from hunomina/patch-1
Remove duplicated "la" word in french documentation
2021-02-01 01:11:49 -08:00
Kubernetes Prow Robot 11121e561d Merge pull request #26338 from xieyanker/patch-2
Fix delete secret
2021-02-01 00:41:49 -08:00
Kubernetes Prow Robot 47edc892b2 Merge pull request #26331 from CaoDonghui123/fix-issue1
[zh]fix init-containers.yaml
2021-02-01 00:39:48 -08:00
Kubernetes Prow Robot 81298ae84d Merge pull request #26281 from Arhell/fix-link
[ja] fix ttlafterfinished.md link
2021-02-01 00:01:49 -08:00
xieyanker 5214e4ab99 Fix delete secret 2021-02-01 15:39:29 +08:00
xieyanker 663e149adb Fix delete secret 2021-02-01 15:38:04 +08:00
Yang Jiao 66e1f951e0 change made based on comment 2021-02-01 14:41:42 +08:00
Yang Jiao ec8c60b09a update based on comments 2021-02-01 13:32:14 +08:00
chenxuc 9d3e4467d5 Update invalid web page link for api group
The old link
"https://kubernetes.io/docs/concepts/overview/kubernetes-api/#api-groups"
points to an nonexistent section of that page. The correct section
should be
"https://kubernetes.io/docs/concepts/overview/kubernetes-api/#api-groups-and-versioning"
.
2021-02-01 13:00:47 +08:00
chenxuc 74e7dc417b [zh] Sync web page for HA
This is part of work in umbrella issue:
Umbrella issue: pages out of sync in tasks section #26178

HA (L):
 content/zh/docs/tasks/administer-cluster/highly-available-master.md
2021-02-01 12:27:46 +08:00
Kubernetes Prow Robot 3d1dde4306 Merge pull request #26315 from tengqm/zh-fix-links
[zh] Fix links in concepts section
2021-01-31 19:41:48 -08:00
caodonghui a1c9c4baee fix issue 2021-02-01 10:27:10 +08:00
Kubernetes Prow Robot 3307e62764 Merge pull request #26321 from MandarJKulkarni/patch-1
Fix typo: simular
2021-01-31 17:13:48 -08:00
Federico Gallo 329574f250 syntax
Replaced An for A
2021-01-31 18:53:53 -03:00
Yang Jiao e042b049a4 Update job.md
1. sync from en localization 
2. minor fix on translation on specific words: graceful, exponential 

1. 更正文章英文引用以及翻译
2. 个别词小改动:graceful, exponential
2021-01-31 23:48:01 +08:00
Qiming Teng b3214813a4 Cache scripts locally
The current layout partial is using scripts from a site not accessible
from behind the dam great firewall. This is a fix to cache the scripts
as we do before so that tabs, top menu works for everyone.
2021-01-31 21:58:42 +08:00
nasirhm 72f4f64d04 🔧 Modify Kompose page, to remove up
Signed-off-by: nasirhm <nasirhussainm14@gmail.com>
2021-01-31 18:50:40 +05:00
Sean McGinnis 3625bc5ba5 Update link to Cinder CSI driver documentation
The original link has moved due to docs restructuring in the
cloud-provider-openstack repo. Also correcting the capitalization.

Signed-off-by: Sean McGinnis <sean.mcginnis@gmail.com>
2021-01-31 07:40:49 -06:00
ydFu 9aa16798d3 [zh] Sync concepts pages for extean-cluster.md
Sysc english version in 'Fix links to flexVolume documentation #26214'

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-31 21:37:11 +08:00
MandarJKulkarni 09c8374fad Fix typo: simular
Fix typo: simular to similar
2021-01-31 18:20:43 +05:30
Kubernetes Prow Robot 572d92d6d5 Merge pull request #26248 from ydFu/update-system-log
[zh] Sync concepts pages for system Logs
2021-01-31 04:45:48 -08:00
Qiming Teng c1b5b9ee78 [zh] Fix links in concepts section 2021-01-31 20:41:29 +08:00
Kubernetes Prow Robot 4851a9f020 Merge pull request #26320 from ydFu/update-ingress-controllers
[zh] Sync concepts pages for ingress-controllers.md
2021-01-31 04:37:48 -08:00
ydFu adbf6686dc [zh] Sync concepts pages for ingress-controllers.md
Add EnRoute as one of the Ingress Controller API Gateway Options #25972

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-31 19:54:55 +08:00
Yang Jiao b30e798cf5 Update fine-parallel-processing-work-queue.md
sync last paragraph using English version from https://github.com/kubernetes/website/edit/master/content/en/docs/tasks/job/fine-parallel-processing-work-queue.md
2021-01-31 13:33:02 +08:00
Qiming Teng daf0cc27a3 [zh] Resync HPA task 2021-01-31 10:53:34 +08:00
Kubernetes Prow Robot c6a2add9db Merge pull request #25972 from chintan8saaras/patch-1
Add EnRoute as one of the Ingress Controller API Gateway Options
2021-01-30 06:23:48 -08:00
ydFu 70d1651f69 [zh] Sync concepts pages for job.md
* sync with english version in job.md (#26242)

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-30 20:30:39 +08:00
Sungho Hwang 5e5953fe60 Update nodes.md 2021-01-30 18:18:55 +09:00
RainbowMango f079aa8214 Update validatingadmissionwebhook and mutatingadmissionwebhook docs as they have been promoted to v1 2021-01-30 16:09:29 +08:00
Suraj Deshmukh f3e5f02604 kubeadm: Add backticks and mention Flatcar
This commit adds a cosmetic change by adding backticks to show the env
var in monospace font when rendered.

Mention Flatcar Linux in kubeadm troubleshooting doc, alongwith Fedora
CoreOS.

Signed-off-by: Suraj Deshmukh <surajd.service@gmail.com>
2021-01-30 12:54:11 +05:30
Suraj Deshmukh 41de0def52 Reconfigure Kubelet: Update kubelet config link
The old link points to the code base of 1.11. Since then there have been
several changes to the configuration, either new flags added or removed.

Signed-off-by: Suraj Deshmukh <surajd.service@gmail.com>
2021-01-30 12:46:26 +05:30
Qiming Teng cb1641b0c7 [zh] sync install kubectl 2021-01-30 13:58:48 +08:00
Yang Jiao 4087e33e61 [zh] sync and update fine-parallel-processing-work-queue
1. change keyword replicationController to ReplicaSet
2. change word 连续 to 持续
3. other minor changes (e.g: add connection word for readability, add 'shell' for command line input)
2021-01-30 12:59:38 +08:00
Qiming Teng 15be3b1c7b [zh] Resync connecting-frontend-backend 2021-01-30 12:37:52 +08:00
Kubernetes Prow Robot c782fd6738 Merge pull request #25982 from ydFu/add-code-blocks-in-authorization
Add the code blocks in authorization.md
2021-01-29 10:25:41 -08:00
Tej-Singh-Rana 29833597a5 Fix typos in release notes (#25816)
* Fixed the typo

* Fixed the typo

* Update notes.md
2021-01-29 10:17:40 -08:00
Kubernetes Prow Robot 8c74d91eaa Merge pull request #26260 from FearTheBadger/patch-1
Fixed a small field name spelling mistake.
2021-01-29 09:21:41 -08:00
Qiming Teng 4c6533fe04 [zh] Resync stateful application task 2021-01-29 21:21:38 +08:00
Kubernetes Prow Robot 6ceafafafe Merge pull request #26283 from chenxuc/portforward
[zh] Sync web page for port forward
2021-01-29 04:45:41 -08:00
hunomina c6479b8144 Fix typo 2021-01-29 11:38:07 +01:00
Qiming Teng 14afc4dd35 [zh] Translate kubelet-tls-bootstrapping
This page, to my surprise, was not localized.
2021-01-29 17:28:55 +08:00
Kubernetes Prow Robot d6d0575fd6 Merge pull request #26216 from Horgix/patch-1
docs-fr: make the Ingress TLS example match EN version (example URL mainly)
2021-01-29 00:17:41 -08:00
chenxuc a25e0c5cc3 [zh] Sync web page for port forward
This is for part of work in the umbrella issue:
[zh] Umbrella issue: pages out of sync in tasks section #26178

Portforward (L)

 content/zh/docs/tasks/access-application-cluster/port-forward-access-application-cluster.md
2021-01-29 13:57:39 +08:00
Kubernetes Prow Robot ae0600da23 Merge pull request #26252 from chenxuc/nodelocaldns
[zh] Sync web page for nodelocaldns
2021-01-28 18:31:42 -08:00
Weiping Cai 6f777c9e64 fix pid pressure
Signed-off-by: Weiping Cai <weiping.cai@daocloud.io>
2021-01-29 09:40:02 +08:00
Kubernetes Prow Robot 6c4b455d23 Merge pull request #26277 from kubernetes/dev-1.20-ko.3
Ko: Third Korean l10n work for release-1.20
2021-01-28 17:33:40 -08:00
Arhell bcd2f0ec2a [ja] fix ttlafterfinished.md link 2021-01-29 01:21:31 +02:00
Kubernetes Prow Robot 00e20afc8a Merge pull request #26278 from notchairmk/fix_search_nav
Fix search input overlapping site nav
2021-01-28 14:27:40 -08:00
Kubernetes Prow Robot b19fbb6f90 Merge pull request #26144 from tengqm/amend-featuregates
Fix outdated content in feature gates
2021-01-28 13:19:40 -08:00
Kubernetes Prow Robot d10ad920b0 Merge pull request #26093 from bart0sh/PR0003-run-containerd-config-without-sudo
get rid of running 'containerd config default' with sudo
2021-01-28 13:05:40 -08:00
seokho-son 05da4dd669 Ko: Third Korean l10n work for release-1.20
- Update outdated files in the dev-1.20-ko.3 (1) (#26131)
- Update outdated files in the dev-1.20-ko.3 branch (2) (#26122)

Co-authored-by: seokho-son <shsongist@gmail.com>
Co-authored-by: Jerry Park <jaehwa@gmail.com>
2021-01-29 00:19:19 +09:00
Kubernetes Prow Robot fc663b4113 Merge pull request #26257 from chenxuc/service_account2
[zh] Sync web page for config service account
2021-01-28 07:07:36 -08:00
Kubernetes Prow Robot a209c4ba3f Merge pull request #26271 from tengqm/zh-sync-kubeadm-upgrade
[zh] resync kubeadm-upgrade
2021-01-28 06:41:34 -08:00
Kubernetes Prow Robot 26c8c19287 Merge pull request #26230 from Arhell/upd
[zh] update feature-gates description for TopologyManager
2021-01-28 04:21:08 -08:00
Qiming Teng d1707c87f8 [zh] resync kubeadm-upgrade 2021-01-28 18:29:16 +08:00
Sahadat Hossain 61a05b1058 Update daemonset.md 2021-01-28 16:13:26 +06:00
Kubernetes Prow Robot f581c13fc5 Merge pull request #26272 from Arhell/fix-link
[zh] fix design doc ttl-after-finish upstream link
2021-01-28 01:35:08 -08:00
Kubernetes Prow Robot 615cd51dd0 Merge pull request #26267 from npu21/conduct_it
Use https for link to contributor covenant
2021-01-28 01:27:08 -08:00
Ed Bartosh 237a449ca3 get rid of running 'containerd config default' with sudo
'containerd config default' doesn't require root privileges,
so it doesn't make sense to run it with sudo
2021-01-28 10:41:47 +02:00
Arhell 59ae06054d [zh] fix design doc ttl-after-finish upstream link 2021-01-28 10:18:32 +02:00
Kubernetes Prow Robot 45e3ddd475 Merge pull request #26270 from chymy/command-klet-0128
Fix typo for zh\docs\reference\command-line-tools-reference\kubelet.md
2021-01-27 23:35:08 -08:00
chymy 146e0a8aeb Fix typo for zh\docs\reference\command-line-tools-reference\kubelet.md
Signed-off-by: chymy <chang.min1@zte.com.cn>
2021-01-28 15:13:45 +08:00
Zhang Yong b7997b4a6d Use https for link to contributor covenant 2021-01-28 11:39:43 +08:00
Kubernetes Prow Robot dd7da56bf6 Merge pull request #26243 from Arhell/add
[ja] update feature-gates
2021-01-27 19:35:07 -08:00
Zhang Yong 2ddacf2ea2 Use https for link to contributor covenant 2021-01-28 11:31:31 +08:00
Zhang Yong bb808687d0 Use https for link to contributor covenant 2021-01-28 11:23:13 +08:00
Zhang Yong 7ba4f09b22 Use https for link to contributor covenant 2021-01-28 11:17:58 +08:00
Yutaro Sugai c5de914cbd fix typo of MTU 2021-01-28 11:54:17 +09:00
Yong Zhang 0c4389a4af Merge pull request #10 from kubernetes/master
merge
2021-01-28 10:53:05 +08:00
chymy 52b80e0dc1 Fix net-conf.json fommat err
Signed-off-by: chymy <chang.min1@zte.com.cn>
2021-01-28 10:04:36 +08:00
Alexis Horgix Chotard 74ecaf12ea docs-fr: add TLS example ingress file 2021-01-28 01:42:22 +01:00
Brock R 36170e4193 Fixed a small field name spelling mistake.
`resourceName` is incorrect and fails upon apply/install. `resourceNames` is the correct file name.
2021-01-27 14:27:43 -07:00
Ruxandra Fediuc 7d842681a3 docs: rephrase sentence missing predicate
Unless that first part of the paragraph is meant to be more like a subheading (in which case it could use some reformatting), I would like to suggest a minor rephrase so that it becomes a proper sentence and has a predicate.

Thanks for considering this!
2021-01-27 13:24:50 -08:00
Jason Field 4d337aea9e documentation to static-pods for naming of pods
This will add documentation around how a static pod will be named
2021-01-27 20:43:52 +00:00
Kubernetes Prow Robot b1f370dd13 Merge pull request #26229 from rikatz/spell-correction
Fix some spell checking
2021-01-27 09:51:40 -08:00
chenxuc 04cbb6b47a [zh] Sync web page for config service account
This is for part of the items in the following umbrella issue:
[zh] Umbrella issue: pages out of sync in tasks section #26178

Service Account (L)

 content/zh/docs/tasks/configure-pod-container/configure-service-account.md
2021-01-27 15:29:47 +08:00
chenxuc 4a42b0c724 [zh] Sync web page for nodelocaldns
Sync web page for part of the items in umbrella issue:
[zh] Umbrella issue: pages out of sync in tasks section #26178

content/zh/docs/tasks/administer-cluster/nodelocaldns.md
2021-01-27 14:36:09 +08:00
Kubernetes Prow Robot 012022d5ef Merge pull request #26213 from ydFu/update-administer-cluster
Update administer-cluster out-of-resource.md and namespaces.md
2021-01-26 18:53:39 -08:00
Kubernetes Prow Robot 2995708c0e Merge pull request #26132 from chienfuchen32/patch-1
modify Design doc ttl-after-finish upstream
2021-01-26 18:27:39 -08:00
Kubernetes Prow Robot 8a16beeb85 Merge pull request #26249 from tengqm/zh-sync-audit
[zh] sync audit task page
2021-01-26 18:05:39 -08:00
ydFu 84880c1ac5 Update cluster-administration administer-cluster out-of-resource.md and namespaces.md
* sync with english version in administer-cluster out-of-resource.md and namespcaes.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-27 09:26:21 +08:00
ydFu 390b053d51 * [zh] Umbrella issue: pages out of sync in concepts section(#26177 System Logs)
`
[x] content/zh/docs/concepts/cluster-administration/system-logs.md
`

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-27 08:58:49 +08:00
Kubernetes Prow Robot 4f244bcbf6 Merge pull request #25787 from SergeyKanzhelev/migrateFromDockershim
Migrating from dockershim documentation
2021-01-26 16:29:39 -08:00
Kubernetes Prow Robot 008e41fecf Merge pull request #26239 from ydFu/update-services-networking
[zh] Sync concepts pages for service-networking
2021-01-26 15:39:39 -08:00
Kubernetes Prow Robot 24b887c433 Merge pull request #26250 from chenxuc/misc_batch2
[zh] Sync web page for tasks
2021-01-26 15:35:39 -08:00
Kubernetes Prow Robot e064d7854f Merge pull request #25067 from miton18/patch-1
Fix formatting issue
2021-01-26 13:33:40 -08:00
Kubernetes Prow Robot 4d5a5ec1b5 Merge pull request #26242 from marccampbell/patch-1
Better description of Job execution
2021-01-26 11:32:31 -08:00
Kubernetes Prow Robot e30a9bb3d9 Merge pull request #26169 from tomkivlin/tomkivlin-secret-style
Update secret.md to match style guide
2021-01-26 11:18:31 -08:00
Taylor Chaparro 9adf2c1b31 Fix search input overlapping site nav 2021-01-26 08:38:41 -08:00
Kubernetes Prow Robot 25c5aa783b Merge pull request #25082 from frbimo/id_qos_pod
[id] Indonesian translation of page quality-service-pod
2021-01-26 06:12:34 -08:00
Kubernetes Prow Robot 3523bd9bed Merge pull request #26237 from CaoDonghui123/fix-sync1
[zh] sync Misc Batch 1
2021-01-26 05:30:34 -08:00
Fransiscus Bimo 64bf813157 This PR adds new Indonesian translation of
content/id/docs/tasks/configure-pod-container/quality-service-pod.md
2021-01-26 19:37:57 +08:00
chenxuc b60b5926ef [zh] Sync web page for tasks
Sync web page for part of the items in umbrella issue:
Misc Batch 2 (S)

 content/zh/docs/tasks/debug-application-cluster/debug-pod-replication-controller.md
 content/zh/docs/tasks/manage-kubernetes-objects/update-api-object-kubectl-patch.md
 content/zh/docs/tasks/access-application-cluster/configure-access-multiple-clusters.md
2021-01-26 18:25:07 +08:00
Qiming Teng 29e2644f75 [zh] sync audit task page 2021-01-26 17:18:29 +08:00
ydFu c06d1320f2 [zh] Sync concepts pages for service-networking
* [zh] Umbrella issue: pages out of sync in concepts section(#26177 Misc
Batch 2)

```
[x] content/zh/docs/concepts/services-networking/network-policies.md
[x] content/zh/docs/concepts/services-networking/service.md
[x] content/zh/docs/concepts/services-networking/dns-pod-service.md
```

Signed-off-by: ydFu ader.ydfu@gmail.com
2021-01-26 15:34:54 +08:00
caodonghui 437c56d08e [zh] sync Misc Batch 1 2021-01-26 15:21:01 +08:00
Kubernetes Prow Robot 9ade714aab Merge pull request #26245 from ydFu/update-new-sysc-in-0126
[zh] update Sync concepts pages for secret and ingress
2021-01-25 21:30:34 -08:00
Kubernetes Prow Robot 3fce814f67 Merge pull request #26236 from chenxuc/master
[zh] Sync concepts pages for garbage collect
2021-01-25 20:08:34 -08:00
Kubernetes Prow Robot 1fffe9fb9b Merge pull request #26235 from ydFu/update-runtime-class
[zh] Update runtime-class.md
2021-01-25 20:04:34 -08:00
ydFu 465c4fa674 [zh] Update runtime-class.md
* sync with english version in runtime-class.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-26 11:14:47 +08:00
ydFu c669471823 [zh] update Sync concepts pages for secret and ingress
* sync with english version in secret.md and ingress.md
2021-01-26 09:30:21 +08:00
Arhell 74d0035e3c [ja] update feature-gates 2021-01-26 00:22:43 +02:00
Kubernetes Prow Robot b74478c86d Merge pull request #26185 from piyushjain18/patch-1
Update service name in example of Name based virtual hosting
2021-01-25 13:41:00 -08:00
Kubernetes Prow Robot 7706f6f800 Merge pull request #26217 from feloy/api-ref-fix-anchors
Fix anchors with unsupported characters
2021-01-25 13:21:00 -08:00
Kubernetes Prow Robot f2810c82d4 Merge pull request #26201 from kbhawkey/fix-nodedetector-caps
change capitalization of daemon name
2021-01-25 13:09:01 -08:00
Marc Campbell 8a48273855 Better description of Job execution
Just a small clarification on the description of the responsibilities of a Job. Kubernetes doesn't ensure that the Pods are successful, but the scheduler's responsibility is to continue retrying until success. Updating the docs with a slight wording change to more accurately reflect that a Job won't ensure success, but it will continue retrying until success.
2021-01-25 12:57:00 -08:00
Kubernetes Prow Robot 6ce3a86545 Merge pull request #26203 from Btakuski/patch-1
Grammatical error in secret.md
2021-01-25 09:18:54 -08:00
Kedar Vijay Kulkarni 9be902bee0 added example linking to hostPath volume definition 2021-01-25 11:17:10 -05:00
Kubernetes Prow Robot dc8e56ee3c Merge pull request #26214 from hasheddan/flexvol
Fix links to flexVolume documentation
2021-01-25 07:34:56 -08:00
chenxuc edd60c9cd4 [zh] Sync concepts pages for garbage collect
Sync web page for part of the items in umbrella issue:
[zh] Umbrella issue: pages out of sync in concepts section #26177

Garbage Collection
 content/zh/docs/concepts/workloads/controllers/garbage-collection.md
2021-01-25 18:55:12 +08:00
Kubernetes Prow Robot 9c5b468f28 Merge pull request #26232 from ydFu/update-misc-batch-5
[zh] Sync concepts pages for policy
2021-01-24 20:36:53 -08:00
ydFu 1078f3f88e [zh] Sync concepts pages for policy
* [zh] Umbrella issue: pages out of sync in concepts section(Misc Batch 5)
```
[x] content/zh/docs/concepts/policy/resource-quotas.md
[x] content/zh/docs/concepts/cluster-administration/system-metrics.md
[x] content/zh/docs/concepts/cluster-administration/flow-control.md
```
* sync with english version in policy/pod-security-policy.md

Signed-off-by: ydFu ader.ydfu@gmail.com
2021-01-25 11:30:50 +08:00
Kubernetes Prow Robot 52554428db Merge pull request #26212 from ydFu/update-cluster-administration
Update cluster-administration flow-control.md and system-metrics.md
2021-01-24 18:06:53 -08:00
Kubernetes Prow Robot b8d1814389 Merge pull request #26208 from ydFu/update-replicatset
Update workloads/controllers/replicationcontroller.md and replicaset.md
2021-01-24 18:04:53 -08:00
Kubernetes Prow Robot 8b391b1302 Merge pull request #26219 from ydFu/update-misc-batch-0124
Update Misc Batch
2021-01-24 18:00:53 -08:00
Kubernetes Prow Robot ca455ccbd0 Merge pull request #26226 from LinuxSuRen/patch-1
Fix the wrong URL of kubespray
2021-01-24 16:50:53 -08:00
Kubernetes Prow Robot 9c0d453ed1 Merge pull request #26220 from ydFu/update-storage
[zh] Sync concepts pages for config and storage
2021-01-24 16:46:53 -08:00
Arhell ac1409edda [zh] update feature-gates description for TopologyManager 2021-01-25 00:55:32 +02:00
ljnaresh e239d8089f Replace alpine with busybox image for better response from nslookup 2021-01-24 23:15:20 +01:00
Ricardo Pchevuzinske Katz 2346581566 Fix some spell checking
Signed-off-by: Ricardo Pchevuzinske Katz <ricardo.katz@gmail.com>
2021-01-24 16:27:42 -03:00
ydFu cb4cc0f261 [zh] Sync concepts pages for architecture and extend-kubernetes
* [zh] Umbrella issue: pages out of sync in concepts section #26177(Misc Batch 4)

```
[x] content/zh/docs/concepts/architecture/controller.md
[x] content/zh/docs/concepts/extend-kubernetes/compute-storage-net/network-plugins.md
[x] content/zh/docs/concepts/extend-kubernetes/compute-storage-net/device-plugins.md
[x] content/zh/docs/concepts/extend-kubernetes/operator.md
```

* sync with english version in home/_index.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-24 21:43:15 +08:00
Kubernetes Prow Robot e5146e8890 Merge pull request #26182 from tengqm/zh-sync-kube-scheduler
[zh] Resync and fix kube-scheduler reference
2021-01-24 05:22:53 -08:00
Kubernetes Prow Robot 985a9489b4 Merge pull request #26195 from ydFu/update-disruptions
Update disruptions.md
2021-01-24 05:20:53 -08:00
Zhao Xiaojie 17e48c0d60 Fix the wrong URL of kubespray 2021-01-24 21:13:05 +08:00
Kubernetes Prow Robot 00b8a6fb15 Merge pull request #26224 from Arhell/upd
[zh] update rbac.md
2021-01-24 04:52:53 -08:00
ydFu f26b3322a7 Misc Batch 1 in Issue #26177
[zh] Umbrella issue: pages out of sync in concepts section #26177

Misc Batch 1:
```
content/zh/docs/concepts/configuration/overview.md
content/zh/docs/concepts/scheduling-eviction/assign-pod-node.md
content/zh/docs/concepts/scheduling-eviction/pod-overhead.md
content/zh/docs/concepts/storage/volume-snapshot-classes.md
content/zh/docs/concepts/storage/volumes.md
```
Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-24 19:26:57 +08:00
Arhell e31224e46a [zh] update rbac.md 2021-01-24 11:39:17 +02:00
Alexis Horgix Chotard bbc1194d5d docs-fr: replace Ingress TLS example block by YAML file ref 2021-01-24 02:59:21 +01:00
Alexis Horgix Chotard cfeed030cc docs-fr: make the example URL match the EN version 2021-01-23 23:20:40 +01:00
Alexis Horgix Chotard 9f89f710a4 docs-fr: also mention FQDN for certificate in Ingress doc 2021-01-23 23:20:13 +01:00
Alexis Horgix Chotard da12b07907 docs-fr: add missing capital on Ingress 2021-01-23 23:14:48 +01:00
Alexis Horgix Chotard 3b6be2ea94 docs-fr: make Ingress example YAML match the EN version 2021-01-23 23:14:30 +01:00
Philippe Martin e4d24124a3 Redirects "Well-Known Labels, Annotations and Taints" page 2021-01-23 18:24:09 +01:00
Philippe Martin 21cee4340d Fix anchors with unsupported characters 2021-01-23 18:15:01 +01:00
Alexis "Horgix" Chotard ff442608d1 Ingress: mention TLS instead of SSL in example URL 2021-01-23 17:35:27 +01:00
Kubernetes Prow Robot a088d1f27a Merge pull request #26210 from ydFu/update-ephemeral-containers
Update ephemeral-containers.md
2021-01-23 07:41:39 -08:00
hasheddan bf6dbd4c3f Fix links to flexVolume documentation
A few links to the flexVolume documentation do not resolve correctly due
to case sensitivity in the page anchor. This updates those links to
resolve to the correct section of the volumes doc.

Signed-off-by: hasheddan <georgedanielmangum@gmail.com>
2021-01-23 08:45:26 -06:00
ydFu 270b1b9823 Update ephemeral-containers.md
* sync with english version in ephemeral-containers.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-23 20:59:11 +08:00
ydFu 83a421286a Update cluster-administration flow-control.md and system-metrics.md
* sync with english version in cluster-administration flow-control.md and system-metrics.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-23 20:53:59 +08:00
Kubernetes Prow Robot 989dbbf205 Merge pull request #26211 from ydFu/update-init-containers
Update init-containers.md
2021-01-23 04:53:39 -08:00
ydFu c27dbd6673 Update init-containers.md
* sync with english version in init-containers.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-23 19:53:03 +08:00
Kubernetes Prow Robot 7675ae2330 Merge pull request #26200 from ydFu/update-container-lifecycle-hooks
Update container-lifecycle-hooks.md
2021-01-22 22:47:39 -08:00
ydFu f3692a3446 Update workloads/controllers/replicationcontroller.md and replicaset.md
* sync with english version in workloads/controllers/replicationcontroller.md and replicaset.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-23 13:23:26 +08:00
Jailton Lopes d56ac69e9f Add instruction to access API reference pages URL locally 2021-01-22 23:16:11 -03:00
Arhell ba981fb872 [zh] fix minor typo 2021-01-23 00:37:37 +02:00
Bartlomiej Takuski 48004c99cc Grammatical error in secret.md
Fixing a minor grammatical error in secret.md
2021-01-22 16:02:48 -06:00
Karen Bradshaw a09fc68df4 change capitalization of daemon name 2021-01-22 11:39:10 -05:00
ydFu c491ec7b8a Update container-lifecycle-hooks.md
* sync with english version in container-lifecycle-hooks.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-23 00:03:58 +08:00
ydFu 67dc1b2d86 Update disruptions.md
* sync with english version in disruptions.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-22 22:06:56 +08:00
Kubernetes Prow Robot b0ec53eb74 Merge pull request #26193 from ydFu/update-api-group
Update api-group.md
2021-01-22 05:53:26 -08:00
ydFu b78739436c Update api-group.md
* sync with english version in api-group.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-22 16:00:03 +08:00
Kubernetes Prow Robot 078369ebaa Merge pull request #26191 from Arhell/update
update cfssl installations link
2021-01-21 19:51:26 -08:00
Kubernetes Prow Robot 8263a332fd Merge pull request #26179 from tengqm/zh-sync-kubelet
[zh] Resync kubelet reference
2021-01-21 19:13:26 -08:00
Kubernetes Prow Robot d1b2709ae8 Merge pull request #25700 from devincd/master
Update container-lifecycle-hooks.md
2021-01-21 19:05:26 -08:00
Qiming Teng 987256376c [zh] Resync and fix kube-scheduler reference 2021-01-22 11:02:16 +08:00
Kubernetes Prow Robot 8038c7bf3b Merge pull request #25900 from oke-py/25875
remove indication of enabling RuntimeClass feature gate since it is a GA feature
2021-01-21 18:59:27 -08:00
Qiming Teng f74837bec6 [zh] Resync kubelet reference 2021-01-22 10:58:44 +08:00
Kubernetes Prow Robot 92a01bc24c Merge pull request #26186 from ydFu/update-install-kubeadm
Update install-kubeadm.md
2021-01-21 18:51:27 -08:00
Arhell d9f4b49a6f update cfssl installations link 2021-01-22 01:41:04 +02:00
Kubernetes Prow Robot 68e6b45f9d Merge pull request #24772 from kbhawkey/node-problem-detector-cleanup
clean up node problem detector task page
2021-01-21 14:23:01 -08:00
Edith Erika Puclla Pareja a8f7a938ac Add content/es/docs/concepts/secret (#17053)
* # This is a combination of 14 commits.
# The first commit's message is:
Update patch release manager to patch release team in version skew po… (#17008)

* Update patch release manager to patch release team in skew support policy.

* Adding link for additional patch-release information to version skew policy.

# This is the 2nd commit message:

translate the first part of secret.md document

# This is the 3rd commit message:

translate secrets montados se actualizan automáticamente

# This is the 4th commit message:

translation until Montaje Automatico de Secrets Creados Manualmente

# This is the 5th commit message:

translate restrictions

# This is the 6th commit message:

translate Interacción del Secret y Pod de por Vida

# This is the 7th commit message:

finish first translation version secret.md

# This is the 8th commit message:

fix spaces

# This is the 9th commit message:

checking first part

# This is the 10th commit message:

review translation ultil line 232

# This is the 11th commit message:

fix some issues line 509

# This is the 12th commit message:

finish first revision secret documentation

# This is the 13th commit message:

remove pod-overview

# This is the 14th commit message:

added secret content in spanish content/es/docs/concepts/configuration/secret.md

* “Secret” es un objet Kubernetes

* capital letter in Secret Kubernetes Object

* Remove ` from k8s native objects

Co-Authored-By: Tim Bannister <tim@scalefactory.com>

* Remove ` from k8s native objects

Co-Authored-By: Tim Bannister <tim@scalefactory.com>

* Capitalize Secret

Co-Authored-By: Tim Bannister <tim@scalefactory.com>

* Update reviewer

* Apply suggestions from code review

Co-authored-by: Mitesh Jain <47820816+miteshskj@users.noreply.github.com>
Co-authored-by: Rael Garcia <rael@rael.io>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-01-21 08:39:03 -08:00
ydFu 611ca12a6e Update install-kubeadm.md
* sync with english version in install-kubeadm.md

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-21 23:38:52 +08:00
piyushjain18 991b35fd09 Update service name in example of Name based virtual hosting
`service2` is mapped to `second.bar.com` in the given example

```
- host: second.bar.com
    http:
      paths:
      - pathType: Prefix
        path: "/"
        backend:
          service:
            name: service2
            port:
              number: 80
```
2021-01-21 23:08:19 +09:00
Kubernetes Prow Robot f04b9d61cc Merge pull request #26175 from Arhell/update
[ja] upgrade cfssl installations
2021-01-21 05:49:01 -08:00
CKchen0726 c6b704e5e0 Merge branch 'master' into labels_annotations_taints 2021-01-21 14:02:01 +08:00
Arhell ae7ebe7792 [ja] upgrade cfssl installations 2021-01-21 00:55:28 +02:00
chienfuchen32 9d3d5548a1 modify Design doc ttl-after-finish upstream 2021-01-20 23:24:59 +08:00
Kubernetes Prow Robot 08a4e6323e Merge pull request #26134 from tengqm/zh-resync-kubeapiserver
[zh] Resync kube-apiserver reference
2021-01-20 04:09:59 -08:00
Kubernetes Prow Robot 78275b0b2f Merge pull request #26154 from Arhell/fix
[zh] fix NGINX Ingress Controller URl
2021-01-20 03:27:59 -08:00
Tom Kivlin aec6ea4895 Update secret.md
Remove prepended URLs and re-word to avoid use of "we".
2021-01-20 10:23:49 +00:00
Kubernetes Prow Robot e979fc8796 Merge pull request #26164 from heheh13/patch-1
Fix grammatical in Desired versus current state.
2021-01-20 02:07:59 -08:00
Naoki Oketani 9315b85fd7 restore not-outdated contents 2021-01-20 18:58:46 +09:00
Naoki Oketani 3b409773ae Update content/en/docs/concepts/containers/runtime-class.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-01-20 18:56:50 +09:00
Naoki Oketani 29dcf62d57 remove indication of enabling RuntimeClass feature gate since it is a GA feature 2021-01-20 18:56:47 +09:00
Kubernetes Prow Robot 8dcf8ab785 Merge pull request #26165 from ydFu/fix-typo
Fix Typo in rbac.md
2021-01-20 01:32:00 -08:00
Kubernetes Prow Robot 1e65fe2d24 Merge pull request #26145 from howieyuen/eps
[zh] resync content/zh/docs/concepts/services-networking/endpoint-slices.md
2021-01-20 01:26:00 -08:00
ydFu f84a0898ec Fix Typo in rbac.md 2021-01-20 16:45:49 +08:00
Mehedi Hasan 94d9efc71b Fix grammatical in Desired versus current state. 2021-01-20 14:21:54 +06:00
Kubernetes Prow Robot 1fc9554da4 Merge pull request #26157 from tengqm/zh-resync-kcm
[zh] Resync kcm reference
2021-01-20 00:05:59 -08:00
Kubernetes Prow Robot 55426e8cc7 Merge pull request #26159 from howieyuen/dual-stack
[zh] resync content/zh/docs/tasks/network/validate-dual-stack.md
2021-01-19 21:25:58 -08:00
Kubernetes Prow Robot 01d8c0a71c Merge pull request #26158 from chenxuc/patch-2
Update reference link for API Group
2021-01-19 20:47:58 -08:00
Jailton Lopes b512f29cef Translate sentence: pull in Docsy submodule 2021-01-20 01:15:18 -03:00
Qiming Teng 9e2873bbd2 Resync kcm reference
Also unified some styling of the tables,
2021-01-20 11:16:54 +08:00
howieyuen 70842f2c72 resync content/zh/docs/tasks/network/validate-dual-stack.md 2021-01-20 10:28:13 +08:00
Chen, Xu Chun (Simon) 2f2f30b614 Update reference link
The old link "https://kubernetes.io/docs/concepts/overview/kubernetes-api/#api-groups" points to an nonexistent section of the page. The correct section should be "https://kubernetes.io/docs/concepts/overview/kubernetes-api/#api-groups-and-versioning" .
2021-01-20 09:56:14 +08:00
Sergey Kanzhelev b10decb87c migrating from dockershim 2021-01-20 01:41:13 +00:00
howieyuen 786422bb5f resync content/zh/docs/concepts/services-networking/endpoint-slices.md 2021-01-20 09:22:03 +08:00
Kubernetes Prow Robot c42e56d811 Merge pull request #23294 from feloy/feloy-gsod-api-reference-ex1
[GSoD'20] Update how the Kubernetes website serves API references
2021-01-19 16:25:59 -08:00
Kubernetes Prow Robot 87c6923445 Merge pull request #26149 from liggitt/announcement-history
Add historical announcement text
2021-01-19 16:23:59 -08:00
Kubernetes Prow Robot 8005676dd1 Merge pull request #26155 from sftim/20210119_robots_txt_prepare_for_new_api_docs
Skip crawling for new API documentation
2021-01-19 16:15:59 -08:00
Tim Bannister ec8deb56e7 Skip crawling for new API documentation
This prepares for the launch of new API documentation, initially without
indexing by search engines.
2021-01-19 23:58:39 +00:00
Arhell db90dce846 [zh] fix NGINX Ingress Controller URl 2021-01-20 00:31:30 +02:00
Philippe Martin 1373ad22f1 Update Kubernetes API index page 2021-01-19 21:19:54 +01:00
Philippe Martin add24db3e3 New API Reference presentation on /content/en/docs/reference/kubernetes-api 2021-01-19 21:05:09 +01:00
Kubernetes Prow Robot a5630c5dde Merge pull request #25259 from nate-double-u/25040-sha256-checks
Updating install-kubectl.md with instructions for validating kubectl binaries against checksum files
2021-01-19 11:51:59 -08:00
Kubernetes Prow Robot 58f2248be2 Merge pull request #26133 from tengqm/zh-resync-podpreset
[zh] Clean PodPreset related pages/examples
2021-01-19 10:27:45 -08:00
Kubernetes Prow Robot b37890061d Merge pull request #26148 from pkbhowmick/master
Fix NGINX Ingress Controller URl
2021-01-19 10:07:45 -08:00
Tom Kivlin 8044b0dcf7 Merge pull request #1 from kubernetes/master
merge k/website into tomkivlin/website
2021-01-19 17:17:26 +00:00
Jordan Liggitt b8166c48dc Add historical announcement text 2021-01-19 11:03:59 -05:00
Pulak Kanti Bhowmick a398bc0657 Fix NGINX Ingress Controller URl 2021-01-19 19:34:39 +06:00
Qiming Teng 3502b36f86 Fix outdated content in feature gates
Also applied some line wrapping to unreasonable long lines.
2021-01-19 15:24:44 +08:00
Paul Czarkowski 99029b97d7 Remove Master/Slave terminology from stateless application tutorial.
The stateless application tutorial is littered with unsuitable terminology. This update switches the database technology to a database that has already updated their own terminology as well as removes the terminology from the tutorial itself.

The advanced logging tutorial followup is set to Draft as it will take a larger effort to convert that, and I'm not convinced its even in a working state right now.

A followup PR to the examples repo to be referenced here will be made.

Addresses #22918

Signed-off-by: Paul Czarkowski <username.taken@gmail.com>

address comments in PR

Signed-off-by: Paul Czarkowski <username.taken@gmail.com>

remove confusing comment about dns, we can assume k8s has kube-dns

Signed-off-by: Paul Czarkowski <username.taken@gmail.com>
2021-01-19 04:19:23 +00:00
Ryuichiroh Ikeuchi 32e9186fd8 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:54:44 +09:00
Ryuichiroh Ikeuchi 8bc44fa6e1 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:54:33 +09:00
Ryuichiroh Ikeuchi d2d1248dc9 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:54:23 +09:00
Ryuichiroh Ikeuchi 712694865d Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:54:12 +09:00
Ryuichiroh Ikeuchi e5f09ba8cd Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:53:59 +09:00
Ryuichiroh Ikeuchi 4e9e61ddd7 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:53:46 +09:00
Ryuichiroh Ikeuchi 5b9eaf5623 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:53:33 +09:00
Ryuichiroh Ikeuchi ff8a41b302 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:53:21 +09:00
Ryuichiroh Ikeuchi eb788d0964 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:53:10 +09:00
Ryuichiroh Ikeuchi ea822c29aa Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:52:59 +09:00
Ryuichiroh Ikeuchi 91af908261 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:52:46 +09:00
Ryuichiroh Ikeuchi 214740d14a Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:52:36 +09:00
Ryuichiroh Ikeuchi 57a7a9ab81 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:52:25 +09:00
Ryuichiroh Ikeuchi 20142e2b31 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:52:14 +09:00
Ryuichiroh Ikeuchi d4452c25ed Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:51:59 +09:00
Qiming Teng ee81eeccfa [zh] Resync kube-apiserver reference 2021-01-19 11:51:51 +08:00
Ryuichiroh Ikeuchi 1b5a7e0561 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:51:12 +09:00
Ryuichiroh Ikeuchi fe6fe85dbc Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:51:00 +09:00
Ryuichiroh Ikeuchi 0440f3c0f9 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:50:51 +09:00
Ryuichiroh Ikeuchi 0a6fa5d137 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:50:37 +09:00
Ryuichiroh Ikeuchi a1be937428 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:50:24 +09:00
Ryuichiroh Ikeuchi 62d607b8e1 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:50:03 +09:00
Ryuichiroh Ikeuchi 6cde1b4a79 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:53 +09:00
Ryuichiroh Ikeuchi bbad30174b Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:46 +09:00
Ryuichiroh Ikeuchi 447d69d2c1 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:40 +09:00
Ryuichiroh Ikeuchi 2d832a7b90 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:34 +09:00
Ryuichiroh Ikeuchi 8835ad4b7e Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:27 +09:00
Ryuichiroh Ikeuchi d78a000b98 Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:19 +09:00
Ryuichiroh Ikeuchi ed5895073c Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:12 +09:00
Ryuichiroh Ikeuchi d8f38a2e1a Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:49:05 +09:00
Ryuichiroh Ikeuchi a12da52b4d Update content/ja/docs/tasks/administer-cluster/manage-resources/memory-constraint-namespace.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2021-01-19 12:48:55 +09:00
Kubernetes Prow Robot 14b20a37c4 Merge pull request #26138 from Arhell/upd
[zh] upgrade cfssl installations
2021-01-18 16:15:44 -08:00
Arhell 009fd0f663 [zh] upgrade cfssl installations 2021-01-19 01:18:58 +02:00
Kubernetes Prow Robot 2883813d1b Merge pull request #25588 from takaf04/dev-1.18-ja.2_deployment_pr
Update ja: docs/concepts/workloads/controllers/deployment.md
2021-01-18 05:35:46 -08:00
Kubernetes Prow Robot 69c8f161cc Merge pull request #26000 from hikkie3110/fix-25205_2
update nodes.md for v1.18
2021-01-18 05:25:44 -08:00
Kubernetes Prow Robot 37f82ce9cd Merge pull request #25975 from jiroshin/patch-2
fix typo in Japanese document
2021-01-18 05:15:43 -08:00
Qiming Teng b9265d377e [zh] Clean PodPreset related pages/examples 2021-01-18 19:45:20 +08:00
Kubernetes Prow Robot 8d9b2e1da8 Merge pull request #26129 from zhangguanzhang/kubectl-plugin
[zh] Fix some nits in kubectl-plugins.md
2021-01-18 02:51:44 -08:00
Kubernetes Prow Robot 238c215f6b Merge pull request #26130 from howieyuen/node
[zh] sync content/zh/docs/concepts/architecture/nodes.md
2021-01-18 01:25:43 -08:00
zhangguanzhang 5a7e944bfd [zh] Fix nit in kubectl-plugins.md
Signed-off-by: zhangguanzhang <zhangguanzhang@qq.com>
2021-01-18 17:02:15 +08:00
howieyuen d6ad8266b0 sync content/zh/docs/concepts/architecture/nodes.md 2021-01-18 16:47:57 +08:00
Kubernetes Prow Robot 20ec2265fe Merge pull request #25684 from shu-mutou/remove-basic-auth
Remove Static Password File section
2021-01-17 20:55:43 -08:00
Kubernetes Prow Robot ef015deb97 Merge pull request #26090 from habibrosyad/k/w-glo-8
Completing glossary translation for Bahasa pt. 8
2021-01-17 19:21:43 -08:00
Kubernetes Prow Robot 0afe61c0da Merge pull request #26123 from lilien1010/patch-2
[zh]update ingress-controllers.md, add apisix-ingress-controller
2021-01-17 16:49:43 -08:00
Kubernetes Prow Robot d87b01eaa8 Merge pull request #26128 from Arhell/upd
[zh] add tooltip for CSI in persistent volume page
2021-01-17 16:19:43 -08:00
Kubernetes Prow Robot 6633351917 Merge pull request #25778 from tengqm/fix-22624
Remove link to empty list for k8s metrics
2021-01-17 16:17:43 -08:00
Arhell f0b4f2e6f2 [zh] add tooltip for CSI in persistent volume page 2021-01-18 00:29:03 +02:00
Kubernetes Prow Robot 2f5cfe4624 Merge pull request #26098 from liggitt/kubelet-upgrade
Clarify that nodes must be drained before minor version kubelet upgrades
2021-01-17 08:41:43 -08:00
Kubernetes Prow Robot d19b83ffd5 Merge pull request #26101 from vincent-pli/fix-typo-and-ehance-description
Fix typo and enhance description
2021-01-17 07:41:43 -08:00
Kubernetes Prow Robot 2b3babbcd2 Merge pull request #26048 from tengqm/zh-sync-system-metrics
[zh] Resync concepts/cluster-administration/system-metrics.md
2021-01-17 07:39:43 -08:00
Kubernetes Prow Robot 697e6832d8 Merge pull request #26126 from tengqm/zh-trans-pid-limiting
[zh] Localize concepts/policy/pid-limiting.md
2021-01-17 07:33:44 -08:00
Qiming Teng 55b68bd2a8 [zh] Localize concepts/policy/pid-limiting.md 2021-01-17 21:01:55 +08:00
Salvador González González 9cc4fde667 Remove v2 controller mention
I removed mention to v2 controller behaviour.
2021-01-17 09:36:18 +00:00
Lien 5b3a343397 update ingress-controllers.md, add apisix-ingress-controller
as this page `https://kubernetes.io/docs/concepts/services-networking/ingress-controllers/` listed apisix-ingress-controller as an option of ingress-controller,
so I just add it to Chinese version
2021-01-17 16:51:00 +08:00
Kubernetes Prow Robot 2f344c874e Merge pull request #25324 from rayw000/translate-zh-menu
Add [version-menu] section into i18n/zh.toml
2021-01-16 21:11:43 -08:00
Kubernetes Prow Robot 1328d59a31 Merge pull request #24900 from shuuji3/add-comments-to-makefile
Add comments for the commands using container in Makefile
2021-01-16 19:51:43 -08:00
Kubernetes Prow Robot a0dd4b51ac Merge pull request #26020 from ydFu/fix-OS-version-in-install-kubeadm
Document kubeadm for RHEL 8
2021-01-16 19:49:43 -08:00
Kubernetes Prow Robot 216ca3f06b Merge pull request #24930 from adamhjk/patch-1
Explain the insecure by default nature of secrets
2021-01-16 19:47:43 -08:00
Kubernetes Prow Robot 491790039e Merge pull request #26115 from MIhirMishra/patch-2
Typo correction.
2021-01-16 19:23:43 -08:00
Kubernetes Prow Robot d83fa0710a Merge pull request #26114 from reylejano/approval-request
Approval permission for 1.21 Release
2021-01-16 19:01:43 -08:00
Kubernetes Prow Robot 706a9d006e Merge pull request #26057 from CaoDonghui123/fix-3
[zh] fix /zh/docs/setup/learning-environment/
2021-01-15 22:09:43 -08:00
Qiming Teng 06228c06a9 Fix examples tests
This PR updates the go.mod file so that tests of the example manifests
are run against the 1.20 branch. The missing test cases for newly added
examples are also added. To perform tests on your local machine, run the
following command on the root of your local clone:

```
go test k8s.io/website/content/en/examples
```
2021-01-16 14:09:28 +08:00
Kubernetes Prow Robot e59141ccd5 Merge pull request #26031 from tengqm/zh-sync-ingress-ctrl
[zh] Resync concepts/services-networking/ingress-controllers.md
2021-01-15 22:05:43 -08:00
Kubernetes Prow Robot 43e0326ab3 Merge pull request #26041 from tengqm/zh-kustomization
[zh] Fix typo in kustomization example
2021-01-15 22:01:43 -08:00
Kubernetes Prow Robot b3cca87f52 Merge pull request #26108 from tengqm/zh-resync-install-kubeadm
[zh] Resync install-kubeadm
2021-01-15 21:49:43 -08:00
Kubernetes Prow Robot a0d5681271 Merge pull request #26055 from CKchen0726/spelling_mistake
fix some spelling mistakes
2021-01-15 17:47:43 -08:00
Kubernetes Prow Robot 6b8092f495 Merge pull request #26022 from moonming/patch-1
Update ingress-controllers.md
2021-01-15 17:29:43 -08:00
Mihir 84aea3fc2f Typo correction. 2021-01-15 15:53:07 -07:00
Rey Lejano 977acbdfe2 Approval permission for 1.21 Release 2021-01-15 13:39:50 -08:00
Karen Bradshaw d3f374c0d8 clean up node problem detector task page 2021-01-15 14:24:22 -05:00
Kubernetes Prow Robot 34e8b55faf Merge pull request #26027 from tengqm/clean-podpreset
Clean PodPreset docs, examples and links
2021-01-15 07:39:51 -08:00
Qiming Teng 9387b55acc [zh] Resync install-kubeadm 2021-01-15 19:55:24 +08:00
CKchen0726 de4e1f10d2 fix some spelling mistakes 2021-01-15 17:17:01 +08:00
andrzejsydor 298432dc36 Add example of using xargs
Add example of using `xargs`
2021-01-15 10:01:45 +01:00
Kubernetes Prow Robot 8cf053698d Merge pull request #26099 from Arhell/upd
[fr] clean up too old comments for v1.9 or before in examples
2021-01-14 22:57:51 -08:00
pengli 80471044f0 Fix typo and enhance description 2021-01-15 13:39:44 +08:00
Kubernetes Prow Robot 29963327b6 Merge pull request #26089 from kubernetes/dev-1.20-ko.2
Ko: Second Korean l10n work for release-1.20
2021-01-14 19:45:52 -08:00
Bob Killen 09cdaac0c8 Add Kubernetes project values to community page 2021-01-14 20:39:51 -05:00
Arhell d7a359c152 [fr] clean up too old comments for v1.9 or before in examples 2021-01-15 01:46:15 +02:00
Jordan Liggitt 8781aceb62 Clarify that nodes must be drained before minor version kubelet upgrades 2021-01-14 15:05:43 -05:00
Aldo Culquicondor bda3cea5a6 Remove indication that a failed scheduling attempt removes the Pod
/sig scheduling
2021-01-14 14:47:31 -05:00
Kubernetes Prow Robot d37ab8abaf Merge pull request #25839 from Marusyk/rmarusyk/25800
Add tooltip for CSI in persistent volume page
2021-01-14 11:25:32 -08:00
Kubernetes Prow Robot 826a91fe9a Merge pull request #26074 from Haleygo/issue-97929
upgrade cfssl installations
2021-01-14 11:20:56 -08:00
Kubernetes Prow Robot a5b0f7be9a Merge pull request #25597 from apelisse/clarify-preserve-unknown
Clarify compatibility guarantees around spec.preserveUnknownFields
2021-01-14 11:18:55 -08:00
Kubernetes Prow Robot 3deb4e28c6 Merge pull request #26094 from edwardrosen/patch-2
Adding a line break in a list to resolve a run-on sentence (rbac.md)
2021-01-14 11:16:55 -08:00
Antoine Pelisse fb1a0ca2e2 Address feedback 2021-01-14 10:54:51 -08:00
Kubernetes Prow Robot 14f7e5dab6 Merge pull request #25602 from seokho-son/master
Enhance diff_l10n_branches script output
2021-01-14 10:13:05 -08:00
Edward Rosen 08fe76be1a Update rbac.md 2021-01-14 09:50:57 -05:00
Kubernetes Prow Robot cff3f17dfd Merge pull request #25850 from yoonian/master-sig-docs-ko-reviewers-add
Add a Korean l10n reviewer to OWNERS_ALIASES
2021-01-14 06:21:04 -08:00
M. Habib Rosyad 1511ed353f Completing glossary translation for Bahasa
Updated:
- kube-controller-manager
- kube-scheduler
- kubectl
- kubelet

New:
- kube-proxy

Renamed:
- kuantitas > quantity
2021-01-14 21:09:41 +07:00
Kubernetes Prow Robot 4776608f4b Merge pull request #26088 from saschagrunert/cri-o-docs
Update CRI-O docs to the latest configuration
2021-01-14 06:05:03 -08:00
Anastas Dancha 8589a9c76a Update cheatsheet.md
- improve on [pr #26053](https://github.com/kubernetes/website/pull/26053)
- use idiomatic secret name in example
2021-01-14 16:12:53 +03:00
Sascha Grunert ff9bcd4d42 Update CRI-O docs to the latest configuration
This patch updates the CRI-O documentation to the latest available
version. It also adds a dedicated cgroup driver section to mention that
the configuration has to be in sync.

Signed-off-by: Sascha Grunert <sgrunert@suse.com>
2021-01-14 14:10:46 +01:00
Kubernetes Prow Robot 73215bab5a Merge pull request #24840 from zhanw15/patch-5
Update uk translation in README-uk.md
2021-01-14 05:01:03 -08:00
seokho-son bfd90bff5f Ko: Second Korean l10n work for release-1.20
- Update outdated files in the dev-1.20-ko.2(p1) (#25915)
- Update outdated files in the dev-1.20-ko.2(p2) (#25916)
- Fix issue with links to already translated ko documents (#25991)
- Translate reference/glossary/dynamic-volume-provisioning.md in Korean (#26047)

Co-authored-by: seokho-son <shsongist@gmail.com>
Co-authored-by: Jerry Park <jaehwa@gmail.com>
Co-authored-by: santachopa <santachopa@naver.com>
2021-01-14 18:12:20 +09:00
Qiming Teng a11047c153 Clean PodPreset docs, examples and links 2021-01-14 13:26:29 +08:00
Kubernetes Prow Robot a773e51b64 Merge pull request #26030 from tengqm/zh-resync-workloads
[zh] Resync concepts/workloads/_index.md
2021-01-13 19:09:03 -08:00
Haleygo 14bcdc0bc7 only change en 2021-01-14 09:50:00 +08:00
Leonardo Murillo f7b29716fd Enhancements in clarity to access-application-cluster/connecting-frontend-backend.md (#25927)
* Enhancements in clarity to docs/tasks/access-application-cluster/connecting-frontend-backend.md

* Code review comments

* Reverting name of service due to backed value in Dockerimage
2021-01-13 17:47:03 -08:00
Kubernetes Prow Robot ee4af3155c Merge pull request #26085 from Arhell/upd
[zh] clean up too old comments for v1.9 or before in examples
2021-01-13 17:45:03 -08:00
Kubernetes Prow Robot 6f0ac8755e Merge pull request #26040 from tengqm/fix-kustomization
Fix examples in kustomization
2021-01-13 17:43:03 -08:00
Kubernetes Prow Robot c15e567507 Merge pull request #26038 from outofmem0ry/fix-containerd-all
Fix containerd config instructions
2021-01-13 17:27:03 -08:00
Kubernetes Prow Robot 06bd14aad5 Merge pull request #26082 from natereid72/patch-1
Update service.md, change 'master' to 'control plane'
2021-01-13 17:25:03 -08:00
Arhell 1b371ec2d6 [zh] clean up too old comments for v1.9 or before in examples 2021-01-14 03:02:31 +02:00
Nate Reid efc3c488ea Update service.md 2021-01-13 17:04:26 -05:00
outofmem0ry f4f2c74db9 Fix containerd config instructions
modified:   content/en/docs/setup/production-environment/container-runtimes.md
	modified:   content/ko/docs/setup/production-environment/container-runtimes.md
	modified:   content/zh/docs/setup/production-environment/container-runtimes.md
	modified:   content/id/docs/setup/production-environment/container-runtimes.md
	modified:   content/ja/docs/setup/production-environment/container-runtimes.md
	modified:   content/zh/docs/setup/production-environment/container-runtimes.md

modified:   content/id/docs/setup/production-environment/container-runtimes.md
modified:   content/ja/docs/setup/production-environment/container-runtimes.md
modified:   content/zh/docs/setup/production-environment/container-runtimes.md
2021-01-13 11:53:49 -08:00
Kubernetes Prow Robot 33c494c4b2 Merge pull request #25613 from pingtimeout/patch-1
Clarify pod anti-affinity description
2021-01-13 10:16:36 -08:00
Kubernetes Prow Robot 52897eda23 Merge pull request #25377 from squarebracket/patch-1
Fix minor typo
2021-01-13 10:08:37 -08:00
Kubernetes Prow Robot a422f01f3f Merge pull request #26053 from anapsix/patch-2
Update cheatsheet.md
2021-01-13 09:44:36 -08:00
Kubernetes Prow Robot 7cf35541f7 Merge pull request #26066 from kbhawkey/remove-latest-version-shortcode
add docs for version shortcodes
2021-01-13 09:00:36 -08:00
Kubernetes Prow Robot e8d69658f4 Merge pull request #26049 from tengqm/zh-resync-assign-pod
[zh] Resync concepts/scheduling-eviction/assign-pod-node.md
2021-01-13 02:24:35 -08:00
Kubernetes Prow Robot a9d4de4c88 Merge pull request #26072 from yuandongx/patch-26
[zh]Urls is incorrect. File: "tasks/administer-cluster/network-policy-provider/cilium-network-policy/"
2021-01-12 23:16:35 -08:00
Kubernetes Prow Robot ea765a8f84 Merge pull request #26075 from yuandongx/patch-27
[zh]Url of minikube is incorrect in task-tutorial-prereqs.md
2021-01-12 23:12:36 -08:00
yuandongx 6e289bd4a7 url of minikube is incorrect in task-tutorial-prereqs.md
Signed-off-by: yuandongx <786018072@qq.com>
2021-01-13 14:47:30 +08:00
yuandongx 0046b7fa87 Urls in correct.
Signed-off-by: yuandongx <786018072@qq.com>
2021-01-13 11:39:16 +08:00
Kubernetes Prow Robot f88bc8781d Merge pull request #26023 from oke-py/remove-old-comment
clean up too old comments for v1.9 or before in examples
2021-01-12 19:34:35 -08:00
Kubernetes Prow Robot 756c16a5e3 Merge pull request #26071 from yuandongx/patch-25
[zh] "tools/install-kubectl": some are incorrect and some is outdate.
2021-01-12 19:14:35 -08:00
Kubernetes Prow Robot fb73c842ac Merge pull request #26067 from Arhell/upd
[zh] update pod-lifecycle.md
2021-01-12 19:12:36 -08:00
yuandongx 024e3c0f6b some are incorrect and some is outdate. 2021-01-13 09:47:58 +08:00
Kubernetes Prow Robot 0221ce53d2 Merge pull request #26070 from vincent-pli/fix-typo
Fix typo
2021-01-12 17:18:35 -08:00
Kubernetes Prow Robot 3df0331a9e Merge pull request #26058 from yuandongx/patch-24
[zh] Minikube urls miss. Some lines are outdate.
2021-01-12 17:06:36 -08:00
pengli 33ecc0c095 fix typo 2021-01-13 09:01:12 +08:00
Oliver L Schoenborn c398ae4821 Update content/en/docs/tasks/configure-pod-container/configure-pod-configmap.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-01-12 19:57:21 -05:00
Kubernetes Prow Robot 2135ed8002 Merge pull request #25856 from edwardrosen/patch-1
Update rbac.md
2021-01-12 16:00:36 -08:00
Arhell ce6a73de17 [zh] update pod-lifecycle.md 2021-01-13 01:08:30 +02:00
Kubernetes Prow Robot c898b79f4d Merge pull request #25325 from RA489/update_intro
Update hello minikube tutorial intro page
2021-01-12 14:26:36 -08:00
Karen Bradshaw 0166a0b08e add docs for version shortcodes 2021-01-12 17:20:33 -05:00
Margo Crawford 5accf8f128 Rewording of paragraph about provideClusterInfo key
Signed-off-by: Margo Crawford <margaretc@vmware.com>
2021-01-12 13:51:15 -08:00
Edward Rosen a37b8a9fee Update rbac.md
I've deleted the line break. The example in line 89 now seems to render ok in the preview. Could you please take a look?
2021-01-12 15:22:39 -05:00
Taylor Chaparro 535743edbe Update cheatsheet: add section for interacting with Deployments and Services 2021-01-12 12:19:40 -08:00
Kubernetes Prow Robot 28b393032b Merge pull request #24995 from PrakherS/patch-1
Update pod-lifecycle.md
2021-01-12 11:42:35 -08:00
Kubernetes Prow Robot da5ab5538d Merge pull request #25966 from Marusyk/Marusyk-patch-1
Clean up too old content from Using Admission Controllers page
2021-01-12 11:12:35 -08:00
Kubernetes Prow Robot 466de5e75a Merge pull request #25337 from smashse/patch-2
Update docker-cli-to-kubectl.md
2021-01-12 11:10:38 -08:00
Kubernetes Prow Robot 84e248a91b Merge pull request #24648 from neha-viswanathan/23909-short-link
short link for k8s cheat sheet
2021-01-12 10:50:35 -08:00
Kubernetes Prow Robot a73ff12738 Merge pull request #24853 from k0tl/patch-1
fix typo
2021-01-12 10:08:36 -08:00
Kubernetes Prow Robot 490f1ea10f Merge pull request #25764 from pacoxu/patch-2
add notes for that strategic merge patch is unsupported for CR
2021-01-12 10:02:36 -08:00
Kubernetes Prow Robot b3cd3649fe Merge pull request #25490 from mysunshine92/update-feature-gates-TopologyManager
Update feature-gates description for TopologyManager
2021-01-12 10:00:36 -08:00
Kubernetes Prow Robot 0e8e614caa Merge pull request #25483 from yue9944882/apf-slack-channel
References api-priority-and-fairness slack channel in the docs
2021-01-12 09:58:36 -08:00
Kubernetes Prow Robot d70d1f6806 Merge pull request #25242 from stefanpetter/patch-1
Added step to create /etc/docker/ folder in Ubuntu instruction
2021-01-12 09:56:36 -08:00
Kubernetes Prow Robot 0b52aec1ae Merge pull request #24986 from Cweiping/feature/add_note_for_termnating
Clarify pod phase Terminating
2021-01-12 09:54:35 -08:00
Kubernetes Prow Robot bda76049d8 Merge pull request #24957 from aojea/nodelocaldnsipv6
expand nodelocaldns docs with IPv6
2021-01-12 09:50:36 -08:00
kosehy@gmail.com 49860c5a3d Translate this doc into Japanese
Update content/ja/docs/reference/command-line-tools-reference/kubelet-authentication-authorization.md

applied kakts' feedback
applied nasa9084's feedback

Co-authored-by: kakts, nasa9084
2021-01-12 21:24:58 +09:00
Kubernetes Prow Robot eecf1c47e1 Merge pull request #25549 from tomkivlin/patch-1
Tidy list of generators for “kubectl create”
2021-01-12 03:58:25 -08:00
yuandongx 9a33c75920 url miss. some lines are outdate.
Signed-off-by: yuandongx <786018072@qq.com>
2021-01-12 16:15:20 +08:00
Kubernetes Prow Robot 16b0f46744 Merge pull request #26010 from hase1128/manage-resources-containers
Update Japanese localization on concepts/configuration/manage-resourc…
2021-01-12 00:08:25 -08:00
Tom Kivlin f095cf3ecf update resource terms to CamelCase
where a resource is mentioned in the description, use CamelCase.
2021-01-12 08:03:14 +00:00
caodonghui 088f0d8bb2 fix /zh/docs/setup/learning-environment/ 2021-01-12 15:49:02 +08:00
Paco Xu ea69888c16 add notes for that strategic merge patch is unsupported for Custom Resource objects
Signed-off-by: pacoxu <paco.xu@daocloud.io>
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2021-01-12 14:18:23 +08:00
CKchen0726 c6f6fb9a3e Revise the page to accurately document the well-known labels, annotations and taints. 2021-01-12 13:59:25 +08:00
Kubernetes Prow Robot e53ca2f6ee Merge pull request #25791 from rjain21/patch-2
Update overview.md
2021-01-11 18:40:25 -08:00
Kubernetes Prow Robot 73c3fc9173 Merge pull request #26044 from tengqm/zh-resync-deployment
[zh] Resync concepts/workloads/controllers/deployment.md
2021-01-11 18:06:25 -08:00
Kubernetes Prow Robot 8d3dcf5fd0 Merge pull request #26054 from Arhell/fix-typo
[zh] fix some typo
2021-01-11 17:06:25 -08:00
Rajesh Jain dba227ea41 Update overview.md
As suggested, removed the language related to common vernacular. I think the documentation is well written in the common labels section, and can possibly be enhanced as more and more of these labels are implemented. So, just a link in the best practice section is sufficient as suggested by you.
2021-01-11 16:12:37 -08:00
Ron Green ce86bac08f fix(advanced-scheduling): space fixes
as the CKA requires taking these code snippets and using them quickly, spaces can be an issue

add two spaces to begin of line to make pod spec copying even faster (if this is the case)
2021-01-12 01:26:29 +02:00
Arhell 5a9fc4ebcf [zh] fix some typo 2021-01-12 00:16:48 +02:00
Kubernetes Prow Robot 852024cffd Merge pull request #25777 from philiplee13/updated-readme-#25646
Update README.md #25646
2021-01-11 12:38:25 -08:00
Kubernetes Prow Robot 8b86f5f172 Merge pull request #25985 from ajaygm/patch-1
Fixed deprecated delete cascade 'false' value
2021-01-11 10:26:24 -08:00
Kubernetes Prow Robot f5c6049168 Merge pull request #25899 from ydFu/patch-1
Fix some typo in runtime-class.md
2021-01-11 10:20:25 -08:00
Charly Rippenkroeger 7347a9d008 Remove code reference
Remove reference in favor of https://github.com/kubernetes/website/issues/23889
2021-01-11 11:57:32 -06:00
Kubernetes Prow Robot 8fb9c90efb Merge pull request #25950 from saintmalik/patch-1
Fix broken url in docs
2021-01-11 09:46:25 -08:00
Kubernetes Prow Robot 55d19775fc Merge pull request #26003 from baczus/network_plugins/summary
Network Plugins: Add missing plugin to the summary section
2021-01-11 09:38:25 -08:00
Kubernetes Prow Robot 1b6cffe177 Merge pull request #26017 from andrzejsydor/patch-3
Update cheatsheet.md (Add --sort-by option for `top` command)
2021-01-11 09:32:25 -08:00
Anastas Dancha 4076cf0b0b Update cheatsheet.md
adding example for decoding secret ".data" without relying on external CLI tools
2021-01-11 19:34:31 +03:00
Kubernetes Prow Robot 3dcf56738e Merge pull request #26043 from tengqm/zh-sync-crd-1
[zh] Resync tasks/extend-kubernetes/custom-resources/custom-resource-definitions.md
2021-01-11 04:25:07 -08:00
Kubernetes Prow Robot a449472331 Merge pull request #26042 from tengqm/zh-sync-container-runtimes
[zh] Resync setup/production-environment/container-runtimes.md
2021-01-11 04:23:08 -08:00
Kubernetes Prow Robot 73c462a5b4 Merge pull request #26033 from tengqm/zh-sync-secret
[zh] Resync concepts/configuration/secret.md
2021-01-11 04:21:07 -08:00
Kubernetes Prow Robot 7963be65df Merge pull request #26029 from tengqm/zh-resync-flowcontrol
[zh] Resync concepts/cluster-administration/flow-control.md
2021-01-11 04:17:07 -08:00
Kubernetes Prow Robot faf22d3689 Merge pull request #26028 from tengqm/zh-volume-links
[zh] Fix links in persistent-volumes page
2021-01-11 04:15:07 -08:00
Kubernetes Prow Robot e3d878f1a1 Merge pull request #26021 from tengqm/fix25960
[zh] fix volume mount path
2021-01-11 01:47:07 -08:00
Kubernetes Prow Robot 5d8aabd561 Merge pull request #26046 from CaoDonghui123/fix-url-1
[zh] Incorrect url
2021-01-11 00:15:06 -08:00
caodonghui 495d6859d0 [zh] Incorrect url 2021-01-11 16:01:40 +08:00
Qiming Teng 8c834f22c0 Resync concepts/scheduling-eviction/assign-pod-node.md 2021-01-11 15:18:08 +08:00
Qiming Teng e0b1ba3ef1 Normalize current translation 2021-01-11 14:54:20 +08:00
Qiming Teng 028396366f [zh] Resync concepts/cluster-administration/system-metrics.md 2021-01-11 14:23:11 +08:00
Qiming Teng 10fccce49a [zh] Resync concepts/cluster-administration/flow-control.md 2021-01-11 10:45:38 +08:00
Kubernetes Prow Robot c04aa189f3 Merge pull request #25994 from sniperking1234/patch-1
[zh] Update admission-controllers.md
2021-01-10 18:43:06 -08:00
Kubernetes Prow Robot f00fd44ad2 Merge pull request #25892 from howieyuen/rbac
[zh] sync rbac.md
2021-01-10 18:41:06 -08:00
Qiming Teng d5a6266785 [zh] Resync concepts/workloads/controllers/deployment.md 2021-01-11 10:33:29 +08:00
Qiming Teng b40f3649ec [zh] Resync tasks/extend-kubernetes/custom-resources/custom-resource-definitions.md 2021-01-11 10:16:49 +08:00
chen zhengwei dd14fe68bb [zh] Update admission-controllers.md
Fix statement order problem.

Update admission-controllers.md

Update admission-controllers.md

Sync admission-controllers.md

Update content/zh/docs/reference/access-authn-authz/admission-controllers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/docs/reference/access-authn-authz/admission-controllers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/docs/reference/access-authn-authz/admission-controllers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/docs/reference/access-authn-authz/admission-controllers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update admission-controllers.md

Update content/zh/docs/reference/access-authn-authz/admission-controllers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/docs/reference/access-authn-authz/admission-controllers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update title
2021-01-11 10:03:32 +08:00
Qiming Teng fd12858bdc [zh] Resync setup/production-environment/container-runtimes.md 2021-01-11 09:55:25 +08:00
Qiming Teng 2879377f15 Fix examples in kustomization 2021-01-11 09:31:50 +08:00
Qiming Teng 9845d4e7a3 Fix typo in kustomization example 2021-01-11 09:31:12 +08:00
Wen Ming ea55456454 Merge branch 'master' into patch-1 2021-01-11 09:00:07 +08:00
Kubernetes Prow Robot 4b99762adb Merge pull request #26032 from tengqm/fix-pv-typo
Fix a typo in persistent volumes pages
2021-01-10 09:55:05 -08:00
Kubernetes Prow Robot 69492be056 Merge pull request #26008 from taiju/patch-1
fix typo
2021-01-10 06:43:06 -08:00
Kubernetes Prow Robot 0f7be508fc Merge pull request #25183 from lethe2211/reference/kubectl/jsonpath
Translate reference/kubectl/jsonpath/ into Japanese
2021-01-10 06:27:06 -08:00
Qiming Teng 84cce5b0c6 [zh] Resync concepts/workloads/_index.md 2021-01-10 16:20:15 +08:00
Qiming Teng a88a70492f [zh] Resync concepts/services-networking/ingress-controllers.md 2021-01-10 15:45:50 +08:00
Qiming Teng 3173093b96 Fix a typo in persistent volumes pages 2021-01-10 15:24:51 +08:00
Qiming Teng 91b81ba347 [zh] Resync concepts/configuration/secret.md 2021-01-10 15:24:01 +08:00
Qiming Teng 021686ddc3 [zh] Fix links in persistent-volumes page 2021-01-10 14:58:50 +08:00
xiaoping 929bfc95fa Update deployment.md
fix error translation
2021-01-10 13:27:46 +08:00
philiplee13 090678a076 Update README.md 2021-01-09 20:10:11 -08:00
Kubernetes Prow Robot 01c70fd42f Merge pull request #26025 from Arhell/upd
[zh] fixed link to configuring cgroup driver on control-plane node
2021-01-09 17:35:05 -08:00
Arhell 4e0747d620 [zh] fixed link to configuring cgroup driver on control-plane node 2021-01-10 00:29:49 +02:00
Kubernetes Prow Robot 3a5d246bcf Merge pull request #25822 from peymanslh/cotainerd_deb
Add containerd installation on Debian
2021-01-09 07:01:05 -08:00
Kubernetes Prow Robot ebc5a71c51 Merge pull request #24959 from shubhamavi/patch-1
Adding AKO (Avi Kubernetes Operator) to the list of ingress controllers
2021-01-09 04:03:05 -08:00
Naoki Oketani f5f40c16f9 clean up too old comments for v1.9 or before in examples 2021-01-09 16:13:00 +09:00
Wen Ming ad119319cc Update ingress-controllers.md
add Apache APISIX ingress controller
2021-01-09 14:39:47 +08:00
Kubernetes Prow Robot 6b62a4d2f5 Merge pull request #25973 from yuandongx/patch-15
[zh] "/zh/docs/tutorials/stateless-application/expose-external-ip-address" page is outdate.
2021-01-08 22:25:05 -08:00
Qiming Teng d7d0131e12 [zh] fix volume mount path 2021-01-09 13:20:49 +08:00
ydFu 7eb46bb8c6 Document kubeadm for RHEL 8
* Add forward compatibility  RHEL / CentOS to the list of supported platforms.
2021-01-09 12:17:25 +08:00
ydFu 1b70e98626 Add the code blocks in authorization.md
* Add the code blocks in the Markdown spec to make it easy to read.

* Add description that distinguish between **command** and **output** make it easy to read.

* Adjust description in Kubernetes components for smoother reading.

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-09 11:57:24 +08:00
Charly Rippenkroeger e72ec8fbd0 Update misleading documentation
Update misleading information that HTTPS is required and link to self-documented code to find more edge-case configuration options
2021-01-08 13:40:07 -06:00
andrzejsydor 1537aa20a2 Update cheatsheet.md (Add --sort-by option for top command)
Update cheatsheet.md (Add --sort-by option for `top` command)
2021-01-08 20:18:56 +01:00
Edward Rosen 284d725ee0 Update rbac.md
I added a <br> after the end of the third bullet and backed out all of the other changes I suggested in the original pull request. I think this better matches the author's original intent. The only difference now between what's currently published and this edit is the line break coded after the third bullet.
2021-01-08 14:10:01 -05:00
Kubernetes Prow Robot a66af45c21 Merge pull request #25871 from ydFu/patch-1
Add content in init-containers.md
2021-01-08 10:02:29 -08:00
Chintan Thakker a0b3e72851 Update EnRoute entry 2021-01-08 09:08:32 -08:00
Kubernetes Prow Robot 8260261d9e Merge pull request #25567 from lostsquirrel/patch-8
Add missing word
2021-01-08 07:32:54 -08:00
Ader 177a1318ed Fix some typo in runtime-class.md .
Uniform case and adjustment description for smoother writing.

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-08 20:02:10 +08:00
Kubernetes Prow Robot a2eba31302 Merge pull request #26012 from yuandongx/patch-22
[zh] snapshot.storage.k8s.io/v1beta1 --> apiVersion: snapshot.storage.k8s.io/v1
2021-01-08 02:34:54 -08:00
Kubernetes Prow Robot 257c219b51 Merge pull request #26011 from yuandongx/patch-21
[zh] Ymal blocks miss 'yaml'
2021-01-08 02:32:54 -08:00
yuandongx 4d18628316 snapshot.storage.k8s.io/v1beta1 --> apiVersion: snapshot.storage.k8s.io/v1
Signed-off-by: yuandongx <yuandongx@126.com>
2021-01-08 07:52:44 +00:00
yuandongx 4a4aaf866a Ymal blocks miss 'yaml'
Signed-off-by: yuandongx <yuandongx@126.com>
2021-01-08 06:29:45 +00:00
Ajay 27ceb5928a rephrased as suggested by tengqm
Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2021-01-08 11:48:48 +05:30
Kubernetes Prow Robot 6c8cd1872b Merge pull request #26009 from fenggw-fnst/work
Fix typo
2021-01-07 22:00:53 -08:00
Kubernetes Prow Robot 080e74cf08 Merge pull request #26005 from yuandongx/patch-19
[zh] sync content/zh/docs/concepts/workloads/pods/pod-topology-spread-constraints.md
2021-01-07 21:58:53 -08:00
HIGASHI Taiju df5edcf028 fix typo 2021-01-08 14:56:24 +09:00
Kubernetes Prow Robot 7a9134193f Merge pull request #26007 from yuandongx/patch-20
[zh] fix init container status describe fault
2021-01-07 21:48:53 -08:00
Jin Hase f3b849cdde Update Japanese localization on concepts/configuration/manage-resources-containers.md 2021-01-08 14:38:27 +09:00
Guangwen Feng 3ec2a6d5aa Fix typo
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2021-01-08 13:23:32 +08:00
yuandongx 18e7b90763 fix init container status describe fault
Signed-off-by: yuandongx <yuandongx@126.com>
2021-01-08 03:54:51 +00:00
Kubernetes Prow Robot 253d6ab66d Merge pull request #25575 from timosmit/patch-1
Fixed link to configuring cgroup driver on control-plane node
2021-01-07 18:55:55 -08:00
Kubernetes Prow Robot 797ceee889 Merge pull request #25995 from ansd/fix-debug-pod-name
Fix pod name
2021-01-07 18:26:53 -08:00
Kubernetes Prow Robot e1f4f0784a Merge pull request #25809 from yuandongx/patch-8
[zh] sync /reference/using-api/_index.md
2021-01-07 18:24:53 -08:00
Jailton Lopes c32685a23d Update README-pt.md 2021-01-07 23:22:17 -03:00
yuandongx 6eeb41f68f feature-state version number is outdate and some lines are missing.
Signed-off-by: yuandongx <yuandongx@126.com>
2021-01-08 02:11:37 +00:00
Ajay 0be35d69dd Update garbage-collection.md 2021-01-08 07:37:03 +05:30
Kubernetes Prow Robot 6a7b3019f2 Merge pull request #25989 from yuandongx/patch-18
[zh] sync en.
2021-01-07 17:48:53 -08:00
Kubernetes Prow Robot c0ad64e443 Merge pull request #26004 from Arhell/upd
[zh] fix typo for clarity
2021-01-07 16:58:53 -08:00
Arhell c231dfcf69 [zh] fix typo for clarity 2021-01-08 01:52:03 +02:00
baczus 9831c0080f Add missing plugin to the summary section 2021-01-07 23:11:32 +01:00
Kubernetes Prow Robot 89e11bc21f Merge pull request #25682 from EricMountain/patch-1
Scheduling plugins: fix typo for clarity
2021-01-07 13:20:52 -08:00
Kubernetes Prow Robot c403c99ed5 Merge pull request #25934 from Cweiping/feature/upgrade_kubelet_eviction_hard_flags_of_inodeFree
upgrade kubelet --eviction-hard default inodeFree
2021-01-07 11:40:53 -08:00
Kubernetes Prow Robot 607020798d Merge pull request #25462 from bl-ue/patch-3
Update grammar in Docker deprecation blog posts
2021-01-07 11:02:53 -08:00
Kubernetes Prow Robot 113d80e6c1 Merge pull request #25763 from mrbobbytables/update-blog-owners
Update blog team reviewers
2021-01-07 10:50:53 -08:00
Kubernetes Prow Robot 6b9a8afe88 Merge pull request #25999 from oke-py/25993
Fix a broken link in pod-overhead.md
2021-01-07 09:28:41 -08:00
Kubernetes Prow Robot 20afe7fbd3 Merge pull request #25769 from sftim/20201222_data_driven_announcements
Implement announcements as data-driven content
2021-01-07 09:07:58 -08:00
hikkie3110 a9afaba52c update nodes.md for v1.18 2021-01-08 00:34:50 +09:00
Kubernetes Prow Robot 02c26ab5fa Merge pull request #25489 from RA489/kubeadm_inst
Update kubeadm install page
2021-01-07 06:27:46 -08:00
Naoki Oketani e1f2ddd4f8 Fix a broken link in pod-overhead.md 2021-01-07 23:09:04 +09:00
Tim Bannister 0b6280f43e Require steering committee approval for announcement changes 2021-01-07 13:52:10 +00:00
Tim Bannister db4f1d5844 Remove legacy announcement config 2021-01-07 13:51:58 +00:00
Kubernetes Prow Robot 794eb866f2 Merge pull request #25855 from femrtnz/deploy-app
Add content/pt/docs/tutorials/kubernetes-basics/deploy-app
2021-01-07 04:37:45 -08:00
Kubernetes Prow Robot 97489f7c62 Merge pull request #25863 from npu21/conduct_es
Use https for link to contributor covenant
2021-01-07 03:29:45 -08:00
Konrad Delong 3d23d1799b fixes explanation for --[hpa]-stabilization
The current explanation is misleading (for example: for consistently decreasing resource usage, the HPA stabilization does not impact the frequency of its actuation). This has confused users recently ( https://github.com/kubernetes/kubernetes/issues/96671 )
2021-01-07 10:40:49 +01:00
David Ansari fc159daa17 Fix pod name 2021-01-07 10:29:58 +01:00
Tim Bannister c02410db24 Move announcement styles into Sass 2021-01-07 08:44:16 +00:00
Tim Bannister 20d8b28e1b Implement announcements as data-driven content
This change allows announcements to have an expiry date and / or a
“do not show until” date.
Separating this out also leaves room for future changes to enforce
a set of approvers.

Co-Authored-By: Karen Bradshaw <kbhawkey@gmail.com>
2021-01-07 08:44:16 +00:00
yuandongx 04c9977369 update 2021-01-07 07:56:37 +00:00
Weiping Cai 7c5709242b upgrade kubelet --eviction-hard default inodeFree
Signed-off-by: Weiping Cai <weiping.cai@daocloud.io>
2021-01-07 15:35:02 +08:00
Kubernetes Prow Robot 65e4bede91 Merge pull request #25987 from yuandongx/patch-16
[zh] Url is incorrect.
2021-01-06 22:55:45 -08:00
Kubernetes Prow Robot 2752d306c1 Merge pull request #25988 from yuandongx/patch-17
[zh] Yaml blocks miss 'yaml'.
2021-01-06 22:51:45 -08:00
Kubernetes Prow Robot 1a2b96ad71 Merge pull request #25992 from fenggw-fnst/work
Fix typo
2021-01-06 22:49:45 -08:00
Guangwen Feng 1e2afdf6f7 Fix typo
Signed-off-by: Guangwen Feng <fenggw-fnst@cn.fujitsu.com>
2021-01-07 14:25:55 +08:00
yuandongx 80793015ff sync en 2021-01-07 03:32:51 +00:00
yuandongx 4675779b40 block yaml. 2021-01-07 03:10:35 +00:00
yuandongx deafec9f78 Url is incorrect. 2021-01-07 03:05:31 +00:00
Oliver L Schoenborn 26300785f5 Clarify binaryData handling by kubectl create and describe 2021-01-06 21:33:07 -05:00
Ajay c15a08afd1 Fixed deprecated delete cascade 'false' value
`kubectl delete --cascade=false` is now deprecated in favor of `kubectl delete --cascade=orphan`
2021-01-07 07:45:11 +05:30
Kubernetes Prow Robot 42f7ec3ab4 Merge pull request #25980 from Arhell/correct
[zh] corrected instance of WordPress written incorrectly
2021-01-06 17:41:45 -08:00
Arhell 695ad01aa4 [zh] corrected instance of WordPress written incorrectly 2021-01-07 00:47:54 +02:00
Felipe 21f44e4ada Update content/pt/docs/tutorials/kubernetes-basics/deploy-app/deploy-intro.html
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-01-06 20:26:45 +00:00
Felipe 4875681eac Update content/pt/docs/tutorials/kubernetes-basics/deploy-app/deploy-intro.html
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-01-06 20:25:55 +00:00
Felipe f8f36037f2 Update content/pt/docs/tutorials/kubernetes-basics/_index.html
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-01-06 20:25:42 +00:00
Felipe 9e066c319e Update content/pt/docs/tutorials/kubernetes-basics/_index.html
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-01-06 20:25:30 +00:00
Felipe f7789ce79b Update content/pt/docs/tutorials/kubernetes-basics/_index.html
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-01-06 20:25:18 +00:00
Felipe c59c53d9f4 Update content/pt/docs/tutorials/kubernetes-basics/_index.html
Co-authored-by: Diego W. Antunes <devlware@gmail.com>
2021-01-06 20:25:08 +00:00
SaintMalik f5b9d5dafe Update disruptions.md 2021-01-06 19:59:02 +01:00
Kubernetes Prow Robot 8fea26ecba Merge pull request #25969 from ydFu/add-code-blocks-in-configure-service-account
Add Code blocks in configure-service-account.md
2021-01-06 07:37:52 -08:00
Kubernetes Prow Robot d897a03b38 Merge pull request #25965 from NillsF/patch-1
Network Policy: Add clarity about egress/ingress combination
2021-01-06 04:51:51 -08:00
Kubernetes Prow Robot e2a9a56b3e Merge pull request #25843 from jialaijun/update_glossary
update the markdown file in the glossary directory for Chinese version.
2021-01-06 00:01:51 -08:00
Kubernetes Prow Robot 54cb8f678a Merge pull request #25970 from yuandongx/patch-14
[zh] Incorrect url.
2021-01-05 23:45:51 -08:00
jialaijun a96c5e5e63 update the markdown file in the glossary directory for Chinese version. 2021-01-06 14:31:19 +08:00
Kubernetes Prow Robot 6087c7c670 Merge pull request #25812 from tengqm/zh-sync-kubelet
[zh] Resync kubelet configuration
2021-01-05 22:13:51 -08:00
Shinjiro Sugita bf4c9676ea fix typo
L460: fix「ボリュームを追加するため、Podの定義の`.spec.volumes[]`以下をを書き換えます」→ 「ボリュームを追加するため、Podの定義の`.spec.volumes[]`以下を書き換えます」
2021-01-06 12:25:02 +09:00
ydFu 8a479c01e8 Add Code blocks in configure-service-account.md
* Add Code blocks in the Markdown spec to make it easy to read.

* Uniform case and adjustment description for smoother writing.

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-06 11:06:12 +08:00
Chintan Thakker 9c94fb01bc Add EnRoute as an option
EnRoute is an actively maintained API Gateway Ingress controller built on [Envoy Proxy](https://envoyproxy.io/community.html). It is an [OSS project](https://github.com/saarasio/enroute) that includes support for advanced rate-limiting in the [community edition](https://getenroute.io/features).
2021-01-05 18:20:49 -08:00
Kubernetes Prow Robot 661efe10f9 Merge pull request #25968 from Arhell/upd
[zh] update cheatsheet.md
2021-01-05 18:11:51 -08:00
yuandongx b48dfd7f15 Incorrect url redirect. 2021-01-06 01:38:17 +00:00
Kubernetes Prow Robot cd04ec78b2 Merge pull request #25951 from yuandongx/patch-13
[zh]The output is incorret.
2021-01-05 17:35:51 -08:00
Arhell d8d2c89bf3 [zh] update cheatsheet.md 2021-01-06 01:33:32 +02:00
Kubernetes Prow Robot 6a2a6398ed Merge pull request #25937 from pokerfaceSad/patch-1
Modify words that may cause ambiguity in device-plugins.md
2021-01-05 12:17:59 -08:00
Roman Marusyk 0245ad3aad Remove too old content 2021-01-05 20:57:13 +02:00
Nills Franssens 7277714c8f Add clarity about egress/ingress combination
In reference to https://github.com/kubernetes/kubernetes/issues/97489 

Add clarity in the documentation about the case of having an egress and ingress policy where one is blocking and the other is allowing.
2021-01-05 09:14:10 -08:00
Kubernetes Prow Robot 803400b7a1 Merge pull request #25771 from sftim/20201222_publish_site_automatically
Add automatic site deploys
2021-01-05 09:11:59 -08:00
Kubernetes Prow Robot c7f5615cac Merge pull request #25924 from Alpenbelieve/master
Fix the score value in docs/concepts/scheduling-eviction/resource-bin-packing.md
2021-01-05 08:25:59 -08:00
SaintMalik a7fd0c9ef7 Update disruptions.md 2021-01-05 16:53:58 +01:00
Kubernetes Prow Robot 34b84f9a7f Merge pull request #25948 from ydFu/add-code-blocks
Add Code blocks in limit-storage-consumption.md
2021-01-04 23:47:57 -08:00
yuandongx 9a80a9e361 output is incorret. 2021-01-05 04:36:22 +00:00
ydFu 8d50a4c4d7 Add Code blocks in limit-storage-consumption.md
* Add Code blocks in the Markdown spec to make it easy to read.

Signed-off-by: ydFu <ader.ydfu@gmail.com>
2021-01-05 11:58:16 +08:00
SaintMalik 49675afab8 Fix broken url in docs
## Summary

Easy navigation and easy reading for others
2021-01-05 04:47:39 +01:00
Kubernetes Prow Robot f8fd6d9bea Merge pull request #25931 from tengqm/patch-1
Update connect-applications-service.md
2021-01-04 17:29:58 -08:00
Kubernetes Prow Robot 4fa76e24df Merge pull request #25940 from ydFu/pr-2
Add content in replicationcontroller.md
2021-01-04 17:19:57 -08:00
Kubernetes Prow Robot 3dd4721e9c Merge pull request #25389 from sangam14/patch-1
Update cheatsheet.md
2021-01-04 17:17:57 -08:00
Kubernetes Prow Robot 281df0c16b Merge pull request #25896 from kylejep/patch-2
Update install-kubeadm.md
2021-01-04 17:15:57 -08:00
Kubernetes Prow Robot cfe5edfd31 Merge pull request #25895 from kylejep/patch-1
Update container-runtimes.md
2021-01-04 17:13:57 -08:00
Kubernetes Prow Robot 04f70fd84f Merge pull request #25946 from Arhell/upd
[zh] Cloud Controller Manager: fix a broken link
2021-01-04 17:01:57 -08:00
Arhell f0e7fc7162 [zh] Cloud Controller Manager: fix a broken link 2021-01-05 01:24:22 +02:00
Kubernetes Prow Robot 1ba6bf9a39 Merge pull request #25914 from oke-py/25748
Cloud Controller Manager: fix a broken link
2021-01-04 09:25:58 -08:00
Kubernetes Prow Robot c010c97a4f Merge pull request #25891 from ydFu/patch-2
Fix some typo in pod-overhead.md
2021-01-04 09:15:56 -08:00
XinYuan 41685331f3 Modify words that may cause ambiguity in device-plugins.md
The `/var/lib/kubelet/pod-resources/kubelet.sock` is required by device monitoring agent but not device plugin.
This word  `plugin` is ambiguous.

plugin -> device monitoring agent
2021-01-04 17:11:01 +08:00
Kubernetes Prow Robot e0904f8d40 Merge pull request #25932 from yuandongx/patch-2
[zh] Url is outdate ...
2021-01-03 23:47:55 -08:00
yuandongx 6de59b8d08 Url of the file move to anther... 2021-01-04 14:10:36 +08:00
howieyuen 5e2e2fffc2 fix htmt table format error 2021-01-04 14:08:48 +08:00
jialaijun bb9064bc85 update the markdown file in the glossary directory for Chinese version. 2021-01-04 11:15:30 +08:00
Qiming Teng 1602ec8ce2 Update connect-applications-service.md 2021-01-04 10:35:35 +08:00
Kubernetes Prow Robot 493069d2bf Merge pull request #25859 from npu21/init-container
fix init container status describe fault
2021-01-03 18:15:55 -08:00
Kubernetes Prow Robot a4cbcab9dd Merge pull request #25930 from yuandongx/patch-1
[zh] The version number is outdate.
2021-01-03 18:09:55 -08:00
yuandongx 413256b6b6 The version number is outdate. 2021-01-04 09:47:04 +08:00
Kubernetes Prow Robot 309eb96601 Merge pull request #25928 from Arhell/upd
[zh] fix feature gate for hugepage
2021-01-03 16:37:55 -08:00
Arhell 5f5a8a1720 [zh] fix feature gate for hugepage 2021-01-04 01:14:27 +02:00
Kubernetes Prow Robot be3245202a Merge pull request #25909 from jikunbupt/patch-1
Update namespaces.md
2021-01-03 04:29:54 -08:00
CDE 7fbf549ddc Update resource-bin-packing.md
The maximum value of score should be 10.
2021-01-03 19:31:23 +08:00
CDE 6122203b61 Update resource-bin-packing.md
The maximum score should be 10.
2021-01-03 19:26:09 +08:00
CDE fbd19bd65e Update resource-bin-packing.md
The maximum score should be 10.
2021-01-03 19:24:49 +08:00
slashr 976c260ef4 Modified description 2021-01-03 10:22:36 +05:30
slashr 34f1d1911c Replaced deprecated ReplicationController with JobController for reference 2021-01-03 00:26:17 +05:30
Naoki Oketani 89578d9146 Cloud Controller Manager: fix a broken link 2021-01-02 19:16:37 +09:00
jikunbupt c888beb2c0 Update namespaces.md
Kubernetes 会创建三个初始名字空间 --> Kubernetes 会创建四个初始名字空间
2021-01-02 11:54:18 +08:00
Kubernetes Prow Robot 85933681d0 Merge pull request #25906 from kubernetes/dev-1.20-ko.1
Ko: 1st Korean l10n work for release-1.20
2021-01-01 18:51:52 -08:00
Jerry Park 0ed380d4aa Ko: 1st Korean l10n work for release-1.20
- Translate reference/glossary/persistent-volume.md in Korean (#25474)
- Update outdated files in the dev-1.20-ko.1 branch (1) (#25576)
- Translate blog/dont-panic-kubernetes-and-docker into Korean (#25596)
- Update outdated files in the dev-1.20-ko.1 branch(3) (#25728)
- Ko: enhance tutorials//cluster-intro translation (#25754)
- Fix Outdated files in the dev-1.20-ko.1 branch (2) (#25765)

Co-authored-by: seokho-son <shsongist@gmail.com>
Co-authored-by: jmyung <jesang.myung@gmail.com>
Co-authored-by: Jerry Park <jaehwa@gmail.com>
Co-authored-by: santachopa <santachopa@naver.com>
Co-authored-by: SEUNGHYUN KO <kosehy@gmail.com>
Co-authored-by: June Yi <gochist@gmail.com>
2021-01-01 21:40:06 +09:00
Kubernetes Prow Robot 9e5076b37c Merge pull request #25880 from yuandongx/patch-12
[zh]Miss url and something is error.
2021-01-01 01:31:51 -08:00
Kubernetes Prow Robot 0963e4e117 Merge pull request #25897 from tanjunchen/remove-doc
zh:sync docs from en and delete the removed file
2020-12-31 17:13:51 -08:00
Kubernetes Prow Robot 40728c2fba Merge pull request #25844 from tengqm/fix-hugepage-gate
Fix feature gate for hugepage
2020-12-31 08:33:51 -08:00
tanjunchen 8d388747a4 zh:sync docs from en and delete the removed file 2020-12-31 08:33:50 -08:00
kylejep bf10334bfb Update install-kubeadm.md
Propose adding config reference to load br_netfilter at boot up to prevent issues with the module not being loaded after reboot.
2020-12-31 07:54:16 -08:00
kylejep 103311a5ad Update container-runtimes.md
I propose that by adding the modules to /etc/modules-load.d/ can help prevent issues with overlay and br_netfilter modules not loading after reboot.
2020-12-31 07:42:58 -08:00
Kubernetes Prow Robot 24279b2ad2 Merge pull request #25699 from seokho-son/dev-1.20-ko.1
Update release/notes 1.20 for Korean
2020-12-31 06:49:51 -08:00
Felipe Martinez 4517eeb9e7 Addressing PR comments 2020-12-31 14:32:55 +00:00
Ader 9558f9b78b Fix some typo in pod-overhead.md
Uniform case in pod-overhead.md(Kubelet → kubelet).
2020-12-31 17:21:41 +08:00
yuandongx d22e255dd6 miss url && something is outdate 2020-12-31 16:12:01 +08:00
Qiming Teng ad59de018d Wrap lines properly 2020-12-31 11:47:58 +08:00
Qiming Teng 89ecb8cfb6 Fix feature gate for hugepage
The text says "disable" because the gate is in Beta, but the example
says "enable". That is awkward.
2020-12-31 11:46:33 +08:00
Kubernetes Prow Robot 9ce0330154 Merge pull request #25882 from yuandongx/patch-14
[zh] Incorrect apiVersion.
2020-12-30 19:35:50 -08:00
Kubernetes Prow Robot 795b68db1e Merge pull request #25874 from morihaya/patch-http-probes
Add a default description to path of HTTP probes
2020-12-30 19:29:50 -08:00
yuandongx 21d86f2aa8 Incorrect apiVersion 2020-12-31 11:21:00 +08:00
Kubernetes Prow Robot 8676b48d8a Merge pull request #25881 from yuandongx/patch-13
[zh]Typo.
2020-12-30 19:19:50 -08:00
yuandongx 67e54d68aa typo 2020-12-31 02:50:33 +00:00
Kubernetes Prow Robot e15d776f5d Merge pull request #25868 from Aut0R3V/patch-4
Corrected instance of WordPress written incorrectly.
2020-12-30 10:31:49 -08:00
Kubernetes Prow Robot 9db733d9a0 Merge pull request #25873 from ydFu/patch-2
Add Code blocks in pod-topology-spread-constraints.md
2020-12-30 10:07:50 -08:00
Kubernetes Prow Robot 1f862d96bd Merge pull request #25756 from tengqm/improve-pod-overview
Update Pod overview
2020-12-30 09:57:49 -08:00
Kubernetes Prow Robot 1c385d6eee Merge pull request #25811 from tengqm/sync-kubelet
Resync kubelet configuration
2020-12-30 09:09:49 -08:00
Ader 053103dc4a Add Code blocks in pod-topology-spread-constraints.md
Add Code blocks in the Markdown spec to make it easy to read..
2020-12-30 20:57:11 +08:00
Ader 4ff57afdea Add content in init-containers.md
Add description to make it easy to read.
* Distinguish between 'command'and 'output'.
2020-12-30 20:43:57 +08:00
morihaya e57ff3eb52 Add a default description to path of HTTP probes 2020-12-30 21:36:08 +09:00
Kubernetes Prow Robot 5af14b42ac Merge pull request #25854 from femrtnz/crate-cluster
Add content/pt/docs/tutorials/kubernetes-basics/create-cluster
2020-12-30 04:09:49 -08:00
Kubernetes Prow Robot 23dba94338 Merge pull request #25869 from yuandongx/patch-11
[zh]  Incorrect "apiVersion" .
2020-12-30 02:37:48 -08:00
yuandongx 258f189e73 outdate 2020-12-30 09:49:17 +00:00
AUT0R3V c4b818c1f1 Update common-labels.md 2020-12-30 14:35:16 +05:30
Kubernetes Prow Robot 7cdf04a143 Merge pull request #25865 from npu21/conduct_de
Use https for link to contributor covenant
2020-12-30 00:57:49 -08:00
Kubernetes Prow Robot 32565053b2 Merge pull request #25864 from npu21/conduct_pt
Use https for link to contributor covenant
2020-12-30 00:41:49 -08:00
Zhang Yong eb47b6fe37 Use https for link to contributor covenant 2020-12-30 14:43:26 +08:00
Zhang Yong 6b03522212 Use https for link to contributor covenant 2020-12-30 14:30:44 +08:00
Zhang Yong fcf6030065 Use https for link to contributor covenant 2020-12-30 14:22:01 +08:00
Zhang Yong 8e10900834 fix init-Container status describe fault 2020-12-30 11:16:15 +08:00
Yong Zhang c5f094c048 Merge pull request #9 from kubernetes/master
merge
2020-12-30 10:47:19 +08:00
takaf04 ab34737c85 fix #link in deployment.md
Co-authored-by: nasa9084 <nasa9084@users.noreply.github.com>
2020-12-30 11:23:37 +09:00
Kubernetes Prow Robot 9d4d236299 Merge pull request #25858 from Arhell/upd-protocol
[zh] use https for link to contributor covenant
2020-12-29 18:17:48 -08:00
seokho-son 8f776e275d Enhance diff_l10n_branches script output 2020-12-30 10:14:48 +09:00
Arhell aced579ef1 [zh] use https for link to contributor covenant 2020-12-30 02:11:00 +02:00
Edward Rosen 95577c1fa5 Update rbac.md
The page renders the third bullet as a run-on sentence. I'm suggesting the example be placed in parentheses.
2020-12-29 16:20:54 -05:00
Felipe 399af08bba Update content/pt/docs/tutorials/kubernetes-basics/create-cluster/cluster-interactive.html
Co-authored-by: Jhon Mike <jhon.msdev@gmail.com>
2020-12-29 20:21:31 +00:00
Felipe Martinez 404323dfac Adding deploy app 2020-12-29 15:02:30 +00:00
Felipe Martinez b2e99114f0 Adding create cluster 2020-12-29 14:43:34 +00:00
Felipe Martinez 24ff728334 Adding kubernetes-basics/_index.html 2020-12-29 13:51:25 +00:00
Kubernetes Prow Robot 5744728ae4 Merge pull request #25801 from yuandongx/h-check
[zh]update health-checks.md.
2020-12-29 05:44:28 -08:00
Kubernetes Prow Robot 52e12f78e9 Merge pull request #25830 from yuandongx/patch-10
[zh]some things is outdate.
2020-12-29 04:56:28 -08:00
Kubernetes Prow Robot 2e29ec7844 Merge pull request #25848 from ica10888/patch-1
typo fix
2020-12-29 02:58:28 -08:00
PyungHo Yoon 04f75e4891 Add a Korean l10n reviewer to OWNERS_ALIASES 2020-12-29 18:58:20 +09:00
weihan f54fdecb65 typo fix 2020-12-29 17:24:22 +08:00
jialaijun c0efc3ef07 update the markdown file in the glossary directory for Chinese version. 2020-12-29 17:17:51 +08:00
seokho-son 1c2c75b2d8 Update release/notes 1.20 for Korean 2020-12-29 17:31:28 +09:00
Qiming Teng 709aabf204 [zh] Resync kubelet configuration
The kubelet reference was out-of-sync, and there have been some new
changes in 1.20. This PR does a fresh resync.
2020-12-29 14:36:45 +08:00
jialaijun f51174d518 update the markdown file in the glossary directory for Chinese version. 2020-12-29 11:29:17 +08:00
yixin21 173222fa60 Translate 2016-07-00-Bringing-End-To-End-Kubernetes-Testing-To-Azure-2.md (#25536)
* Create 2016-07-00-Bringing-End-To-End-Kubernetes-Testing-To-Azure-2.md

zh-trans 2016-07-00-Bringing-End-To-End-Kubernetes-Testing-To-Azure-2.md

* Update content/zh/blog/_posts/2016-07-00-Bringing-End-To-End-Kubernetes-Testing-To-Azure-2.md

* Update content/zh/blog/_posts/2016-07-00-Bringing-End-To-End-Kubernetes-Testing-To-Azure-2.md
2020-12-28 18:34:28 -08:00
Kubernetes Prow Robot 96a770c811 Merge pull request #25810 from mysunshine92/update-CronJob
zh-trans: update CronJob
2020-12-28 18:16:28 -08:00
jialaijun f74efa09ed update the markdown file in the glossary directory for Chinese version. 2020-12-29 10:06:12 +08:00
Ader abb825dd10 Add content in replicationcontroller.md
Add description to make it easy to read.
* Distinguish between 'command'and 'output'.
2020-12-29 09:34:03 +08:00
Kubernetes Prow Robot 5aeee62c2d Merge pull request #25773 from sftim/20201222_hugo_version_bump
Switch to Hugo v0.79.1
2020-12-28 17:28:28 -08:00
Roman Marusyk 37b5cb9e2a Add tooltip for CSI 2020-12-28 23:56:44 +02:00
Kubernetes Prow Robot c21a7ca829 Merge pull request #25838 from outofmem0ry/fix-containerd-1804
Fix configuring containerd on Ubuntu 18.04/20.04
2020-12-28 13:18:28 -08:00
outofmem0ry 599ec3adc9 Fix configuring containerd on Ubuntu 18.04/20.04 2020-12-28 13:01:41 -08:00
Kubernetes Prow Robot 8f9e08b877 Merge pull request #25836 from Arhell/upd
Use https for link to contributor covenant
2020-12-28 10:24:28 -08:00
Kubernetes Prow Robot 54878ed710 Merge pull request #25823 from rjain21/patch-3
Update rbac.md
2020-12-28 10:18:27 -08:00
Arhell b98c69d430 upgrade protocol from http to https 2020-12-28 20:09:06 +02:00
wangyamei 540d43d3b7 zh-trans: update CronJob 2020-12-28 21:33:57 +08:00
Kubernetes Prow Robot 8774350aea Merge pull request #25808 from shurup/patch-1
Syncing Russian README with the original
2020-12-28 05:20:27 -08:00
Kubernetes Prow Robot 8c79d9feee Merge pull request #25824 from ydFu/patch-1
Add content in job.md
2020-12-28 05:04:27 -08:00
jialaijun f5354c3210 update the markdown file in the glossary directory for Chinese version. 2020-12-28 19:00:26 +08:00
Peyman Salehi a9aa049103 Add containerd installation on Debian 9+
Add containerd installation on Debian

write docker keyring in a seprate file

Co-authored-by: Tim Bannister <tim@scalefactory.com>

edit comment

Co-authored-by: Tim Bannister <tim@scalefactory.com>

remove sudo

Co-authored-by: Tim Bannister <tim@scalefactory.com>
2020-12-28 13:21:51 +03:30
yuandongx 1962f7dae9 remove 'shell' form fence. 2020-12-28 08:31:21 +00:00
yuandongx 1f4b65209f update 2020-12-28 07:29:34 +00:00
Kubernetes Prow Robot d843f9253d Merge pull request #25750 from corvofeng/patch-1
Sync with the English version.
2020-12-27 21:48:29 -08:00
Kubernetes Prow Robot 34ca752870 Merge pull request #25828 from yuandongx/patch-9
[zh] Mismatched version number...
2020-12-27 21:32:27 -08:00
ryicoh d02c270142 refs: https://github.com/kubernetes/website/pull/25827#discussion_r549204180 2020-12-28 14:14:11 +09:00
Dmitry Shurupov a784cb42f8 Translating code comments in Russian README 2020-12-28 10:41:28 +07:00
yuandongx 8ebfea611e versioning... 2020-12-28 03:05:56 +00:00
yuandongx 0b80f45280 a new page 2020-12-28 02:45:01 +00:00
Kubernetes Prow Robot 33aff50ee1 Merge pull request #25796 from yuandongx/patch-2
[zh]Synchronize with "/zh/docs/reference/kubectl/conventions/" in English
2020-12-27 18:32:28 -08:00
yuandongx cd8ba39567 sync en. 2020-12-28 02:09:05 +00:00
Ader aa571fbf8d Add content in job.md
* Add description to make it easy to read.

* Distinguish between 'command'and 'output'.

* Add the code blocks to the Markdown spec.
2020-12-28 09:44:04 +08:00
Kubernetes Prow Robot 581780028c Merge pull request #25762 from timyinshi/1.17
modify the error version of k8s
2020-12-27 16:40:27 -08:00
Qiming Teng 6f9a31a1fc Update Pod overview
This PR adds some clarifications about Pod update and Pod replacement,
which can be pretty confusing to new users.
2020-12-28 08:34:18 +08:00
ryicoh e4efeae4b8 [ja] new file: memory-constraint-namespace.md 2020-12-28 02:53:13 +09:00
timyinshi 83900902e0 Put a space between Chinese and English and the number
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2020-12-27 09:48:59 +08:00
Rajesh Jain 7a175d551a Update rbac.md
The language "For all service accounts in the "qa" namespace" in the example is confusing namespaces and groups. Language fixed to disambiguate between group and namespace. An additional example provided which uses both the group ("dev") AND the namespace ("development") to further illustrate this point
2020-12-26 13:41:02 -08:00
Kubernetes Prow Robot 8279881e39 Merge pull request #25820 from ydFu/patch-1
Fix some typo in install-kubeadm.md
2020-12-26 05:22:27 -08:00
Kubernetes Prow Robot 95905377dd Merge pull request #25772 from Arhell/udp-http
update http to https
2020-12-26 05:12:27 -08:00
Kubernetes Prow Robot a7ce937eb6 Merge pull request #25697 from yuandongx/patch-1
[zh] Update service.md to fix some wrongs.
2020-12-26 04:04:26 -08:00
Kubernetes Prow Robot 573a215a62 Merge pull request #25707 from guzj11/patch-53
Update access-cluster-api.md
2020-12-26 04:00:27 -08:00
Kubernetes Prow Robot 44760a2d47 Merge pull request #25798 from yuandongx/kubectl
[zh]Update content/zh/docs/reference/kubectl/kubectl.md.
2020-12-26 02:24:27 -08:00
Kubernetes Prow Robot 3b78c98157 Merge pull request #25776 from JornShen/sync_dual_stack
sync zh dual-stack.md
2020-12-26 00:44:26 -08:00
Kubernetes Prow Robot d8a6a74583 Merge pull request #25817 from Arhell/sync
[zh] sync configmap.md
2020-12-26 00:42:27 -08:00
jornshen 9a0fc83075 sync zh dual-stack.md 2020-12-26 12:32:09 +08:00
Ader 7add440eeb install-kubeadm.md
* Uniform case and adjustment description for smoother writing.(Kubelet → kubelet)
2020-12-26 11:40:21 +08:00
Arhell 75c231d192 [zh] sync configmap.md 2020-12-26 05:24:37 +02:00
Kubernetes Prow Robot 91794327bf Merge pull request #25815 from timyinshi/MicroK8s
modify the error word of microk8s
2020-12-25 19:02:26 -08:00
timyinshi e5deed6436 modify the error of microk8s
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2020-12-25 22:40:48 +08:00
Kubernetes Prow Robot 0795b4818f update master
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2020-12-25 22:29:40 +08:00
Mehmet Efe Umit 364b9e9f5d Replaced the Old Diagrams in Expose Intro Page 2020-12-25 16:52:18 +03:00
Kubernetes Prow Robot 84ed130d3a Merge pull request #25797 from yuandongx/patch-3
[zh] Sync cheatsheet.
2020-12-25 05:02:27 -08:00
Kubernetes Prow Robot 51baa51633 Merge pull request #25799 from yuandongx/patch-4
[zh]sync using-api/client-libraries.md.
2020-12-25 04:54:27 -08:00
Kubernetes Prow Robot be15df5bc3 Merge pull request #25802 from howieyuen/cronjob
[zh] Add basic cron syntax in documentation
2020-12-25 04:50:26 -08:00
Qiming Teng 17bd7c1521 Resync kubelet configuration
The kubelet configuration has been changed. however, we still need to
manually sync the changes.
2020-12-25 17:56:40 +08:00
Dmitry Shurupov 90003f9a9c Syncing Russian README with the original 2020-12-25 13:48:29 +07:00
howieyuen 182963af87 Add basic cron syntax in documentation
sync from https://github.com/kubernetes/website/pull/25078
2020-12-25 14:36:08 +08:00
yuandongx 9e876d557d update content/zh/docs/reference/kubectl/kubectl.md 2020-12-25 06:05:04 +00:00
Kubernetes Prow Robot b45c003469 Merge pull request #25807 from yuandongx/patch-6
[zh]error sentence.
2020-12-24 21:24:26 -08:00
yuandongx 2e10cc75a3 error sentence. 2020-12-25 03:07:43 +00:00
Giridharaprasad 48d3dbe0d3 Update change-default-storage-class.md 2020-12-24 23:01:36 +05:30
Kubernetes Prow Robot f77ac7b2ff Merge pull request #25788 from sculley/fix-kubeadm-upgrade-docs-1.20
moved drain the node step to after call kubeadm upgrade step for worker nodes
2020-12-24 02:06:26 -08:00
yuandongx 9e149cb47d add "Swift" entry. 2020-12-24 10:02:56 +00:00
Kubernetes Prow Robot 798904b618 Merge pull request #25780 from Cweiping/feature/support_pid_reserved_for_kube_and_system
support reserved pid for kube and system
2020-12-24 01:52:26 -08:00
yuandongx 2afa454aa4 sync cheatsheet. 2020-12-24 08:20:01 +00:00
Kubernetes Prow Robot 1c36ecf6d4 Merge pull request #25792 from Arhell/sync
[zh] sync style-guide.md
2020-12-23 17:34:26 -08:00
Kubernetes Prow Robot f25bd774e1 Merge pull request #25781 from lostsquirrel/patch-9
change token_id to token-id
2020-12-23 17:28:26 -08:00
Arhell 378292786e [zh] sync style-guide.md 2020-12-24 00:50:53 +02:00
Rajesh Jain 0747ad3dbf Update overview.md
Use Kubernetes Common Labels (e.g. app.kubernetes.io/name, etc.) if appropriate instead of customized ones.
2020-12-23 14:39:51 -08:00
Sam Culley 8fcb55007b moved drain the node step to after call kubeadm upgrade step for worker nodes 2020-12-23 20:40:32 +00:00
Kubernetes Prow Robot 70873fca95 Merge pull request #25783 from DanRoscigno/patch-1
Correct camelcase of DaemonSet
2020-12-23 12:08:26 -08:00
Tim Bannister f5dc913487 Add automatic build triggering
Use GitHub Actions to trigger a Netlify deploy for the primary branch,
twice per day.
2020-12-23 16:33:36 +00:00
Dan Roscigno 64594a4c60 Correct camelcase of DaemonSet 2020-12-23 09:22:27 -05:00
Kubernetes Prow Robot df1f8c7d2d Merge pull request #25694 from Arhell/sync-upd
[zh] sync manage-resources-containers.md
2020-12-23 05:30:26 -08:00
Kubernetes Prow Robot c6db174ca9 Merge pull request #25078 from shekhar-rajak/92636_cron_syntax
Add basic cron syntax in documentation
2020-12-23 05:28:26 -08:00
Kubernetes Prow Robot 7acb137dc3 Merge pull request #25749 from Arhell/sync
[zh] sync kubelet-garbage-collection.md
2020-12-23 01:28:26 -08:00
Kubernetes Prow Robot dd09ed3666 Merge pull request #25766 from biancarosa/patch-1
Fix: Minor typo on portuguese operator page
2020-12-23 01:16:26 -08:00
lostsquirrel 89b3cc978b change token_id to token-id 2020-12-23 16:48:01 +08:00
Weiping Cai fe8b7a2d7a support reserved pid for kube and system
Signed-off-by: Weiping Cai <weiping.cai@daocloud.io>
2020-12-23 15:41:42 +08:00
Kubernetes Prow Robot 0d342162f2 Merge pull request #25779 from izeye/patch-1
Fix typo
2020-12-22 23:02:26 -08:00
Johnny Lim b537556b2d Fix typo 2020-12-23 15:21:12 +09:00
Qiming Teng 03a336a946 Remove link to empty list for k8s metrics 2020-12-23 13:58:54 +08:00
Pierre Tessier 4bf6c31e4e remove misleading instructions
There is no need to restart the kubelet as part of configuring kubeadm to set the cgroup driver. At this point in the setup instructions, the kubernetes cluster isn't even up and running yet, as kubeadm init hasn't been run.  The previous step even says the kubelet is in a crashloop waiting for kubeadm.
2020-12-22 21:14:32 -05:00
Kubernetes Prow Robot 2eca0fd9a2 Merge pull request #25760 from timyinshi/1.18release
modify the error comma
2020-12-22 17:42:27 -08:00
Tim Bannister ab4b004d69 Switch to Hugo v0.79.1
The improvements include:
- timezone-aware date formatting
- if getJSON() errors during a build, we can now ignore it
- You can set Hugo configuration via environment variables even if
  snake_case.
2020-12-22 23:57:16 +00:00
Arhell 5d2a72b807 update http to https 2020-12-23 01:43:32 +02:00
Kubernetes Prow Robot 104bc0eab4 Merge pull request #25472 from daixiang0/patch-1
Update setup-konnectivity.md
2020-12-22 15:18:27 -08:00
Kubernetes Prow Robot 4b196158c5 Merge pull request #25767 from shevelevs/shevelevs/probes-http-headers
Fix examples for http probe headers
2020-12-22 14:36:26 -08:00
Kubernetes Prow Robot fa2c834491 Merge pull request #25546 from reylejano/tasks-crictl
Edit 'warn' in Note box in crictl tasks page
2020-12-22 14:32:26 -08:00
Kubernetes Prow Robot 262ece059f Merge pull request #25761 from ebriand/patch-5
Fix link to Volume Plugin FAQ
2020-12-22 12:50:26 -08:00
Kubernetes Prow Robot 458e55658d Merge pull request #24776 from karras/docs_update_ubuntu_containerd_instructions
Docs: Add containerd setup instructions for Ubuntu 18.04/20.04
2020-12-22 12:30:26 -08:00
Umesh 75f42c42f2 removed duplicate step numbers (#24718)
* corrected-steps

* keeping content same

* added missing line
2020-12-22 11:28:27 -08:00
Sergey Shevelev 7e4e475611 Fix examples for http probe headers 2020-12-22 13:58:55 -05:00
bianca rosa fc2344b827 Fix: typo on portuguese operator page 2020-12-22 14:53:26 -03:00
bl-ue 56840df61d Update 2020-12-02-dont-panic-kubernetes-and-docker.md 2020-12-22 11:06:47 -05:00
Kubernetes Prow Robot ec80275820 Merge pull request #24136 from jess-edwards/master
new blog post: Custom K8s Scheduler for Highly Available Apps
2020-12-22 07:58:26 -08:00
Bob Killen 8a0cf9f577 Update blog team reviewers 2020-12-22 10:50:36 -05:00
timyinshi f49e23fbea modify the error version of k8s
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2020-12-22 23:16:30 +08:00
Eric Briand a2fa57e880 Fix link to Volume Plugin FAQ 2020-12-22 16:06:22 +01:00
timyinshi d9aee6af6c modify the error comma
Signed-off-by: timyinshi <shiguangyin@inspur.com>
2020-12-22 22:35:39 +08:00
Kubernetes Prow Robot 8dfb65b18b Merge pull request #25752 from sqs/patch-1
fix anchor link to "What's next" heading in operator docs
2020-12-21 21:32:25 -08:00
Quinn Slack 0bc39aa27a fix anchor link to "What's next" heading in operator docs 2020-12-21 20:46:53 -08:00
一枚小猿 8febf98cbb Sync with the English version. 2020-12-22 11:34:48 +08:00
philiplee13 cd72265a3a Update README.md
update readme to include anchors
2020-12-21 18:57:36 -08:00
Kubernetes Prow Robot 137c72d788 Merge pull request #25696 from guzj11/patch-51
Update debug-running-pod.md
2020-12-21 18:50:26 -08:00
Arhell 369b94cadc [zh] sync kubelet-garbage-collection.md 2020-12-22 03:17:24 +02:00
Kubernetes Prow Robot a30521e4e9 Merge pull request #25724 from lis102/pod_trans
2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md
2020-12-21 04:58:25 -08:00
Frank Villaro-Dixon d7e94dc7e0 Update client-libraries.md : add python pykorm lib 2020-12-21 12:11:10 +01:00
Kubernetes Prow Robot 94f6581b37 Merge pull request #25716 from wangxy518/patch-17
Update _index.html
2020-12-21 01:28:25 -08:00
Xu Yuandong db55c7c071 Resync finshed, also I have reviewed the codes. 2020-12-21 02:45:34 +00:00
Kubernetes Prow Robot 52870b8562 Merge pull request #25738 from Arhell/sync-zh
[zh] sync kubernetes-api.md
2020-12-20 16:42:25 -08:00
Arhell 1141c3b8a0 [zh] sync kubernetes-api.md 2020-12-21 01:35:00 +02:00
Kubernetes Prow Robot b54166a110 Merge pull request #25726 from Arhell/upd
update http to https (readme.md)
2020-12-20 12:40:25 -08:00
Kubernetes Prow Robot 7b82cafcd7 Merge pull request #25713 from ydFu/patch-1
Fix some typo in init-containers.md
2020-12-20 12:22:24 -08:00
Mike Patterson ad85bdb054 Include missing cert export step
Updating the instructions to include missing step of getting issued cert exported from kubernetes, decoded, and ready for kubeconfig setup.
2020-12-20 11:36:20 -08:00
Kubernetes Prow Robot 7dbc63babc Merge pull request #25499 from mikegehard/patch-1
Make wording in overview more in line with the description
2020-12-20 07:36:25 -08:00
Levent Ogut dbcd6627cb update container-lifecycle-hooks.md for third hook handler i,.e. TCP
unless I am missing something TCP handler is missing
2020-12-20 17:49:00 +03:00
lis102 25d0f62174 2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md
Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update 2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Update 2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update 2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update content/zh/blog/_posts/2020-12-10-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers.md

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-20 20:16:44 +08:00
Kubernetes Prow Robot e3011b7759 Merge pull request #25660 from lis102/master
kubernetes-1-19-Introducing-Structured-Logs
2020-12-19 17:24:25 -08:00
Arhell d6138a0db2 update http to https (readme.md) 2020-12-20 00:52:04 +02:00
lis102 5f327789f8 kubernetes-1-19-Introducing-Structured-Logs 2020-12-19 22:55:28 +08:00
Kubernetes Prow Robot 8d4e3e7015 Merge pull request #25701 from Sophy417/patch-43
Create 2015-04-00-Weekly-Kubernetes-Community-Hangout.md
2020-12-19 04:44:24 -08:00
Kubernetes Prow Robot c0b0d77248 Merge pull request #25698 from Sophy417/patch-42
Create 2016-02-00-State-Of-Container-World-January-2016.md
2020-12-19 04:40:24 -08:00
Kubernetes Prow Robot 2b0f838af7 Merge pull request #25607 from tengqm/zh-sync-ref-kubeadm
[zh] Sync changes to kubeadm reference
2020-12-19 04:38:25 -08:00
Kubernetes Prow Robot 5bba8bf55a Merge pull request #25631 from guzj11/patch-41
Update parallel-processing-expansion.md
2020-12-19 04:36:25 -08:00
Kubernetes Prow Robot 2b479120b9 Merge pull request #25630 from guzj11/patch-40
Update automated-tasks-with-cron-jobs.md
2020-12-19 04:34:24 -08:00
Kubernetes Prow Robot 5a4ecd180b Merge pull request #25714 from guzj11/patch-54
Update memory-default-namespace.md
2020-12-19 04:26:24 -08:00
wangxy518 024d423b9d Update _index.html 2020-12-19 20:17:11 +08:00
Kubernetes Prow Robot 9b35120daa Merge pull request #24602 from sftim/20201015_tweak_workloads_concept_overview
Tweak wording for Workloads overview
2020-12-19 03:58:26 -08:00
frbimo 84836f92e6 Add some example on /pods/qos 2020-12-19 19:51:06 +08:00
guzj11 cb901fdeb1 Update memory-default-namespace.md
sync with english version
2020-12-19 18:27:14 +08:00
Kubernetes Prow Robot a769887221 Merge pull request #25709 from guzj11/patch-50
Update static-pod.md
2020-12-19 01:42:24 -08:00
guzj11 3f4388829c Update access-cluster-api.md
sync with english version.

Update access-cluster-api.md

apply suggestion

Update access-cluster-api.md
2020-12-19 17:33:58 +08:00
guzj11 cbc31a51fd Update debug-running-pod.md
sync with english version

Update debug-running-pod.md

apply suggestions

Update debug-running-pod.md

sync the left part

Update debug-running-pod.md

apply suggestions
2020-12-19 17:23:30 +08:00
Sophy417 875a29ebc3 Update 2015-04-00-Weekly-Kubernetes-Community-Hangout.md 2020-12-19 15:38:04 +08:00
Sophy417 fd0234299b Update 2016-02-00-State-Of-Container-World-January-2016.md 2020-12-19 15:33:27 +08:00
RA489 fcfe1b6a23 Merge branch 'master' into kubeadm_inst 2020-12-19 12:01:29 +05:30
Ader 21c5750086 Fix some typo in init-containers.md
Fixed a typo in manage-resources-containers.md (Kubelet → kubelet)
2020-12-19 14:13:40 +08:00
RA489 9a386e5cac Update kubeadm install page 2020-12-19 10:48:45 +05:30
Kubernetes Prow Robot cb5d05e65b Merge pull request #25708 from guzj11/patch-54
Update developing-cloud-controller-manager.md
2020-12-18 18:58:25 -08:00
Kubernetes Prow Robot 7a9a547fc3 Merge pull request #25710 from guzj11/patch-55
Update translate-compose-kubernetes.md
2020-12-18 18:42:25 -08:00
Kubernetes Prow Robot fad300a30e Merge pull request #25457 from Kartik494/updatedoc
Retitle “Configuring kubelet Garbage Collection"
2020-12-18 18:40:25 -08:00
Kubernetes Prow Robot 14f4694675 Merge pull request #25665 from wangxy518/patch-11
Update 2016-01-00-Why-Kubernetes-Doesnt-Use-Libnetwork.md
2020-12-18 17:56:25 -08:00
Kubernetes Prow Robot 58b328c4f9 Merge pull request #25711 from Arhell/upd-links
[zh] update http to https (readme.md)
2020-12-18 17:28:24 -08:00
Arhell 1f648b54ad [zh] update http to https (readme.md) 2020-12-19 02:18:48 +02:00
Paul 401665f6a1 spanish translation (#25481)
spanish translation

spanish translation install minikube

fix filename to kubectl

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/install-kubectl.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/install-kubectl.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/install-kubectl.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/install-kubectl.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/install-kubectl.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/install-kubectl.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/_index.md

Co-authored-by: Rael Garcia <rael@rael.io>

Update content/es/docs/tasks/tools/install-kubectl.md

Co-authored-by: Rael Garcia <rael@rael.io>

Apply suggestions from code review

Co-authored-by: Rael Garcia <rael@rael.io>

Apply suggestions from code review

Co-authored-by: Rael Garcia <rael@rael.io>

Co-authored-by: Rael Garcia <rael@rael.io>
2020-12-18 13:30:24 -08:00
Nate W ac8b4c5399 Updating /docs/tasks/tools/install-kubectl
Adding instructions for how to validate kubectl binaries against checksum files (Linux, MacOS, Windows)

Updating links to download from https://dl.k8s.io/

Updating Linux-specific install instructions to use install command, and
macOS-specific instructions to chown root the install to provide a trusted
kubectl.

Adding note annotation around optional download instructions

Markdown updates
* Updating numbered lists to use markdown syntax ("1." for each entry), should make it easier to add and remove list items in future
* Adding some syntax highlighting to the command snippets

Correcting "PowerShell" spelling

fixes: https://github.com/kubernetes/website/issues/25040

Signed-off-by: Nate W <4453979+nate-double-u@users.noreply.github.com>
2020-12-18 11:38:05 -08:00
guzj11 8852b8cb8f Update translate-compose-kubernetes.md
sync with english version
2020-12-19 00:39:36 +08:00
guzj11 8322013733 Update static-pod.md
sync with english version
2020-12-19 00:20:44 +08:00
Kubernetes Prow Robot 240a7d000f Merge pull request #25686 from jiaj12/patch-74
Update volume-snapshots.md
2020-12-18 08:12:24 -08:00
Kubernetes Prow Robot 717ab0c9e1 Merge pull request #25691 from guzj11/patch-50
Update configure-pdb.md
2020-12-18 07:46:25 -08:00
Kubernetes Prow Robot ec0df1c0da Merge pull request #25683 from jiaj12/patch-73
Update storage-classes.md
2020-12-18 07:42:25 -08:00
Kubernetes Prow Robot 1f0b6040d5 Merge pull request #25679 from jiaj12/patch-71
Update persistent-volumes.md
2020-12-18 07:40:25 -08:00
Kubernetes Prow Robot 15aec10330 Merge pull request #25677 from jiaj12/patch-69
Update service-topology.md
2020-12-18 07:36:25 -08:00
Kubernetes Prow Robot 4284c8d5bd Merge pull request #25662 from guzj11/patch-48
Update install-kubectl.md
2020-12-18 07:34:25 -08:00
kartik494 7f45bcc3a9 Retitle “Configuring kubelet Garbage Collection" 2020-12-18 20:04:02 +05:30
Kubernetes Prow Robot 5c51dfa34f Merge pull request #25484 from divya-mohan0209/2020-12-11-Pod-Impersonation-and-Short-lived-Volumes-in-CSI-Drivers
Feature blog for Kubernetes 1.20: Pod Impersonation and Short-lived Volumes in CSI Drivers
2020-12-18 05:54:25 -08:00
guzj11 3442b89488 Update developing-cloud-controller-manager.md
sync with english version

Update developing-cloud-controller-manager.md

apply suggestion
2020-12-18 21:10:16 +08:00
Sophy417 e18cff823b Update 2015-04-00-Weekly-Kubernetes-Community-Hangout.md 2020-12-18 21:04:18 +08:00
Kubernetes Prow Robot fa1fc0df39 Merge pull request #25706 from guzj11/patch-52
Update calico-network-policy.md
2020-12-18 04:48:26 -08:00
Kubernetes Prow Robot f91c1db9c8 Merge pull request #25695 from ripulpatel/robinio
Adding ROBIN to list as it supports CSI snapshot features.
2020-12-18 04:46:24 -08:00
guzj11 de69cbc9e2 Update calico-network-policy.md
sync with english version.
2020-12-18 20:22:01 +08:00
Kubernetes Prow Robot d68b43c119 Merge pull request #25530 from Sophy417/patch-27
Create 2016-02-00-kubernetes-community-meeting-notes_23.md
2020-12-18 00:56:24 -08:00
Sophy417 f853e23497 Create 2015-04-00-Weekly-Kubernetes-Community-Hangout.md 2020-12-18 16:48:19 +08:00
devincd d52b0f58e8 Update container-lifecycle-hooks.md 2020-12-18 15:13:46 +08:00
Sophy417 02eb3ff623 Create 2016-02-00-State-Of-Container-World-January-2016.md 2020-12-18 13:01:48 +08:00
Kubernetes Prow Robot 6349195338 Merge pull request #25612 from guzj11/patch-35
Update environment-variable-expose-pod-information.md
2020-12-17 20:00:24 -08:00
Arhell 7dcba3fab7 [zh] sync manage-resources-containers.md 2020-12-18 04:57:29 +02:00
guzj11 948b1e91a8 Update configure-pdb.md
sync with English version

Apply suggestions from code review

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-18 10:38:08 +08:00
guzj11 69249f0458 Update environment-variable-expose-pod-information.md
fix the broken url.

Update environment-variable-expose-pod-information.md

apply suggestion
2020-12-18 10:34:18 +08:00
Kubernetes Prow Robot 4118ab4d9c Merge pull request #25685 from Sophy417/patch-40
Create 2015-11-00-Kubernetes-1-1-Performance-Upgrades-Improved-Toolin…
2020-12-17 17:46:24 -08:00
Kubernetes Prow Robot 4aa068f137 Merge pull request #25473 from guzj11/patch-13
Update expose-external-ip-address.md
2020-12-17 17:44:25 -08:00
Kubernetes Prow Robot b9990dc931 Merge pull request #25623 from guzj11/patch-38
Update access-cluster.md
2020-12-17 17:38:25 -08:00
Kubernetes Prow Robot 11d6b04f23 Merge pull request #25606 from Sophy417/patch-33
Create 2016-04-00-Adding-Support-For-Kubernetes-In-Rancher.md
2020-12-17 17:34:25 -08:00
Kubernetes Prow Robot 440dcc1983 Merge pull request #25690 from guzj11/patch-49
Update safely-drain-node.md
2020-12-17 17:32:25 -08:00
Kubernetes Prow Robot dbaa368dd4 Merge pull request #25609 from fanxiin/patch-2
Update authentication.md
2020-12-17 17:08:25 -08:00
Kubernetes Prow Robot 81635a4689 Merge pull request #25663 from bswartz/netapp-astra
Add Project Astra to list of snapshot-supporting products
2020-12-17 16:42:25 -08:00
Kubernetes Prow Robot 19a7793706 Merge pull request #25688 from CooperLi/patch-1
Update debug-application.md
2020-12-17 16:40:24 -08:00
jiajie e3e199f416 Update volume-snapshots.md 2020-12-18 08:36:01 +08:00
jiajie fbbd5b4f75 [zh] update content to match en master 2020-12-18 08:21:12 +08:00
Ripul Patel 08144e6ffa Adding ROBIN to list as it supports CSI snapshot features. 2020-12-17 16:12:13 -08:00
Kubernetes Prow Robot 3ebc011588 Merge pull request #25565 from Jiawei0227/patch-1
Fix typo of user github link
2020-12-17 13:42:25 -08:00
Kubernetes Prow Robot d3456e090e Merge pull request #25693 from pnosov/patch-1
Fixed a typo in manage-resources-containers.md
2020-12-17 12:03:09 -08:00
Kaitlyn Barnard 3b6584c922 Update index.md 2020-12-17 11:28:02 -08:00
Kubernetes Prow Robot 9300ed5665 Merge pull request #25666 from wangxy518/patch-12
Update _index.html
2020-12-17 09:47:10 -08:00
Pavel Nosov 815fe37905 Fix typo in manage-resources-containers.md 2020-12-17 20:43:17 +03:00
Kubernetes Prow Robot 9e62add444 Merge pull request #25347 from KobayashiD27/update-setup-containerruntime
ja: Make docs/setup/production-environment/container-runtimes.md follow v1.18 of the original text
2020-12-17 08:55:09 -08:00
Kubernetes Prow Robot f61f860233 Merge pull request #25692 from php-coder/patch-1
Remove unused temporary files
2020-12-17 08:37:10 -08:00
Slava Semushin 3b0c7985f7 chore(content/ru/setup.temp.txt): delete unused temporary file 2020-12-17 22:57:13 +07:00
Slava Semushin f93a709d4e chore(content/ru/main_index.temp.txt): delete unused temporary file 2020-12-17 22:55:42 +07:00
guzj11 88dae3183d Update safely-drain-node.md
sync with English version
2020-12-17 23:24:14 +08:00
Kubernetes Prow Robot 255fe9e3ff Merge pull request #25603 from guzj11/patch-31
Update declarative-config.md
2020-12-17 06:41:09 -08:00
Kubernetes Prow Robot d346150073 Merge pull request #25584 from guzj11/patch-21
Update configure-persistent-volume-storage.md
2020-12-17 06:39:09 -08:00
Kubernetes Prow Robot 37f46ed3bc Merge pull request #25423 from jiaj12/patch-39
Update node-conformance.md
2020-12-17 06:37:09 -08:00
Kubernetes Prow Robot d4121d4d7c Merge pull request #25420 from jiaj12/patch-36
Update manual-rotation-of-ca-certificates.md
2020-12-17 06:35:11 -08:00
Kubernetes Prow Robot 13561ab3ec Merge pull request #25448 from jiaj12/patch-49
Update index.md
2020-12-17 06:33:09 -08:00
Kubernetes Prow Robot fcb75a23f7 Merge pull request #25540 from guzj11/patch-15
Update adding-windows-nodes.md
2020-12-17 06:31:09 -08:00
Kubernetes Prow Robot 98f0a88789 Merge pull request #25566 from howieyuen/create-cluster-kubeadm
[zh] kubeadm: remove general output from "kubeadm init"
2020-12-17 06:29:10 -08:00
Kubernetes Prow Robot cf111993df Merge pull request #25585 from guzj11/patch-24
Update configure-projected-volume-storage.md
2020-12-17 06:27:09 -08:00
Kubernetes Prow Robot 8227d2ffd0 Merge pull request #25625 from Sophy417/patch-34
Create 2016-05-00-Coreosfest2016-Kubernetes-Community.md
2020-12-17 06:23:09 -08:00
CooperLi d2bf36047f Update debug-application.md
Fix typo
2020-12-17 19:07:38 +08:00
Kubernetes Prow Robot 93b2b7d6fc Merge pull request #25680 from jiaj12/patch-72
Update storage-capacity.md
2020-12-17 01:19:09 -08:00
Kubernetes Prow Robot a2b70678e1 Merge pull request #25681 from yuandongx/patch-1
[zh]Update tools.md
2020-12-17 01:17:09 -08:00
jiajie 503022930c Update volume-snapshots.md
[zh] update content to match en master
2020-12-17 17:03:57 +08:00
Sophy417 b7fbfd355a Create 2015-11-00-Kubernetes-1-1-Performance-Upgrades-Improved-Tooling-And-A-Growing-Community.md 2020-12-17 17:00:19 +08:00
Shu Muto 817cfb9f41 Remove Static Password File section
Due to removed on v1.19, remove Static Password File section from docs/reference/access-authn-authz/authentication.md
2020-12-17 17:49:49 +09:00
Kubernetes Prow Robot 839873d01d Merge pull request #25624 from Cweiping/feature/add_note_port_forward
add note to kubectl port-forward
2020-12-17 00:39:09 -08:00
Kubernetes Prow Robot d338c04be4 Merge pull request #25678 from guzj11/patch-47
Update namespaces.md
2020-12-17 00:33:09 -08:00
Eric Mountain a52687184f Scheduling plugins: fix typo for clarity 2020-12-17 09:32:46 +01:00
Xu Yuandong 4bb411324d Update tools.md 2020-12-17 16:23:39 +08:00
Kubernetes Prow Robot cb074fe9c8 Merge pull request #25674 from jiaj12/patch-68
Update connect-applications-service.md
2020-12-17 00:21:09 -08:00
jiajie 39c6521f1b Update storage-capacity.md
[zh] remove broken link to CSIStorageCapacity in API reference
2020-12-17 16:07:56 +08:00
jiajie fa4f27b238 Update persistent-volumes.md
[zh] update content to match en master
2020-12-17 16:04:18 +08:00
guzj11 fcef54f2c8 Update namespaces.md
update the unnumbered format
2020-12-17 16:02:16 +08:00
jiajie 9d6c1af320 Update service-topology.md
[zh] update content to match en master
2020-12-17 15:43:03 +08:00
Sophy417 496568e718 Create 2018-07-11-dynamic-kubelet-configuration.md (#25657)
* Create 2018-07-11-dynamic-kubelet-configuration.md

* Update 2018-07-11-dynamic-kubelet-configuration.md

* Update 2018-07-11-dynamic-kubelet-configuration.md
2020-12-16 23:17:09 -08:00
jiajie 220d8d0b92 Update connect-applications-service.md
[zh] sync content with en master
2020-12-17 14:54:18 +08:00
Kubernetes Prow Robot 76312ca9f9 Merge pull request #25500 from salaxander/device_metrics_blog
Kubernetes 1.20 feature blog - Third party device metrics hits G.A.
2020-12-16 21:43:09 -08:00
guzj11 c431442d8b Merge branch 'master' into patch-13 2020-12-17 11:25:10 +08:00
Kubernetes Prow Robot 0ea8446bb7 Merge pull request #25669 from Arhell/sync
[zh] sync networking.md
2020-12-16 19:05:09 -08:00
guzj11 b877acd8ed Update install-kubectl.md
sync with English version.

Update install-kubectl.md

apply suggestion

Update install-kubectl.md

apply suggestion
2020-12-17 10:59:08 +08:00
Arhell 4bd7d06de9 [zh] sync networking.md 2020-12-17 03:46:11 +02:00
Cweiping aec2737f36 add note to kubectl port-forward
Signed-off-by: Weiping Cai <weiping.cai@daocloud.io>
2020-12-17 09:35:17 +08:00
wangxy518 2db6f86737 Update _index.html 2020-12-17 09:31:45 +08:00
wangxy518 6c1870fb84 Update 2016-01-00-Why-Kubernetes-Doesnt-Use-Libnetwork.md 2020-12-17 09:27:31 +08:00
jiajie 980d7f1243 [zh] Update node-conformance.md 2020-12-17 09:16:22 +08:00
Kobayashi b6a658f907 Remove unnecessary spaces between Japanese and English. 2020-12-17 10:04:24 +09:00
Kubernetes Prow Robot b4fcee247c Merge pull request #25649 from xaanmu/patch-1
Remove extra space between link and anchor text
2020-12-16 16:57:10 -08:00
Kubernetes Prow Robot 77362e21ec Merge pull request #25498 from adambkaplan/ssh-auth-secret-caution
Caution Note for ssh-auth Secrets
2020-12-16 13:50:31 -08:00
Kubernetes Prow Robot 45135da395 Merge pull request #25289 from nate-double-u/20652-copy-edits
Updating docs/concepts/cluster-administration/system-metrics
2020-12-16 13:48:31 -08:00
Kubernetes Prow Robot 7db1ae5d45 Merge pull request #24589 from wking/overlapping-pdbs
content/en/docs/tasks/run-application/configure-pdb: Acceptable overlapping PDBs
2020-12-16 13:46:31 -08:00
Ben Swartzlander c08c5cdcf9 Add Project Astra to list of snapshot-supporting products 2020-12-16 15:23:58 -05:00
Xander Grzywinski 575b183d69 add device metrics feature blog
resond to PR comments

change publish date and respond to some comments

respond to some more comments

fix formatting

fix image links and respond to comment

respond to formatting comments

remove gks reference

fix metrics names

remove gcp

pr feedback
2020-12-16 11:30:21 -08:00
Kubernetes Prow Robot 34e81fd043 Merge pull request #25655 from guzj11/patch-47
Update hello-minikube.md
2020-12-16 04:44:21 -08:00
Kubernetes Prow Robot f291c08872 Merge pull request #25654 from guzj11/patch-46
Update update-daemon-set.md
2020-12-16 04:42:21 -08:00
Kubernetes Prow Robot 0895480ad0 Merge pull request #25647 from jiaj12/patch-65
Update feature-gates.md
2020-12-16 04:40:21 -08:00
Kubernetes Prow Robot 27cd030daf Merge pull request #25600 from tengqm/zh-drop-ccm
[zh] Drop cloud-controller-manager reference
2020-12-16 04:38:22 -08:00
Kubernetes Prow Robot a20b02e8f7 Merge pull request #25599 from tengqm/zh-sync-kubeadm-certs
[zh] Sync kubeadm certs command reference
2020-12-16 04:36:21 -08:00
Kubernetes Prow Robot c3d09089a0 Merge pull request #25583 from guzj11/patch-20
Update configure-runasusername.md
2020-12-16 04:34:21 -08:00
Kubernetes Prow Robot 808dfd432d Merge pull request #25554 from guzj11/patch-16
Update cpu-default-namespace.md
2020-12-16 04:32:21 -08:00
Kubernetes Prow Robot b4b4820803 Merge pull request #25629 from Sophy417/patch-36
Create 2016-04-00-Sig-Clusterops-Promote-Operability-And-Interoperabi…
2020-12-16 04:30:21 -08:00
Kubernetes Prow Robot 87399cb5ce Merge pull request #25648 from Sophy417/patch-37
Create 2016-07-00-stateful-applications-in-containers-kubernetes.md
2020-12-16 04:28:21 -08:00
guzj11 ba84d93ebd t # This is a combination of 3 commits.
Update update-daemon-set.md

sync with english version.

Update update-daemon-set.md

apply suggestion

Update update-daemon-set.md

apply suggestion
2020-12-16 17:41:02 +08:00
Sophy417 b139ff6274 Update 2016-04-00-Sig-Clusterops-Promote-Operability-And-Interoperability-Of-K8S-Clusters.md 2020-12-16 16:58:38 +08:00
jiajie acaa24115b [zh] update content to match en master 2020-12-16 16:55:43 +08:00
Sophy417 70d09af40b Update 2016-07-00-stateful-applications-in-containers-kubernetes.md 2020-12-16 16:50:28 +08:00
Kubernetes Prow Robot 25a58ad21e Merge pull request #25637 from guzj11/patch-45
Update debug-service.md
2020-12-16 00:22:21 -08:00
Kubernetes Prow Robot c004c33468 Merge pull request #25636 from guzj11/patch-44
Update debug-pod-replication-controller.md
2020-12-16 00:20:20 -08:00
Kubernetes Prow Robot 79cad927e5 Merge pull request #25643 from kbhawkey/fixup-formatting-expose-internal
minor formatting updates
2020-12-16 00:18:21 -08:00
Kubernetes Prow Robot 942c72d7b0 Merge pull request #25652 from wangxy518/patch-10
Update 2016-01-00-Why-Kubernetes-Doesnt-Use-Libnetwork.md
2020-12-16 00:10:21 -08:00
Sophy417 e958293ffb Create 2018-10-10-runtimeclass.md (#25628)
* Create 2018-10-10-runtimeclass.md

* Update 2018-10-10-runtimeclass.md
2020-12-16 00:04:20 -08:00
guzj11 ada714fd57 Update hello-minikube.md
sync with english version
2020-12-16 15:12:24 +08:00
wangxy518 3cd9b9c816 Update 2016-01-00-Why-Kubernetes-Doesnt-Use-Libnetwork.md 2020-12-16 13:49:52 +08:00
Sophy417 96742e2418 Update 2016-07-00-stateful-applications-in-containers-kubernetes.md 2020-12-16 12:07:26 +08:00
Xiang Dai b445946ce2 Update setup-konnectivity.md
Add missing volume config.
2020-12-16 11:45:41 +08:00
Sophy417 8cb5dbb175 Create 2016-07-00-stateful-applications-in-containers-kubernetes.md 2020-12-16 10:52:48 +08:00
mateusz c5006a6f1e Space screwed up formatting
Removing space to clear up formatting and link not working.
2020-12-16 02:52:16 +00:00
Sophy417 a51676e428 Update 2016-04-00-Sig-Clusterops-Promote-Operability-And-Interoperability-Of-K8S-Clusters.md 2020-12-16 10:04:06 +08:00
Kubernetes Prow Robot b62f64b4b6 Merge pull request #25635 from guzj11/patch-43
Update debug-stateful-set.md
2020-12-15 16:48:20 -08:00
Kubernetes Prow Robot 91e688cfd3 Merge pull request #25199 from annajung/modify-release-doc-instruction
Update documenting a feature for a release doc
2020-12-15 11:26:21 -08:00
Kubernetes Prow Robot d77eabb727 Merge pull request #25381 from cdemers/patch-1
Update port-forward-access-application-cluster.md
2020-12-15 08:39:49 -08:00
Kubernetes Prow Robot 20f97c6dc2 Merge pull request #25197 from iabudiab/master
Add Swift client library
2020-12-15 08:33:49 -08:00
Kubernetes Prow Robot bdc79d96a3 Merge pull request #25344 from makocchi-git/fix/trim_space_psp
Trim whitespaces in manifests
2020-12-15 08:29:49 -08:00
Karen Bradshaw 9069d2b12e minor formatting updates 2020-12-15 11:09:43 -05:00
Kubernetes Prow Robot 4bba09fed6 Merge pull request #25626 from habibrosyad/add_reviewer
Add habibrosyad as sig-docs-id reviewer
2020-12-15 08:07:49 -08:00
Kubernetes Prow Robot 0d1fa4262c Merge pull request #25578 from janitha09/patch-2
Update kustomization.md remove "\" from objref example
2020-12-15 08:05:49 -08:00
Kubernetes Prow Robot 8e41aedb1b Merge pull request #25080 from RA489/updatefmt
add code formatting to commands in expose-external-ip-address tutorial
2020-12-15 07:17:49 -08:00
Kubernetes Prow Robot ce043997ec Merge pull request #25593 from feloy/feloy-CSIStorageCapacity
Remove broken link to CSIStorageCapacity in API reference
2020-12-15 07:01:49 -08:00
guzj11 7de0e8f25d Update debug-service.md
sync with English version.
2020-12-15 21:56:18 +08:00
guzj11 8ca4d7d74d Update debug-pod-replication-controller.md
fix the url
2020-12-15 21:46:11 +08:00
guzj11 1f6a8b0d51 Update debug-stateful-set.md
fix the url
2020-12-15 21:34:49 +08:00
guzj11 aa7ac408d2 Update parallel-processing-expansion.md
sync with english version

Update parallel-processing-expansion.md

apply suggestion
2020-12-15 21:01:31 +08:00
Kubernetes Prow Robot 9073e2e2a6 Merge pull request #25632 from guzj11/patch-42
Update automated-tasks-with-cron-jobs.md
2020-12-15 04:27:49 -08:00
Kubernetes Prow Robot a9eeab393c Merge pull request #25592 from rekcah78/task_kubeadm_prod_install_french
Update install-kubeadm.md from EN version
2020-12-15 02:39:49 -08:00
guzj11 8f1ddcca20 Update automated-tasks-with-cron-jobs.md
sync with english version
2020-12-15 17:58:22 +08:00
Gasmi Christophe e42ebb413c Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:39:47 +01:00
Gasmi Christophe bfc04bda01 Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:39:05 +01:00
Gasmi Christophe ff84d4b11c Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:38:51 +01:00
Gasmi Christophe 36f99d7183 Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:36:59 +01:00
Gasmi Christophe 352c891c2a Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:36:45 +01:00
Gasmi Christophe 2fee5a9219 Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:36:26 +01:00
Gasmi Christophe 3d06157c5f Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:36:02 +01:00
Gasmi Christophe 181e87818e Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:35:47 +01:00
Gasmi Christophe 18645a2799 Update content/fr/docs/setup/production-environment/tools/kubeadm/install-kubeadm.md
Co-authored-by: Rémy Léone <remy.leone@gmail.com>
2020-12-15 10:35:29 +01:00
guzj11 669e789eac Update automated-tasks-with-cron-jobs.md
sync with english version.
2020-12-15 17:19:45 +08:00
Sophy417 74952ba4e9 Create 2016-04-00-Sig-Clusterops-Promote-Operability-And-Interoperability-Of-K8S-Clusters.md 2020-12-15 16:34:40 +08:00
Kubernetes Prow Robot fdf89d3f61 Merge pull request #25627 from guzj11/patch-39
Update communicate-containers-same-pod-shared-volume.md
2020-12-14 23:25:49 -08:00
guzj11 68e1ee3beb Update communicate-containers-same-pod-shared-volume.md
sync with english vesion.
2020-12-15 15:12:42 +08:00
guzj11 04986e7109 Update access-cluster.md
sync with english version.

Apply suggestions from code review

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-15 14:24:51 +08:00
xin dfea173332 Apply suggestions from code review
Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-15 14:03:23 +08:00
Sophy417 9724600e73 Update 2016-05-00-Coreosfest2016-Kubernetes-Community.md 2020-12-15 13:58:44 +08:00
Kubernetes Prow Robot 9afa380be3 Merge pull request #25622 from jiaj12/patch-64
Update _index.html
2020-12-14 21:45:48 -08:00
Kubernetes Prow Robot 82d2a32136 Merge pull request #25615 from Mac24/patch-1
modify `kubeadm init` link
2020-12-14 21:43:48 -08:00
M. Habib Rosyad 24c81746c6 Add habibrosyad as sig-docs-id reviewer 2020-12-15 11:50:09 +07:00
Sophy417 2a92b2996d Create 2016-05-00-Coreosfest2016-Kubernetes-Community.md 2020-12-15 12:36:12 +08:00
xin 09c5eed5eb sync with english version. 2020-12-15 11:34:10 +08:00
jiajie bf30950d98 Update _index.html
update respective section to match en master branch
2020-12-15 10:31:45 +08:00
Sophy417 7ad6aeca7b Create 2015-04-00-Borg-Predecessor-To-Kubernetes.md (#25526)
* Create 2015-04-00-Borg-Predecessor-To-Kubernetes.md

* Update 2015-04-00-Borg-Predecessor-To-Kubernetes.md

* Update 2015-04-00-Borg-Predecessor-To-Kubernetes.md
2020-12-14 17:05:49 -08:00
Qiming Teng 9c2547068e [zh] Sync kubeadm certs command reference
The alpha certs command has graduated into GA in 1.20. This PR updates
the zh localization for `kubeadm certs` command.
2020-12-15 09:05:11 +08:00
Sophy417 1b61e68b79 Create 2018-03-00-Principles-Of-Container-App-Design.md (#25525)
* Create 2018-03-00-Principles-Of-Container-App-Design.md

* Update 2018-03-00-Principles-Of-Container-App-Design.md

* Update 2018-03-00-Principles-Of-Container-App-Design.md
2020-12-14 17:03:48 -08:00
Sophy417 adba122e1c Create 2016-04-00-Kubernetes-Network-Policy-APIs.md (#25516)
* Create 2016-04-00-Kubernetes-Network-Policy-APIs.md

* Update 2016-04-00-Kubernetes-Network-Policy-APIs.md

* Update 2016-04-00-Kubernetes-Network-Policy-APIs.md
2020-12-14 17:01:49 -08:00
Kubernetes Prow Robot c55f8e5dab Merge pull request #25512 from Sophy417/patch-21
Create 2019-10-29-2019-sig-docs-survey.md
2020-12-14 16:59:49 -08:00
Kubernetes Prow Robot 3d9818469c Merge pull request #25513 from jiazxjason/patch-27
Update zh trans enabling-endpointslices.md
2020-12-14 16:57:49 -08:00
Kubernetes Prow Robot 3896d8da3f Merge pull request #25611 from guzj11/patch-34
Update managing-secret-using-kustomize.md
2020-12-14 16:53:48 -08:00
Kubernetes Prow Robot 9a203fca30 Merge pull request #25618 from guzj11/patch-37
Update delete-stateful-set.md
2020-12-14 16:51:49 -08:00
Kubernetes Prow Robot 34e2ad45ad Merge pull request #25617 from guzj11/patch-36
Update run-stateless-application-deployment.md
2020-12-14 16:49:48 -08:00
joadavis 2fbb9aed0b Document that disabling enable-cadvisor-json-endpoints flag does not disable stats summary endpoint
Update the help text for kubelet's enable-cadvisor-json-endpoints flag to explicitly mention that it has no effect over the /stats/summary endpoint.

This matches https://github.com/kubernetes/kubernetes/blob/master/cmd/kubelet/app/options/options.go#L372
created to fix https://github.com/kubernetes/kubernetes/issues/96483 .
2020-12-14 14:32:36 -08:00
Nate W e38868f479 Updating docs/concepts/cluster-administration/system-metrics
Copy editing _Metric lifecycle_ section for clarity.

fixes: https://github.com/kubernetes/website/issues/20652

Signed-off-by: Nate W <4453979+nate-double-u@users.noreply.github.com>
2020-12-14 11:25:23 -08:00
Kubernetes Prow Robot d6ec5adcaf Merge pull request #25379 from dhiltgen/add_buildkit_cli_to_blog
Add mention of kubectl BuildKit CLI plugin to dockershim faq
2020-12-14 10:55:29 -08:00
Kubernetes Prow Robot ab09ae89a2 Merge pull request #25470 from sfotony/feature-blog-fsGroupChangePolicy-fsGroupPolicy
feature blog for Kubernetes  1.20: Granular Control of Volume Permission Changes
2020-12-14 09:07:28 -08:00
Kubernetes Prow Robot f57302f02b Merge pull request #25555 from ggriffiths/csisnapshot_ga_blog_addproductlinks_and_pxbackup
Add links to other vendors and add PX-Backup for CSI Snapshot GA blog
2020-12-14 08:31:28 -08:00
Denis GERMAIN 75c599829d fix: errors in base64 and sed commands
* All base64 commands need `-w0` argument or else the base64_encoded_ca bash variable will contain space chars (" ") where newlines were
* All sed command are missing final "/" at the end of the expression. Command fails with the following error

```bash
/bin/sed: -e expression #1, char 95: unterminated `s' command
```
2020-12-14 17:21:50 +01:00
guzj11 be12af7161 Update delete-stateful-set.md
fix the broken url.
2020-12-14 23:36:43 +08:00
guzj11 e21ba0e7fe Update run-stateless-application-deployment.md
sync with English version.
2020-12-14 23:20:36 +08:00
Mac24 7bfc91534f modify kubeadm init link
`kubeadm init`, the previous link cannot be opened, 404, I revised the link again
2020-12-14 19:35:27 +08:00
Pierre Laporte fc202da36b Clarify pod anti-affinity description
The code example uses `preferredDuringScheduling...`, as opposed to
`requiredDuringScheduling...`.  So the anti-affinity rule is a soft one.  It
says that the pod _should_ not be scheduled on [...] rather than that the pod
_cannot_ be scheduled on [...].
2020-12-14 11:41:52 +01:00
Kubernetes Prow Robot f1b006f9ec Merge pull request #25610 from guzj11/patch-33
Update managing-secret-using-kubectl.md
2020-12-14 01:53:27 -08:00
guzj11 8959cc699d Update managing-secret-using-kustomize.md
sync with English version.
2020-12-14 17:51:34 +08:00
Kubernetes Prow Robot 061749e30f Merge pull request #25556 from yuandongx/patch-1
[zh]Sync En, "State that no more than one handler is allowed per lifecycl…
2020-12-14 01:45:28 -08:00
guzj11 7089e5a54e Update managing-secret-using-kubectl.md
sync with English version
2020-12-14 17:38:29 +08:00
xin d284a75ef2 Update authentication.md
Fix typo
2020-12-14 17:01:31 +08:00
Sophy417 eccd0bb4dd Update 2016-04-00-Adding-Support-For-Kubernetes-In-Rancher.md 2020-12-14 16:24:05 +08:00
Kubernetes Prow Robot 3e85a1b555 Merge pull request #25604 from guzj11/patch-32
Update imperative-command.md
2020-12-14 00:17:27 -08:00
Qiming Teng e944fb1476 [zh] Sync changes to kubeadm reference
This PR syncs changes made to kubeadm reference in 1.20.
2020-12-14 16:10:04 +08:00
Sophy417 36f4b20a53 Create 2016-04-00-Adding-Support-For-Kubernetes-In-Rancher.md 2020-12-14 15:37:59 +08:00
guzj11 4ab6bfbc21 Update imperative-command.md
sync with English version.
2020-12-14 15:08:15 +08:00
guzj11 4547d62edf Update declarative-config.md
add the translation of step 4
2020-12-14 14:50:56 +08:00
guzj11 5526f4abd1 Update configure-runasusername.md
Apply suggestions from code review

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update configure-runasusername.md

apply suggestions
2020-12-14 14:26:03 +08:00
Qiming Teng 92e3d73e65 [zh] Drop cloud-controller-manager reference
We no longer generate reference for CCM.
2020-12-14 14:06:57 +08:00
Antoine Pelisse a51a653764 Clarify compatibility guarantees around spec.preserveUnknownFields 2020-12-13 20:43:29 -08:00
Kubernetes Prow Robot fa83273ca5 Merge pull request #25594 from Arhell/typo
[zh] fix typo
2020-12-13 16:27:27 -08:00
Arhell 7a57ae2136 [zh] fix typo 2020-12-14 01:35:35 +02:00
Kubernetes Prow Robot 4119ffa358 Merge pull request #25590 from guzj11/patch-28
Update memory-constraint-namespace.md
2020-12-13 15:05:27 -08:00
Kubernetes Prow Robot 4e5c58498d Merge pull request #25591 from guzj11/patch-30
Update quota-memory-cpu-namespace.md
2020-12-13 15:03:27 -08:00
Philippe Martin 04664781a0 Remove broken link to CSIStorageCapacity in API reference 2020-12-13 20:24:35 +01:00
Christophe Gasmi ced18e88ff Update install-kubeadm.md from EN version 2020-12-13 17:15:20 +01:00
guzj11 e8cb50356a Update quota-memory-cpu-namespace.md
update translation
2020-12-14 00:07:59 +08:00
guzj11 bfdeacdaa3 Update memory-constraint-namespace.md
update translation
2020-12-14 00:05:37 +08:00
Takaaki Fujii ff960d0f94 updated deployment.md in ja 2020-12-13 18:29:59 +09:00
Kubernetes Prow Robot 54c9ac8fc2 Merge pull request #25586 from guzj11/patch-27
Update security-context.md
2020-12-12 20:07:26 -08:00
Kubernetes Prow Robot 94db8785a6 Merge pull request #25582 from guzj11/patch-19
Update assign-cpu-resource.md
2020-12-12 17:03:26 -08:00
guzj11 605bae56c4 Update security-context.md
sync with English version
2020-12-13 00:40:45 +08:00
guzj11 7eda46408d Update configure-projected-volume-storage.md
sync with English version
2020-12-13 00:20:12 +08:00
guzj11 4675237b58 Update configure-persistent-volume-storage.md
sync with English version
2020-12-13 00:05:12 +08:00
guzj11 af59908f3b Update assign-cpu-resource.md
sync with English version
2020-12-12 21:33:22 +08:00
Kubernetes Prow Robot 8984ea45ea Merge pull request #25560 from Sophy417/patch-28
Create 2019-05-14-expanding-our-contributor-workshops.md
2020-12-11 22:03:26 -08:00
Kubernetes Prow Robot 9ff4544d13 Merge pull request #25559 from jiaj12/patch-63
Update kubeadm-certs.md
2020-12-11 20:19:27 -08:00
Kubernetes Prow Robot f9d00a0ab6 Merge pull request #25570 from ThinkMo/master
change zh link for page support doc versions
2020-12-11 20:15:26 -08:00
Kubernetes Prow Robot 995a37766f Merge pull request #25573 from guzj11/patch-18
Update memory-default-namespace.md
2020-12-11 20:03:27 -08:00
janitha09 7fdc4b6edb Update kustomization.md
command: ["start", "--host", "\$(MY_SERVICE_NAME)"]
The back slash causes an error. So removed it.
The error detail below
```
Error: rawResources failed to read Resources: YAML file [deployment.yaml] encounters a format error.
error converting YAML to JSON: yaml: line 18: found unknown escape character
```
```
kubectl version
Client Version: version.Info{Major:"1", Minor:"19", GitVersion:"v1.19.3", GitCommit:"1e11e4a2108024935ecfcb2912226cedeafd99df", GitTreeState:"clean", BuildDate:"2020-10-14T12:50:19Z", GoVersion:"go1.15.2", Compiler:"gc", Platform:"windows/amd64"}
Server Version: version.Info{Major:"1", Minor:"19", GitVersion:"v1.19.3", GitCommit:"1e11e4a2108024935ecfcb2912226cedeafd99df", GitTreeState:"clean", BuildDate:"2020-10-14T12:41:49Z", GoVersion:"go1.15.2", Compiler:"gc", Platform:"linux/amd64"}
```
2020-12-11 21:12:09 -05:00
Kubernetes Prow Robot 1a9eebb5ca Merge pull request #25577 from Arhell/upd
update reference index.md
2020-12-11 17:41:28 -08:00
Arhell a60db47fd1 update reference index.md 2020-12-12 01:19:21 +02:00
Timo Smit 6340f8758f Fixed link to configuring cgroup driver on control-plane node 2020-12-11 20:53:04 +01:00
guzj11 17996f907b Update memory-default-namespace.md
sync with English version
2020-12-12 00:48:53 +08:00
guzj11 4e2959c82e Update adding-windows-nodes.md
sync with the english version with same format.

Update adding-windows-nodes.md
2020-12-12 00:08:17 +08:00
Kubernetes Prow Robot a4a78f435c Merge pull request #25552 from sftim/20201210_match_api_reference_to_version
Match API reference to version of Kubernetes we're documenting
2020-12-11 08:07:24 -08:00
Kubernetes Prow Robot c169316588 Merge pull request #25569 from guzj11/patch-17
Update cpu-constraint-namespace.md
2020-12-11 03:35:23 -08:00
guzj11 415286ff1b Update cpu-constraint-namespace.md
update translation
2020-12-11 18:26:34 +08:00
Kubernetes Prow Robot 07e4cca82f Merge pull request #25034 from lanandra/language_id_ingress
fix typo file in languge id ingress
2020-12-11 02:13:23 -08:00
Tim Bannister 7727cce87a Fix duplicated “v” prefix for version 2020-12-11 10:13:05 +00:00
Kubernetes Prow Robot 3035b46759 Merge pull request #25551 from Arhell/sync
update install-kubeadm.md
2020-12-11 02:11:23 -08:00
thinkmo 909459880e change zh link for page support doc versions 2020-12-11 17:28:50 +08:00
jiajie 653d4b69ba zh-trans Update manual-rotation-of-ca-certificates.md 2020-12-11 16:45:08 +08:00
jiajie 239fcf61c8 Merge branch 'master' into patch-63 2020-12-11 02:38:28 -06:00
jiajie 32063d9c9d zh-trans Update kubeadm-certs.md 2020-12-11 16:35:30 +08:00
lostsquirrel 31bbd71def Add missing word
According to the content, it seems missing this word
2020-12-11 16:27:42 +08:00
jiajie d49ff2b85f update 2020-12-11 16:17:12 +08:00
Kubernetes Prow Robot 5c4aaae29d Merge pull request #25539 from guzj11/patch-14
Update kubeadm-certs.md
2020-12-10 23:59:23 -08:00
howieyuen e3e67342ce sync with https://github.com/kubernetes/website/pull/24907 2020-12-11 15:47:54 +08:00
Jiawei Wang d62ad9bd0f Fix typo 2020-12-10 23:40:27 -08:00
Sophy417 49e5534375 Update 2019-05-14-expanding-our-contributor-workshops.md 2020-12-11 15:33:55 +08:00
Sophy417 29e632e00f Update 2019-10-29-2019-sig-docs-survey.md 2020-12-11 15:23:25 +08:00
Sophy417 3ce08d2545 Update 2016-02-00-kubernetes-community-meeting-notes_23.md 2020-12-11 15:16:39 +08:00
yue9944882 5ab06229c6 references api-priority-and-fairness slack channel 2020-12-11 14:28:22 +08:00
Sophy417 8b0503dfac Create 2019-05-14-expanding-our-contributor-workshops.md 2020-12-11 11:16:29 +08:00
Grant Griffiths 71fef4c3fc Add links to other vendors and add PX-Backup
Signed-off-by: Grant Griffiths <grant@portworx.com>
2020-12-10 18:39:42 -08:00
Kubernetes Prow Robot d5141237b1 Merge pull request #25430 from jiaj12/patch-41
Update validate-dual-stack.md
2020-12-10 18:31:22 -08:00
jiajie 2b216a342b Update validate-dual-stack.md 2020-12-11 10:19:06 +08:00
Xu Yuandong adc4dd4f35 [zh]Sync "State that no more than one handler is allowed per lifecycle event #25547"
Sync `State that no more than one handler is allowed per lifecycle event #25547`
2020-12-11 10:17:33 +08:00
Kubernetes Prow Robot 60d1845c05 Merge pull request #25547 from Evalle/ISSUE-25468
State that no more than one handler is allowed per lifecycle event
2020-12-10 18:03:22 -08:00
guzj11 7e998a73c3 Update cpu-default-namespace.md
sync with english version
2020-12-11 09:53:35 +08:00
guzj11 6ec0d664d9 Update kubeadm-certs.md
sync wit english version.

Apply suggestions from code review

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Update kubeadm-certs.md
2020-12-11 09:36:15 +08:00
jiazxjason 59e11f5ca8 Update enabling-endpointslices.md 2020-12-11 09:05:11 +08:00
Tim Bannister 99965e6b55 Match API reference to version of Kubernetes we're documenting 2020-12-10 23:20:33 +00:00
Arhell 33f330ab01 sync install-kubeadm.md 2020-12-11 01:10:21 +02:00
Kubernetes Prow Robot 494668241f Merge pull request #25550 from bl-ue/patch-1
Fix typo in AppDirect case study
2020-12-10 15:01:22 -08:00
bl-ue 3d4b57248b Fix typo in AppDirect case study 2020-12-10 16:31:27 -05:00
Tom Kivlin 441cafec53 monospaced --> unordered list
As mentioned in issue #25501.
2020-12-10 19:47:28 +00:00
divya-mohan0209 e201e635dc Fixing links to users & squashing previous commits (#25445) 2020-12-10 10:28:15 -08:00
gosselin a79b491d0f feature blog for Kubernetes 1.20: Granular Control of Volume Permission Changes 2020-12-10 12:27:18 -05:00
Evgeny Shmarnev e436cf704f State that no more than one handler is allowed per lifecycle event 2020-12-10 17:14:45 +01:00
Kubernetes Prow Robot 9597227fdd Merge pull request #25428 from bl-ue/patch-1
Fix broken link to kubernetes-csi/external-snapshotter/config/crd
2020-12-10 07:40:14 -08:00
Rey Lejano cc7c0155d7 Edit redundant 'warn' in Note box in crictl tasks page 2020-12-10 07:29:32 -08:00
Aris Cahyadi Risdianto 6ea9106c05 Add special localization documentation for Bahasa Indonesia. 2020-12-10 23:19:57 +08:00
Kubernetes Prow Robot 25542c7986 Merge pull request #25268 from KobayashiD27/update-version-skew-policy
ja: Make docs/setup/release/version-skew-policy.md follow v1.18 of the original text
2020-12-10 06:46:13 -08:00
divya-mohan0209 c1f0328e6b Squashing & Minor markdown changes 2020-12-10 17:09:56 +05:30
Kubernetes Prow Robot 5ef309d6ec Merge pull request #25485 from jiazxjason/patch-24
Update zh trans configure-pod-configmap.md
2020-12-10 03:34:54 -08:00
guzj11 ed649646d2 Update guestbook-logs-metrics-with-elk.md (#25463)
sync with english version

Apply suggestions from code review

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>

Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-10 03:32:54 -08:00
Kubernetes Prow Robot b6ee614b71 Merge pull request #25482 from jiaj12/patch-56
Update kubernetes-api.md
2020-12-10 03:30:54 -08:00
Kubernetes Prow Robot 42813ade14 Merge pull request #25509 from jiazxjason/patch-26
Update zh trans configure-upgrade-etcd.md
2020-12-10 03:28:53 -08:00
Kubernetes Prow Robot ed75776be1 Merge pull request #25486 from jiazxjason/patch-25
update referring link
2020-12-10 03:26:53 -08:00
Kubernetes Prow Robot 5ef54c7426 Merge pull request #25511 from ycyxuehan/patch-5
Update pod-lifecycle.md
2020-12-10 03:18:54 -08:00
Kubernetes Prow Robot b8b95969fb Merge pull request #25538 from jiaj12/patch-61
Update _index.html
2020-12-10 03:16:54 -08:00
jiajie 4a5bce92ce Update _index.html 2020-12-10 18:52:02 +08:00
Zhizhen He a170fbdce0 Fix syntax error 2020-12-10 18:28:21 +08:00
Kubernetes Prow Robot 23cf0098dd Merge pull request #25535 from rekcah78/update_home_fr
Update Homepage French
2020-12-10 01:40:54 -08:00
Kubernetes Prow Robot f7f9f65bb0 Merge pull request #25507 from reylejano/crictlnoteshortcodefix
Add note shortcode to 'Debugging Kubernetes nodes with crictl'
2020-12-10 00:44:53 -08:00
Christophe Gasmi c0493466e5 Update Homepage French 2020-12-10 09:30:06 +01:00
Sophy417 f6ebf084a9 Create 2016-02-00-kubernetes-community-meeting-notes_23.md 2020-12-10 15:33:16 +08:00
Kubernetes Prow Robot ddffa129f7 Merge pull request #25523 from Arhell/sync-fr
sync install-kubeadm.md
2020-12-09 22:32:53 -08:00
guzj11 ffa156fd75 Update expose-external-ip-address.md
adjust the format to rearrange the numbered list which is not continue

Update expose-external-ip-address.md

Update expose-external-ip-address.md

Update expose-external-ip-address.md

indent by 3 spaces from line 51 to 57
2020-12-10 14:30:27 +08:00
Sophy417 2f12581d2f Update 2019-10-29-2019-sig-docs-survey.md 2020-12-10 11:05:03 +08:00
jiazxjason 99c9bf39d7 Update enabling-endpointslices.md 2020-12-10 10:49:10 +08:00
jiazxjason 3d72f73b5f Update enabling-endpointslices.md 2020-12-10 08:53:32 +08:00
jiazxjason 2cb9a3319e Update content/zh/docs/tasks/administer-cluster/enabling-endpointslices.md
Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-10 08:51:26 +08:00
jiazxjason 96167bf996 Update content/zh/docs/tasks/administer-cluster/enabling-endpointslices.md
Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-10 08:51:13 +08:00
Arhell 1f8df8bee8 sync install-kubeadm.md 2020-12-10 01:25:08 +02:00
Karen Bradshaw 06ad25e38d remove stackdriver, elastic task pages
clean up links and redirects
2020-12-09 17:33:16 -05:00
Kubernetes Prow Robot 8fd80c3e35 Merge pull request #25519 from annajung/update-release-notes
Update release notes for 1.20 release
2020-12-09 10:20:51 -08:00
Anna Jung (VMware) 99ee1442cd Update release notes for 1.20 release
Signed-off-by: Anna Jung (VMware) <antheaj@vmware.com>
2020-12-09 09:56:47 -06:00
Kubernetes Prow Robot c0ce7cffd4 Merge pull request #25515 from verb/patch-2
Fix formatting error in kubectl debug release note
2020-12-09 07:14:51 -08:00
bl-ue 8b16f7609f Fix broken link to kubernetes-csi/external-snapshotter/config/crd 2020-12-09 08:36:12 -05:00
Stefan Petter f6e5496bc3 Applied suggested changes to create /etc/docker folder instead of starting the service
The "Set up the Docker daemon" step fails because the initial files have not been created. I copied the step of creating of the /etc/docker/ folder from the CentOS/RHEL instructions to the Ubuntu Instructions
2020-12-09 12:37:46 +01:00
Lee Verberne f94df3cb36 Fix formatting error in kubectl debug release note
A missing newline after the last list item caused an important note about plugins being hidden to be append to an unrelated note about debugging nodes.
2020-12-09 11:34:11 +01:00
jiajie 1dcdd6a406 Update kubernetes-api.md 2020-12-09 17:08:10 +08:00
jiazxjason e491bb3ff5 Update enabling-endpointslices.md 2020-12-09 15:49:31 +08:00
Sophy417 0c36d6b6b5 Create 2019-10-29-2019-sig-docs-survey.md 2020-12-09 14:56:49 +08:00
bing 725da5e20f Update pod-lifecycle.md
修改错误词语’期线‘为’期限‘
2020-12-09 14:22:48 +08:00
jiazxjason b36e3f6240 Update content/zh/docs/tasks/administer-cluster/configure-upgrade-etcd.md
Co-authored-by: Qiming Teng <tengqim@cn.ibm.com>
2020-12-09 14:03:47 +08:00
Kubernetes Prow Robot 5e1e6196f2 Merge pull request #25027 from scoulomb-dup-fork/secret-env-var
Env var are not updated after a secret update
2020-12-08 21:26:50 -08:00
jiazxjason 53120bd57b Update configure-upgrade-etcd.md 2020-12-09 13:25:51 +08:00
Kubernetes Prow Robot e553c6dabd Merge pull request #25479 from yuandongx/patch-1
[zh] Update service.md
2020-12-08 21:24:50 -08:00
Kubernetes Prow Robot 5e0e85db5c Merge pull request #25492 from bl-ue/patch-4
Fix broken link to metrics-server
2020-12-08 21:22:49 -08:00
Daniel Hiltgen 43c34404cd Add mention of kubectl BuildKit CLI plugin
The buildkit-cli-for-kubectl project aims to provide a drop-in replacement for
`docker build` with compatible UX.  Some users looking to migrate off
dockershim may find this CLI plugin useful.

Signed-off-by: Daniel Hiltgen <hiltgend@vmware.com>
2020-12-08 20:44:10 -08:00
bl-ue a67a087bf8 Fix broken link to metrics-server 2020-12-08 22:16:16 -05:00
Kubernetes Prow Robot 03dc8b99b9 Merge pull request #25491 from Kartik494/updatedeployment
Update rollout deployment command
2020-12-08 18:12:19 -08:00
Kubernetes Prow Robot cfe47ddf9e Merge pull request #23328 from rayw000/shell-scripts-syntax-highlighting
Shell script syntax highlighting in README.md
2020-12-08 17:24:05 -08:00
Kubernetes Prow Robot 282666d967 Merge pull request #25506 from Arhell/sync-install-kube
[zh] sync install-kubeadm.md
2020-12-08 17:06:04 -08:00
Kobayashi Daisuke 7843284ce6 Update content/ja/docs/setup/release/version-skew-policy.md
Co-authored-by: makocchi <makocchi@gmail.com>
2020-12-09 09:43:24 +09:00
Kobayashi Daisuke 012fcb0d00 Update content/ja/docs/setup/release/version-skew-policy.md
Co-authored-by: makocchi <makocchi@gmail.com>
2020-12-09 09:43:15 +09:00
Rey Lejano c86ca1a570 add note shortcode to 'Debugging Kubernetes nodes with crictl' 2020-12-08 15:49:18 -08:00
Tim Bannister aa27de5959 Tweak wording for Workloads overview 2020-12-08 23:46:27 +00:00
Arhell fc57d43747 [zh] sync install-kubeadm.md 2020-12-09 01:12:20 +02:00
Kubernetes Prow Robot caa05b9456 Merge pull request #25245 from SergeyKanzhelev/pid-available
add `pid.available` to the eviction signals list
2020-12-08 15:11:34 -08:00
Kubernetes Prow Robot 7f1bff9f53 Merge pull request #25494 from m0freak/patch-1
Add sudo when running systemctl
2020-12-08 15:09:34 -08:00
Kubernetes Prow Robot cd2c440bf7 Merge pull request #25503 from annajung/update-release-notes
Update release notes for 1.20 release
2020-12-08 15:03:35 -08:00
Sergey Kanzhelev d1dc73cb3a add pid.available to the eviction signals list 2020-12-08 22:58:23 +00:00
Kubernetes Prow Robot 620ba6d484 Merge pull request #25109 from qiutongs/master
Add a mapping table from docker cli to crictl in crictl debugging doc
2020-12-08 14:45:34 -08:00
Anna Jung (VMware) 78f36756cd Update release notes for 1.20 release
Signed-off-by: Anna Jung (VMware) <antheaj@vmware.com>
2020-12-08 16:38:06 -06:00
Qiutong Song aa880306c6 Address comments
Signed-off-by: Qiutong Song <songqt01@gmail.com>
2020-12-08 22:35:57 +00:00
Kubernetes Prow Robot 02dc538596 Merge pull request #25496 from browningjp/patch-1
Clarified kubectl generators being deprecated
2020-12-08 14:15:34 -08:00
Kubernetes Prow Robot 8f46bc1ac4 Merge pull request #25453 from jiaj12/patch-53
Update kubectl.md
2020-12-08 14:13:34 -08:00
Kubernetes Prow Robot fc244c3188 Merge pull request #25447 from jiaj12/patch-48
Update style-guide.md
2020-12-08 14:11:35 -08:00
Kubernetes Prow Robot cac080e8b2 Merge pull request #25434 from jiaj12/patch-45
Update parallel-processing-expansion.md
2020-12-08 14:09:35 -08:00
Kubernetes Prow Robot b352338ce5 Merge pull request #25419 from bl-ue/patch-2
Remove usage of 'we' in kubelet-garbage-collection.md
2020-12-08 14:07:34 -08:00
Qiutong Song 3e8e1d924e Address comments
Signed-off-by: Qiutong Song <songqt01@gmail.com>
2020-12-08 20:49:13 +00:00
Qiutong Song cb55041b1a Add a mapping table from docker cli to crictl in crictl debugging doc
Signed-off-by: Qiutong Song <songqt01@gmail.com>
2020-12-08 20:44:55 +00:00
Sylvain Coulombel d77262740b Env var are not updated after a secret update 2020-12-08 21:12:03 +01:00
Mike Gehard 9c38911446 Make wording in overview more in line with the description
The description talks about the server one way and the overview text talks about it a bit differently.

This change aligns them and make them easier to understand in my opinion.
2020-12-08 13:07:34 -05:00
Adam Kaplan 7b80f63dbc Caution Note for ssh-auth Secrets
Adds a `caution` note that SSH key pairs do not establish trust between
clients and servers. A secondary method is required to establish trust
between an SSH client and host server, such as fixed `known_hosts` file.
Clients which do not establish adequate trust are vulnerable to "man in
the middle" impersonation attacks.

Signed-off-by: Adam Kaplan <adam.kaplan@redhat.com>
2020-12-08 12:21:08 -05:00
Jonny Browning 23d2722023 Clarified kubectl generators being deprecated
Previously it was not clear that it was only the generators used by `kubectl run` that are deprecated, not those used by `kubectl create`
2020-12-08 15:20:33 +00:00
m0freak 5f6b3af864 Add sudo when running systemctl
For someone following the guide to setup a cluster, sudo is being used in the initial commands, I think it would great to carry this on till the last commands.
2020-12-08 17:39:09 +03:00
kartik494 fd411a39c1 Update rollout deployment command 2020-12-08 18:29:05 +05:30
wangyamei 58c6e381ca Update feature-gates description for TopologyManager 2020-12-08 19:56:00 +08:00
Salvador González González 18b8846b9b Update cron-jobs.md
Mention about v2 CronJob controller.
2020-12-08 11:00:18 +00:00
makocchi-git 28c964b5c9 trim whitespaces in manifests 2020-12-08 19:54:28 +09:00
prankul88 613cb9d4f3 Update expose service intro 2020-12-08 14:54:49 +05:30
jiazxjason 3c1120bf1a Update adding-windows-nodes.md 2020-12-08 17:09:10 +08:00
jiazxjason f6b254cf17 Update configure-pod-configmap.md 2020-12-08 14:49:57 +08:00
yuandongx dfde83004e missing '。' && update to make the sentence better. 2020-12-08 06:33:03 +00:00
jiajie 68a0cdb9ea Update style-guide.md 2020-12-08 13:18:34 +08:00
jiajie 954ca51bd1 Update style-guide.md 2020-12-08 11:22:45 +08:00
jiajie 9aa4791626 Update kubectl.md 2020-12-08 11:01:13 +08:00
jiajie 8a875ac352 Update parallel-processing-expansion.md 2020-12-08 10:39:43 +08:00
bl-ue 042e3062c6 Update kubelet-garbage-collection.md 2020-12-07 12:44:03 -05:00
bl-ue 73adc5b617 Update 2020-12-02-dont-panic-kubernetes-and-docker.md
Fix grammar
2020-12-07 10:53:58 -05:00
bl-ue 7947cff95a Update 2020-12-02-dockershim-faq.md
Fix grammar
2020-12-07 10:35:48 -05:00
drfish e354338ca3 Remove legacy feature gate EnableAggregatedDiscoveryTimeout 2020-12-07 21:39:46 +08:00
amyXia1994 75cd79a136 Update secret.md
fix minor syntax error
2020-12-07 21:28:37 +08:00
Kobayashi Daisuke 0ccba5500a Update content/ja/docs/setup/release/version-skew-policy.md
Co-authored-by: Keita Akutsu <kakts.git@gmail.com>
2020-12-07 09:13:53 +09:00
bl-ue f61eea7e98 Fix grammar in content/en/docs/concepts/cluster-administration/kubelet-garbage-collection.md 2020-12-06 17:12:19 -05:00
Salvador González González d38c74124a Update content/en/docs/concepts/workloads/controllers/cron-jobs.md
Co-authored-by: bl-ue <54780737+bl-ue@users.noreply.github.com>
2020-12-06 20:08:30 +00:00
salva.gglez 845a885531 Add a caution message on CronJob Controller workload if using startingDeadlineSeconds with a value less than 10s 2020-12-06 17:02:01 +00:00
bl-ue e5e0d74573 Remove usage of 'we' in kubelet-garbage-collection.md 2020-12-06 08:24:03 -05:00
Chieh-Min Wang 4237738f3c docs: add partition field for EBS
If the EBS volume is partitioned, you have to specify which partition to
mount or the mounting process will fail.

```
mount: /var/lib/kubelet/plugins/kubernetes.io/aws-ebs/mounts/vol-<volumeid>: wrong fs type, bad option, bad superblock on /dev/nvme3n1, missing codepage or helper program, or other error.
```
2020-12-05 13:39:57 +08:00
Charle Demers 590cac5fb5 Update content/en/docs/tasks/access-application-cluster/port-forward-access-application-cluster.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2020-12-04 10:35:39 -05:00
Charle Demers 36ab3f3fae Update content/en/docs/tasks/access-application-cluster/port-forward-access-application-cluster.md
Co-authored-by: Tim Bannister <tim@scalefactory.com>
2020-12-04 10:33:56 -05:00
Kobayashi Daisuke 7797d998fa Update content/ja/docs/setup/release/version-skew-policy.md
Co-authored-by: Keita Akutsu <kakts.git@gmail.com>
2020-12-04 15:06:29 +09:00
Kubernetes Prow Robot 5b365505f2 Merge pull request #25279 from movingfinger/translate-25213
Update the outdated file ja/docs/home/supported-doc-versions.md
2020-12-03 21:29:26 -08:00
Sangam Biradar 619eb00575 Update cheatsheet.md 2020-12-04 05:00:46 +05:30
Charle Demers e651788efd Update port-forward-access-application-cluster.md
Add documentation about the simplified port mapping notation
2020-12-03 14:30:43 -05:00
Chuck Wilson 4d9cbb7797 Fix minor typo 2020-12-03 12:36:42 -05:00
Kubernetes Prow Robot 03976115a7 Merge pull request #25331 from akitok/issue_25216
Make docs/reference/kubectl/cheatsheet.md follow v1.18 of the origina…
2020-12-03 08:27:00 -08:00
akitok b6440dec18 Update content/ja/docs/reference/kubectl/cheatsheet.md
Co-authored-by: Keita Akutsu <kakts.git@gmail.com>
2020-12-03 18:31:47 +09:00
Shekhar Prasad Rajak df69d3c354 Cron schedule syntax and examples added
removed the reboot entry, since it is non standard scheudle syntax and not related to cron syntax for scheduling
2020-12-03 13:43:23 +05:30
Adam Jacob f2a9a3ef81 Explain the insecure by default nature of secrets
This PR adds a paragraph explaining the insecure by default nature of k8s secrets, and points users at the documentation to turn on encryption at rest and RBAC.

I think a second page needs to be created showing the correct combination of RBAC rules for various cases, which should eventually replace the link to the RBAC documentation.
2020-12-02 12:49:02 -08:00
RA489 2abce40d08 add code formatting to commands in expose-external-ip-address tutorial 2020-12-02 14:55:14 +05:30
Kobayashi 7c357277f6 ja: Make docs/setup/production-environment/container-runtimes.md follow v1.18 of the original text 2020-12-02 17:19:12 +09:00
Anderson Gama f4e15f337f Update docker-cli-to-kubectl.md 2020-12-01 13:56:50 -03:00
RA489 0a2ec705b9 Update hello minikube tutorial intro page 2020-12-01 12:51:38 +05:30
Ray Wang 02d715ee13 Add [version-menu] section into /i18n/zh.toml 2020-12-01 15:12:42 +08:00
Anna Jung (VMware) 1890273af0 Update documenting a feature for a release doc
Signed-off-by: Anna Jung (VMware) <antheaj@vmware.com>
2020-11-30 19:17:37 -06:00
Akito Kobayashi 3d83f8ba99 Make docs/reference/kubectl/cheatsheet.md follow v1.18 of the original text 2020-11-30 23:06:27 +09:00
Shubham Chauhan 2ec4b1d550 Adding AKO (Avi Kubernetes Operator) to the list of ingress controllers 2020-11-30 17:36:01 +05:30
Kubernetes Prow Robot 8047c5a10e Merge pull request #25297 from arisgi/explore-intro-1.18-ja
ja: Make docs/tutorials/kubernetes-basics/explore/explore-intro.html follow v1.18 of the original text
2020-11-30 00:06:49 -08:00
arisgi b715350b9a ja: Make docs/tutorials/kubernetes-basics/explore/explore-intro.html follow v1.18 of the original text 2020-11-29 23:51:05 +09:00
lethe2211 1050eea844 Fix Japanese translation of a note in reference/kubectl/jsonpath 2020-11-28 11:14:25 +09:00
lethe2211 ad6896c1c0 Fix Japanese translation of "Interpreted" in reference/kubectl/jsonpath 2020-11-28 11:08:05 +09:00
lethe2211 96ca298120 Fix Japanese translation of "Use" in reference/kubectl/jsonpath 2020-11-28 11:03:32 +09:00
lethe2211 147a071b5d Fix Japanese translation of "curly braces" in reference/kubectl/jsonpath 2020-11-28 11:01:03 +09:00
movingfinger f899d4d4b7 fix typo 2020-11-28 00:21:39 +09:00
Rodrigo Porcionato b0f6dbe77b Merge branch 'master' into patch-1 2020-11-27 11:28:08 -03:00
Kubernetes Prow Robot e1aae1e6cc Merge pull request #25264 from KobayashiD27/update-glossary-apiserver
ja: Make docs/reference/glossary/kube-apiserver.md follow v1.18 of the original text
2020-11-27 06:06:48 -08:00
Kubernetes Prow Robot a341777494 Merge pull request #25280 from masanetes/fix/typo
fix typo
2020-11-27 05:40:48 -08:00
movingfinger b6b7ff96f3 update ja/docs/home/supported-doc-versions.md 2020-11-27 21:57:02 +09:00
masanetes 805d0d8f7b fix typo 2020-11-27 21:56:44 +09:00
Kobayashi 04e2ba4a60 Update full link 2020-11-27 19:01:41 +09:00
Kobayashi 5657e5f0c6 Update docs/setup/release/version-skew-policy.md 2020-11-27 16:07:32 +09:00
Kubernetes Prow Robot 34c9c4e1b1 Merge pull request #25253 from movingfinger/transl-25203
update ja/docs/_index.md
2020-11-26 18:28:19 -08:00
movingfinger 4548ceb833 update ja/docs/_index.md 2020-11-26 18:23:20 +09:00
Weiping Cai 9e9bb44eeb clairfy pod phase Terminating
Signed-off-by: Weiping Cai <weiping.cai@daocloud.io>
2020-11-26 17:12:08 +08:00
Antonio Ojea e1bd7c0950 expand nodelocaldns docs with IPv6 2020-11-26 09:06:31 +01:00
Michael Hofer 4adea80ff8 Docs: Add containerd setup instructions for Ubuntu 18.04/20.04 2020-11-25 21:57:22 +01:00
clearbjli 587f6cee63 Update container-runtimes.md
--keyring option to apt-key must come before the "add" command. Otherwise this step will fail (verified on Ubuntu 20.04.1 LTS).
2020-11-25 21:57:21 +01:00
Felipe 45b4e5a39a Update content/pt/_index.html
Co-authored-by: bl-ue <54780737+bl-ue@users.noreply.github.com>
2020-11-25 09:07:35 +00:00
lethe2211 2081989d3f Fix the case of kubectl in the beginning of sentences 2020-11-24 22:00:39 +09:00
lethe2211 8e9b1564a9 Translate a table heading in reference/kubectl/jsonpath/ into Japanese 2020-11-24 21:46:58 +09:00
jess-edwards 021ffe7a87 new blog post: Custom K8s Scheduler for Highly Available Apps 2020-11-23 20:02:48 -05:00
Iskandar Abudiab e910fb10a5 Add Swift client library 2020-11-23 20:45:53 +01:00
lethe2211 332beb7054 Translate reference/kubectl/jsonpath/ into Japanese 2020-11-23 16:37:05 +09:00
Neha Viswanathan 2ed094fe61 short link for k8s cheat sheet 2020-11-18 07:57:04 -08:00
Collignon-Ducret Rémi 01262ab3c2 Fix formatting issue
https://kubernetes.io/fr/docs/concepts/workloads/controllers/deployment/#mise-%C3%A0-jour-d-un-d%C3%A9ploiement
Obtenez les détails de votre déploiement -> La sortie est similaire à ceci
2020-11-16 15:49:00 +01:00
lanandra 4ffb64dfb7 fix typo file in languge id ingress
edit content/id/docs/concepts/services-networking/ingress.md
2020-11-14 12:17:24 +07:00
Kubernetes Prow Robot 0d293c7a88 Merge pull request #25023 from marimo713/fix-cheatsheet
delete conflict message
2020-11-13 09:35:05 -08:00
Koki SAITO ff350996d2 delete conflict message 2020-11-13 18:40:38 +09:00
Kubernetes Prow Robot ca353322b5 Merge pull request #25002 from ken-tunc/fix-ingress-controllers
Update ingress-controllers.md
2020-11-12 08:26:50 -08:00
ken_tunc 1b90c79223 Update ingress-controllers.md 2020-11-13 01:05:08 +09:00
Prakher Singhal a2a2896865 Update pod-lifecycle.md
Default for periodSeconds field of startupProbe resource is 10 seconds.

$ kubectl explain pod.spec.containers.startupProbe.periodSeconds
KIND:     Pod
VERSION:  v1

FIELD:    periodSeconds <integer>

DESCRIPTION:
     How often (in seconds) to perform the probe. Default to 10 seconds. Minimum
     value is 1.
2020-11-12 14:51:23 +05:30
TAKAHASHI Shuuji 4d44cd3ae1 Add comments for the commands in Makefile. 2020-11-05 21:02:21 +09:00
Arman 71e501a95b fix typo
tpyically -> typically
2020-11-02 22:30:28 +06:00
zhanwang f57fe73c5e Update uk translation in README-uk.md 2020-11-01 17:10:55 +00:00
Quentin Bourgeois ddb1f759ee Merge branch 'dev-1.19-fr.1' of bobsaintcool.github.com:bobsaintcool/website into dev-1.19-fr.1 2020-10-24 13:44:53 +00:00
Quentin Bourgeois 8df84e2708 Fix links MD syntax typo in FR documentation 2020-10-24 13:41:56 +00:00
Quentin Bourgeois dee98660da Fix links MD syntax typo in FR documentation 2020-10-24 10:21:12 +00:00
W. Trevor King 71cdde7857 content/en/docs/tasks/run-application/configure-pdb: Acceptable overlapping PDBs
The previous "must be careful not to create" wording was making folks
uncomfortable about brief overlap periods while transitioning between
two PDBs [1].

[1]: https://bugzilla.redhat.com/show_bug.cgi?id=1861104#c29
2020-10-15 12:45:18 -07:00
TAKAHASHI Shuuji 9ee52f94c4 Copy en/docs/contribute/review/reviewing-prs.md. 2020-09-17 18:37:24 +09:00
Rodrigo Porcionato 6c2983578c Update _index.html 2020-08-27 11:31:29 -03:00
Ray Wang 7ae9f1ed43 shell script syntax highlighting in README.md 2020-08-22 16:35:43 +08:00
1315 changed files with 97660 additions and 32347 deletions
@@ -0,0 +1,15 @@
---
name: Scheduled Netlify site build
on:
schedule: # Build twice daily: shortly after midnight and noon (UTC)
# Offset is to be nice to the build service
- cron: '4 0,12 * * *'
jobs:
build:
runs-on: ubuntu-latest
steps:
- name: Trigger build on Netlify
env:
TOKEN: ${{ secrets.NETLIFY_BUILD_HOOK_KEY }}
run: >-
curl -s -H "Accept: application/json" -H "Content-Type: application/json" -X POST -d "{}" "https://api.netlify.com/build_hooks/${TOKEN}"
+3
View File
@@ -1,3 +1,6 @@
[submodule "themes/docsy"]
path = themes/docsy
url = https://github.com/google/docsy.git
[submodule "api-ref-generator"]
path = api-ref-generator
url = https://github.com/kubernetes-sigs/reference-docs
+1 -1
View File
@@ -4,7 +4,7 @@
# change is that the Hugo version is now an overridable argument rather than a fixed
# environment variable.
FROM alpine:latest
FROM golang:1.15-alpine
LABEL maintainer="Luc Perkins <lperkins@linuxfoundation.org>"
+9 -2
View File
@@ -58,7 +58,7 @@ docker-serve:
@echo -e "$(CCRED)**** The use of docker-serve is deprecated. Use container-serve instead. ****$(CCEND)"
$(MAKE) container-serve
container-image:
container-image: ## Build a container image for the preview of the website
$(CONTAINER_ENGINE) build . \
--network=host \
--tag $(CONTAINER_IMAGE) \
@@ -67,7 +67,7 @@ container-image:
container-build: module-check
$(CONTAINER_RUN) --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 $(CONTAINER_IMAGE) sh -c "npm ci && hugo --minify"
container-serve: module-check
container-serve: module-check ## Boot the development server using container. Run `make container-image` before this.
$(CONTAINER_RUN) --read-only --mount type=tmpfs,destination=/tmp,tmpfs-mode=01777 -p 1313:1313 $(CONTAINER_IMAGE) hugo server --buildFuture --bind 0.0.0.0 --destination /tmp/hugo --cleanDestinationDir
test-examples:
@@ -85,3 +85,10 @@ docker-internal-linkcheck:
container-internal-linkcheck: link-checker-image-pull
$(CONTAINER_RUN) $(CONTAINER_IMAGE) hugo --config config.toml,linkcheck-config.toml --buildFuture
$(CONTAINER_ENGINE) run --mount type=bind,source=$(CURDIR),target=/test --rm wjdp/htmltest htmltest
clean-api-reference: ## Clean all directories in API reference directory, preserve _index.md
rm -rf content/en/docs/reference/kubernetes-api/*/
api-reference: clean-api-reference ## Build the API reference pages. go needed
cd api-ref-generator/gen-resourcesdocs && \
go run cmd/main.go kwebsite --config-dir config/v1.20/ --file api/v1.20/swagger.json --output-dir ../../content/en/docs/reference/kubernetes-api --templates templates
+32 -10
View File
@@ -7,12 +7,10 @@ aliases:
- mrbobbytables
sig-docs-blog-reviewers: # Reviewers for blog content
- castrojo
- cody-clark
- kbarnard10
- mrbobbytables
- onlydole
- parispittman
- vonguard
- sftim
sig-docs-de-owners: # Admins for German content
- bene2k1
- mkorbi
@@ -30,6 +28,7 @@ aliases:
- kbarnard10
- kbhawkey
- onlydole
- reylejano
- savitharaghunathan
- sftim
- steveperry-53
@@ -94,14 +93,21 @@ aliases:
- daminisatya
- mittalyashu
sig-docs-id-owners: # Admins for Indonesian content
- girikuncoro
- irvifa
sig-docs-id-reviews: # PR reviews for Indonesian content
- girikuncoro
- irvifa
- wahyuoi
- phanama
- ariscahyadi
- danninov
- girikuncoro
- habibrosyad
- irvifa
- phanama
- wahyuoi
sig-docs-id-reviews: # PR reviews for Indonesian content
- ariscahyadi
- danninov
- girikuncoro
- habibrosyad
- irvifa
- phanama
- wahyuoi
sig-docs-it-owners: # Admins for Italian content
- fabriziopandini
- Fale
@@ -138,6 +144,7 @@ aliases:
- seokho-son
- ysyukr
- pjhwa
- yoonian
sig-docs-leads: # Website chairs and tech leads
- irvifa
- jimangel
@@ -169,14 +176,20 @@ aliases:
# zhangxiaoyu-zidif
sig-docs-pt-owners: # Admins for Portuguese content
- femrtnz
- jailton
- jcjesus
- devlware
- jhonmike
- rikatz
- yagonobre
sig-docs-pt-reviews: # PR reviews for Portugese content
- femrtnz
- jailton
- jcjesus
- devlware
- jhonmike
- rikatz
- yagonobre
sig-docs-vi-owners: # Admins for Vietnamese content
- huynguyennovem
- ngtuna
@@ -214,3 +227,12 @@ aliases:
- idvoretskyi
- MaxymVlasov
- Potapy4
# authoritative source: git.k8s.io/community/OWNERS_ALIASES
committee-steering: # provide PR approvals for announcements
- cblecker
- derekwaynecarr
- dims
- liggitt
- mrbobbytables
- nikhita
- parispittman
+4 -4
View File
@@ -14,9 +14,9 @@ Sobald Ihre Pull-Anfrage erstellt wurde, übernimmt ein Rezensent von Kubernetes
Weitere Informationen zum Beitrag zur Kubernetes-Dokumentation finden Sie unter:
* [Mitwirkung beginnen](https://kubernetes.io/docs/contribute/start/)
* [Ihre Dokumentationsänderungen bereitstellen](http://kubernetes.io/docs/contribute/intermediate#view-your-changes-locally)
* [Seitenvorlagen verwenden](http://kubernetes.io/docs/contribute/style/page-content-types/)
* [Dokumentationsstil-Handbuch](http://kubernetes.io/docs/contribute/style/style-guide/)
* [Ihre Dokumentationsänderungen bereitstellen](https://kubernetes.io/docs/contribute/intermediate#view-your-changes-locally)
* [Seitenvorlagen verwenden](https://kubernetes.io/docs/contribute/style/page-content-types/)
* [Dokumentationsstil-Handbuch](https://kubernetes.io/docs/contribute/style/style-guide/)
* [Übersetzung der Kubernetes-Dokumentation](https://kubernetes.io/docs/contribute/localization/)
## `README.md`'s Localizing Kubernetes Documentation
@@ -65,7 +65,7 @@ Dadurch wird der lokale Hugo-Server an Port 1313 gestartet. Öffnen Sie Ihren Br
## Community, Diskussion, Beteiligung und Unterstützung
Erfahren Sie auf der [Community-Seite](http://kubernetes.io/community/) wie Sie mit der Kubernetes-Community interagieren können.
Erfahren Sie auf der [Community-Seite](https://kubernetes.io/community/) wie Sie mit der Kubernetes-Community interagieren können.
Sie können die Betreuer dieses Projekts unter folgender Adresse erreichen:
+15 -4
View File
@@ -17,9 +17,9 @@ Los revisores harán todo lo posible para proporcionar toda la información nece
Para obtener más información sobre cómo contribuir a la documentación de Kubernetes, puede consultar:
* [Empezando a contribuir](https://kubernetes.io/docs/contribute/start/)
* [Visualizando sus cambios en su entorno local](http://kubernetes.io/docs/contribute/intermediate#view-your-changes-locally)
* [Utilizando las plantillas de las páginas](http://kubernetes.io/docs/contribute/style/page-content-types/)
* [Guía de estilo de la documentación](http://kubernetes.io/docs/contribute/style/style-guide/)
* [Visualizando sus cambios en su entorno local](https://kubernetes.io/docs/contribute/intermediate#view-your-changes-locally)
* [Utilizando las plantillas de las páginas](https://kubernetes.io/docs/contribute/style/page-content-types/)
* [Guía de estilo de la documentación](https://kubernetes.io/docs/contribute/style/style-guide/)
* [Traduciendo la documentación de Kubernetes](https://kubernetes.io/docs/contribute/localization/)
## Levantando el sitio web kubernetes.io en su entorno local con Docker
@@ -30,6 +30,17 @@ El método recomendado para levantar una copia local del sitio web kubernetes.io
> Si prefiere levantar el sitio web sin utilizar **Docker**, puede seguir las instrucciones disponibles en la sección [Levantando kubernetes.io en local con Hugo](#levantando-kubernetesio-en-local-con-hugo).
**`Nota`: Para el procedimiento de construir una imagen de Docker e iniciar el servidor.**
El sitio web de Kubernetes utiliza Docsy Hugo theme. Se sugiere que se instale si aún no se ha hecho, los **submódulos** y otras dependencias de herramientas de desarrollo ejecutando el siguiente comando de `git`:
```bash
# pull de los submódulos del repositorio
git submodule update --init --recursive --depth 1
```
Si identifica que `git` reconoce una cantidad innumerable de cambios nuevos en el proyecto, la forma más simple de solucionarlo es cerrando y volviendo a abrir el proyecto en el editor. Los submódulos son automáticamente detectados por `git`, pero los plugins usados por los editores pueden tener dificultades para ser cargados.
Una vez tenga Docker [configurado en su máquina](https://www.docker.com/get-started), puede construir la imagen de Docker `kubernetes-hugo` localmente ejecutando el siguiente comando en la raíz del repositorio:
```bash
@@ -73,4 +84,4 @@ La participación en la comunidad de Kubernetes está regulada por el [Código d
Kubernetes es posible gracias a la participación de la comunidad y la documentación es vital para facilitar el acceso al proyecto.
Agradecemos muchísimo sus contribuciones a nuestro sitio web y nuestra documentación.
Agradecemos muchísimo sus contribuciones a nuestro sitio web y nuestra documentación.
+173 -56
View File
@@ -1,76 +1,193 @@
# A documentação do Kubernetes
[![Build Status](https://api.travis-ci.org/kubernetes/website.svg?branch=master)](https://travis-ci.org/kubernetes/website)
[![GitHub release](https://img.shields.io/github/release/kubernetes/website.svg)](https://github.com/kubernetes/website/releases/latest)
[![Netlify Status](https://api.netlify.com/api/v1/badges/be93b718-a6df-402a-b4a4-855ba186c97d/deploy-status)](https://app.netlify.com/sites/kubernetes-io-master-staging/deploys) [![GitHub release](https://img.shields.io/github/release/kubernetes/website.svg)](https://github.com/kubernetes/website/releases/latest)
Bem vindos! Este repositório abriga todos os recursos necessários para criar o [site e documentação do Kubernetes](https://kubernetes.io/). Estamos muito satisfeitos por você querer contribuir!
Bem-vindos! Este repositório contém todos os recursos necessários para criar o [website e documentação do Kubernetes](https://kubernetes.io/). Estamos muito satisfeitos por você querer contribuir!
## Contribuindo com os documentos
# Utilizando este repositório
Você pode clicar no botão **Fork** na área superior direita da tela para criar uma cópia desse repositório na sua conta do GitHub. Esta cópia é chamada de *fork*. Faça as alterações desejadas no seu fork e, quando estiver pronto para enviar as alterações para nós, vá até o fork e crie uma nova solicitação de pull para nos informar sobre isso.
Você pode executar o website localmente utilizando o Hugo (versão Extended), ou você pode executa-ló em um container runtime. É altamente recomendável utilizar um container runtime, pois garante a consistência na implantação do website real.
Depois que seu **pull request** for criado, um revisor do Kubernetes assumirá a responsabilidade de fornecer um feedback claro e objetivo. Como proprietário do pull request, **é sua responsabilidade modificar seu pull request para abordar o feedback que foi fornecido a você pelo revisor do Kubernetes.** Observe também que você pode acabar tendo mais de um revisor do Kubernetes para fornecer seu feedback ou você pode acabar obtendo feedback de um revisor do Kubernetes que é diferente daquele originalmente designado para lhe fornecer feedback. Além disso, em alguns casos, um de seus revisores pode solicitar uma revisão técnica de um [revisor de tecnologia Kubernetes](https://github.com/kubernetes/website/wiki/Tech-reviewers) quando necessário. Os revisores farão o melhor para fornecer feedback em tempo hábil, mas o tempo de resposta pode variar de acordo com as circunstâncias.
## Pré-requisitos
Para usar este repositório, você precisa instalar:
- [npm](https://www.npmjs.com/)
- [Go](https://golang.org/)
- [Hugo (versão Extended)](https://gohugo.io/)
- Um container runtime, por exemplo [Docker](https://www.docker.com/).
Antes de você iniciar, instale as dependências, clone o repositório e navegue até o diretório:
```
git clone https://github.com/kubernetes/website.git
cd website
```
O website do Kubernetes utiliza o [tema Docsy Hugo](https://github.com/google/docsy#readme). Mesmo se você planeje executar o website em um container, é altamente recomendado baixar os submódulos e outras dependências executando o seguinte comando:
```
# Baixar o submódulo Docsy
git submodule update --init --recursive --depth 1
```
## Executando o website usando um container
Para executar o build do website em um container, execute o comando abaixo para criar a imagem do container e executa-lá:
```
make container-image
make container-serve
```
Abra seu navegador em http://localhost:1313 para visualizar o website. Conforme você faz alterações nos arquivos fontes, o Hugo atualiza o website e força a atualização do navegador.
## Executando o website localmente utilizando o Hugo
Consulte a [documentação oficial do Hugo](https://gohugo.io/getting-started/installing/) para instruções de instalação do Hugo. Certifique-se de instalar a versão do Hugo especificada pela variável de ambiente `HUGO_VERSION` no arquivo [`netlify.toml`](netlify.toml#L9).
Para executar o build e testar o website localmente, execute:
```bash
# instalar dependências
npm ci
make serve
```
Isso iniciará localmente o Hugo na porta 1313. Abra o seu navegador em http://localhost:1313 para visualizar o website. Conforme você faz alterações nos arquivos fontes, o Hugo atualiza o website e força uma atualização no navegador.
## Construindo a página de referência da API
A página de referência da API localizada em `content/en/docs/reference/kubernetes-api` é construída a partir da especificação do Swagger utilizando https://github.com/kubernetes-sigs/reference-docs/tree/master/gen-resourcesdocs.
Siga os passos abaixo para atualizar a página de referência para uma nova versão do Kubernetes:
OBS: modifique o "v1.20" no exemplo a seguir pela versão a ser atualizada
1. Obter o submódulo `kubernetes-resources-reference`:
```
git submodule update --init --recursive --depth 1
```
2. Criar a nova versão da API no submódulo e adicionar à especificação do Swagger:
```
mkdir api-ref-generator/gen-resourcesdocs/api/v1.20
curl 'https://raw.githubusercontent.com/kubernetes/kubernetes/master/api/openapi-spec/swagger.json' > api-ref-generator/gen-resourcesdocs/api/v1.20/swagger.json
```
3. Copiar o sumário e os campos de configuração para a nova versão a partir da versão anterior:
```
mkdir api-ref-generator/gen-resourcesdocs/api/v1.20
cp api-ref-generator/gen-resourcesdocs/api/v1.19/* api-ref-generator/gen-resourcesdocs/api/v1.20/
```
4. Ajustar os arquivos `toc.yaml` e `fields.yaml` para refletir as mudanças entre as duas versões.
5. Em seguida, gerar as páginas:
```
make api-reference
```
Você pode validar o resultado localmente gerando e disponibilizando o site a partir da imagem do container:
```
make container-image
make container-serve
```
Abra o seu navegador em http://localhost:1313/docs/reference/kubernetes-api/ para visualizar a página de referência da API.
6. Quando todas as mudanças forem refletidas nos arquivos de configuração `toc.yaml` e `fields.yaml`, crie um pull request com a nova página de referência de API.
## Troubleshooting
### error: failed to transform resource: TOCSS: failed to transform "scss/main.scss" (text/x-scss): this feature is not available in your current Hugo version
Por motivos técnicos, o Hugo é disponibilizado em dois conjuntos de binários. O website atual funciona apenas na versão **Hugo Extended**. Na [página de releases](https://github.com/gohugoio/hugo/releases) procure por arquivos com `extended` no nome. Para confirmar, execute `hugo version` e procure pela palavra `extended`.
### Troubleshooting macOS for too many open files
Se você executar o comando `make serve` no macOS e retornar o seguinte erro:
```
ERROR 2020/08/01 19:09:18 Error: listen tcp 127.0.0.1:1313: socket: too many open files
make: *** [serve] Error 1
```
Verifique o limite atual para arquivos abertos:
`launchctl limit maxfiles`
Em seguida, execute os seguintes comandos (adaptado de https://gist.github.com/tombigel/d503800a282fcadbee14b537735d202c):
```shell
#!/bin/sh
# Esse são os links do gist original, vinculados ao meu gists agora.
# curl -O https://gist.githubusercontent.com/a2ikm/761c2ab02b7b3935679e55af5d81786a/raw/ab644cb92f216c019a2f032bbf25e258b01d87f9/limit.maxfiles.plist
# curl -O https://gist.githubusercontent.com/a2ikm/761c2ab02b7b3935679e55af5d81786a/raw/ab644cb92f216c019a2f032bbf25e258b01d87f9/limit.maxproc.plist
curl -O https://gist.githubusercontent.com/tombigel/d503800a282fcadbee14b537735d202c/raw/ed73cacf82906fdde59976a0c8248cce8b44f906/limit.maxfiles.plist
curl -O https://gist.githubusercontent.com/tombigel/d503800a282fcadbee14b537735d202c/raw/ed73cacf82906fdde59976a0c8248cce8b44f906/limit.maxproc.plist
sudo mv limit.maxfiles.plist /Library/LaunchDaemons
sudo mv limit.maxproc.plist /Library/LaunchDaemons
sudo chown root:wheel /Library/LaunchDaemons/limit.maxfiles.plist
sudo chown root:wheel /Library/LaunchDaemons/limit.maxproc.plist
sudo launchctl load -w /Library/LaunchDaemons/limit.maxfiles.plist
```
Esta solução funciona tanto para o MacOS Catalina quanto para o MacOS Mojave.
### Erro de "Out of Memory"
Se você executar o comando `make container-serve` e retornar o seguinte erro:
```
make: *** [container-serve] Error 137
```
Verifique a quantidade de memória disponível para o agente de execução de contêiner. No caso do Docker Desktop para macOS, abra o menu "Preferences..." -> "Resources..." e tente disponibilizar mais memória.
# Comunidade, discussão, contribuição e apoio
Saiba mais sobre a comunidade Kubernetes SIG Docs e reuniões na [página da comunidade](http://kubernetes.io/community/).
Você também pode entrar em contato com os mantenedores deste projeto em:
- [Slack](https://kubernetes.slack.com/messages/sig-docs) ([Obter o convide para o este slack](https://slack.k8s.io/))
- [Mailing List](https://groups.google.com/forum/#!forum/kubernetes-sig-docs)
# Contribuindo com os documentos
Você pode clicar no botão **Fork** na área superior direita da tela para criar uma cópia desse repositório na sua conta do GitHub. Esta cópia é chamada de *fork*. Faça as alterações desejadas no seu fork e, quando estiver pronto para enviar as alterações para nós, vá até o fork e crie um novo **pull request** para nos informar sobre isso.
Depois que seu **pull request** for criado, um revisor do Kubernetes assumirá a responsabilidade de fornecer um feedback claro e objetivo. Como proprietário do pull request, **é sua responsabilidade modificar seu pull request para atender ao feedback que foi fornecido a você pelo revisor do Kubernetes.**
Observe também que você pode acabar tendo mais de um revisor do Kubernetes para fornecer seu feedback ou você pode acabar obtendo feedback de um outro revisor do Kubernetes diferente daquele originalmente designado para lhe fornecer o feedback.
Além disso, em alguns casos, um de seus revisores pode solicitar uma revisão técnica de um [revisor técnico do Kubernetes](https://github.com/kubernetes/website/wiki/Tech-reviewers) quando necessário. Os revisores farão o melhor para fornecer feedbacks em tempo hábil, mas o tempo de resposta pode variar de acordo com as circunstâncias.
Para mais informações sobre como contribuir com a documentação do Kubernetes, consulte:
* [Comece a contribuir](https://kubernetes.io/docs/contribute/start/)
* [Preparando suas alterações na documentação](http://kubernetes.io/docs/contribute/intermediate#view-your-changes-locally)
* [Usando Modelos de Página](http://kubernetes.io/docs/contribute/style/page-templates/)
* [Contribua com a documentação do Kubernetes](https://kubernetes.io/docs/contribute/)
* [Tipos de conteúdo de página](https://kubernetes.io/docs/contribute/style/page-content-types/)
* [Guia de Estilo da Documentação](http://kubernetes.io/docs/contribute/style/style-guide/)
* [Localizando documentação do Kubernetes](https://kubernetes.io/docs/contribute/localization/)
Você pode contactar os mantenedores da localização em Português em:
Você pode contatar os mantenedores da localização em Português em:
* Felipe ([GitHub - @femrtnz](https://github.com/femrtnz))
* [Slack channel](https://kubernetes.slack.com/messages/kubernetes-docs-pt)
## Executando o site localmente usando o Docker
A maneira recomendada de executar o site do Kubernetes localmente é executar uma imagem especializada do [Docker](https://docker.com) que inclui o gerador de site estático [Hugo](https://gohugo.io).
> Se você está rodando no Windows, você precisará de mais algumas ferramentas que você pode instalar com o [Chocolatey](https://chocolatey.org). `choco install make`
> Se você preferir executar o site localmente sem o Docker, consulte [Executando o site localmente usando o Hugo](#executando-o-site-localmente-usando-o-hugo) abaixo.
Se você tiver o Docker [em funcionamento](https://www.docker.com/get-started), crie a imagem do Docker do `kubernetes-hugo` localmente:
```bash
make container-image
```
Depois que a imagem foi criada, você pode executar o site localmente:
```bash
make container-serve
```
Abra seu navegador para http://localhost:1313 para visualizar o site. Conforme você faz alterações nos arquivos de origem, Hugo atualiza o site e força a atualização do navegador.
## Executando o site localmente usando o Hugo
Veja a [documentação oficial do Hugo](https://gohugo.io/getting-started/installing/) para instruções de instalação do Hugo. Certifique-se de instalar a versão do Hugo especificada pela variável de ambiente `HUGO_VERSION` no arquivo [`netlify.toml`](netlify.toml#L9).
Para executar o site localmente quando você tiver o Hugo instalado:
```bash
make serve
```
Isso iniciará o servidor Hugo local na porta 1313. Abra o navegador para http://localhost:1313 para visualizar o site. Conforme você faz alterações nos arquivos de origem, Hugo atualiza o site e força a atualização do navegador.
## Comunidade, discussão, contribuição e apoio
Aprenda a se envolver com a comunidade do Kubernetes na [página da comunidade](http://kubernetes.io/community/).
Você pode falar com os mantenedores deste projeto:
- [Slack](https://kubernetes.slack.com/messages/sig-docs)
- [Mailing List](https://groups.google.com/forum/#!forum/kubernetes-sig-docs)
### Código de conduta
# Código de conduta
A participação na comunidade Kubernetes é regida pelo [Código de Conduta da Kubernetes](code-of-conduct.md).
## Obrigado!
# Obrigado!
O Kubernetes conta com a participação da comunidade e nós realmente agradecemos suas contribuições para o nosso site e nossa documentação!
O Kubernetes prospera com a participação da comunidade e nós realmente agradecemos suas contribuições para o nosso website e nossa documentação!
+107 -27
View File
@@ -2,38 +2,117 @@
[![Netlify Status](https://api.netlify.com/api/v1/badges/be93b718-a6df-402a-b4a4-855ba186c97d/deploy-status)](https://app.netlify.com/sites/kubernetes-io-master-staging/deploys) [![GitHub release](https://img.shields.io/github/release/kubernetes/website.svg)](https://github.com/kubernetes/website/releases/latest)
Добро пожаловать! Данный репозиторий содержит все необходимые файлы для сборки [сайта Kubernetes и документации](https://kubernetes.io/). Мы благодарим вас за старания!
Данный репозиторий содержит все необходимые файлы для сборки [сайта Kubernetes и документации](https://kubernetes.io/). Мы благодарим вас за желание внести свой вклад!
## Запуск сайта с помощью Hugo
# Использование этого репозитория
Обратитесь к [официальной документации Hugo](https://gohugo.io/getting-started/installing/), чтобы установить Hugo. Убедитесь, что вы установили правильную версию Hugo, которая устанавливается в переменной окружения `HUGO_VERSION` в файле [`netlify.toml`](netlify.toml#L10).
Запустить сайт локально можно с помощью Hugo (Extended version) или же в исполняемой среде для контейнеров. Мы настоятельно рекомендуем воспользоваться контейнерной средой, поскольку она обеспечивает консистивность развёртывания с оригинальным сайтом.
После установки Hugo, чтобы запустить сайт, выполните в консоли:
## Предварительные требования
```bash
Чтобы работать с этим репозиторием, понадобятся следующие компоненты, установленные локально:
- [npm](https://www.npmjs.com/)
- [Go](https://golang.org/)
- [Hugo (Extended version)](https://gohugo.io/)
- Исполняемая среда для контейнеров вроде [Docker](https://www.docker.com/)
Перед тем, как начать, установите зависимости. Склонируйте репозиторий и перейдите в его директорию:
```
git clone https://github.com/kubernetes/website.git
cd website
hugo server --buildFuture
```
Эта команда запустит сервер Hugo на порту 1313. Откройте браузер и перейдите по ссылке http://localhost:1313, чтобы открыть сайт. Если вы отредактируете исходные файлы сайта, Hugo автоматически применит изменения и обновит страницу в браузере.
Сайт Kubernetes использует [тему для Hugo под названием Docsy](https://github.com/google/docsy). Даже если вы планируете запускать сайт в контейнере, мы настоятельно рекомендуем загрузить соответствующий подмодуль и другие зависимости для разработки, выполнив следующую команду:
## Сообщество, обсуждение, вклад и поддержка
```
# загружаем Git-подмодуль Docsy
git submodule update --init --recursive --depth 1
```
Узнайте, как поучаствовать в жизни сообщества Kubernetes на [странице сообщества](http://kubernetes.io/community/).
## Запуск сайта в контейнере
Вы можете связаться с сопровождающими этого проекта по следующим ссылкам:
Чтобы собрать сайт в контейнере, выполните следующие команды — они собирают образ контейнера и запускают его:
- [Канал в Slack](https://kubernetes.slack.com/messages/sig-docs)
- [Рассылка](https://groups.google.com/forum/#!forum/kubernetes-sig-docs)
```
make container-image
make container-serve
```
## Вклад в документацию
Откройте браузер и перейдите по ссылке http://localhost:1313, чтобы увидеть сайт. Если вы отредактируете исходные файлы сайта, Hugo автоматически обновит сам сайт и выполнит обновление страницы в браузере.
## Запуск сайта с помощью Hugo
Нажмите на кнопку **Fork** в правом верхнем углу, чтобы создать копию этого репозитория в ваш GitHub-аккаунт. Эта копия называется *форк-репозиторием*. Делайте любые изменения в вашем форк-репозитории, и когда вы будете готовы опубликовать изменения, откройте форк-репозиторий и создайте новый пулреквест, чтобы уведомить нас.
Убедитесь, что вы установили расширенную версию Hugo (extended version): она определена в переменной окружения `HUGO_VERSION` в файле [`netlify.toml`](netlify.toml#L10).
После того, как вы отправите пулреквест, ревьювер Kubernetes даст по нему обратную связь. Вы, как автор пулреквеста, **должны обновить свой пулреквест после его рассмотрения ревьювером Kubernetes.**
Чтобы собрать и протестировать сайт локально, выполните:
Вполне возможно, что более одного ревьювера Kubernetes оставят свои комментарии или даже может быть так, что новый комментарий ревьювера Kubernetes будет отличаться от первоначального назначенного ревьювера. Кроме того, в некоторых случаях один из ревьюверов может запросить технический обзор у [технического ревьювера Kubernetes](https://github.com/kubernetes/website/wiki/Tech-reviewers), если это будет необходимо. Ревьюверы сделают все возможное, чтобы как можно оперативно оставить свои предложения и пожелания, но время ответа может варьироваться в зависимости от обстоятельств.
```bash
# install dependencies
npm ci
make serve
```
Эти команды запустят локальный сервер Hugo на порту 1313. Откройте браузер и перейдите по ссылке http://localhost:1313, чтобы увидеть сайт. Если вы отредактируете исходные файлы сайта, Hugo автоматически обновит сам сайт и выполнит обновление страницы в браузере.
## Решение проблем
### error: failed to transform resource: TOCSS: failed to transform "scss/main.scss" (text/x-scss): this feature is not available in your current Hugo version
По техническим причинам Hugo поставляется с двумя наборами бинарников. Текущий сайт Kubernetes работает только в версии **Hugo Extended**. На [странице релизов](https://github.com/gohugoio/hugo/releases) ищите архивы со словом `extended` в названии. Чтобы убедиться в корректности, запустите команду `hugo version` и найдите в выводе слово `extended`.
### Решение проблемы на macOS с "too many open files"
Если вы запускаете `make serve` на macOS и получаете следующую ошибку:
```
ERROR 2020/08/01 19:09:18 Error: listen tcp 127.0.0.1:1313: socket: too many open files
make: *** [serve] Error 1
```
Попробуйте проверить текущий лимит для открытых файлов:
`launchctl limit maxfiles`
Затем выполните следующие команды (они взяты и адаптированы из https://gist.github.com/tombigel/d503800a282fcadbee14b537735d202c):
```shell
#!/bin/sh
# Ссылки на оригинальные gist-файлы закомментированы в пользу моих адаптированных.
# curl -O https://gist.githubusercontent.com/a2ikm/761c2ab02b7b3935679e55af5d81786a/raw/ab644cb92f216c019a2f032bbf25e258b01d87f9/limit.maxfiles.plist
# curl -O https://gist.githubusercontent.com/a2ikm/761c2ab02b7b3935679e55af5d81786a/raw/ab644cb92f216c019a2f032bbf25e258b01d87f9/limit.maxproc.plist
curl -O https://gist.githubusercontent.com/tombigel/d503800a282fcadbee14b537735d202c/raw/ed73cacf82906fdde59976a0c8248cce8b44f906/limit.maxfiles.plist
curl -O https://gist.githubusercontent.com/tombigel/d503800a282fcadbee14b537735d202c/raw/ed73cacf82906fdde59976a0c8248cce8b44f906/limit.maxproc.plist
sudo mv limit.maxfiles.plist /Library/LaunchDaemons
sudo mv limit.maxproc.plist /Library/LaunchDaemons
sudo chown root:wheel /Library/LaunchDaemons/limit.maxfiles.plist
sudo chown root:wheel /Library/LaunchDaemons/limit.maxproc.plist
sudo launchctl load -w /Library/LaunchDaemons/limit.maxfiles.plist
```
Данное решение работает для macOS Catalina и Mojave.
# Участие в SIG Docs
Узнайте о Kubernetes-сообществе SIG Docs и его встречах на [странице сообщества](https://github.com/kubernetes/community/tree/master/sig-docs#meetings).
Вы можете связаться с сопровождающими этот проект по следующим ссылкам:
- [Канал в Slack](https://kubernetes.slack.com/messages/sig-docs) ([получите приглашение в этот Slack](https://slack.k8s.io/))
- [Почтовая рассылка](https://groups.google.com/forum/#!forum/kubernetes-sig-docs)
# Вклад в документацию
Нажмите на кнопку **Fork** в правом верхнем углу, чтобы создать копию этого репозитория для вашего GitHub-аккаунта. Эта копия называется *форк-репозиторием*. Делайте любые изменения в своем форк-репозитории и, когда будете готовы опубликовать изменения, зайдите в свой форк-репозиторий и создайте новый pull-запрос (PR), чтобы уведомить нас.
После того, как вы отправите pull-запрос, ревьювер из проекта Kubernetes даст по нему обратную связь. Вы, как автор pull-запроса, **должны обновить свой PR после его рассмотрения ревьювером Kubernetes.**
Вполне возможно, что более одного ревьювера Kubernetes оставят свои комментарии. Может быть даже так, что вы будете получать обратную связь уже не от того ревьювера, что был первоначально вам назначен. Кроме того, в некоторых случаях один из ревьюверов может запросить техническую рецензию от [технического ревьювера Kubernetes](https://github.com/kubernetes/website/wiki/Tech-reviewers), если это потребуется. Ревьюверы сделают все возможное, чтобы как можно оперативнее оставить свои предложения и пожелания, но время ответа может варьироваться в зависимости от обстоятельств.
Узнать подробнее о том, как поучаствовать в документации Kubernetes, вы можете по ссылкам ниже:
@@ -42,21 +121,22 @@ hugo server --buildFuture
* [Руководство по оформлению документации](https://kubernetes.io/docs/contribute/style/style-guide/)
* [Руководство по локализации Kubernetes](https://kubernetes.io/docs/contribute/localization/)
## Файл `README.md` на других языках
# Файл `README.md` на других языках
| другие языки | другие языки |
|-------------------------------|-------------------------------|
| [Английский](README.md) | [Французский](README-fr.md) |
| [Корейский](README-ko.md) | [Немецкий](README-de.md) |
| [Португальский](README-pt.md) | [Хинди](README-hi.md) |
| [Испанский](README-es.md) | [Индонезийский](README-id.md) |
| [Китайский](README-zh.md) | [Японский](README-ja.md) |
| [Вьетнамский](README-vi.md) | [Итальянский](README-it.md) |
| [Польский]( README-pl.md) | [Украинский](README-uk.md) |
| [Английский](README.md) | [Немецкий](README-de.md) |
| [Вьетнамский](README-vi.md) | [Польский]( README-pl.md) |
| [Индонезийский](README-id.md) | [Португальский](README-pt.md) |
| [Испанский](README-es.md) | [Украинский](README-uk.md) |
| [Итальянский](README-it.md) | [Французский](README-fr.md) |
| [Китайский](README-zh.md) | [Хинди](README-hi.md) |
| [Корейский](README-ko.md) | [Японский](README-ja.md) |
### Кодекс поведения
# Кодекс поведения
Участие в сообществе Kubernetes регулируется [кодексом поведения CNCF](https://github.com/cncf/foundation/blob/master/code-of-conduct.md).
Участие в сообществе Kubernetes регулируется [кодексом поведения CNCF](https://github.com/cncf/foundation/blob/master/code-of-conduct-languages/ru.md).
## Спасибо!
# Спасибо!
Kubernetes процветает благодаря сообществу и мы ценим ваш вклад в сайт и документацию!
+3 -2
View File
@@ -18,7 +18,8 @@
```bash
git clone https://github.com/kubernetes/website.git
cd website
hugo server --buildFuture
git submodule update --init --recursive --depth 1
make serve
```
<!-- This will start the local Hugo server on port 1313. Open up your browser to http://localhost:1313 to view the website. As you make changes to the source files, Hugo updates the website and forces a browser refresh. -->
@@ -82,4 +83,4 @@ hugo server --buildFuture
## Дякуємо!
<!-- Kubernetes thrives on community participation, and we appreciate your contributions to our website and our documentation! -->
Долучення до спільноти - запорука успішного розвитку Kubernetes. Ми цінуємо ваш внесок у наш сайт і документацію!
Долучення до спільноти - запорука успішного розвитку Kubernetes. Ми цінуємо ваш внесок у наш сайт і документацію!
+2 -2
View File
@@ -228,8 +228,8 @@ For more information about contributing to the Kubernetes documentation, see:
有关为 Kubernetes 文档做出贡献的更多信息,请参阅:
* [贡献 Kubernetes 文档](https://kubernetes.io/docs/contribute/)
* [页面内容类型](http://kubernetes.io/docs/contribute/style/page-content-types/)
* [文档风格指南](http://kubernetes.io/docs/contribute/style/style-guide/)
* [页面内容类型](https://kubernetes.io/docs/contribute/style/page-content-types/)
* [文档风格指南](https://kubernetes.io/docs/contribute/style/style-guide/)
* [本地化 Kubernetes 文档](https://kubernetes.io/docs/contribute/localization/)
# 中文本地化
+49 -1
View File
@@ -4,6 +4,9 @@
This repository contains the assets required to build the [Kubernetes website and documentation](https://kubernetes.io/). We're glad that you want to contribute!
+ [Contributing to the docs](#contributing-to-the-docs)
+ [Localization ReadMes](#localization-readmemds)
# Using this repository
You can run the website locally using Hugo (Extended version), or you can run it in a container runtime. We strongly recommend using the container runtime, as it gives deployment consistency with the live website.
@@ -56,6 +59,51 @@ make serve
This will start the local Hugo server on port 1313. Open up your browser to http://localhost:1313 to view the website. As you make changes to the source files, Hugo updates the website and forces a browser refresh.
## Building the API reference pages
The API reference pages located in `content/en/docs/reference/kubernetes-api` are built from the Swagger specification, using https://github.com/kubernetes-sigs/reference-docs/tree/master/gen-resourcesdocs.
To update the reference pages for a new Kubernetes release (replace v1.20 in the following examples with the release to update to):
1. Pull the `kubernetes-resources-reference` submodule:
```
git submodule update --init --recursive --depth 1
```
2. Create a new API revision into the submodule, and add the Swagger specification:
```
mkdir api-ref-generator/gen-resourcesdocs/api/v1.20
curl 'https://raw.githubusercontent.com/kubernetes/kubernetes/master/api/openapi-spec/swagger.json' > api-ref-generator/gen-resourcesdocs/api/v1.20/swagger.json
```
3. Copy the table of contents and fields configuration for the new release from a previous one:
```
mkdir api-ref-generator/gen-resourcesdocs/api/v1.20
cp api-ref-generator/gen-resourcesdocs/api/v1.19/* api-ref-generator/gen-resourcesdocs/api/v1.20/
```
4. Adapt the files `toc.yaml` and `fields.yaml` to reflect the changes between the two releases
5. Next, build the pages:
```
make api-reference
```
You can test the results locally by making and serving the site from a container image:
```
make container-image
make container-serve
```
In a web browser, go to http://localhost:1313/docs/reference/kubernetes-api/ to view the API reference.
6. When all changes of the new contract are reflected into the configuration files `toc.yaml` and `fields.yaml`, create a Pull Request with the newly generated API reference pages.
## Troubleshooting
### error: failed to transform resource: TOCSS: failed to transform "scss/main.scss" (text/x-scss): this feature is not available in your current Hugo version
@@ -76,7 +124,7 @@ Try checking the current limit for open files:
Then run the following commands (adapted from https://gist.github.com/tombigel/d503800a282fcadbee14b537735d202c):
```
```shell
#!/bin/sh
# These are the original gist links, linking to my gists now.
+1
Submodule api-ref-generator added at ce97454e55
+26
View File
@@ -810,6 +810,13 @@ section#cncf {
}
}
.td-search {
header > .header-filler {
height: $hero-padding-top;
background-color: black;
}
}
// Docs specific
#editPageButton {
@@ -862,3 +869,22 @@ body.td-documentation {
display: none;
}
}
// nav-tabs and tab-content
.nav-tabs {
border-bottom: none !important;
}
.td-content .tab-content .highlight {
margin: 0;
}
.tab-pane {
border-radius: 0.25rem;
padding: 0 16px 16px;
border: 1px solid #dee2e6;
&:first-of-type.active {
border-top-left-radius: 0;
}
}
+68
View File
@@ -578,3 +578,71 @@ body.td-documentation {
color: black;
text-decoration: none !important;
}
@media print {
/* Do not print announcements */
#announcement, section#announcement, #fp-announcement, section#fp-announcement {
display: none;
}
}
#announcement, #fp-announcement {
> * {
color: inherit;
background: inherit;
}
a {
color: inherit;
border-bottom: 1px solid #fff;
}
a:hover {
color: inherit;
border-bottom: none;
}
}
#announcement {
padding-top: 105px;
padding-bottom: 25px;
}
.header-hero {
padding-top: 40px;
}
/* Extra announcement height only for landscape viewports */
@media (min-aspect-ratio: 8/9) {
#fp-announcement {
min-height: 25vh;
}
}
#fp-announcement aside {
padding-top: 115px;
padding-bottom: 25px;
}
.announcement {
.content {
margin-bottom: 0px;
}
> p {
.gridPage #announcement .content p,
.announcement > h4,
.announcement > h3 {
color: #ffffff;
}
}
}
.td-content {
table code {
background-color: inherit !important;
color: inherit !important;
font-size: inherit !important;
}
}
+23 -28
View File
@@ -13,7 +13,7 @@ disableBrowserError = true
disableKinds = ["taxonomy", "taxonomyTerm"]
ignoreFiles = [ "^OWNERS$", "README[-]+[a-z]*\\.md", "^node_modules$", "content/en/docs/doc-contributor-tools" ]
ignoreFiles = [ "(?:^|/)OWNERS$", "README[-]+[a-z]*\\.md", "^node_modules$", "content/en/docs/doc-contributor-tools" ]
timeout = 3000
@@ -91,7 +91,7 @@ blog = "/:section/:year/:month/:day/:slug/"
[outputs]
home = [ "HTML", "RSS", "HEADERS" ]
page = [ "HTML"]
section = [ "HTML"]
section = [ "HTML", "print" ]
# Add a "text/netlify" media type for auto-generating the _headers file
[mediaTypes]
@@ -138,13 +138,13 @@ time_format_default = "January 02, 2006 at 3:04 PM PST"
description = "Production-Grade Container Orchestration"
showedit = true
latest = "v1.20"
latest = "v1.21"
fullversion = "v1.20.0"
fullversion = "v1.20.5"
version = "v1.20"
githubbranch = "master"
docsbranch = "master"
deprecated = false
githubbranch = "v1.20.5"
docsbranch = "release-1.20"
deprecated = true
currentUrl = "https://kubernetes.io/docs/home/"
nextUrl = "https://kubernetes-io-vnext-staging.netlify.com/"
@@ -154,11 +154,6 @@ githubWebsiteRaw = "raw.githubusercontent.com/kubernetes/website"
# GitHub repository link for editing a page and opening issues.
github_repo = "https://github.com/kubernetes/website"
# param for displaying an announcement block on every page.
# See /i18n/en.toml for message text and title.
announcement = true
announcement_bg = "#000000" #choose a dark color  text is white
#Searching
k8s_search = true
@@ -183,40 +178,40 @@ js = [
]
[[params.versions]]
fullversion = "v1.20.0"
version = "v1.20"
githubbranch = "v1.20.0"
fullversion = "v1.21.0"
version = "v1.21"
githubbranch = "v1.21.0"
docsbranch = "master"
url = "https://kubernetes.io"
[[params.versions]]
fullversion = "v1.19.4"
fullversion = "v1.20.5"
version = "v1.20"
githubbranch = "v1.20.5"
docsbranch = "release-1.20"
url = "https://v1-20.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.19.9"
version = "v1.19"
githubbranch = "v1.19.4"
githubbranch = "v1.19.9"
docsbranch = "release-1.19"
url = "https://v1-19.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.18.12"
fullversion = "v1.18.17"
version = "v1.18"
githubbranch = "v1.18.12"
githubbranch = "v1.18.17"
docsbranch = "release-1.18"
url = "https://v1-18.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.17.14"
fullversion = "v1.17.17"
version = "v1.17"
githubbranch = "v1.17.14"
githubbranch = "v1.17.17"
docsbranch = "release-1.17"
url = "https://v1-17.docs.kubernetes.io"
[[params.versions]]
fullversion = "v1.16.15"
version = "v1.16"
githubbranch = "v1.16.15"
docsbranch = "release-1.16"
url = "https://v1-16.docs.kubernetes.io"
# User interface configuration
[params.ui]
+1 -1
View File
@@ -8,7 +8,7 @@ cid: community
<main>
<div class="content">
<h3>Die Gewissheit, dass Kubernetes überall und für alle gut funktioniert.</h3>
<p>Verbinden Sie sich mit der Kubernetes-Community in unserem <a href="http://slack.k8s.io/">Slack Kanal</a>, <a href="https://discuss.kubernetes.io/">Diskussionsforum</a>, oder beteiligen Sie sich an der <a href="https://groups.google.com/forum/#!forum/kubernetes-dev"> Kubernetes-dev-Google-Gruppe</a>. Eine wöchentliches Community-Meeting findet per Videokonferenz statt, um den Stand der Dinge zu diskutieren, folgen Sie
<p>Verbinden Sie sich mit der Kubernetes-Community in unserem <a href="http://slack.k8s.io/">Slack Kanal</a>, <a href="https://discuss.kubernetes.io/">Diskussionsforum</a>, oder beteiligen Sie sich an der <a href="https://groups.google.com/g/kubernetes-dev"> Kubernetes-dev-Google-Gruppe</a>. Eine wöchentliches Community-Meeting findet per Videokonferenz statt, um den Stand der Dinge zu diskutieren, folgen Sie
<a href="https://github.com/kubernetes/community/blob/master/events/community-meeting.md">diesen Anweisungen</a> für Informationen wie Sie teilnehmen können.</p>
<p>Sie können Kubernetes auch auf der ganzen Welt über unsere
<a href="https://www.meetup.com/topics/kubernetes/">Kubernetes Meetup Community</a> und der
@@ -23,7 +23,7 @@ Dieser Verhaltenskodex gilt sowohl innerhalb von Projekträumen als auch in öff
Fälle von missbräuchlichem, belästigendem oder anderweitig unzumutbarem Verhalten in Kubernetes können gemeldet werden, indem Sie sich an das [Kubernetes Komitee für Verhaltenskodex](https://git.k8s.io/community/committee-code-of-conduct) wenden unter <conduct@kubernetes.io>. Für andere Projekte wenden Sie sich bitte an einen CNCF-Projektbetreuer oder an unseren Mediator, Mishi Choudhary <mishi@linux.com>.
Dieser Verhaltenskodex wurde aus dem Contributor Covenant übernommen (http://contributor-covenant.org), Version 1.2.0, verfügbar unter http://contributor-covenant.org/version/1/2/0/
Dieser Verhaltenskodex wurde aus dem Contributor Covenant übernommen (https://contributor-covenant.org), Version 1.2.0, verfügbar unter https://contributor-covenant.org/version/1/2/0/
### CNCF Verhaltenskodex für Veranstaltungen
+1 -1
View File
@@ -9,7 +9,7 @@ content_type: concept
Diese Sektion umfasst verschiedene Optionen zum Einrichten und Betrieb von Kubernetes.
Verschiedene Kubernetes Lösungen haben verschiedene Anforderungen: Einfache Wartung, Sicherheit, Kontrolle, verfügbare Resourcen und erforderliches Fachwissen zum Betrieb und zur Verwaltung dess folgende Diagramm zeigt die möglichen Abstraktionen eines Kubernetes-Clusters und ob eine Abstraktion selbst verwaltet oder von einem Anbieter verwaltet wird.
Verschiedene Kubernetes Lösungen haben verschiedene Anforderungen: Einfache Wartung, Sicherheit, Kontrolle, verfügbare Resourcen und erforderliches Fachwissen zum Betrieb und zur Verwaltung. Das folgende Diagramm zeigt die möglichen Abstraktionen eines Kubernetes-Clusters und ob eine Abstraktion selbst verwaltet oder von einem Anbieter verwaltet wird.
Sie können einen Kubernetes-Cluster auf einer lokalen Maschine, Cloud, On-Prem Datacenter bereitstellen; oder wählen Sie einen verwalteten Kubernetes-Cluster. Sie können auch eine individuelle Lösung über eine grosse Auswahl an Cloud Anbietern oder Bare-Metal-Umgebungen nutzen.
@@ -26,7 +26,7 @@ On the other hand, CNI is more philosophically aligned with Kubernetes. It's far
Additionally, it's trivial to wrap a CNI plugin and produce a more customized CNI plugin — it can be done with a simple shell script. CNM is much more complex in this regard. This makes CNI an attractive option for rapid development and iteration. Early prototypes have proven that it's possible to eject almost 100% of the currently hard-coded network logic in kubelet into a plugin.
We investigated [writing a "bridge" CNM driver](https://groups.google.com/forum/#!topic/kubernetes-sig-network/5MWRPxsURUw) for Docker that ran CNI drivers. This turned out to be very complicated. First, the CNM and CNI models are very different, so none of the "methods" lined up. We still have the global vs. local and key-value issues discussed above. Assuming this driver would declare itself local, we have to get info about logical networks from Kubernetes.
We investigated [writing a "bridge" CNM driver](https://groups.google.com/g/kubernetes-sig-network/c/5MWRPxsURUw) for Docker that ran CNI drivers. This turned out to be very complicated. First, the CNM and CNI models are very different, so none of the "methods" lined up. We still have the global vs. local and key-value issues discussed above. Assuming this driver would declare itself local, we have to get info about logical networks from Kubernetes.
Unfortunately, Docker drivers are hard to map to other control planes like Kubernetes. Specifically, drivers are not told the name of the network to which a container is being attached — just an ID that Docker allocates internally. This makes it hard for a driver to map back to any concept of network that exists in another system.
@@ -34,6 +34,6 @@ This and other issues have been brought up to Docker developers by network vendo
For all of these reasons we have chosen to invest in CNI as the Kubernetes plugin model. There will be some unfortunate side-effects of this. Most of them are relatively minor (for example, `docker inspect` will not show an IP address), but some are significant. In particular, containers started by `docker run` might not be able to communicate with containers started by Kubernetes, and network integrators will have to provide CNI drivers if they want to fully integrate with Kubernetes. On the other hand, Kubernetes will get simpler and more flexible, and a lot of the ugliness of early bootstrapping (such as configuring Docker to use our bridge) will go away.
As we proceed down this path, well certainly keep our eyes and ears open for better ways to integrate and simplify. If you have thoughts on how we can do that, we really would like to hear them — find us on [slack](http://slack.k8s.io/) or on our [network SIG mailing-list](https://groups.google.com/forum/#!forum/kubernetes-sig-network).
As we proceed down this path, well certainly keep our eyes and ears open for better ways to integrate and simplify. If you have thoughts on how we can do that, we really would like to hear them — find us on [slack](http://slack.k8s.io/) or on our [network SIG mailing-list](https://groups.google.com/g/kubernetes-sig-network).
Tim Hockin, Software Engineer, Google
@@ -20,21 +20,14 @@ For example, if we want to require scheduling on a node that is in the us-centra
```
affinity:
nodeAffinity:
requiredDuringSchedulingIgnoredDuringExecution:
nodeSelectorTerms:
- matchExpressions:
- key: "failure-domain.beta.kubernetes.io/zone"
operator: In
values: ["us-central1-a"]
affinity:
nodeAffinity:
requiredDuringSchedulingIgnoredDuringExecution:
nodeSelectorTerms:
- matchExpressions:
- key: "failure-domain.beta.kubernetes.io/zone"
operator: In
values: ["us-central1-a"]
```
@@ -44,21 +37,14 @@ Preferred rules mean that if nodes match the rules, they will be chosen first, a
```
affinity:
nodeAffinity:
preferredDuringSchedulingIgnoredDuringExecution:
nodeSelectorTerms:
- matchExpressions:
- key: "failure-domain.beta.kubernetes.io/zone"
operator: In
values: ["us-central1-a"]
affinity:
nodeAffinity:
preferredDuringSchedulingIgnoredDuringExecution:
nodeSelectorTerms:
- matchExpressions:
- key: "failure-domain.beta.kubernetes.io/zone"
operator: In
values: ["us-central1-a"]
```
@@ -67,21 +53,14 @@ Node anti-affinity can be achieved by using negative operators. So for instance
```
affinity:
nodeAffinity:
requiredDuringSchedulingIgnoredDuringExecution:
nodeSelectorTerms:
- matchExpressions:
- key: "failure-domain.beta.kubernetes.io/zone"
operator: NotIn
values: ["us-central1-a"]
affinity:
nodeAffinity:
requiredDuringSchedulingIgnoredDuringExecution:
nodeSelectorTerms:
- matchExpressions:
- key: "failure-domain.beta.kubernetes.io/zone"
operator: NotIn
values: ["us-central1-a"]
```
@@ -99,7 +78,7 @@ The kubectl command allows you to set taints on nodes, for example:
```
kubectl taint nodes node1 key=value:NoSchedule
```
```
creates a taint that marks the node as unschedulable by any pods that do not have a toleration for taint with key key, value value, and effect NoSchedule. (The other taint effects are PreferNoSchedule, which is the preferred version of NoSchedule, and NoExecute, which means any pods that are running on the node when the taint is applied will be evicted unless they tolerate the taint.) The toleration you would add to a PodSpec to have the corresponding pod tolerate this taint would look like this
@@ -107,15 +86,11 @@ creates a taint that marks the node as unschedulable by any pods that do not hav
```
tolerations:
- key: "key"
operator: "Equal"
value: "value"
effect: "NoSchedule"
tolerations:
- key: "key"
operator: "Equal"
value: "value"
effect: "NoSchedule"
```
@@ -138,21 +113,13 @@ Lets look at an example. Say you have front-ends in service S1, and they comm
```
affinity:
podAffinity:
requiredDuringSchedulingIgnoredDuringExecution:
- labelSelector:
matchExpressions:
- key: service
operator: In
values: [“S1”]
topologyKey: failure-domain.beta.kubernetes.io/zone
```
@@ -172,25 +139,15 @@ Here we have a Pod where we specify the schedulerName field:
```
apiVersion: v1
kind: Pod
metadata:
name: nginx
labels:
app: nginx
spec:
schedulerName: my-scheduler
containers:
- name: nginx
image: nginx:1.10
```
@@ -56,13 +56,13 @@ Cri-containerd uses containerd to manage the full container lifecycle and all co
Lets use an example to demonstrate how cri-containerd works for the case when Kubelet creates a single-container pod:
1. 1.Kubelet calls cri-containerd, via the CRI runtime service API, to create a pod;
2. 2.cri-containerd uses containerd to create and start a special [pause container](https://www.ianlewis.org/en/almighty-pause-container) (the _sandbox container_) and put that container inside the pods cgroups and namespace (steps omitted for brevity);
3. 3.cri-containerd configures the pods network namespace using CNI;
4. 4.Kubelet subsequently calls cri-containerd, via the CRI image service API, to pull the application container image;
5. 5.cri-containerd further uses containerd to pull the image if the image is not present on the node;
6. 6.Kubelet then calls cri-containerd, via the CRI runtime service API, to create and start the application container inside the pod using the pulled container image;
7. 7.cri-containerd finally calls containerd to create the application container, put it inside the pods cgroups and namespace, then to start the pods new application container.
1. Kubelet calls cri-containerd, via the CRI runtime service API, to create a pod;
2. cri-containerd uses containerd to create and start a special [pause container](https://www.ianlewis.org/en/almighty-pause-container) (the _sandbox container_) and put that container inside the pods cgroups and namespace (steps omitted for brevity);
3. cri-containerd configures the pods network namespace using CNI;
4. Kubelet subsequently calls cri-containerd, via the CRI image service API, to pull the application container image;
5. cri-containerd further uses containerd to pull the image if the image is not present on the node;
6. Kubelet then calls cri-containerd, via the CRI runtime service API, to create and start the application container inside the pod using the pulled container image;
7. cri-containerd finally calls containerd to create the application container, put it inside the pods cgroups and namespace, then to start the pods new application container.
After these steps, a pod and its corresponding application container is created and running.
@@ -176,7 +176,7 @@ Cluster-distributed stateful services (e.g., Cassandra) can benefit from splitti
[Logs](/docs/concepts/cluster-administration/logging/) and [metrics](/docs/tasks/debug-application-cluster/resource-usage-monitoring/) (if collected and persistently retained) are valuable to diagnose outages, but given the variety of technologies available it will not be addressed in this blog. If Internet connectivity is available, it may be desirable to retain logs and metrics externally at a central location.
Your production deployment should utilize an automated installation, configuration and update tool (e.g., [Ansible](https://github.com/kubernetes-incubator/kubespray), [BOSH](https://github.com/cloudfoundry-incubator/kubo-deployment), [Chef](https://github.com/chef-cookbooks/kubernetes), [Juju](/docs/getting-started-guides/ubuntu/installation/), [kubeadm](/docs/reference/setup-tools/kubeadm/kubeadm/), [Puppet](https://forge.puppet.com/puppetlabs/kubernetes), etc.). A manual process will have repeatability issues, be labor intensive, error prone, and difficult to scale. [Certified distributions](https://www.cncf.io/certification/software-conformance/#logos) are likely to include a facility for retaining configuration settings across updates, but if you implement your own install and config toolchain, then retention, backup and recovery of the configuration artifacts is essential. Consider keeping your deployment components and settings under a version control system such as Git.
Your production deployment should utilize an automated installation, configuration and update tool (e.g., [Ansible](https://github.com/kubernetes-incubator/kubespray), [BOSH](https://github.com/cloudfoundry-incubator/kubo-deployment), [Chef](https://github.com/chef-cookbooks/kubernetes), [Juju](/docs/getting-started-guides/ubuntu/installation/), [kubeadm](/docs/reference/setup-tools/kubeadm/), [Puppet](https://forge.puppet.com/puppetlabs/kubernetes), etc.). A manual process will have repeatability issues, be labor intensive, error prone, and difficult to scale. [Certified distributions](https://www.cncf.io/certification/software-conformance/#logos) are likely to include a facility for retaining configuration settings across updates, but if you implement your own install and config toolchain, then retention, backup and recovery of the configuration artifacts is essential. Consider keeping your deployment components and settings under a version control system such as Git.
## Outage recovery
@@ -17,7 +17,7 @@ Lets dive into the key features of this release:
## Simplified Kubernetes Cluster Management with kubeadm in GA
Most people who have gotten hands-on with Kubernetes have at some point been hands-on with kubeadm. It's an essential tool for managing the cluster lifecycle, from creation to configuration to upgrade; and now kubeadm is officially GA. [kubeadm](/docs/reference/setup-tools/kubeadm/kubeadm/) handles the bootstrapping of production clusters on existing hardware and configuring the core Kubernetes components in a best-practice-manner to providing a secure yet easy joining flow for new nodes and supporting easy upgrades. Whats notable about this GA release are the now graduated advanced features, specifically around pluggability and configurability. The scope of kubeadm is to be a toolbox for both admins and automated, higher-level system and this release is a significant step in that direction.
Most people who have gotten hands-on with Kubernetes have at some point been hands-on with kubeadm. It's an essential tool for managing the cluster lifecycle, from creation to configuration to upgrade; and now kubeadm is officially GA. [kubeadm](/docs/reference/setup-tools/kubeadm/) handles the bootstrapping of production clusters on existing hardware and configuring the core Kubernetes components in a best-practice-manner to providing a secure yet easy joining flow for new nodes and supporting easy upgrades. Whats notable about this GA release are the now graduated advanced features, specifically around pluggability and configurability. The scope of kubeadm is to be a toolbox for both admins and automated, higher-level system and this release is a significant step in that direction.
## Container Storage Interface (CSI) Goes GA
@@ -66,6 +66,7 @@ Vagrant.configure("2") do |config|
end
end
end
end
```
### Step 2: Create an Ansible playbook for Kubernetes master.
@@ -44,7 +44,7 @@ As mentioned above, with the promotion of Volume Snapshot to beta, the feature i
In order to use the Kubernetes Volume Snapshot feature, you must ensure the following components have been deployed on your Kubernetes cluster:
- [Kubernetes Volume Snapshot CRDs](https://github.com/kubernetes-csi/external-snapshotter/tree/master/config/crd)
- [Kubernetes Volume Snapshot CRDs](https://github.com/kubernetes-csi/external-snapshotter/tree/53469c21962339229dd150cbba50c34359acec73/config/crd)
- [Volume snapshot controller](https://github.com/kubernetes-csi/external-snapshotter/tree/master/pkg/common-controller)
- CSI Driver supporting Kubernetes volume snapshot beta
@@ -180,7 +180,7 @@ If your cluster does not come pre-installed with the correct components, you may
#### Install Snapshot Beta CRDs
- `kubectl create -f config/crd`
- [https://github.com/kubernetes-csi/external-snapshotter/tree/master/config/crd](https://github.com/kubernetes-csi/external-snapshotter/tree/master/config/crd)
- [https://github.com/kubernetes-csi/external-snapshotter/tree/53469c21962339229dd150cbba50c34359acec73/config/crd](https://github.com/kubernetes-csi/external-snapshotter/tree/53469c21962339229dd150cbba50c34359acec73/config/crd)
- Do this once per cluster
Binary file not shown.

After

Width:  |  Height:  |  Size: 13 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 30 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 28 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 19 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 18 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 19 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 20 KiB

@@ -0,0 +1,96 @@
---
layout: blog
title: "A Custom Kubernetes Scheduler to Orchestrate Highly Available Applications"
date: 2020-12-21
slug: writing-crl-scheduler
---
**Author**: Chris Seto (Cockroach Labs)
As long as you're willing to follow the rules, deploying on Kubernetes and air travel can be quite pleasant. More often than not, things will "just work". However, if one is interested in travelling with an alligator that must remain alive or scaling a database that must remain available, the situation is likely to become a bit more complicated. It may even be easier to build one's own plane or database for that matter. Travelling with reptiles aside, scaling a highly available stateful system is no trivial task.
Scaling any system has two main components:
1. Adding or removing infrastructure that the system will run on, and
2. Ensuring that the system knows how to handle additional instances of itself being added and removed.
Most stateless systems, web servers for example, are created without the need to be aware of peers. Stateful systems, which includes databases like CockroachDB, have to coordinate with their peer instances and shuffle around data. As luck would have it, CockroachDB handles data redistribution and replication. The tricky part is being able to tolerate failures during these operations by ensuring that data and instances are distributed across many failure domains (availability zones).
One of Kubernetes' responsibilities is to place "resources" (e.g, a disk or container) into the cluster and satisfy the constraints they request. For example: "I must be in availability zone _A_" (see [Running in multiple zones](/docs/setup/best-practices/multiple-zones/#nodes-are-labeled)), or "I can't be placed onto the same node as this other Pod" (see [Affinity and anti-affinity](/docs/concepts/scheduling-eviction/assign-pod-node/#affinity-and-anti-affinity)).
As an addition to those constraints, Kubernetes offers [Statefulsets](/docs/concepts/workloads/controllers/statefulset/) that provide identity to Pods as well as persistent storage that "follows" these identified pods. Identity in a StatefulSet is handled by an increasing integer at the end of a pod's name. It's important to note that this integer must always be contiguous: in a StatefulSet, if pods 1 and 3 exist then pod 2 must also exist.
Under the hood, CockroachCloud deploys each region of CockroachDB as a StatefulSet in its own Kubernetes cluster - see [Orchestrate CockroachDB in a Single Kubernetes Cluster](https://www.cockroachlabs.com/docs/stable/orchestrate-cockroachdb-with-kubernetes.html).
In this article, I'll be looking at an individual region, one StatefulSet and one Kubernetes cluster which is distributed across at least three availability zones.
A three-node CockroachCloud cluster would look something like this:
![3-node, multi-zone cockroachdb cluster](image01.png)
When adding additional resources to the cluster we also distribute them across zones. For the speediest user experience, we add all Kubernetes nodes at the same time and then scale up the StatefulSet.
![illustration of phases: adding Kubernetes nodes to the multi-zone cockroachdb cluster](image02.png)
Note that anti-affinities are satisfied no matter the order in which pods are assigned to Kubernetes nodes. In the example, pods 0, 1 and 2 were assigned to zones A, B, and C respectively, but pods 3 and 4 were assigned in a different order, to zones B and A respectively. The anti-affinity is still satisfied because the pods are still placed in different zones.
To remove resources from a cluster, we perform these operations in reverse order.
We first scale down the StatefulSet and then remove from the cluster any nodes lacking a CockroachDB pod.
![illustration of phases: scaling down pods in a multi-zone cockroachdb cluster in Kubernetes](image03.png)
Now, remember that pods in a StatefulSet of size _n_ must have ids in the range `[0,n)`. When scaling down a StatefulSet by _m_, Kubernetes removes _m_ pods, starting from the highest ordinals and moving towards the lowest, [the reverse in which they were added](/docs/concepts/workloads/controllers/statefulset/#deployment-and-scaling-guarantees).
Consider the cluster topology below:
![illustration: cockroachdb cluster: 6 nodes distributed across 3 availability zones](image04.png)
As ordinals 5 through 3 are removed from this cluster, the statefulset continues to have a presence across all 3 availability zones.
![illustration: removing 3 nodes from a 6-node, 3-zone cockroachdb cluster](image05.png)
However, Kubernetes' scheduler doesn't _guarantee_ the placement above as we expected at first.
Our combined knowledge of the following is what lead to this misconception.
* Kubernetes' ability to [automatically spread Pods across zone](/docs/setup/best-practices/multiple-zones/#pods-are-spread-across-zones)
* The behavior that a StatefulSet with _n_ replicas, when Pods are being deployed, they are created sequentially, in order from `{0..n-1}`. See [StatefulSet](https://kubernetes.io/docs/concepts/workloads/controllers/statefulset/#deployment-and-scaling-guarantees) for more details.
Consider the following topology:
![illustration: 6-node cockroachdb cluster distributed across 3 availability zones](image06.png)
These pods were created in order and they are spread across all availability zones in the cluster. When ordinals 5 through 3 are terminated, this cluster will lose its presence in zone C!
![illustration: terminating 3 nodes in 6-node cluster spread across 3 availability zones, where 2/2 nodes in the same availability zone are terminated, knocking out that AZ](image07.png)
Worse yet, our automation, at the time, would remove Nodes A-2, B-2, and C-2. Leaving CRDB-1 in an unscheduled state as persistent volumes are only available in the zone they are initially created in.
To correct the latter issue, we now employ a "hunt and peck" approach to removing machines from a cluster. Rather than blindly removing Kubernetes nodes from the cluster, only nodes without a CockroachDB pod would be removed. The much more daunting task was to wrangle the Kubernetes scheduler.
## A session of brainstorming left us with 3 options:
### 1. Upgrade to kubernetes 1.18 and make use of Pod Topology Spread Constraints
While this seems like it could have been the perfect solution, at the time of writing Kubernetes 1.18 was unavailable on the two most common managed Kubernetes services in public cloud, EKS and GKE.
Furthermore, [pod topology spread constraints](/docs/concepts/workloads/pods/pod-topology-spread-constraints/) were still a [beta feature in 1.18](https://v1-18.docs.kubernetes.io/docs/concepts/workloads/pods/pod-topology-spread-constraints/) which meant that it [wasn't guaranteed to be available in managed clusters](https://cloud.google.com/kubernetes-engine/docs/concepts/types-of-clusters#kubernetes_feature_choices) even when v1.18 became available.
The entire endeavour was concerningly reminiscent of checking [caniuse.com](https://caniuse.com/) when Internet Explorer 8 was still around.
### 2. Deploy a statefulset _per zone_.
Rather than having one StatefulSet distributed across all availability zones, a single StatefulSet with node affinities per zone would allow manual control over our zonal topology.
Our team had considered this as an option in the past which made it particularly appealing.
Ultimately, we decided to forego this option as it would have required a massive overhaul to our codebase and performing the migration on existing customer clusters would have been an equally large undertaking.
### 3. Write a custom Kubernetes scheduler.
Thanks to an example from [Kelsey Hightower](https://github.com/kelseyhightower/scheduler) and a blog post from [Banzai Cloud](https://banzaicloud.com/blog/k8s-custom-scheduler/), we decided to dive in head first and write our own [custom Kubernetes scheduler](/docs/tasks/extend-kubernetes/configure-multiple-schedulers/).
Once our proof-of-concept was deployed and running, we quickly discovered that the Kubernetes' scheduler is also responsible for mapping persistent volumes to the Pods that it schedules.
The output of [`kubectl get events`](/docs/tasks/extend-kubernetes/configure-multiple-schedulers/#verifying-that-the-pods-were-scheduled-using-the-desired-schedulers) had led us to believe there was another system at play.
In our journey to find the component responsible for storage claim mapping, we discovered the [kube-scheduler plugin system](/docs/concepts/scheduling-eviction/scheduling-framework/). Our next POC was a `Filter` plugin that determined the appropriate availability zone by pod ordinal, and it worked flawlessly!
Our [custom scheduler plugin](https://github.com/cockroachlabs/crl-scheduler) is open source and runs in all of our CockroachCloud clusters.
Having control over how our StatefulSet pods are being scheduled has let us scale out with confidence.
We may look into retiring our plugin once pod topology spread constraints are available in GKE and EKS, but the maintenance overhead has been surprisingly low.
Better still: the plugin's implementation is orthogonal to our business logic. Deploying it, or retiring it for that matter, is as simple as changing the `schedulerName` field in our StatefulSet definitions.
---
_[Chris Seto](https://twitter.com/_ostriches) is a software engineer at Cockroach Labs and works on their Kubernetes automation for [CockroachCloud](https://cockroachlabs.cloud), CockroachDB._
@@ -55,7 +55,7 @@ All your existing images will still work exactly the same.
### What about private images?
Also yes. All CRI runtimes support the same pull secrets configuration used in
Yes. All CRI runtimes support the same pull secrets configuration used in
Kubernetes, either via the PodSpec or ServiceAccount.
@@ -82,7 +82,7 @@ usability of other container runtimes. As an example, OpenShift 4.x has been
using the [CRI-O] runtime in production since June 2019.
For other examples and references you can look at the adopters of containerd and
cri-o, two container runtimes under the Cloud Native Computing Foundation ([CNCF]).
CRI-O, two container runtimes under the Cloud Native Computing Foundation ([CNCF]).
- [containerd](https://github.com/containerd/containerd/blob/master/ADOPTERS.md)
- [CRI-O](https://github.com/cri-o/cri-o/blob/master/ADOPTERS.md)
@@ -110,11 +110,11 @@ provide an end-to-end standard for managing containers.
Thats a complex question and it depends on a lot of factors. If Docker is
working for you, moving to containerd should be a relatively easy swap and
has have strictly better performance and less overhead. However we encourage you
will have strictly better performance and less overhead. However, we encourage you
to explore all the options from the [CNCF landscape] in case another would be an
even better fit for your environment.
[CNCF landscape]: https://landscape.cncf.io/category=container-runtime&format=card-mode&grouping=category
[CNCF landscape]: https://landscape.cncf.io/card-mode?category=container-runtime&grouping=category
### What should I look out for when changing CRI implementations?
@@ -129,7 +129,7 @@ common things to consider when migrating are:
- Kubectl plugins that require docker CLI or the control socket
- Kubernetes tools that require direct access to Docker (e.g. kube-imagepuller)
- Configuration of functionality like `registry-mirrors` and insecure registries
- Other support scripts or daemons that expect docker to be available and are run
- Other support scripts or daemons that expect Docker to be available and are run
outside of Kubernetes (e.g. monitoring or security agents)
- GPUs or special hardware and how they integrate with your runtime and Kubernetes
@@ -140,14 +140,15 @@ runtime where possible.
Another thing to look out for is anything expecting to run for system maintenance
or nested inside a container when building images will no longer work. For the
former, you can use the [`crictl`][cr] tool as a drop-in replacement and for the
latter you can use newer container build options like [img], [buildah], or
[kaniko] that dont require Docker.
former, you can use the [`crictl`][cr] tool as a drop-in replacement (see [mapping from docker cli to crictl](https://kubernetes.io/docs/tasks/debug-application-cluster/crictl/#mapping-from-docker-cli-to-crictl)) and for the
latter you can use newer container build options like [img], [buildah],
[kaniko], or [buildkit-cli-for-kubectl] that dont require Docker.
[cr]: https://github.com/kubernetes-sigs/cri-tools
[img]: https://github.com/genuinetools/img
[buildah]: https://github.com/containers/buildah
[kaniko]: https://github.com/GoogleContainerTools/kaniko
[buildkit-cli-for-kubectl]: https://github.com/vmware-tanzu/buildkit-cli-for-kubectl
For containerd, you can start with their [documentation] to see what configuration
options are available as you migrate things over.
@@ -13,8 +13,8 @@ as a container runtime after v1.20.
**You do not need to panic. Its not as dramatic as it sounds.**
tl;dr Docker as an underlying runtime is being deprecated in favor of runtimes
that use the [Container Runtime Interface(CRI)](https://kubernetes.io/blog/2016/12/container-runtime-interface-cri-in-kubernetes/)
TL;DR Docker as an underlying runtime is being deprecated in favor of runtimes
that use the [Container Runtime Interface (CRI)](https://kubernetes.io/blog/2016/12/container-runtime-interface-cri-in-kubernetes/)
created for Kubernetes. Docker-produced images will continue to work in your
cluster with all runtimes, as they always have.
@@ -48,7 +48,7 @@ is a popular choice for that runtime (other common options include containerd
and CRI-O), but Docker was not designed to be embedded inside Kubernetes, and
that causes a problem.
You see, the thing we call “Docker” isnt actually one thing -- its an entire
You see, the thing we call “Docker” isnt actually one thing&mdash;its an entire
tech stack, and one part of it is a thing called “containerd,” which is a
high-level container runtime by itself. Docker is cool and useful because it has
a lot of UX enhancements that make it really easy for humans to interact with
@@ -66,11 +66,11 @@ does Kubernetes need the Dockershim?
Docker isnt compliant with CRI, the [Container Runtime Interface](https://kubernetes.io/blog/2016/12/container-runtime-interface-cri-in-kubernetes/).
If it were, we wouldnt need the shim, and this wouldnt be a thing. But its
not the end of the world, and you dont need to panic -- you just need to change
not the end of the world, and you dont need to panic&mdash;you just need to change
your container runtime from Docker to another supported container runtime.
One thing to note: If you are relying on the underlying docker socket
(/var/run/docker.sock) as part of a workflow within your cluster today, moving
(`/var/run/docker.sock`) as part of a workflow within your cluster today, moving
to a different runtime will break your ability to use it. This pattern is often
called Docker in Docker. There are lots of options out there for this specific
use case including things like
@@ -82,10 +82,10 @@ use case including things like
This change addresses a different environment than most folks use to interact
with Docker. The Docker installation youre using in development is unrelated to
the Docker runtime inside your Kubernetes cluster. Its confusing, I know. As a
developer, Docker is still useful to you in all the ways it was before this
the Docker runtime inside your Kubernetes cluster. Its confusing, we understand.
As a developer, Docker is still useful to you in all the ways it was before this
change was announced. The image that Docker produces isnt really a
Docker-specific image -- its an OCI ([Open Container Initiative](https://opencontainers.org/)) image.
Docker-specific image&mdash;its an OCI ([Open Container Initiative](https://opencontainers.org/)) image.
Any OCI-compliant image, regardless of the tool you use to build it, will look
the same to Kubernetes. Both [containerd](https://containerd.io/) and
[CRI-O](https://cri-o.io/) know how to pull those images and run them. This is
@@ -95,10 +95,10 @@ So, this change is coming. Its going to cause issues for some, but it isnt
catastrophic, and generally its a good thing. Depending on how you interact
with Kubernetes, this could mean nothing to you, or it could mean a bit of work.
In the long run, its going to make things easier. If this is still confusing
for you, thats okay -- theres a lot going on here, Kubernetes has a lot of
for you, thats okay&mdash;theres a lot going on here; Kubernetes has a lot of
moving parts, and nobody is an expert in 100% of it. We encourage any and all
questions regardless of experience level or complexity! Our goal is to make sure
everyone is educated as much as possible on the upcoming changes. `<3` We hope
this has answered most of your questions and soothed some anxieties!
everyone is educated as much as possible on the upcoming changes. We hope
this has answered most of your questions and soothed some anxieties! ❤️
Looking for more answers? Check out our accompanying [Dockershim Deprecation FAQ](/blog/2020/12/02/dockershim-faq/).
@@ -28,6 +28,7 @@ The `kubectl alpha debug` features graduates to beta in 1.20, becoming `kubectl
* Troubleshoot workloads that crash on startup by creating a copy of the pod that uses a different container image or command.
* Troubleshoot distroless containers by adding a new container with debugging tools, either in a new copy of the pod or using an ephemeral container. (Ephemeral containers are an alpha feature that are not enabled by default.)
* Troubleshoot on a node by creating a container running in the host namespaces and with access to the hosts filesystem.
Note that as a new built-in command, `kubectl debug` takes priority over any kubectl plugin named “debug”. You must rename the affected plugin.
Invocations using `kubectl alpha debug` are now deprecated and will be removed in a subsequent release. Update your scripts to use `kubectl debug`. For more information about `kubectl debug`, see [Debugging Running Pods](https://kubernetes.io/docs/tasks/debug-application-cluster/debug-running-pod/).
@@ -0,0 +1,224 @@
---
layout: blog
title: 'Kubernetes 1.20: Kubernetes Volume Snapshot Moves to GA'
date: 2020-12-10
slug: kubernetes-1.20-volume-snapshot-moves-to-ga
---
**Authors**: Xing Yang, VMware & Xiangqian Yu, Google
The Kubernetes Volume Snapshot feature is now GA in Kubernetes v1.20. It was introduced as [alpha](https://kubernetes.io/blog/2018/10/09/introducing-volume-snapshot-alpha-for-kubernetes/) in Kubernetes v1.12, followed by a [second alpha](https://kubernetes.io/blog/2019/01/17/update-on-volume-snapshot-alpha-for-kubernetes/) with breaking changes in Kubernetes v1.13, and promotion to [beta](https://kubernetes.io/blog/2019/12/09/kubernetes-1-17-feature-cis-volume-snapshot-beta/) in Kubernetes 1.17. This blog post summarizes the changes releasing the feature from beta to GA.
## What is a volume snapshot?
Many storage systems (like Google Cloud Persistent Disks, Amazon Elastic Block Storage, and many on-premise storage systems) provide the ability to create a “snapshot” of a persistent volume. A snapshot represents a point-in-time copy of a volume. A snapshot can be used either to rehydrate a new volume (pre-populated with the snapshot data) or to restore an existing volume to a previous state (represented by the snapshot).
## Why add volume snapshots to Kubernetes?
Kubernetes aims to create an abstraction layer between distributed applications and underlying clusters so that applications can be agnostic to the specifics of the cluster they run on and application deployment requires no “cluster-specific” knowledge.
The Kubernetes Storage SIG identified snapshot operations as critical functionality for many stateful workloads. For example, a database administrator may want to snapshot a databases volumes before starting a database operation.
By providing a standard way to trigger volume snapshot operations in Kubernetes, this feature allows Kubernetes users to incorporate snapshot operations in a portable manner on any Kubernetes environment regardless of the underlying storage.
Additionally, these Kubernetes snapshot primitives act as basic building blocks that unlock the ability to develop advanced enterprise-grade storage administration features for Kubernetes, including application or cluster level backup solutions.
## Whats new since beta?
With the promotion of Volume Snapshot to GA, the feature is enabled by default on standard Kubernetes deployments and cannot be turned off.
Many enhancements have been made to improve the quality of this feature and to make it production-grade.
- The Volume Snapshot APIs and client library were moved to a separate Go module.
- A snapshot validation webhook has been added to perform necessary validation on volume snapshot objects. More details can be found in the [Volume Snapshot Validation Webhook Kubernetes Enhancement Proposal](https://github.com/kubernetes/enhancements/tree/master/keps/sig-storage/1900-volume-snapshot-validation-webhook).
- Along with the validation webhook, the volume snapshot controller will start labeling invalid snapshot objects that already existed. This allows users to identify, remove any invalid objects, and correct their workflows. Once the API is switched to the v1 type, those invalid objects will not be deletable from the system.
- To provide better insights into how the snapshot feature is performing, an initial set of operation metrics has been added to the volume snapshot controller.
- There are more end-to-end tests, running on GCP, that validate the feature in a real Kubernetes cluster. Stress tests (based on Google Persistent Disk and `hostPath` CSI Drivers) have been introduced to test the robustness of the system.
Other than introducing tightening validation, there is no difference between the v1beta1 and v1 Kubernetes volume snapshot API. In this release (with Kubernetes 1.20), both v1 and v1beta1 are served while the stored API version is still v1beta1. Future releases will switch the stored version to v1 and gradually remove v1beta1 support.
## Which CSI drivers support volume snapshots?
Snapshots are only supported for CSI drivers, not for in-tree or FlexVolume drivers. Ensure the deployed CSI driver on your cluster has implemented the snapshot interfaces. For more information, see [Container Storage Interface (CSI) for Kubernetes GA](https://kubernetes.io/blog/2019/01/15/container-storage-interface-ga/).
Currently more than [50 CSI drivers](https://kubernetes-csi.github.io/docs/drivers.html) support the Volume Snapshot feature. The [GCE Persistent Disk CSI Driver](https://github.com/kubernetes-sigs/gcp-compute-persistent-disk-csi-driver) has gone through the tests for upgrading from volume snapshots beta to GA. GA level support for other CSI drivers should be available soon.
## Who builds products using volume snapshots?
As of the publishing of this blog, the following participants from the [Kubernetes Data Protection Working Group](https://github.com/kubernetes/community/tree/master/wg-data-protection) are building products or have already built products using Kubernetes volume snapshots.
- [Dell-EMC: PowerProtect](https://www.delltechnologies.com/en-us/data-protection/powerprotect-data-manager.htm)
- [Druva](https://www.druva.com/)
- [Kasten K10](https://www.kasten.io/)
- [NetApp: Project Astra](https://cloud.netapp.com/project-astra)
- [Portworx (PX-Backup)](https://portworx.com/products/px-backup/)
- [Pure Storage (Pure Service Orchestrator)](https://github.com/purestorage/pso-csi)
- [Red Hat OpenShift Container Storage](https://www.redhat.com/en/technologies/cloud-computing/openshift-container-storage)
- [Robin Cloud Native Storage](https://robin.io/storage/)
- [TrilioVault for Kubernetes](https://docs.trilio.io/kubernetes/)
- [Velero plugin for CSI](https://github.com/vmware-tanzu/velero-plugin-for-csi)
## How to deploy volume snapshots?
Volume Snapshot feature contains the following components:
- [Kubernetes Volume Snapshot CRDs](https://github.com/kubernetes-csi/external-snapshotter/tree/master/client/config/crd)
- [Volume snapshot controller](https://github.com/kubernetes-csi/external-snapshotter/tree/master/pkg/common-controller)
- [Snapshot validation webhook](https://github.com/kubernetes-csi/external-snapshotter/tree/master/pkg/validation-webhook)
- CSI Driver along with [CSI Snapshotter sidecar](https://github.com/kubernetes-csi/external-snapshotter/tree/master/pkg/sidecar-controller)
It is strongly recommended that Kubernetes distributors bundle and deploy the volume snapshot controller, CRDs, and validation webhook as part of their Kubernetes cluster management process (independent of any CSI Driver).
{{< warning >}}
The snapshot validation webhook serves as a critical component to transition smoothly from using v1beta1 to v1 API. Not installing the snapshot validation webhook makes prevention of invalid volume snapshot objects from creation/updating impossible, which in turn will block deletion of invalid volume snapshot objects in coming upgrades.
{{< /warning >}}
If your cluster does not come pre-installed with the correct components, you may manually install them. See the [CSI Snapshotter](https://github.com/kubernetes-csi/external-snapshotter#readme) README for details.
## How to use volume snapshots?
Assuming all the required components (including CSI driver) have been already deployed and running on your cluster, you can create volume snapshots using the `VolumeSnapshot` API object, or use an existing `VolumeSnapshot` to restore a PVC by specifying the VolumeSnapshot data source on it. For more details, see the [volume snapshot documentation](/docs/concepts/storage/volume-snapshots/).
{{< note >}} The Kubernetes Snapshot API does not provide any application consistency guarantees. You have to prepare your application (pause application, freeze filesystem etc.) before taking the snapshot for data consistency either manually or using higher level APIs/controllers. {{< /note >}}
### Dynamically provision a volume snapshot
To dynamically provision a volume snapshot, create a `VolumeSnapshotClass` API object first.
```yaml
apiVersion: snapshot.storage.k8s.io/v1
kind: VolumeSnapshotClass
metadata:
name: test-snapclass
driver: testdriver.csi.k8s.io
deletionPolicy: Delete
parameters:
csi.storage.k8s.io/snapshotter-secret-name: mysecret
csi.storage.k8s.io/snapshotter-secret-namespace: mysecretnamespace
```
Then create a `VolumeSnapshot` API object from a PVC by specifying the volume snapshot class.
```yaml
apiVersion: snapshot.storage.k8s.io/v1
kind: VolumeSnapshot
metadata:
name: test-snapshot
namespace: ns1
spec:
volumeSnapshotClassName: test-snapclass
source:
persistentVolumeClaimName: test-pvc
```
### Importing an existing volume snapshot with Kubernetes
To import a pre-existing volume snapshot into Kubernetes, manually create a `VolumeSnapshotContent` object first.
```yaml
apiVersion: snapshot.storage.k8s.io/v1
kind: VolumeSnapshotContent
metadata:
name: test-content
spec:
deletionPolicy: Delete
driver: testdriver.csi.k8s.io
source:
snapshotHandle: 7bdd0de3-xxx
volumeSnapshotRef:
name: test-snapshot
namespace: default
```
Then create a `VolumeSnapshot` object pointing to the `VolumeSnapshotContent` object.
```yaml
apiVersion: snapshot.storage.k8s.io/v1
kind: VolumeSnapshot
metadata:
name: test-snapshot
spec:
source:
volumeSnapshotContentName: test-content
```
### Rehydrate volume from snapshot
A bound and ready `VolumeSnapshot` object can be used to rehydrate a new volume with data pre-populated from snapshotted data as shown here:
```yaml
apiVersion: v1
kind: PersistentVolumeClaim
metadata:
name: pvc-restore
namespace: demo-namespace
spec:
storageClassName: test-storageclass
dataSource:
name: test-snapshot
kind: VolumeSnapshot
apiGroup: snapshot.storage.k8s.io
accessModes:
- ReadWriteOnce
resources:
requests:
storage: 1Gi
```
## How to add support for snapshots in a CSI driver?
See the [CSI spec](https://github.com/container-storage-interface/spec/blob/master/spec.md) and the [Kubernetes-CSI Driver Developer Guide](https://kubernetes-csi.github.io/docs/snapshot-restore-feature.html) for more details on how to implement the snapshot feature in a CSI driver.
## What are the limitations?
The GA implementation of volume snapshots for Kubernetes has the following limitations:
- Does not support reverting an existing PVC to an earlier state represented by a snapshot (only supports provisioning a new volume from a snapshot).
### How to learn more?
The code repository for snapshot APIs and controller is here: https://github.com/kubernetes-csi/external-snapshotter
Check out additional documentation on the snapshot feature here: http://k8s.io/docs/concepts/storage/volume-snapshots and https://kubernetes-csi.github.io/docs/
## How to get involved?
This project, like all of Kubernetes, is the result of hard work by many contributors from diverse backgrounds working together.
We offer a huge thank you to the contributors who stepped up these last few quarters to help the project reach GA. We want to thank Saad Ali, Michelle Au, Tim Hockin, and Jordan Liggitt for their insightful reviews and thorough consideration with the design, thank Andi Li for his work on adding the support of the snapshot validation webhook, thank Grant Griffiths on implementing metrics support in the snapshot controller and handling password rotation in the validation webhook, thank Chris Henzie, Raunak Shah, and Manohar Reddy for writing critical e2e tests to meet the scalability and stability requirements for graduation, thank Kartik Sharma for moving snapshot APIs and client lib to a separate go module, and thank Raunak Shah and Prafull Ladha for their help with upgrade testing from beta to GA.
There are many more people who have helped to move the snapshot feature from beta to GA. We want to thank everyone who has contributed to this effort:
- [Andi Li](https://github.com/AndiLi99)
- [Ben Swartzlander](https://github.com/bswartz)
- [Chris Henzie](https://github.com/chrishenzie)
- [Christian Huffman](https://github.com/huffmanca)
- [Grant Griffiths](https://github.com/ggriffiths)
- [Humble Devassy Chirammal](https://github.com/humblec)
- [Jan Šafránek](https://github.com/jsafrane)
- [Jiawei Wang](https://github.com/Jiawei0227)
- [Jing Xu](https://github.com/jingxu97)
- [Jordan Liggitt](https://github.com/liggitt)
- [Kartik Sharma](https://github.com/Kartik494)
- [Madhu Rajanna](https://github.com/Madhu-1)
- [Manohar Reddy](https://github.com/boddumanohar)
- [Michelle Au](https://github.com/msau42)
- [Patrick Ohly](https://github.com/pohly)
- [Prafull Ladha](https://github.com/prafull01)
- [Prateek Pandey](https://github.com/prateekpandey14)
- [Raunak Shah](https://github.com/RaunakShah)
- [Saad Ali](https://github.com/saad-ali)
- [Saikat Roychowdhury](https://github.com/saikat-royc)
- [Tim Hockin](https://github.com/thockin)
- [Xiangqian Yu](https://github.com/yuxiangqian)
- [Xing Yang](https://github.com/xing-yang)
- [Zhu Can](https://github.com/zhucan)
For those interested in getting involved with the design and development of CSI or any part of the Kubernetes Storage system, join the [Kubernetes Storage Special Interest Group](https://github.com/kubernetes/community/tree/master/sig-storage) (SIG). Were rapidly growing and always welcome new contributors.
We also hold regular [Data Protection Working Group meetings](https://docs.google.com/document/d/15tLCV3csvjHbKb16DVk-mfUmFry_Rlwo-2uG6KNGsfw/edit#). New attendees are welcome to join in discussions.
@@ -0,0 +1,53 @@
---
layout: blog
title: 'Kubernetes 1.20: Pod Impersonation and Short-lived Volumes in CSI Drivers'
date: 2020-12-18
slug: kubernetes-1.20-pod-impersonation-short-lived-volumes-in-csi
---
**Author**: Shihang Zhang (Google)
Typically when a [CSI](https://github.com/container-storage-interface/spec/blob/baa71a34651e5ee6cb983b39c03097d7aa384278/spec.md) driver mounts credentials such as secrets and certificates, it has to authenticate against storage providers to access the credentials. However, the access to those credentials are controlled on the basis of the pods' identities rather than the CSI driver's identity. CSI drivers, therefore, need some way to retrieve pod's service account token.
Currently there are two suboptimal approaches to achieve this, either by granting CSI drivers the permission to use TokenRequest API or by reading tokens directly from the host filesystem.
Both of them exhibit the following drawbacks:
- Violating the principle of least privilege
- Every CSI driver needs to re-implement the logic of getting the pods service account token
The second approach is more problematic due to:
- The audience of the token defaults to the kube-apiserver
- The token is not guaranteed to be available (e.g. `AutomountServiceAccountToken=false`)
- The approach does not work for CSI drivers that run as a different (non-root) user from the pods. See [file permission section for service account token](https://github.com/kubernetes/enhancements/blob/f40c24a5da09390bd521be535b38a4dbab09380c/keps/sig-storage/20180515-svcacct-token-volumes.md#file-permission)
- The token might be legacy Kubernetes service account token which doesnt expire if `BoundServiceAccountTokenVolume=false`
Kubernetes 1.20 introduces an alpha feature, `CSIServiceAccountToken`, to improve the security posture. The new feature allows CSI drivers to receive pods' [bound service account tokens](https://github.com/kubernetes/enhancements/blob/master/keps/sig-auth/1205-bound-service-account-tokens/README.md).
This feature also provides a knob to re-publish volumes so that short-lived volumes can be refreshed.
## Pod Impersonation
### Using GCP APIs
Using [Workload Identity](https://cloud.google.com/kubernetes-engine/docs/how-to/workload-identity), a Kubernetes service account can authenticate as a Google service account when accessing Google Cloud APIs. If a CSI driver needs to access GCP APIs on behalf of the pods that it is mounting volumes for, it can use the pod's service account token to [exchange for GCP tokens](https://cloud.google.com/iam/docs/reference/sts/rest). The pod's service account token is plumbed through the volume context in `NodePublishVolume` RPC calls when the feature `CSIServiceAccountToken` is enabled. For example: accessing [Google Secret Manager](https://cloud.google.com/secret-manager/) via a [secret store CSI driver](https://github.com/GoogleCloudPlatform/secrets-store-csi-driver-provider-gcp).
### Using Vault
If users configure [Kubernetes as an auth method](https://www.vaultproject.io/docs/auth/kubernetes), Vault uses the `TokenReview` API to validate the Kubernetes service account token. For CSI drivers using Vault as resources provider, they need to present the pod's service account to Vault. For example, [secrets store CSI driver](https://github.com/hashicorp/secrets-store-csi-driver-provider-vault) and [cert manager CSI driver](https://github.com/jetstack/cert-manager-csi).
## Short-lived Volumes
To keep short-lived volumes such as certificates effective, CSI drivers can specify `RequiresRepublish=true` in their`CSIDriver` object to have the kubelet periodically call `NodePublishVolume` on mounted volumes. These republishes allow CSI drivers to ensure that the volume content is up-to-date.
## Next steps
This feature is alpha and projected to move to beta in 1.21. See more in the following KEP and CSI documentation:
- [KEP-1855: Service Account Token for CSI Driver](https://github.com/kubernetes/enhancements/blob/master/keps/sig-storage/1855-csi-driver-service-account-token/README.md)
- [Token Requests](https://kubernetes-csi.github.io/docs/token-requests.html)
Your feedback is always welcome!
- SIG-Auth [meets regularly](https://github.com/kubernetes/community/tree/master/sig-auth#meetings) and can be reached via [Slack and the mailing list](https://github.com/kubernetes/community/tree/master/sig-auth#contact)
- SIG-Storage [meets regularly](https://github.com/kubernetes/community/tree/master/sig-storage#meetings) and can be reached via [Slack and the mailing list](https://github.com/kubernetes/community/tree/master/sig-storage#contact).
@@ -0,0 +1,59 @@
---
layout: blog
title: 'Kubernetes 1.20: Granular Control of Volume Permission Changes'
date: 2020-12-14
slug: kubernetes-release-1.20-fsGroupChangePolicy-fsGroupPolicy
---
**Authors**: Hemant Kumar, Red Hat & Christian Huffman, Red Hat
Kubernetes 1.20 brings two important beta features, allowing Kubernetes admins and users alike to have more adequate control over how volume permissions are applied when a volume is mounted inside a Pod.
### Allow users to skip recursive permission changes on mount
Traditionally if your pod is running as a non-root user ([which you should](https://twitter.com/thockin/status/1333892204490735617)), you must specify a `fsGroup` inside the pods security context so that the volume can be readable and writable by the Pod. This requirement is covered in more detail in [here](https://kubernetes.io/docs/tasks/configure-pod-container/security-context/).
But one side-effect of setting `fsGroup` is that, each time a volume is mounted, Kubernetes must recursively `chown()` and `chmod()` all the files and directories inside the volume - with a few exceptions noted below. This happens even if group ownership of the volume already matches the requested `fsGroup`, and can be pretty expensive for larger volumes with lots of small files, which causes pod startup to take a long time. This scenario has been a [known problem](https://github.com/kubernetes/kubernetes/issues/69699) for a while, and in Kubernetes 1.20 we are providing knobs to opt-out of recursive permission changes if the volume already has the correct permissions.
When configuring a pods security context, set `fsGroupChangePolicy` to "OnRootMismatch" so if the root of the volume already has the correct permissions, the recursive permission change can be skipped. Kubernetes ensures that permissions of the top-level directory are changed last the first time it applies permissions.
```yaml
securityContext:
runAsUser: 1000
runAsGroup: 3000
fsGroup: 2000
fsGroupChangePolicy: "OnRootMismatch"
```
You can learn more about this in [Configure volume permission and ownership change policy for Pods](https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#configure-volume-permission-and-ownership-change-policy-for-pods).
### Allow CSI Drivers to declare support for fsGroup based permissions
Although the previous section implied that Kubernetes _always_ recursively changes permissions of a volume if a Pod has a `fsGroup`, this is not strictly true. For certain multi-writer volume types, such as NFS or Gluster, the cluster doesnt perform recursive permission changes even if the pod has a `fsGroup`. Other volume types may not even support `chown()`/`chmod()`, which rely on Unix-style permission control primitives.
So how do we know when to apply recursive permission changes and when we shouldn't? For in-tree storage drivers, this was relatively simple. For [CSI](https://kubernetes-csi.github.io/docs/introduction.html#introduction) drivers that could span a multitude of platforms and storage types, this problem can be a bigger challenge.
Previously, whenever a CSI volume was mounted to a Pod, Kubernetes would attempt to automatically determine if the permissions and ownership should be modified. These methods were imprecise and could cause issues as we already mentioned, depending on the storage type.
The CSIDriver custom resource now has a `.spec.fsGroupPolicy` field, allowing storage drivers to explicitly opt in or out of these recursive modifications. By having the CSI driver specify a policy for the backing volumes, Kubernetes can avoid needless modification attempts. This optimization helps to reduce volume mount time and also cuts own reporting errors about modifications that would never succeed.
#### CSIDriver FSGroupPolicy API
Three FSGroupPolicy values are available as of Kubernetes 1.20, with more planned for future releases.
- **ReadWriteOnceWithFSType** - This is the default policy, applied if no `fsGroupPolicy` is defined; this preserves the behavior from previous Kubernetes releases. Each volume is examined at mount time to determine if permissions should be recursively applied.
- **File** - Always attempt to apply permission modifications, regardless of the filesystem type or PersistentVolumeClaims access mode.
- **None** - Never apply permission modifications.
#### How do I use it?
The only configuration needed is defining `fsGroupPolicy` inside of the `.spec` for a CSIDriver. Once that element is defined, any subsequently mounted volumes will automatically use the defined policy. Theres no additional deployment required!
#### Whats next?
Depending on feedback and adoption, the Kubernetes team plans to push these implementations to GA in either 1.21 or 1.22.
### How can I learn more?
This feature is explained in more detail in Kubernetes project documentation: [CSI Driver fsGroup Support](https://kubernetes-csi.github.io/docs/support-fsgroup.html) and [Configure volume permission and ownership change policy for Pods ](https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#configure-volume-permission-and-ownership-change-policy-for-pods).
### How do I get involved?
The [Kubernetes Slack channel #csi](https://kubernetes.slack.com/messages/csi) and any of the [standard SIG Storage communication channels](https://github.com/kubernetes/community/blob/master/sig-storage/README.md#contact) are great mediums to reach out to the SIG Storage and the CSI team.
Those interested in getting involved with the design and development of CSI or any part of the Kubernetes Storage system, join the [Kubernetes Storage Special Interest Group (SIG)](https://github.com/kubernetes/community/tree/master/sig-storage). Were rapidly growing and always welcome new contributors.
@@ -0,0 +1,134 @@
---
layout: blog
title: 'Third Party Device Metrics Reaches GA'
date: 2020-12-16
slug: third-party-device-metrics-reaches-ga
---
**Authors:** Renaud Gaubert (NVIDIA), David Ashpole (Google), and Pramod Ramarao (NVIDIA)
With Kubernetes 1.20, infrastructure teams who manage large scale Kubernetes clusters, are seeing the graduation of two exciting and long awaited features:
* The Pod Resources API (introduced in 1.13) is finally graduating to GA. This allows Kubernetes plugins to obtain information about the nodes resource usage and assignment; for example: which pod/container consumes which device.
* The `DisableAcceleratorMetrics` feature (introduced in 1.19) is graduating to beta and will be enabled by default. This removes device metrics reported by the kubelet in favor of the new plugin architecture.
Many of the features related to fundamental device support (device discovery, plugin, and monitoring) are reaching a strong level of stability.
Kubernetes users should see these features as stepping stones to enable more complex use cases (networking, scheduling, storage, etc.)!
One such example is Non Uniform Memory Access (NUMA) placement where, when selecting a device, an application typically wants to ensure that data transfer between CPU Memory and Device Memory is as fast as possible. In some cases, incorrect NUMA placement can nullify the benefit of offloading compute to an external device.
If these are topics of interest to you, consider joining the [Kubernetes Node Special Insterest Group](https://github.com/kubernetes/community/tree/master/sig-node) (SIG) for all topics related to the Kubernetes node, the COD (container orchestrated device) workgroup for topics related to runtimes, or the resource management forum for topics related to resource management!
## The Pod Resources API - Why does it need to exist?
Kubernetes is a vendor neutral platform. If we want it to support device monitoring, adding vendor-specific code in the Kubernetes code base is not an ideal solution. Ultimately, devices are a domain where deep expertise is needed and the best people to add and maintain code in that area are the device vendors themselves.
The Pod Resources API was built as a solution to this issue. Each vendor can build and maintain their own out-of-tree monitoring plugin. This monitoring plugin, often deployed as a separate pod within a cluster, can then associate the metrics a device emits with the associated pod that's using it.
For example, use the NVIDIA GPU dcgm-exporter to scrape metrics in Prometheus format:
```
$ curl -sL http://127.0.01:8080/metrics
# HELP DCGM_FI_DEV_SM_CLOCK SM clock frequency (in MHz).
# TYPE DCGM_FI_DEV_SM_CLOCK gauge
# HELP DCGM_FI_DEV_MEM_CLOCK Memory clock frequency (in MHz).
# TYPE DCGM_FI_DEV_MEM_CLOCK gauge
# HELP DCGM_FI_DEV_MEMORY_TEMP Memory temperature (in C).
# TYPE DCGM_FI_DEV_MEMORY_TEMP gauge
...
DCGM_FI_DEV_SM_CLOCK{gpu="0", UUID="GPU-604ac76c-d9cf-fef3-62e9-d92044ab6e52",container="foo",namespace="bar",pod="baz"} 139
DCGM_FI_DEV_MEM_CLOCK{gpu="0", UUID="GPU-604ac76c-d9cf-fef3-62e9-d92044ab6e52",container="foo",namespace="bar",pod="baz"} 405
DCGM_FI_DEV_MEMORY_TEMP{gpu="0", UUID="GPU-604ac76c-d9cf-fef3-62e9-d92044ab6e52",container="foo",namespace="bar",pod="baz"} 9223372036854775794
```
Each agent is expected to adhere to the node monitoring guidelines. In other words, plugins are expected to generate metrics in Prometheus format, and new metrics should not have any dependency on the Kubernetes base directly.
This allows consumers of the metrics to use a compatible monitoring pipeline to collect and analyze metrics from a variety of agents, even if they are maintained by different vendors.
![Device metrics flowchart](/images/blog/2020-12-16-third-party-device-metrics-hits-ga/metrics-chart.png)
## Disabling the NVIDIA GPU metrics - Warning {#nvidia-gpu-metrics-deprecated}
With the graduation of the plugin monitoring system, Kubernetes is deprecating the NVIDIA GPU metrics that are being reported by the kubelet.
With the [DisableAcceleratorMetrics](/docs/concepts/cluster-administration/system-metrics/#disable-accelerator-metrics) feature being enabled by default in Kubernetes 1.20, NVIDIA GPUs are no longer special citizens in Kubernetes. This is a good thing in the spirit of being vendor-neutral, and enables the most suited people to maintain their plugin on their own release schedule!
Users will now need to either install the [NVIDIA GDGM exporter](https://github.com/NVIDIA/gpu-monitoring-tools) or use [bindings](https://github.com/nvidia/go-nvml) to gather more accurate and complete metrics about NVIDIA GPUs. This deprecation means that you can no longer rely on metrics that were reported by kubelet, such as `container_accelerator_duty_cycle` or `container_accelerator_memory_used_bytes` which were used to gather NVIDIA GPU memory utilization.
This means that users who used to rely on the NVIDIA GPU metrics reported by the kubelet, will need to update their reference and deploy the NVIDIA plugin. Namely the different metrics reported by Kubernetes map to the following metrics:
| Kubernetes Metrics | NVIDIA dcgm-exporter metric |
| ------------------------------------------ | ------------------------------------------- |
| `container_accelerator_duty_cycle` | `DCGM_FI_DEV_GPU_UTIL` |
| `container_accelerator_memory_used_bytes` | `DCGM_FI_DEV_FB_USED` |
| `container_accelerator_memory_total_bytes` | `DCGM_FI_DEV_FB_FREE + DCGM_FI_DEV_FB_USED` |
You might also be interested in other metrics such as `DCGM_FI_DEV_GPU_TEMP` (the GPU temperature) or DCGM_FI_DEV_POWER_USAGE (the power usage). The [default set](https://github.com/NVIDIA/gpu-monitoring-tools/blob/d5c9bb55b4d1529ca07068b7f81e690921ce2b59/etc/dcgm-exporter/default-counters.csv) is available in Nvidia's [Data Center GPU Manager documentation](https://docs.nvidia.com/datacenter/dcgm/latest/dcgm-api/group__dcgmFieldIdentifiers.html).
Note that for this release you can still set the `DisableAcceleratorMetrics` [feature gate](/docs/reference/command-line-tools-reference/feature-gates/) to _false_, effectively re-enabling the ability for the kubelet to report NVIDIA GPU metrics.
Paired with the graduation of the Pod Resources API, these tools can be used to generate GPU telemetry [that can be used in visualization dashboards](https://grafana.com/grafana/dashboards/12239), below is an example:
![Grafana visualization of device metrics](/images/blog/2020-12-16-third-party-device-metrics-hits-ga/grafana.png)
## The Pod Resources API - What can I go on to do with this?
As soon as this interface was introduced, many vendors started using it for widely different use cases! To list a few examples:
The [kuryr-kubernetes](https://github.com/openstack/kuryr-kubernetes) CNI plugin in tandem with [intel-sriov-device-plugin](https://github.com/intel/sriov-network-device-plugin). This allowed the CNI plugin to know which allocation of SR-IOV Virtual Functions (VFs) the kubelet made and use that information to correctly setup the container network namespace and use a device with the appropriate NUMA node. We also expect this interface to be used to track the allocated and available resources with information about the NUMA topology of the worker node.
Another use-case is GPU telemetry, where GPU metrics can be associated with the containers and pods that the GPU is assigned to. One such example is the NVIDIA `dcgm-exporter`, but others can be easily built in the same paradigm.
The Pod Resources API is a simple gRPC service which informs clients of the pods the kubelet knows. The information concerns the devices assignment the kubelet made and the assignment of CPUs. This information is obtained from the internal state of the kubelet's Device Manager and CPU Manager respectively.
You can see below a sample example of the API and how a go client could use that information in a few lines:
```
service PodResourcesLister {
rpc List(ListPodResourcesRequest) returns (ListPodResourcesResponse) {}
rpc GetAllocatableResources(AllocatableResourcesRequest) returns (AllocatableResourcesResponse) {}
// Kubernetes 1.21
rpc Watch(WatchPodResourcesRequest) returns (stream WatchPodResourcesResponse) {}
}
```
```go
func main() {
ctx, cancel := context.WithTimeout(context.Background(), connectionTimeout)
defer cancel()
socket := "/var/lib/kubelet/pod-resources/kubelet.sock"
conn, err := grpc.DialContext(ctx, socket, grpc.WithInsecure(), grpc.WithBlock(),
grpc.WithDialer(func(addr string, timeout time.Duration) (net.Conn, error) {
return net.DialTimeout("unix", addr, timeout)
}),
)
if err != nil {
panic(err)
}
client := podresourcesapi.NewPodResourcesListerClient(conn)
resp, err := client.List(ctx, &podresourcesapi.ListPodResourcesRequest{})
if err != nil {
panic(err)
}
net.Printf("%+v\n", resp)
}
```
Finally, note that you can watch the number of requests made to the Pod Resources endpoint by watching the new kubelet metric called `pod_resources_endpoint_requests_total` on the kubelet's `/metrics` endpoint.
## Is device monitoring suitable for production? Can I extend it? Can I contribute?
Yes! This feature released in 1.13, almost 2 years ago, has seen broad adoption, is already used by different cloud managed services, and with its graduation to G.A in Kubernetes 1.20 is production ready!
If you are a device vendor, you can start using it today! If you just want to monitor the devices in your cluster, go get the latest version of your monitoring plugin!
If you feel passionate about that area, join the kubernetes community, help improve the API or contribute the device monitoring plugins!
## Acknowledgements
We thank the members of the community who have contributed to this feature or given feedback including members of WG-Resource-Management, SIG-Node and the Resource management forum!
Binary file not shown.

After

Width:  |  Height:  |  Size: 181 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 152 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 43 KiB

@@ -0,0 +1,63 @@
---
layout: blog
title: "The Evolution of Kubernetes Dashboard"
date: 2021-03-09
slug: the-evolution-of-kubernetes-dashboard
---
Authors: Marcin Maciaszczyk, Kubermatic & Sebastian Florek, Kubermatic
In October 2020, the Kubernetes Dashboard officially turned five. As main project maintainers, we can barely believe that so much time has passed since our very first commits to the project. However, looking back with a bit of nostalgia, we realize that quite a lot has happened since then. Now its due time to celebrate “our baby” with a short recap.
## How It All Began
The initial idea behind the Kubernetes Dashboard project was to provide a web interface for Kubernetes. We wanted to reflect the kubectl functionality through an intuitive web UI. The main benefit from using the UI is to be able to quickly see things that do not work as expected (monitoring and troubleshooting). Also, the Kubernetes Dashboard is a great starting point for users that are new to the Kubernetes ecosystem.
The very [first commit](https://github.com/kubernetes/dashboard/commit/5861187fa807ac1cc2d9b2ac786afeced065076c) to the Kubernetes Dashboard was made by Filip Grządkowski from Google on 16th October 2015 just a few months from the initial commit to the Kubernetes repository. Our initial commits go back to November 2015 ([Sebastian committed on 16 November 2015](https://github.com/kubernetes/dashboard/commit/09e65b6bb08c49b926253de3621a73da05e400fd); [Marcin committed on 23 November 2015](https://github.com/kubernetes/dashboard/commit/1da4b1c25ef040818072c734f71333f9b4733f55)). Since that time, weve become regular contributors to the project. For the next two years, we worked closely with the Googlers, eventually becoming main project maintainers ourselves.
{{< figure src="first-ui.png" caption="The First Version of the User Interface" >}}
{{< figure src="along-the-way-ui.png" caption="Prototype of the New User Interface" >}}
{{< figure src="current-ui.png" caption="The Current User Interface" >}}
As you can see, the initial look and feel of the project were completely different from the current one. We have changed the design multiple times. The same has happened with the code itself.
## Growing Up - The Big Migration
At [the beginning of 2018](https://github.com/kubernetes/dashboard/pull/2727), we reached a point where AngularJS was getting closer to the end of its life, while the new Angular versions were published quite often. A lot of the libraries and the modules that we were using were following the trend. That forced us to spend a lot of the time rewriting the frontend part of the project to make it work with newer technologies.
The migration came with many benefits like being able to refactor a lot of the code, introduce design patterns, reduce code complexity, and benefit from the new modules. However, you can imagine that the scale of the migration was huge. Luckily, there were a number of contributions from the community helping us with the resource support, new Kubernetes version support, i18n, and much more. After many long days and nights, we finally released the [first beta version](https://github.com/kubernetes/dashboard/releases/tag/v2.0.0-beta1) in July 2019, followed by the [2.0 release](https://github.com/kubernetes/dashboard/releases/tag/v2.0.0) in April 2020 — our baby had grown up.
## Where Are We Standing in 2021?
Due to limited resources, unfortunately, we were not able to offer extensive support for many different Kubernetes versions. So, weve decided to always try and support the latest Kubernetes version available at the time of the Kubernetes Dashboard release. The latest release, [Dashboard v2.2.0](https://github.com/kubernetes/dashboard/releases/tag/v2.2.0) provides support for Kubernetes v1.20.
On top of that, we put in a great deal of effort into [improving resource support](https://github.com/kubernetes/dashboard/issues/5232). Meanwhile, we do offer support for most of the Kubernetes resources. Also, the Kubernetes Dashboard supports multiple languages: English, German, French, Japanese, Korean, Chinese (Traditional, Simplified, Traditional Hong Kong). Persian and Russian localizations are currently in progress. Moreover, we are working on the support for 3rd party themes and the design of the app in general. As you can see, quite a lot of things are going on.
Luckily, we do have regular contributors with domain knowledge who are taking care of the project, updating the Helm charts, translations, Go modules, and more. But as always, there could be many more hands on deck. So if you are thinking about contributing to Kubernetes, keep us in mind ;)
## Whats Next
The Kubernetes Dashboard has been growing and prospering for more than 5 years now. It provides the community with an intuitive Web UI, thereby decreasing the complexity of Kubernetes and increasing its accessibility to new community members. We are proud of what the project has achieved so far, but this is by far not the end. These are our priorities for the future:
* Keep providing support for the new Kubernetes versions
* Keep improving the support for the existing resources
* Keep working on auth system improvements
* [Rewrite the API to use gRPC and shared informers](https://github.com/kubernetes/dashboard/pull/5449): This will allow us to improve the performance of the application but, most importantly, to support live updates coming from the Kubernetes project. It is one of the most requested features from the community.
* Split the application into two containers, one with the UI and the second with the API running inside.
## The Kubernetes Dashboard in Numbers
* Initial commit made on October 16, 2015
* Over 100 million pulls from Dockerhub since the v2 release
* 8 supported languages and the next 2 in progress
* Over 3360 closed PRs
* Over 2260 closed issues
* 100% coverage of the supported core Kubernetes resources
* Over 9000 stars on GitHub
* Over 237 000 lines of code
## Join Us
As mentioned earlier, we are currently looking for more people to help us further develop and grow the project. We are open to contributions in multiple areas, i.e., [issues with help wanted label](https://github.com/kubernetes/dashboard/issues?q=is%3Aissue+is%3Aopen+label%3A%22help+wanted%22). Please feel free to reach out via GitHub or the #sig-ui channel in the [Kubernetes Slack](https://slack.k8s.io/).
@@ -0,0 +1,74 @@
---
layout: blog
title: "PodSecurityPolicy Deprecation: Past, Present, and Future"
date: 2021-04-06
slug: podsecuritypolicy-deprecation-past-present-and-future
---
**Author:** Tabitha Sable (Kubernetes SIG Security)
PodSecurityPolicy (PSP) is being deprecated in Kubernetes 1.21, to be released later this week. This starts the countdown to its removal, but doesnt change anything else. PodSecurityPolicy will continue to be fully functional for several more releases before being removed completely. In the meantime, we are developing a replacement for PSP that covers key use cases more easily and sustainably.
What are Pod Security Policies? Why did we need them? Why are they going away, and whats next? How does this affect you? These key questions come to mind as we prepare to say goodbye to PSP, so lets walk through them together. Well start with an overview of how features get removed from Kubernetes.
## What does deprecation mean in Kubernetes?
Whenever a Kubernetes feature is set to go away, our [deprecation policy](/docs/reference/using-api/deprecation-policy/) is our guide. First the feature is marked as deprecated, then after enough time has passed, it can finally be removed.
Kubernetes 1.21 starts the deprecation process for PodSecurityPolicy. As with all feature deprecations, PodSecurityPolicy will continue to be fully functional for several more releases. The current plan is to remove PSP from Kubernetes in the 1.25 release.
Until then, PSP is still PSP. There will be at least a year during which the newest Kubernetes releases will still support PSP, and nearly two years until PSP will pass fully out of all supported Kubernetes versions.
## What is PodSecurityPolicy?
[PodSecurityPolicy](/docs/concepts/policy/pod-security-policy/) is a built-in [admission controller](/blog/2019/03/21/a-guide-to-kubernetes-admission-controllers/) that allows a cluster administrator to control security-sensitive aspects of the Pod specification.
First, one or more PodSecurityPolicy resources are created in a cluster to define the requirements Pods must meet. Then, RBAC rules are created to control which PodSecurityPolicy applies to a given pod. If a pod meets the requirements of its PSP, it will be admitted to the cluster as usual. In some cases, PSP can also modify Pod fields, effectively creating new defaults for those fields. If a Pod does not meet the PSP requirements, it is rejected, and cannot run.
One more important thing to know about PodSecurityPolicy: its not the same as [PodSecurityContext](/docs/reference/kubernetes-api/workload-resources/pod-v1/#security-context).
A part of the Pod specification, PodSecurityContext (and its per-container counterpart `SecurityContext`) is the collection of fields that specify many of the security-relevant settings for a Pod. The security context dictates to the kubelet and container runtime how the Pod should actually be run. In contrast, the PodSecurityPolicy only constrains (or defaults) the values that may be set on the security context.
The deprecation of PSP does not affect PodSecurityContext in any way.
## Why did we need PodSecurityPolicy?
In Kubernetes, we define resources such as Deployments, StatefulSets, and Services that represent the building blocks of software applications. The various controllers inside a Kubernetes cluster react to these resources, creating further Kubernetes resources or configuring some software or hardware to accomplish our goals.
In most Kubernetes clusters, RBAC (Role-Based Access Control) [rules](/docs/reference/access-authn-authz/rbac/#role-and-clusterrole) control access to these resources. `list`, `get`, `create`, `edit`, and `delete` are the sorts of API operations that RBAC cares about, but _RBAC does not consider what settings are being put into the resources it controls_. For example, a Pod can be almost anything from a simple webserver to a privileged command prompt offering full access to the underlying server node and all the data. Its all the same to RBAC: a Pod is a Pod is a Pod.
To control what sorts of settings are allowed in the resources defined in your cluster, you need Admission Control in addition to RBAC. Since Kubernetes 1.3, PodSecurityPolicy has been the built-in way to do that for security-related Pod fields. Using PodSecurityPolicy, you can prevent “create Pod” from automatically meaning “root on every cluster node,” without needing to deploy additional external admission controllers.
## Why is PodSecurityPolicy going away?
In the years since PodSecurityPolicy was first introduced, we have realized that PSP has some serious usability problems that cant be addressed without making breaking changes.
The way PSPs are applied to Pods has proven confusing to nearly everyone that has attempted to use them. It is easy to accidentally grant broader permissions than intended, and difficult to inspect which PSP(s) apply in a given situation. The “changing Pod defaults” feature can be handy, but is only supported for certain Pod settings and its not obvious when they will or will not apply to your Pod. Without a “dry run” or audit mode, its impractical to retrofit PSP to existing clusters safely, and its impossible for PSP to ever be enabled by default.
For more information about these and other PSP difficulties, check out SIG Auths KubeCon NA 2019 Maintainer Track session video: {{< youtube "SFtHRmPuhEw?start=953" youtube-quote-sm >}}
Today, youre not limited only to deploying PSP or writing your own custom admission controller. Several external admission controllers are available that incorporate lessons learned from PSP to provide a better user experience. [K-Rail](https://github.com/cruise-automation/k-rail), [Kyverno](https://github.com/kyverno/kyverno/), and [OPA/Gatekeeper](https://github.com/open-policy-agent/gatekeeper/) are all well-known, and each has its fans.
Although there are other good options available now, we believe there is still value in having a built-in admission controller available as a choice for users. With this in mind, we turn toward building whats next, inspired by the lessons learned from PSP.
## Whats next?
Kubernetes SIG Security, SIG Auth, and a diverse collection of other community members have been working together for months to ensure that whats coming next is going to be awesome. We have developed a Kubernetes Enhancement Proposal ([KEP 2579](https://github.com/kubernetes/enhancements/issues/2579)) and a prototype for a new feature, currently being called by the temporary name "PSP Replacement Policy." We are targeting an Alpha release in Kubernetes 1.22.
PSP Replacement Policy starts with the realization that since there is a robust ecosystem of external admission controllers already available, PSPs replacement doesnt need to be all things to all people. Simplicity of deployment and adoption is the key advantage a built-in admission controller has compared to an external webhook, so we have focused on how to best utilize that advantage.
PSP Replacement Policy is designed to be as simple as practically possible while providing enough flexibility to really be useful in production at scale. It has soft rollout features to enable retrofitting it to existing clusters, and is configurable enough that it can eventually be active by default. It can be deactivated partially or entirely, to coexist with external admission controllers for advanced use cases.
## What does this mean for you?
What this all means for you depends on your current PSP situation. If youre already using PSP, theres plenty of time to plan your next move. Please review the PSP Replacement Policy KEP and think about how well it will suit your use case.
If youre making extensive use of the flexibility of PSP with numerous PSPs and complex binding rules, you will likely find the simplicity of PSP Replacement Policy too limiting. Use the next year to evaluate the other admission controller choices in the ecosystem. There are resources available to ease this transition, such as the [Gatekeeper Policy Library](https://github.com/open-policy-agent/gatekeeper-library).
If your use of PSP is relatively simple, with a few policies and straightforward binding to service accounts in each namespace, you will likely find PSP Replacement Policy to be a good match for your needs. Evaluate your PSPs compared to the Kubernetes [Pod Security Standards](/docs/concepts/security/pod-security-standards/) to get a feel for where youll be able to use the Restricted, Baseline, and Privileged policies. Please follow along with or contribute to the KEP and subsequent development, and try out the Alpha release of PSP Replacement Policy when it becomes available.
If youre just beginning your PSP journey, you will save time and effort by keeping it simple. You can approximate the functionality of PSP Replacement Policy today by using the Pod Security Standards PSPs. If you set the cluster default by binding a Baseline or Restricted policy to the `system:serviceaccounts` group, and then make a more-permissive policy available as needed in certain Namespaces [using ServiceAccount bindings](/docs/concepts/policy/pod-security-policy/#run-another-pod), you will avoid many of the PSP pitfalls and have an easy migration to PSP Replacement Policy. If your needs are much more complex than this, your effort is probably better spent adopting one of the more fully-featured external admission controllers mentioned above.
Were dedicated to making Kubernetes the best container orchestration tool we can, and sometimes that means we need to remove longstanding features to make space for better things to come. When that happens, the Kubernetes deprecation policy ensures you have plenty of time to plan your next move. In the case of PodSecurityPolicy, several options are available to suit a range of needs and use cases. Start planning ahead now for PSPs eventual removal, and please consider contributing to its replacement! Happy securing!
**Acknowledgment:** It takes a wonderful group to make wonderful software. Thanks are due to everyone who has contributed to the PSP replacement effort, especially (in alphabetical order) Tim Allclair, Ian Coldwater, and Jordan Liggitt. Its been a joy to work with yall on this.
Binary file not shown.

After

Width:  |  Height:  |  Size: 13 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 30 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 28 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 19 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 18 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 19 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 20 KiB

+1 -1
View File
@@ -13,7 +13,7 @@ new_case_study_styles: true
heading_background: /images/case-studies/appdirect/banner1.jpg
heading_title_logo: /images/appdirect_logo.png
subheading: >
AppDirect: How AppDirect Supported the 10x Growth of Its Engineering Staff with Kubernetess
AppDirect: How AppDirect Supported the 10x Growth of Its Engineering Staff with Kubernetes
case_study_details:
- Company: AppDirect
- Location: San Francisco, California
+21 -2
View File
@@ -19,6 +19,7 @@ cid: community
<div class="community__navbar">
<a href="#values">Community Values</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#conduct">Code of conduct </a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#videos">Videos</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
<a href="#discuss">Discussions</a>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
@@ -41,10 +42,28 @@ cid: community
<img src="/images/community/kubernetes-community-final-05.jpg" alt="Kubernetes Conference Gallery" style="width:100%;margin-right:0% important" class="desktop">
</div>
<img src="/images/community/kubernetes-community-04-mobile.jpg" alt="Kubernetes Conference Gallery" style="width:100%;margin-bottom:3%" class="mobile">
<a name="conduct"></a>
<a name="values"></a>
</div>
<div><a name="values"></a></div>
<div class="conduct">
<div class="conducttext">
<br class="mobile"><br class="mobile">
<br class="tablet"><br class="tablet">
<div class="conducttextnobutton" style="margin-bottom:2%"><h1>Community Values</h1>
The Kubernetes Community values are the keystone to the ongoing success of the project.<br>
These principles guide every aspect of the Kubernetes project.
<br>
<a href="/community/values/">
<br class="mobile"><br class="mobile">
<span class="fullbutton">
READ MORE
</span>
</a>
</div><a name="conduct"></a>
</div>
</div>
<div class="conduct">
@@ -37,8 +37,8 @@ when an individual is representing the project or its community.
Instances of abusive, harassing, or otherwise unacceptable behavior in Kubernetes may be reported by contacting the [Kubernetes Code of Conduct Committee](https://git.k8s.io/community/committee-code-of-conduct) via <conduct@kubernetes.io>. For other projects, please contact a CNCF project maintainer or our mediator, Mishi Choudhary <mishi@linux.com>.
This Code of Conduct is adapted from the Contributor Covenant
(http://contributor-covenant.org), version 1.2.0, available at
http://contributor-covenant.org/version/1/2/0/
(https://contributor-covenant.org), version 1.2.0, available at
https://contributor-covenant.org/version/1/2/0/
### CNCF Events Code of Conduct
@@ -0,0 +1,28 @@
<!-- Do not edit this file directly. Get the latest from
https://git.k8s.io/community/values.md -->
# Kubernetes Community Values
Kubernetes Community culture is frequently cited as a substantial contributor to the meteoric rise of this Open Source project. Below are the distilled values which have evolved over the last many years in our community pushing our project and peers toward constant improvement.
## Distribution is better than centralization
The scale of the Kubernetes project is only viable through high-trust and high-visibility distribution of work, which includes delegation of authority, decision making, technical design, code ownership, and documentation. Distributed asynchronous ownership, collaboration, communication and decision making are the cornerstone of our world-wide community.
## Community over product or company
We are here as a community first, our allegiance is to the intentional stewardship of the Kubernetes project for the benefit of all its members and users everywhere. We support working together publicly for the common goal of a vibrant interoperable ecosystem providing an excellent experience for our users. Individuals gain status through work, companies gain status through their commitments to support this community and fund the resources necessary for the project to operate.
## Automation over process
Large projects have a lot of less exciting, yet, hard work. We value time spent automating repetitive work more highly than toil. Where that work cannot be automated, it is our culture to recognize and reward all types of contributions. However, heroism is not sustainable.
## Inclusive is better than exclusive
Broadly successful and useful technology requires different perspectives and skill sets which can only be heard in a welcoming and respectful environment. Community membership is a privilege, not a right. Community Leadership is earned through effort, scope, quality, quantity, and duration of contributions. Our community shows respect for the time and effort put into a discussion regardless of where a contributor is on their growth path.
## Evolution is better than stagnation
Openness to new ideas and studied technological evolution make Kubernetes a stronger project. Continual improvement, servant leadership, mentorship and respect are the foundations of the Kubernetes project culture. It is the duty for leaders in the Kubernetes community to find, sponsor, and promote new community members. Leaders should expect to step aside. Community members should expect to step up.
**"Culture eats strategy for breakfast." --Peter Drucker**
+13
View File
@@ -0,0 +1,13 @@
---
title: Community
layout: basic
cid: community
css: /css/community.css
---
<div class="community_main">
<div class="cncf_coc_container">
{{< include "/static/community-values.md" >}}
</div>
</div>
@@ -11,20 +11,20 @@ aliases:
<!-- overview -->
This document catalogs the communication paths between the control plane (really the apiserver) and the Kubernetes cluster. The intent is to allow users to customize their installation to harden the network configuration such that the cluster can be run on an untrusted network (or on fully public IPs on a cloud provider).
This document catalogs the communication paths between the control plane (apiserver) and the Kubernetes cluster. The intent is to allow users to customize their installation to harden the network configuration such that the cluster can be run on an untrusted network (or on fully public IPs on a cloud provider).
<!-- body -->
## Node to Control Plane
Kubernetes has a "hub-and-spoke" API pattern. All API usage from nodes (or the pods they run) terminate at the apiserver (none of the other control plane components are designed to expose remote services). The apiserver is configured to listen for remote connections on a secure HTTPS port (typically 443) with one or more forms of client [authentication](/docs/reference/access-authn-authz/authentication/) enabled.
Kubernetes has a "hub-and-spoke" API pattern. All API usage from nodes (or the pods they run) terminates at the apiserver. None of the other control plane components are designed to expose remote services. The apiserver is configured to listen for remote connections on a secure HTTPS port (typically 443) with one or more forms of client [authentication](/docs/reference/access-authn-authz/authentication/) enabled.
One or more forms of [authorization](/docs/reference/access-authn-authz/authorization/) should be enabled, especially if [anonymous requests](/docs/reference/access-authn-authz/authentication/#anonymous-requests) or [service account tokens](/docs/reference/access-authn-authz/authentication/#service-account-tokens) are allowed.
Nodes should be provisioned with the public root certificate for the cluster such that they can connect securely to the apiserver along with valid client credentials. A good approach is that the client credentials provided to the kubelet are in the form of a client certificate. See [kubelet TLS bootstrapping](/docs/reference/command-line-tools-reference/kubelet-tls-bootstrapping/) for automated provisioning of kubelet client certificates.
Pods that wish to connect to the apiserver can do so securely by leveraging a service account so that Kubernetes will automatically inject the public root certificate and a valid bearer token into the pod when it is instantiated.
The `kubernetes` service (in all namespaces) is configured with a virtual IP address that is redirected (via kube-proxy) to the HTTPS endpoint on the apiserver.
The `kubernetes` service (in `default` namespace) is configured with a virtual IP address that is redirected (via kube-proxy) to the HTTPS endpoint on the apiserver.
The control plane components also communicate with the cluster apiserver over the secure port.
@@ -42,7 +42,7 @@ The connections from the apiserver to the kubelet are used for:
* Attaching (through kubectl) to running pods.
* Providing the kubelet's port-forwarding functionality.
These connections terminate at the kubelet's HTTPS endpoint. By default, the apiserver does not verify the kubelet's serving certificate, which makes the connection subject to man-in-the-middle attacks, and **unsafe** to run over untrusted and/or public networks.
These connections terminate at the kubelet's HTTPS endpoint. By default, the apiserver does not verify the kubelet's serving certificate, which makes the connection subject to man-in-the-middle attacks and **unsafe** to run over untrusted and/or public networks.
To verify this connection, use the `--kubelet-certificate-authority` flag to provide the apiserver with a root certificate bundle to use to verify the kubelet's serving certificate.
@@ -53,20 +53,20 @@ Finally, [Kubelet authentication and/or authorization](/docs/reference/command-l
### apiserver to nodes, pods, and services
The connections from the apiserver to a node, pod, or service default to plain HTTP connections and are therefore neither authenticated nor encrypted. They can be run over a secure HTTPS connection by prefixing `https:` to the node, pod, or service name in the API URL, but they will not validate the certificate provided by the HTTPS endpoint nor provide client credentials so while the connection will be encrypted, it will not provide any guarantees of integrity. These connections **are not currently safe** to run over untrusted and/or public networks.
The connections from the apiserver to a node, pod, or service default to plain HTTP connections and are therefore neither authenticated nor encrypted. They can be run over a secure HTTPS connection by prefixing `https:` to the node, pod, or service name in the API URL, but they will not validate the certificate provided by the HTTPS endpoint nor provide client credentials. So while the connection will be encrypted, it will not provide any guarantees of integrity. These connections **are not currently safe** to run over untrusted or public networks.
### SSH tunnels
Kubernetes supports SSH tunnels to protect the control plane to nodes communication paths. In this configuration, the apiserver initiates an SSH tunnel to each node in the cluster (connecting to the ssh server listening on port 22) and passes all traffic destined for a kubelet, node, pod, or service through the tunnel.
This tunnel ensures that the traffic is not exposed outside of the network in which the nodes are running.
SSH tunnels are currently deprecated so you shouldn't opt to use them unless you know what you are doing. The Konnectivity service is a replacement for this communication channel.
SSH tunnels are currently deprecated, so you shouldn't opt to use them unless you know what you are doing. The Konnectivity service is a replacement for this communication channel.
### Konnectivity service
{{< feature-state for_k8s_version="v1.18" state="beta" >}}
As a replacement to the SSH tunnels, the Konnectivity service provides TCP level proxy for the control plane to cluster communication. The Konnectivity service consists of two parts: the Konnectivity server and the Konnectivity agents, running in the control plane network and the nodes network respectively. The Konnectivity agents initiate connections to the Konnectivity server and maintain the network connections.
As a replacement to the SSH tunnels, the Konnectivity service provides TCP level proxy for the control plane to cluster communication. The Konnectivity service consists of two parts: the Konnectivity server in the control plane network and the Konnectivity agents in the nodes network. The Konnectivity agents initiate connections to the Konnectivity server and maintain the network connections.
After enabling the Konnectivity service, all control plane to nodes traffic goes through these connections.
Follow the [Konnectivity service task](/docs/tasks/extend-kubernetes/setup-konnectivity/) to set up the Konnectivity service in your cluster.
@@ -102,7 +102,7 @@ Other control loops can observe that reported data and take their own actions.
In the thermostat example, if the room is very cold then a different controller
might also turn on a frost protection heater. With Kubernetes clusters, the control
plane indirectly works with IP address management tools, storage services,
cloud provider APIS, and other services by
cloud provider APIs, and other services by
[extending Kubernetes](/docs/concepts/extend-kubernetes/) to implement that.
## Desired versus current state {#desired-vs-current}
@@ -115,7 +115,7 @@ control loops automatically fix failures. This means that,
potentially, your cluster never reaches a stable state.
As long as the controllers for your cluster are running and able to make
useful changes, it doesn't matter if the overall state is or is not stable.
useful changes, it doesn't matter if the overall state is stable or not.
## Design
+57 -42
View File
@@ -11,12 +11,13 @@ weight: 10
Kubernetes runs your workload by placing containers into Pods to run on _Nodes_.
A node may be a virtual or physical machine, depending on the cluster. Each node
contains the services necessary to run
{{< glossary_tooltip text="Pods" term_id="pod" >}}, managed by the
{{< glossary_tooltip text="control plane" term_id="control-plane" >}}.
is managed by the
{{< glossary_tooltip text="control plane" term_id="control-plane" >}}
and contains the services necessary to run
{{< glossary_tooltip text="Pods" term_id="pod" >}}
Typically you have several nodes in a cluster; in a learning or resource-limited
environment, you might have just one.
environment, you might have only one node.
The [components](/docs/concepts/overview/components/#node-components) on a node include the
{{< glossary_tooltip text="kubelet" term_id="kubelet" >}}, a
@@ -30,7 +31,7 @@ The [components](/docs/concepts/overview/components/#node-components) on a node
There are two main ways to have Nodes added to the {{< glossary_tooltip text="API server" term_id="kube-apiserver" >}}:
1. The kubelet on a node self-registers to the control plane
2. You, or another human user, manually add a Node object
2. You (or another human user) manually add a Node object
After you create a Node object, or the kubelet on a node self-registers, the
control plane checks whether the new Node object is valid. For example, if you
@@ -51,8 +52,8 @@ try to create a Node from the following JSON manifest:
Kubernetes creates a Node object internally (the representation). Kubernetes checks
that a kubelet has registered to the API server that matches the `metadata.name`
field of the Node. If the node is healthy (if all necessary services are running),
it is eligible to run a Pod. Otherwise, that node is ignored for any cluster activity
field of the Node. If the node is healthy (i.e. all necessary services are running),
then it is eligible to run a Pod. Otherwise, that node is ignored for any cluster activity
until it becomes healthy.
{{< note >}}
@@ -66,6 +67,16 @@ delete the Node object to stop that health checking.
The name of a Node object must be a valid
[DNS subdomain name](/docs/concepts/overview/working-with-objects/names#dns-subdomain-names).
### Node name uniqueness
The [name](/docs/concepts/overview/working-with-objects/names#names) identifies a Node. Two Nodes
cannot have the same name at the same time. Kubernetes also assumes that a resource with the same
name is the same object. In case of a Node, it is implicitly assumed that an instance using the
same name will have the same state (e.g. network settings, root disk contents). This may lead to
inconsistencies if an instance was modified without changing its name. If the Node needs to be
replaced or updated significantly, the existing Node object needs to be removed from API server
first and re-added after the update.
### Self-registration of Nodes
When the kubelet flag `--register-node` is true (the default), the kubelet will attempt to
@@ -95,14 +106,14 @@ You can create and modify Node objects using
When you want to create Node objects manually, set the kubelet flag `--register-node=false`.
You can modify Node objects regardless of the setting of `--register-node`.
For example, you can set labels on an existing Node, or mark it unschedulable.
For example, you can set labels on an existing Node or mark it unschedulable.
You can use labels on Nodes in conjunction with node selectors on Pods to control
scheduling. For example, you can constrain a Pod to only be eligible to run on
a subset of the available nodes.
Marking a node as unschedulable prevents the scheduler from placing new pods onto
that Node, but does not affect existing Pods on the Node. This is useful as a
that Node but does not affect existing Pods on the Node. This is useful as a
preparatory step before a node reboot or other maintenance.
To mark a Node unschedulable, run:
@@ -178,14 +189,14 @@ The node condition is represented as a JSON object. For example, the following s
]
```
If the Status of the Ready condition remains `Unknown` or `False` for longer than the `pod-eviction-timeout` (an argument passed to the {{< glossary_tooltip text="kube-controller-manager" term_id="kube-controller-manager" >}}), all the Pods on the node are scheduled for deletion by the node controller. The default eviction timeout duration is **five minutes**. In some cases when the node is unreachable, the API server is unable to communicate with the kubelet on the node. The decision to delete the pods cannot be communicated to the kubelet until communication with the API server is re-established. In the meantime, the pods that are scheduled for deletion may continue to run on the partitioned node.
If the Status of the Ready condition remains `Unknown` or `False` for longer than the `pod-eviction-timeout` (an argument passed to the {{< glossary_tooltip text="kube-controller-manager" term_id="kube-controller-manager" >}}), then all the Pods on the node are scheduled for deletion by the node controller. The default eviction timeout duration is **five minutes**. In some cases when the node is unreachable, the API server is unable to communicate with the kubelet on the node. The decision to delete the pods cannot be communicated to the kubelet until communication with the API server is re-established. In the meantime, the pods that are scheduled for deletion may continue to run on the partitioned node.
The node controller does not force delete pods until it is confirmed that they have stopped
running in the cluster. You can see the pods that might be running on an unreachable node as
being in the `Terminating` or `Unknown` state. In cases where Kubernetes cannot deduce from the
underlying infrastructure if a node has permanently left a cluster, the cluster administrator
may need to delete the node object by hand. Deleting the node object from Kubernetes causes
all the Pod objects running on the node to be deleted from the API server, and frees up their
may need to delete the node object by hand. Deleting the node object from Kubernetes causes
all the Pod objects running on the node to be deleted from the API server and frees up their
names.
The node lifecycle controller automatically creates
@@ -198,7 +209,7 @@ for more details.
### Capacity and Allocatable {#capacity}
Describes the resources available on the node: CPU, memory and the maximum
Describes the resources available on the node: CPU, memory, and the maximum
number of pods that can be scheduled onto the node.
The fields in the capacity block indicate the total amount of resources that a
@@ -224,25 +235,27 @@ CIDR block to the node when it is registered (if CIDR assignment is turned on).
The second is keeping the node controller's internal list of nodes up to date with
the cloud provider's list of available machines. When running in a cloud
environment, whenever a node is unhealthy, the node controller asks the cloud
environment and whenever a node is unhealthy, the node controller asks the cloud
provider if the VM for that node is still available. If not, the node
controller deletes the node from its list of nodes.
The third is monitoring the nodes' health. The node controller is
responsible for updating the NodeReady condition of NodeStatus to
ConditionUnknown when a node becomes unreachable (i.e. the node controller stops
receiving heartbeats for some reason, for example due to the node being down), and then later evicting
all the pods from the node (using graceful termination) if the node continues
to be unreachable. (The default timeouts are 40s to start reporting
ConditionUnknown and 5m after that to start evicting pods.) The node controller
checks the state of each node every `--node-monitor-period` seconds.
responsible for:
- Updating the NodeReady condition of NodeStatus to ConditionUnknown when a node
becomes unreachable, as the node controller stops receiving heartbeats for some
reason such as the node being down.
- Evicting all the pods from the node using graceful termination if
the node continues to be unreachable. The default timeouts are 40s to start
reporting ConditionUnknown and 5m after that to start evicting pods.
The node controller checks the state of each node every `--node-monitor-period` seconds.
#### Heartbeats
Heartbeats, sent by Kubernetes nodes, help determine the availability of a node.
There are two forms of heartbeats: updates of `NodeStatus` and the
[Lease object](/docs/reference/generated/kubernetes-api/{{< latest-version >}}/#lease-v1-coordination-k8s-io).
[Lease object](/docs/reference/generated/kubernetes-api/{{< param "version" >}}/#lease-v1-coordination-k8s-io).
Each Node has an associated Lease object in the `kube-node-lease`
{{< glossary_tooltip term_id="namespace" text="namespace">}}.
Lease is a lightweight resource, which improves the performance
@@ -251,13 +264,14 @@ of the node heartbeats as the cluster scales.
The kubelet is responsible for creating and updating the `NodeStatus` and
a Lease object.
- The kubelet updates the `NodeStatus` either when there is change in status,
- The kubelet updates the `NodeStatus` either when there is change in status
or if there has been no update for a configured interval. The default interval
for `NodeStatus` updates is 5 minutes (much longer than the 40 second default
timeout for unreachable nodes).
for `NodeStatus` updates is 5 minutes, which is much longer than the 40 second default
timeout for unreachable nodes.
- The kubelet creates and then updates its Lease object every 10 seconds
(the default update interval). Lease updates occur independently from the
`NodeStatus` updates. If the Lease update fails, the kubelet retries with exponential backoff starting at 200 milliseconds and capped at 7 seconds.
`NodeStatus` updates. If the Lease update fails, the kubelet retries with
exponential backoff starting at 200 milliseconds and capped at 7 seconds.
#### Reliability
@@ -268,23 +282,25 @@ from more than 1 node per 10 seconds.
The node eviction behavior changes when a node in a given availability zone
becomes unhealthy. The node controller checks what percentage of nodes in the zone
are unhealthy (NodeReady condition is ConditionUnknown or ConditionFalse) at
the same time. If the fraction of unhealthy nodes is at least
`--unhealthy-zone-threshold` (default 0.55) then the eviction rate is reduced:
if the cluster is small (i.e. has less than or equal to
`--large-cluster-size-threshold` nodes - default 50) then evictions are
stopped, otherwise the eviction rate is reduced to
`--secondary-node-eviction-rate` (default 0.01) per second. The reason these
policies are implemented per availability zone is because one availability zone
might become partitioned from the master while the others remain connected. If
your cluster does not span multiple cloud provider availability zones, then
there is only one availability zone (the whole cluster).
the same time:
- If the fraction of unhealthy nodes is at least `--unhealthy-zone-threshold`
(default 0.55), then the eviction rate is reduced.
- If the cluster is small (i.e. has less than or equal to
`--large-cluster-size-threshold` nodes - default 50), then evictions are stopped.
- Otherwise, the eviction rate is reduced to `--secondary-node-eviction-rate`
(default 0.01) per second.
The reason these policies are implemented per availability zone is because one
availability zone might become partitioned from the master while the others remain
connected. If your cluster does not span multiple cloud provider availability zones,
then there is only one availability zone (i.e. the whole cluster).
A key reason for spreading your nodes across availability zones is so that the
workload can be shifted to healthy zones when one entire zone goes down.
Therefore, if all nodes in a zone are unhealthy then the node controller evicts at
Therefore, if all nodes in a zone are unhealthy, then the node controller evicts at
the normal rate of `--node-eviction-rate`. The corner case is when all zones are
completely unhealthy (i.e. there are no healthy nodes in the cluster). In such a
case, the node controller assumes that there's some problem with master
case, the node controller assumes that there is some problem with master
connectivity and stops all evictions until some connectivity is restored.
The node controller is also responsible for evicting pods running on nodes with
@@ -302,8 +318,8 @@ eligible for, effectively removing incoming load balancer traffic from the cordo
### Node capacity
Node objects track information about the Node's resource capacity (for example: the amount
of memory available, and the number of CPUs).
Node objects track information about the Node's resource capacity: for example, the amount
of memory available and the number of CPUs.
Nodes that [self register](#self-registration-of-nodes) report their capacity during
registration. If you [manually](#manual-node-administration) add a Node, then
you need to set the node's capacity information when you add it.
@@ -337,7 +353,7 @@ for more information.
If you have enabled the `GracefulNodeShutdown` [feature gate](/docs/reference/command-line-tools-reference/feature-gates/), then the kubelet attempts to detect the node system shutdown and terminates pods running on the node.
Kubelet ensures that pods follow the normal [pod termination process](/docs/concepts/workloads/pods/pod-lifecycle/#pod-termination) during the node shutdown.
When the `GracefulNodeShutdown` feature gate is enabled, kubelet uses [systemd inhibitor locks](https://www.freedesktop.org/wiki/Software/systemd/inhibit/) to delay the node shutdown with a given duration. During a shutdown kubelet terminates pods in two phases:
When the `GracefulNodeShutdown` feature gate is enabled, kubelet uses [systemd inhibitor locks](https://www.freedesktop.org/wiki/Software/systemd/inhibit/) to delay the node shutdown with a given duration. During a shutdown, kubelet terminates pods in two phases:
1. Terminate regular pods running on the node.
2. Terminate [critical pods](/docs/tasks/administer-cluster/guaranteed-scheduling-critical-addon-pods/#marking-pod-as-critical) running on the node.
@@ -358,4 +374,3 @@ For example, if `ShutdownGracePeriod=30s`, and `ShutdownGracePeriodCriticalPods=
* Read the [Node](https://git.k8s.io/community/contributors/design-proposals/architecture/architecture.md#the-kubernetes-node)
section of the architecture design document.
* Read about [taints and tolerations](/docs/concepts/scheduling-eviction/taint-and-toleration/).
@@ -26,12 +26,12 @@ See the guides in [Setup](/docs/setup/) for examples of how to plan, set up, and
Before choosing a guide, here are some considerations:
- Do you just want to try out Kubernetes on your computer, or do you want to build a high-availability, multi-node cluster? Choose distros best suited for your needs.
- Do you want to try out Kubernetes on your computer, or do you want to build a high-availability, multi-node cluster? Choose distros best suited for your needs.
- Will you be using **a hosted Kubernetes cluster**, such as [Google Kubernetes Engine](https://cloud.google.com/kubernetes-engine/), or **hosting your own cluster**?
- Will your cluster be **on-premises**, or **in the cloud (IaaS)**? Kubernetes does not directly support hybrid clusters. Instead, you can set up multiple clusters.
- **If you are configuring Kubernetes on-premises**, consider which [networking model](/docs/concepts/cluster-administration/networking/) fits best.
- Will you be running Kubernetes on **"bare metal" hardware** or on **virtual machines (VMs)**?
- Do you **just want to run a cluster**, or do you expect to do **active development of Kubernetes project code**? If the
- Do you **want to run a cluster**, or do you expect to do **active development of Kubernetes project code**? If the
latter, choose an actively-developed distro. Some distros only use binary releases, but
offer a greater variety of choices.
- Familiarize yourself with the [components](/docs/concepts/overview/components/) needed to run a cluster.
@@ -45,7 +45,7 @@ Before choosing a guide, here are some considerations:
## Securing a cluster
* [Certificates](/docs/concepts/cluster-administration/certificates/) describes the steps to generate certificates using different tool chains.
* [Generate Certificates](/docs/tasks/administer-cluster/certificates/) describes the steps to generate certificates using different tool chains.
* [Kubernetes Container Environment](/docs/concepts/containers/container-environment/) describes the environment for Kubelet managed containers on a Kubernetes node.
@@ -16,6 +16,7 @@ This page lists some of the available add-ons and links to their respective inst
## Networking and Network Policy
* [ACI](https://www.github.com/noironetworks/aci-containers) provides integrated container networking and network security with Cisco ACI.
* [Antrea](https://antrea.io/) operates at Layer 3/4 to provide networking and security services for Kubernetes, leveraging Open vSwitch as the networking data plane.
* [Calico](https://docs.projectcalico.org/latest/introduction/) is a networking and network policy provider. Calico supports a flexible set of networking options so you can choose the most efficient option for your situation, including non-overlay and overlay networks, with or without BGP. Calico uses the same engine to enforce network policy for hosts, pods, and (if using Istio & Envoy) applications at the service mesh layer.
* [Canal](https://github.com/tigera/canal/tree/master/k8s-install) unites Flannel and Calico, providing networking and network policy.
* [Cilium](https://github.com/cilium/cilium) is a L3 network and network policy plugin that can enforce HTTP/API/L7 policies transparently. Both routing and overlay/encapsulation mode are supported, and it can work on top of other CNI plugins.
@@ -4,249 +4,6 @@ content_type: concept
weight: 20
---
<!-- overview -->
When using client certificate authentication, you can generate certificates
manually through `easyrsa`, `openssl` or `cfssl`.
<!-- body -->
### easyrsa
**easyrsa** can manually generate certificates for your cluster.
1. Download, unpack, and initialize the patched version of easyrsa3.
curl -LO https://storage.googleapis.com/kubernetes-release/easy-rsa/easy-rsa.tar.gz
tar xzf easy-rsa.tar.gz
cd easy-rsa-master/easyrsa3
./easyrsa init-pki
1. Generate a new certificate authority (CA). `--batch` sets automatic mode;
`--req-cn` specifies the Common Name (CN) for the CA's new root certificate.
./easyrsa --batch "--req-cn=${MASTER_IP}@`date +%s`" build-ca nopass
1. Generate server certificate and key.
The argument `--subject-alt-name` sets the possible IPs and DNS names the API server will
be accessed with. The `MASTER_CLUSTER_IP` is usually the first IP from the service CIDR
that is specified as the `--service-cluster-ip-range` argument for both the API server and
the controller manager component. The argument `--days` is used to set the number of days
after which the certificate expires.
The sample below also assumes that you are using `cluster.local` as the default
DNS domain name.
./easyrsa --subject-alt-name="IP:${MASTER_IP},"\
"IP:${MASTER_CLUSTER_IP},"\
"DNS:kubernetes,"\
"DNS:kubernetes.default,"\
"DNS:kubernetes.default.svc,"\
"DNS:kubernetes.default.svc.cluster,"\
"DNS:kubernetes.default.svc.cluster.local" \
--days=10000 \
build-server-full server nopass
1. Copy `pki/ca.crt`, `pki/issued/server.crt`, and `pki/private/server.key` to your directory.
1. Fill in and add the following parameters into the API server start parameters:
--client-ca-file=/yourdirectory/ca.crt
--tls-cert-file=/yourdirectory/server.crt
--tls-private-key-file=/yourdirectory/server.key
### openssl
**openssl** can manually generate certificates for your cluster.
1. Generate a ca.key with 2048bit:
openssl genrsa -out ca.key 2048
1. According to the ca.key generate a ca.crt (use -days to set the certificate effective time):
openssl req -x509 -new -nodes -key ca.key -subj "/CN=${MASTER_IP}" -days 10000 -out ca.crt
1. Generate a server.key with 2048bit:
openssl genrsa -out server.key 2048
1. Create a config file for generating a Certificate Signing Request (CSR).
Be sure to substitute the values marked with angle brackets (e.g. `<MASTER_IP>`)
with real values before saving this to a file (e.g. `csr.conf`).
Note that the value for `MASTER_CLUSTER_IP` is the service cluster IP for the
API server as described in previous subsection.
The sample below also assumes that you are using `cluster.local` as the default
DNS domain name.
[ req ]
default_bits = 2048
prompt = no
default_md = sha256
req_extensions = req_ext
distinguished_name = dn
[ dn ]
C = <country>
ST = <state>
L = <city>
O = <organization>
OU = <organization unit>
CN = <MASTER_IP>
[ req_ext ]
subjectAltName = @alt_names
[ alt_names ]
DNS.1 = kubernetes
DNS.2 = kubernetes.default
DNS.3 = kubernetes.default.svc
DNS.4 = kubernetes.default.svc.cluster
DNS.5 = kubernetes.default.svc.cluster.local
IP.1 = <MASTER_IP>
IP.2 = <MASTER_CLUSTER_IP>
[ v3_ext ]
authorityKeyIdentifier=keyid,issuer:always
basicConstraints=CA:FALSE
keyUsage=keyEncipherment,dataEncipherment
extendedKeyUsage=serverAuth,clientAuth
subjectAltName=@alt_names
1. Generate the certificate signing request based on the config file:
openssl req -new -key server.key -out server.csr -config csr.conf
1. Generate the server certificate using the ca.key, ca.crt and server.csr:
openssl x509 -req -in server.csr -CA ca.crt -CAkey ca.key \
-CAcreateserial -out server.crt -days 10000 \
-extensions v3_ext -extfile csr.conf
1. View the certificate:
openssl x509 -noout -text -in ./server.crt
Finally, add the same parameters into the API server start parameters.
### cfssl
**cfssl** is another tool for certificate generation.
1. Download, unpack and prepare the command line tools as shown below.
Note that you may need to adapt the sample commands based on the hardware
architecture and cfssl version you are using.
curl -L https://github.com/cloudflare/cfssl/releases/download/v1.4.1/cfssl_1.4.1_linux_amd64 -o cfssl
chmod +x cfssl
curl -L https://github.com/cloudflare/cfssl/releases/download/v1.4.1/cfssljson_1.4.1_linux_amd64 -o cfssljson
chmod +x cfssljson
curl -L https://github.com/cloudflare/cfssl/releases/download/v1.4.1/cfssl-certinfo_1.4.1_linux_amd64 -o cfssl-certinfo
chmod +x cfssl-certinfo
1. Create a directory to hold the artifacts and initialize cfssl:
mkdir cert
cd cert
../cfssl print-defaults config > config.json
../cfssl print-defaults csr > csr.json
1. Create a JSON config file for generating the CA file, for example, `ca-config.json`:
{
"signing": {
"default": {
"expiry": "8760h"
},
"profiles": {
"kubernetes": {
"usages": [
"signing",
"key encipherment",
"server auth",
"client auth"
],
"expiry": "8760h"
}
}
}
}
1. Create a JSON config file for CA certificate signing request (CSR), for example,
`ca-csr.json`. Be sure to replace the values marked with angle brackets with
real values you want to use.
{
"CN": "kubernetes",
"key": {
"algo": "rsa",
"size": 2048
},
"names":[{
"C": "<country>",
"ST": "<state>",
"L": "<city>",
"O": "<organization>",
"OU": "<organization unit>"
}]
}
1. Generate CA key (`ca-key.pem`) and certificate (`ca.pem`):
../cfssl gencert -initca ca-csr.json | ../cfssljson -bare ca
1. Create a JSON config file for generating keys and certificates for the API
server, for example, `server-csr.json`. Be sure to replace the values in angle brackets with
real values you want to use. The `MASTER_CLUSTER_IP` is the service cluster
IP for the API server as described in previous subsection.
The sample below also assumes that you are using `cluster.local` as the default
DNS domain name.
{
"CN": "kubernetes",
"hosts": [
"127.0.0.1",
"<MASTER_IP>",
"<MASTER_CLUSTER_IP>",
"kubernetes",
"kubernetes.default",
"kubernetes.default.svc",
"kubernetes.default.svc.cluster",
"kubernetes.default.svc.cluster.local"
],
"key": {
"algo": "rsa",
"size": 2048
},
"names": [{
"C": "<country>",
"ST": "<state>",
"L": "<city>",
"O": "<organization>",
"OU": "<organization unit>"
}]
}
1. Generate the key and certificate for the API server, which are by default
saved into file `server-key.pem` and `server.pem` respectively:
../cfssl gencert -ca=ca.pem -ca-key=ca-key.pem \
--config=ca-config.json -profile=kubernetes \
server-csr.json | ../cfssljson -bare server
## Distributing Self-Signed CA Certificate
A client node may refuse to recognize a self-signed CA certificate as valid.
For a non-production deployment, or for a deployment that runs behind a company
firewall, you can distribute a self-signed CA certificate to all clients and
refresh the local list for valid certificates.
On each client, perform the following operations:
```bash
sudo cp ca.crt /usr/local/share/ca-certificates/kubernetes.crt
sudo update-ca-certificates
```
```
Updating certificates in /etc/ssl/certs...
1 added, 0 removed; done.
Running hooks in /etc/ca-certificates/update.d....
done.
```
## Certificates API
You can use the `certificates.k8s.io` API to provision
x509 certificates to use for authentication as documented
[here](/docs/tasks/tls/managing-tls-in-a-cluster).
To learn how to generate certificates for your cluster, see [Certificates](/docs/tasks/administer-cluster/certificates/).
@@ -59,7 +59,7 @@ kube-apiserver \
```
Alternatively, you can enable the v1alpha1 version of the API group
with `--runtime-config=flowcontrol.apiserver.k8s.io/v1beta1=true`.
with `--runtime-config=flowcontrol.apiserver.k8s.io/v1alpha1=true`.
The command-line flag `--enable-priority-and-fairness=false` will disable the
API Priority and Fairness feature, even if other flags have enabled it.
@@ -427,7 +427,7 @@ poorly-behaved workloads that may be harming system health.
histogram vector of queue lengths for the queues, broken down by
the labels `priority_level` and `flow_schema`, as sampled by the
enqueued requests. Each request that gets queued contributes one
sample to its histogram, reporting the length of the queue just
sample to its histogram, reporting the length of the queue immediately
after the request was added. Note that this produces different
statistics than an unbiased survey would.
{{< note >}}
@@ -527,5 +527,5 @@ When you enable the API Priority and Fairness feature, the kube-apiserver serves
For background information on design details for API priority and fairness, see
the [enhancement proposal](https://github.com/kubernetes/enhancements/blob/master/keps/sig-api-machinery/20190228-priority-and-fairness.md).
You can make suggestions and feature requests via [SIG API
Machinery](https://github.com/kubernetes/community/tree/master/sig-api-machinery).
You can make suggestions and feature requests via [SIG API Machinery](https://github.com/kubernetes/community/tree/master/sig-api-machinery)
or the feature's [slack channel](http://kubernetes.slack.com/messages/api-priority-and-fairness).
@@ -1,13 +1,13 @@
---
reviewers:
title: Configuring kubelet Garbage Collection
title: Garbage collection for container images
content_type: concept
weight: 70
---
<!-- overview -->
Garbage collection is a helpful function of kubelet that will clean up unused images and unused containers. Kubelet will perform garbage collection for containers every minute and garbage collection for images every five minutes.
Garbage collection is a helpful function of kubelet that will clean up unused [images](/docs/concepts/containers/#container-images) and unused [containers](/docs/concepts/containers/). Kubelet will perform garbage collection for containers every minute and garbage collection for images every five minutes.
External garbage collection tools are not recommended as these tools can potentially break the behavior of kubelet by removing containers expected to exist.
@@ -37,14 +37,14 @@ Containers that are not managed by kubelet are not subject to container garbage
## User Configuration
Users can adjust the following thresholds to tune image garbage collection with the following kubelet flags :
You can adjust the following thresholds to tune image garbage collection with the following kubelet flags :
1. `image-gc-high-threshold`, the percent of disk usage which triggers image garbage collection.
Default is 85%.
2. `image-gc-low-threshold`, the percent of disk usage to which image garbage collection attempts
to free. Default is 80%.
We also allow users to customize garbage collection policy through the following kubelet flags:
You can customize the garbage collection policy through the following kubelet flags:
1. `minimum-container-ttl-duration`, minimum age for a finished container before it is
garbage collected. Default is 0 minute, which means every finished container will be garbage collected.
@@ -84,4 +84,3 @@ Including:
See [Configuring Out Of Resource Handling](/docs/tasks/administer-cluster/out-of-resource/) for more details.
@@ -9,23 +9,22 @@ weight: 60
<!-- overview -->
Application logs can help you understand what is happening inside your application. The logs are particularly useful for debugging problems and monitoring cluster activity. Most modern applications have some kind of logging mechanism; as such, most container engines are likewise designed to support some kind of logging. The easiest and most embraced logging method for containerized applications is to write to the standard output and standard error streams.
Application logs can help you understand what is happening inside your application. The logs are particularly useful for debugging problems and monitoring cluster activity. Most modern applications have some kind of logging mechanism. Likewise, container engines are designed to support logging. The easiest and most adopted logging method for containerized applications is writing to standard output and standard error streams.
However, the native functionality provided by a container engine or runtime is usually not enough for a complete logging solution. For example, if a container crashes, a pod is evicted, or a node dies, you'll usually still want to access your application's logs. As such, logs should have a separate storage and lifecycle independent of nodes, pods, or containers. This concept is called _cluster-level-logging_. Cluster-level logging requires a separate backend to store, analyze, and query logs. Kubernetes provides no native storage solution for log data, but you can integrate many existing logging solutions into your Kubernetes cluster.
However, the native functionality provided by a container engine or runtime is usually not enough for a complete logging solution.
For example, you may want access your application's logs if a container crashes; a pod gets evicted; or a node dies.
In a cluster, logs should have a separate storage and lifecycle independent of nodes, pods, or containers. This concept is called _cluster-level logging_.
<!-- body -->
Cluster-level logging architectures are described in assumption that
a logging backend is present inside or outside of your cluster. If you're
not interested in having cluster-level logging, you might still find
the description of how logs are stored and handled on the node to be useful.
Cluster-level logging architectures require a separate backend to store, analyze, and query logs. Kubernetes
does not provide a native storage solution for log data. Instead, there are many logging solutions that
integrate with Kubernetes. The following sections describe how to handle and store logs on nodes.
## Basic logging in Kubernetes
In this section, you can see an example of basic logging in Kubernetes that
outputs data to the standard output stream. This demonstration uses
a pod specification with a container that writes some text to standard output
once per second.
This example uses a `Pod` specification with a container
to write text to the standard output stream once per second.
{{< codenew file="debug/counter-pod.yaml" >}}
@@ -34,8 +33,10 @@ To run this pod, use the following command:
```shell
kubectl apply -f https://k8s.io/examples/debug/counter-pod.yaml
```
The output is:
```
```console
pod/counter created
```
@@ -44,73 +45,73 @@ To fetch the logs, use the `kubectl logs` command, as follows:
```shell
kubectl logs counter
```
The output is:
```
```console
0: Mon Jan 1 00:00:00 UTC 2001
1: Mon Jan 1 00:00:01 UTC 2001
2: Mon Jan 1 00:00:02 UTC 2001
...
```
You can use `kubectl logs` to retrieve logs from a previous instantiation of a container with `--previous` flag, in case the container has crashed. If your pod has multiple containers, you should specify which container's logs you want to access by appending a container name to the command. See the [`kubectl logs` documentation](/docs/reference/generated/kubectl/kubectl-commands#logs) for more details.
You can use `kubectl logs --previous` to retrieve logs from a previous instantiation of a container. If your pod has multiple containers, specify which container's logs you want to access by appending a container name to the command. See the [`kubectl logs` documentation](/docs/reference/generated/kubectl/kubectl-commands#logs) for more details.
## Logging at the node level
![Node level logging](/images/docs/user-guide/logging/logging-node-level.png)
Everything a containerized application writes to `stdout` and `stderr` is handled and redirected somewhere by a container engine. For example, the Docker container engine redirects those two streams to [a logging driver](https://docs.docker.com/engine/admin/logging/overview), which is configured in Kubernetes to write to a file in json format.
A container engine handles and redirects any output generated to a containerized application's `stdout` and `stderr` streams.
For example, the Docker container engine redirects those two streams to [a logging driver](https://docs.docker.com/engine/admin/logging/overview), which is configured in Kubernetes to write to a file in JSON format.
{{< note >}}
The Docker json logging driver treats each line as a separate message. When using the Docker logging driver, there is no direct support for multi-line messages. You need to handle multi-line messages at the logging agent level or higher.
The Docker JSON logging driver treats each line as a separate message. When using the Docker logging driver, there is no direct support for multi-line messages. You need to handle multi-line messages at the logging agent level or higher.
{{< /note >}}
By default, if a container restarts, the kubelet keeps one terminated container with its logs. If a pod is evicted from the node, all corresponding containers are also evicted, along with their logs.
An important consideration in node-level logging is implementing log rotation,
so that logs don't consume all available storage on the node. Kubernetes
currently is not responsible for rotating logs, but rather a deployment tool
is not responsible for rotating logs, but rather a deployment tool
should set up a solution to address that.
For example, in Kubernetes clusters, deployed by the `kube-up.sh` script,
there is a [`logrotate`](https://linux.die.net/man/8/logrotate)
tool configured to run each hour. You can also set up a container runtime to
rotate application's logs automatically, for example by using Docker's `log-opt`.
In the `kube-up.sh` script, the latter approach is used for COS image on GCP,
and the former approach is used in any other environment. In both cases, by
default rotation is configured to take place when log file exceeds 10MB.
rotate an application's logs automatically.
As an example, you can find detailed information about how `kube-up.sh` sets
up logging for COS image on GCP in the corresponding
[script](https://github.com/kubernetes/kubernetes/blob/{{< param "githubbranch" >}}/cluster/gce/gci/configure-helper.sh).
[`configure-helper` script](https://github.com/kubernetes/kubernetes/blob/{{< param "githubbranch" >}}/cluster/gce/gci/configure-helper.sh).
When you run [`kubectl logs`](/docs/reference/generated/kubectl/kubectl-commands#logs) as in
the basic logging example, the kubelet on the node handles the request and
reads directly from the log file, returning the contents in the response.
reads directly from the log file. The kubelet returns the content of the log file.
{{< note >}}
Currently, if some external system has performed the rotation,
If an external system has performed the rotation,
only the contents of the latest log file will be available through
`kubectl logs`. E.g. if there's a 10MB file, `logrotate` performs
the rotation and there are two files, one 10MB in size and one empty,
`kubectl logs` will return an empty response.
`kubectl logs`. For example, if there's a 10MB file, `logrotate` performs
the rotation and there are two files: one file that is 10MB in size and a second file that is empty.
`kubectl logs` returns the latest log file which in this example is an empty response.
{{< /note >}}
[cosConfigureHelper]: https://github.com/kubernetes/kubernetes/blob/{{< param "githubbranch" >}}/cluster/gce/gci/configure-helper.sh
### System component logs
There are two types of system components: those that run in a container and those
that do not run in a container. For example:
* The Kubernetes scheduler and kube-proxy run in a container.
* The kubelet and container runtime, for example Docker, do not run in containers.
* The kubelet and container runtime do not run in containers.
On machines with systemd, the kubelet and container runtime write to journald. If
systemd is not present, they write to `.log` files in the `/var/log` directory.
System components inside containers always write to the `/var/log` directory,
bypassing the default logging mechanism. They use the [klog](https://github.com/kubernetes/klog)
systemd is not present, the kubelet and container runtime write to `.log` files
in the `/var/log` directory. System components inside containers always write
to the `/var/log` directory, bypassing the default logging mechanism.
They use the [`klog`](https://github.com/kubernetes/klog)
logging library. You can find the conventions for logging severity for those
components in the [development docs on logging](https://github.com/kubernetes/community/blob/master/contributors/devel/sig-instrumentation/logging.md).
Similarly to the container logs, system component logs in the `/var/log`
Similar to the container logs, system component logs in the `/var/log`
directory should be rotated. In Kubernetes clusters brought up by
the `kube-up.sh` script, those logs are configured to be rotated by
the `logrotate` tool daily or once the size exceeds 100MB.
@@ -129,13 +130,14 @@ While Kubernetes does not provide a native solution for cluster-level logging, t
You can implement cluster-level logging by including a _node-level logging agent_ on each node. The logging agent is a dedicated tool that exposes logs or pushes logs to a backend. Commonly, the logging agent is a container that has access to a directory with log files from all of the application containers on that node.
Because the logging agent must run on every node, it's common to implement it as either a DaemonSet replica, a manifest pod, or a dedicated native process on the node. However the latter two approaches are deprecated and highly discouraged.
Because the logging agent must run on every node, it is recommended to run the agent
as a `DaemonSet`.
Using a node-level logging agent is the most common and encouraged approach for a Kubernetes cluster, because it creates only one agent per node, and it doesn't require any changes to the applications running on the node. However, node-level logging _only works for applications' standard output and standard error_.
Node-level logging creates only one agent per node and doesn't require any changes to the applications running on the node.
Kubernetes doesn't specify a logging agent, but two optional logging agents are packaged with the Kubernetes release: [Stackdriver Logging](/docs/tasks/debug-application-cluster/logging-stackdriver/) for use with Google Cloud Platform, and [Elasticsearch](/docs/tasks/debug-application-cluster/logging-elasticsearch-kibana/). You can find more information and instructions in the dedicated documents. Both use [fluentd](https://www.fluentd.org/) with custom configuration as an agent on the node.
Containers write stdout and stderr, but with no agreed format. A node-level agent collects these logs and forwards them for aggregation.
### Using a sidecar container with the logging agent
### Using a sidecar container with the logging agent {#sidecar-container-with-logging-agent}
You can use a sidecar container in one of the following ways:
@@ -146,28 +148,27 @@ You can use a sidecar container in one of the following ways:
![Sidecar container with a streaming container](/images/docs/user-guide/logging/logging-with-streaming-sidecar.png)
By having your sidecar containers stream to their own `stdout` and `stderr`
By having your sidecar containers write to their own `stdout` and `stderr`
streams, you can take advantage of the kubelet and the logging agent that
already run on each node. The sidecar containers read logs from a file, a socket,
or the journald. Each individual sidecar container prints log to its own `stdout`
or `stderr` stream.
or journald. Each sidecar container prints a log to its own `stdout` or `stderr` stream.
This approach allows you to separate several log streams from different
parts of your application, some of which can lack support
for writing to `stdout` or `stderr`. The logic behind redirecting logs
is minimal, so it's hardly a significant overhead. Additionally, because
is minimal, so it's not a significant overhead. Additionally, because
`stdout` and `stderr` are handled by the kubelet, you can use built-in tools
like `kubectl logs`.
Consider the following example. A pod runs a single container, and the container
writes to two different log files, using two different formats. Here's a
For example, a pod runs a single container, and the container
writes to two different log files using two different formats. Here's a
configuration file for the Pod:
{{< codenew file="admin/logging/two-files-counter-pod.yaml" >}}
It would be a mess to have log entries of different formats in the same log
It is not recommended to write log entries with different formats to the same log
stream, even if you managed to redirect both components to the `stdout` stream of
the container. Instead, you could introduce two sidecar containers. Each sidecar
the container. Instead, you can create two sidecar containers. Each sidecar
container could tail a particular log file from a shared volume and then redirect
the logs to its own `stdout` stream.
@@ -181,7 +182,10 @@ running the following commands:
```shell
kubectl logs counter count-log-1
```
```
The output is:
```console
0: Mon Jan 1 00:00:00 UTC 2001
1: Mon Jan 1 00:00:01 UTC 2001
2: Mon Jan 1 00:00:02 UTC 2001
@@ -191,7 +195,10 @@ kubectl logs counter count-log-1
```shell
kubectl logs counter count-log-2
```
```
The output is:
```console
Mon Jan 1 00:00:00 UTC 2001 INFO 0
Mon Jan 1 00:00:01 UTC 2001 INFO 1
Mon Jan 1 00:00:02 UTC 2001 INFO 2
@@ -202,16 +209,15 @@ The node-level agent installed in your cluster picks up those log streams
automatically without any further configuration. If you like, you can configure
the agent to parse log lines depending on the source container.
Note, that despite low CPU and memory usage (order of couple of millicores
Note, that despite low CPU and memory usage (order of a couple of millicores
for cpu and order of several megabytes for memory), writing logs to a file and
then streaming them to `stdout` can double disk usage. If you have
an application that writes to a single file, it's generally better to set
`/dev/stdout` as destination rather than implementing the streaming sidecar
an application that writes to a single file, it's recommended to set
`/dev/stdout` as the destination rather than implement the streaming sidecar
container approach.
Sidecar containers can also be used to rotate log files that cannot be
rotated by the application itself. An example
of this approach is a small container running logrotate periodically.
rotated by the application itself. An example of this approach is a small container running `logrotate` periodically.
However, it's recommended to use `stdout` and `stderr` directly and leave rotation
and retention policies to the kubelet.
@@ -226,21 +232,17 @@ configured specifically to run with your application.
{{< note >}}
Using a logging agent in a sidecar container can lead
to significant resource consumption. Moreover, you won't be able to access
those logs using `kubectl logs` command, because they are not controlled
those logs using `kubectl logs` because they are not controlled
by the kubelet.
{{< /note >}}
As an example, you could use [Stackdriver](/docs/tasks/debug-application-cluster/logging-stackdriver/),
which uses fluentd as a logging agent. Here are two configuration files that
you can use to implement this approach. The first file contains
a [ConfigMap](/docs/tasks/configure-pod-container/configure-pod-configmap/) to configure fluentd.
Here are two configuration files that you can use to implement a sidecar container with a logging agent. The first file contains
a [`ConfigMap`](/docs/tasks/configure-pod-container/configure-pod-configmap/) to configure fluentd.
{{< codenew file="admin/logging/fluentd-sidecar-config.yaml" >}}
{{< note >}}
The configuration of fluentd is beyond the scope of this article. For
information about configuring fluentd, see the
[official fluentd documentation](https://docs.fluentd.org/).
For information about configuring fluentd, see the [fluentd documentation](https://docs.fluentd.org/).
{{< /note >}}
The second file describes a pod that has a sidecar container running fluentd.
@@ -248,18 +250,10 @@ The pod mounts a volume where fluentd can pick up its configuration data.
{{< codenew file="admin/logging/two-files-counter-pod-agent-sidecar.yaml" >}}
After some time you can find log messages in the Stackdriver interface.
Remember, that this is just an example and you can actually replace fluentd
with any logging agent, reading from any source inside an application
container.
In the sample configurations, you can replace fluentd with any logging agent, reading from any source inside an application container.
### Exposing logs directly from the application
![Exposing logs directly from the application](/images/docs/user-guide/logging/logging-from-application.png)
You can implement cluster-level logging by exposing or pushing logs directly from
every application; however, the implementation for such a logging mechanism
is outside the scope of Kubernetes.
Cluster-logging that exposes or pushes logs directly from every application is outside the scope of Kubernetes.
@@ -45,9 +45,9 @@ kubectl apply -f https://k8s.io/examples/application/nginx/
`kubectl` will read any files with suffixes `.yaml`, `.yml`, or `.json`.
It is a recommended practice to put resources related to the same microservice or application tier into the same file, and to group all of the files associated with your application in the same directory. If the tiers of your application bind to each other using DNS, then you can then simply deploy all of the components of your stack en masse.
It is a recommended practice to put resources related to the same microservice or application tier into the same file, and to group all of the files associated with your application in the same directory. If the tiers of your application bind to each other using DNS, you can deploy all of the components of your stack together.
A URL can also be specified as a configuration source, which is handy for deploying directly from configuration files checked into github:
A URL can also be specified as a configuration source, which is handy for deploying directly from configuration files checked into GitHub:
```shell
kubectl apply -f https://raw.githubusercontent.com/kubernetes/website/master/content/en/examples/application/nginx/nginx-deployment.yaml
@@ -70,7 +70,7 @@ deployment.apps "my-nginx" deleted
service "my-nginx-svc" deleted
```
In the case of just two resources, it's also easy to specify both on the command line using the resource/name syntax:
In the case of two resources, you can specify both resources on the command line using the resource/name syntax:
```shell
kubectl delete deployments/my-nginx services/my-nginx-svc
@@ -87,10 +87,11 @@ deployment.apps "my-nginx" deleted
service "my-nginx-svc" deleted
```
Because `kubectl` outputs resource names in the same syntax it accepts, it's easy to chain operations using `$()` or `xargs`:
Because `kubectl` outputs resource names in the same syntax it accepts, you can chain operations using `$()` or `xargs`:
```shell
kubectl get $(kubectl create -f docs/concepts/cluster-administration/nginx/ -o name | grep service)
kubectl create -f docs/concepts/cluster-administration/nginx/ -o name | grep service | xargs -i kubectl get {}
```
```shell
@@ -264,7 +265,7 @@ For a more concrete example, check the [tutorial of deploying Ghost](https://git
## Updating labels
Sometimes existing pods and other resources need to be relabeled before creating new resources. This can be done with `kubectl label`.
For example, if you want to label all your nginx pods as frontend tier, simply run:
For example, if you want to label all your nginx pods as frontend tier, run:
```shell
kubectl label pods -l app=nginx tier=fe
@@ -277,7 +278,7 @@ pod/my-nginx-2035384211-u3t6x labeled
```
This first filters all pods with the label "app=nginx", and then labels them with the "tier=fe".
To see the pods you just labeled, run:
To see the pods you labeled, run:
```shell
kubectl get pods -l app=nginx -L tier
@@ -301,6 +302,7 @@ Sometimes you would want to attach annotations to resources. Annotations are arb
kubectl annotate pods my-nginx-v4-9gw19 description='my frontend running nginx'
kubectl get pods my-nginx-v4-9gw19 -o yaml
```
```shell
apiVersion: v1
kind: pod
@@ -314,11 +316,12 @@ For more information, please see [annotations](/docs/concepts/overview/working-w
## Scaling your application
When load on your application grows or shrinks, it's easy to scale with `kubectl`. For instance, to decrease the number of nginx replicas from 3 to 1, do:
When load on your application grows or shrinks, use `kubectl` to scale your application. For instance, to decrease the number of nginx replicas from 3 to 1, do:
```shell
kubectl scale deployment/my-nginx --replicas=1
```
```shell
deployment.apps/my-nginx scaled
```
@@ -328,6 +331,7 @@ Now you only have one pod managed by the deployment.
```shell
kubectl get pods -l app=nginx
```
```shell
NAME READY STATUS RESTARTS AGE
my-nginx-2035384211-j5fhi 1/1 Running 0 30m
@@ -338,6 +342,7 @@ To have the system automatically choose the number of nginx replicas as needed,
```shell
kubectl autoscale deployment/my-nginx --min=1 --max=3
```
```shell
horizontalpodautoscaler.autoscaling/my-nginx autoscaled
```
@@ -406,11 +411,12 @@ and
## Disruptive updates
In some cases, you may need to update resource fields that cannot be updated once initialized, or you may just want to make a recursive change immediately, such as to fix broken pods created by a Deployment. To change such fields, use `replace --force`, which deletes and re-creates the resource. In this case, you can simply modify your original configuration file:
In some cases, you may need to update resource fields that cannot be updated once initialized, or you may want to make a recursive change immediately, such as to fix broken pods created by a Deployment. To change such fields, use `replace --force`, which deletes and re-creates the resource. In this case, you can modify your original configuration file:
```shell
kubectl replace -f https://k8s.io/examples/application/nginx/nginx-deployment.yaml --force
```
```shell
deployment.apps/my-nginx deleted
deployment.apps/my-nginx replaced
@@ -427,19 +433,22 @@ Let's say you were running version 1.14.2 of nginx:
```shell
kubectl create deployment my-nginx --image=nginx:1.14.2
```
```shell
deployment.apps/my-nginx created
```
with 3 replicas (so the old and new revisions can coexist):
```shell
kubectl scale deployment my-nginx --current-replicas=1 --replicas=3
```
```
deployment.apps/my-nginx scaled
```
To update to version 1.16.1, simply change `.spec.template.spec.containers[0].image` from `nginx:1.14.2` to `nginx:1.16.1`, with the kubectl commands we learned above.
To update to version 1.16.1, change `.spec.template.spec.containers[0].image` from `nginx:1.14.2` to `nginx:1.16.1` using the previous kubectl commands.
```shell
kubectl edit deployment/my-nginx
@@ -114,7 +114,7 @@ Additionally, the CNI can be run alongside [Calico for network policy enforcemen
### Azure CNI for Kubernetes
[Azure CNI](https://docs.microsoft.com/en-us/azure/virtual-network/container-networking-overview) is an [open source](https://github.com/Azure/azure-container-networking/blob/master/docs/cni.md) plugin that integrates Kubernetes Pods with an Azure Virtual Network (also known as VNet) providing network performance at par with VMs. Pods can connect to peered VNet and to on-premises over Express Route or site-to-site VPN and are also directly reachable from these networks. Pods can access Azure services, such as storage and SQL, that are protected by Service Endpoints or Private Link. You can use VNet security policies and routing to filter Pod traffic. The plugin assigns VNet IPs to Pods by utilizing a pool of secondary IPs pre-configured on the Network Interface of a Kubernetes node.
Azure CNI is available natively in the [Azure Kubernetes Service (AKS)] (https://docs.microsoft.com/en-us/azure/aks/configure-azure-cni).
Azure CNI is available natively in the [Azure Kubernetes Service (AKS)](https://docs.microsoft.com/en-us/azure/aks/configure-azure-cni).
### Big Cloud Fabric from Big Switch Networks
@@ -39,7 +39,7 @@ There are several different proxies you may encounter when using Kubernetes:
- proxies UDP, TCP and SCTP
- does not understand HTTP
- provides load balancing
- is just used to reach services
- is only used to reach services
1. A Proxy/Load-balancer in front of apiserver(s):
@@ -31,22 +31,24 @@ I1025 00:15:15.525108 1 httplog.go:79] GET /api/v1/namespaces/kube-system/
{{< feature-state for_k8s_version="v1.19" state="alpha" >}}
{{<warning>}}
{{< warning >}}
Migration to structured log messages is an ongoing process. Not all log messages are structured in this version. When parsing log files, you must also handle unstructured log messages.
Log formatting and value serialization are subject to change.
{{< /warning>}}
Structured logging is a effort to introduce a uniform structure in log messages allowing for easy extraction of information, making logs easier and cheaper to store and process.
Structured logging introduces a uniform structure in log messages allowing for programmatic extraction of information. You can store and process structured logs with less effort and cost.
New message format is backward compatible and enabled by default.
Format of structured logs:
```
```ini
<klog header> "<message>" <key1>="<value1>" <key2>="<value2>" ...
```
Example:
```
```ini
I1025 00:15:15.525108 1 controller_utils.go:116] "Pod status updated" pod="kube-system/kubedns" status="ready"
```
@@ -50,39 +50,41 @@ rules:
## Metric lifecycle
Alpha metric → Stable metric → Deprecated metric → Hidden metric → Deletion
Alpha metric → Stable metric → Deprecated metric → Hidden metric → Deleted metric
Alpha metrics have no stability guarantees; as such they can be modified or deleted at any time.
Alpha metrics have no stability guarantees. These metrics can be modified or deleted at any time.
Stable metrics can be guaranteed to not change; Specifically, stability means:
Stable metrics are guaranteed to not change. This means:
* A stable metric without a deprecated signature will not be deleted or renamed
* A stable metric's type will not be modified
* the metric itself will not be deleted (or renamed)
* the type of metric will not be modified
Deprecated metrics are slated for deletion, but are still available for use.
These metrics include an annotation about the version in which they became deprecated.
Deprecated metric signal that the metric will eventually be deleted; to find which version, you need to check annotation, which includes from which kubernetes version that metric will be considered deprecated.
For example:
Before deprecation:
* Before deprecation
```
# HELP some_counter this counts things
# TYPE some_counter counter
some_counter 0
```
```
# HELP some_counter this counts things
# TYPE some_counter counter
some_counter 0
```
After deprecation:
* After deprecation
```
# HELP some_counter (Deprecated since 1.15.0) this counts things
# TYPE some_counter counter
some_counter 0
```
```
# HELP some_counter (Deprecated since 1.15.0) this counts things
# TYPE some_counter counter
some_counter 0
```
Once a metric is hidden then by default the metrics is not published for scraping. To use a hidden metric, you need to override the configuration for the relevant cluster component.
Hidden metrics are no longer published for scraping, but are still available for use. To use a hidden metric, please refer to the [Show hidden metrics](#show-hidden-metrics) section.
Once a metric is deleted, the metric is not published. You cannot change this using an override.
Deleted metrics are no longer published and cannot be used.
## Show Hidden Metrics
## Show hidden metrics
As described above, admins can enable hidden metrics through a command-line flag on a specific binary. This intends to be used as an escape hatch for admins if they missed the migration of the metrics deprecated in the last release.
@@ -154,5 +156,4 @@ endpoint on the scheduler. You must use the `--show-hidden-metrics-for-version=1
## {{% heading "whatsnext" %}}
* Read about the [Prometheus text format](https://github.com/prometheus/docs/blob/master/content/docs/instrumenting/exposition_formats.md#text-based-format) for metrics
* See the list of [stable Kubernetes metrics](https://github.com/kubernetes/kubernetes/blob/master/test/instrumentation/testdata/stable-metrics-list.yaml)
* Read about the [Kubernetes deprecation policy](/docs/reference/using-api/deprecation-policy/#deprecating-a-feature-or-behavior)
@@ -40,10 +40,10 @@ separate database or file service.
A ConfigMap is an API [object](/docs/concepts/overview/working-with-objects/kubernetes-objects/)
that lets you store configuration for other objects to use. Unlike most
Kubernetes objects that have a `spec`, a ConfigMap has `data` and `binaryData`
fields. These fields accepts key-value pairs as their values. Both the `data`
fields. These fields accept key-value pairs as their values. Both the `data`
field and the `binaryData` are optional. The `data` field is designed to
contain UTF-8 byte sequences while the `binaryData` field is designed to
contain binary data.
contain binary data as base64-encoded strings.
The name of a ConfigMap must be a valid
[DNS subdomain name](/docs/concepts/overview/working-with-objects/names#dns-subdomain-names).
@@ -224,8 +224,8 @@ When a ConfigMap currently consumed in a volume is updated, projected keys are e
The kubelet checks whether the mounted ConfigMap is fresh on every periodic sync.
However, the kubelet uses its local cache for getting the current value of the ConfigMap.
The type of the cache is configurable using the `ConfigMapAndSecretChangeDetectionStrategy` field in
the [KubeletConfiguration struct](https://github.com/kubernetes/kubernetes/blob/{{< param "docsbranch" >}}/staging/src/k8s.io/kubelet/config/v1beta1/types.go).
A ConfigMap can be either propagated by watch (default), ttl-based, or simply redirecting
the [KubeletConfiguration struct](/docs/reference/config-api/kubelet-config.v1beta1/)).
A ConfigMap can be either propagated by watch (default), ttl-based, or by redirecting
all requests directly to the API server.
As a result, the total delay from the moment when the ConfigMap is updated to the moment
when new keys are projected to the Pod can be as long as the kubelet sync period + cache
@@ -233,6 +233,7 @@ propagation delay, where the cache propagation delay depends on the chosen cache
(it equals to watch propagation delay, ttl of cache, or zero correspondingly).
ConfigMaps consumed as environment variables are not updated automatically and require a pod restart.
## Immutable ConfigMaps {#configmap-immutable}
{{< feature-state for_k8s_version="v1.19" state="beta" >}}
@@ -21,9 +21,6 @@ allowed to use more of that resource than the limit you set. The kubelet also re
at least the _request_ amount of that system resource specifically for that container
to use.
<!-- body -->
## Requests and limits
@@ -72,8 +69,7 @@ You cannot overcommit `hugepages-*` resources.
This is different from the `memory` and `cpu` resources.
{{< /note >}}
CPU and memory are collectively referred to as *compute resources*, or just
*resources*. Compute
CPU and memory are collectively referred to as *compute resources*, or *resources*. Compute
resources are measurable quantities that can be requested, allocated, and
consumed. They are distinct from
[API resources](/docs/concepts/overview/kubernetes-api/). API resources, such as Pods and
@@ -396,7 +392,7 @@ The kubelet supports different ways to measure Pod storage use:
{{< tabs name="resource-emphemeralstorage-measurement" >}}
{{% tab name="Periodic scanning" %}}
The kubelet performs regular, schedules checks that scan each
The kubelet performs regular, scheduled checks that scan each
`emptyDir` volume, container log directory, and writeable container layer.
The scan measures how much space is used.
@@ -443,12 +439,15 @@ If you want to use project quotas, you should:
* Enable the `LocalStorageCapacityIsolationFSQuotaMonitoring=true`
[feature gate](/docs/reference/command-line-tools-reference/feature-gates/)
in the kubelet configuration.
using the `featureGates` field in the
[kubelet configuration](/docs/reference/config-api/kubelet-config.v1beta1/)
or the `--feature-gates` command line flag.
* Ensure that the root filesystem (or optional runtime filesystem)
has project quotas enabled. All XFS filesystems support project quotas.
For ext4 filesystems, you need to enable the project quota tracking feature
while the filesystem is not mounted.
```bash
# For ext4, with /dev/block-device not mounted
sudo tune2fs -O project -Q prjquota /dev/block-device
@@ -519,8 +518,7 @@ Cluster-level extended resources are not tied to nodes. They are usually managed
by scheduler extenders, which handle the resource consumption and resource quota.
You can specify the extended resources that are handled by scheduler extenders
in [scheduler policy
configuration](https://github.com/kubernetes/kubernetes/blob/release-1.10/pkg/scheduler/api/v1/types.go#L31).
in [scheduler policy configuration](/docs/reference/config-api/kube-scheduler-policy-config.v1/)
**Example:**
@@ -554,7 +552,7 @@ extender.
### Consuming extended resources
Users can consume extended resources in Pod specs just like CPU and memory.
Users can consume extended resources in Pod specs like CPU and memory.
The scheduler takes care of the resource accounting so that no more than the
available amount is simultaneously allocated to Pods.
@@ -743,23 +741,14 @@ LastState: map[terminated:map[exitCode:137 reason:OOM Killed startedAt:2015-07-0
You can see that the Container was terminated because of `reason:OOM Killed`, where `OOM` stands for Out Of Memory.
## {{% heading "whatsnext" %}}
* Get hands-on experience [assigning Memory resources to Containers and Pods](/docs/tasks/configure-pod-container/assign-memory-resource/).
* Get hands-on experience [assigning CPU resources to Containers and Pods](/docs/tasks/configure-pod-container/assign-cpu-resource/).
* For more details about the difference between requests and limits, see
[Resource QoS](https://git.k8s.io/community/contributors/design-proposals/node/resource-qos.md).
* Read the [Container](/docs/reference/generated/kubernetes-api/{{< param "version" >}}/#container-v1-core) API reference
* Read the [ResourceRequirements](/docs/reference/generated/kubernetes-api/{{< param "version" >}}/#resourcerequirements-v1-core) API reference
* Read about [project quotas](https://xfs.org/docs/xfsdocs-xml-dev/XFS_User_Guide/tmp/en-US/html/xfs-quotas.html) in XFS
* Read more about the [kube-scheduler Policy reference (v1)](/docs/reference/config-api/kube-scheduler-policy-config.v1/)
@@ -59,16 +59,18 @@ DNS server watches the Kubernetes API for new `Services` and creates a set of DN
- Avoid using `hostNetwork`, for the same reasons as `hostPort`.
- Use [headless Services](/docs/concepts/services-networking/service/#headless-services) (which have a `ClusterIP` of `None`) for easy service discovery when you don't need `kube-proxy` load balancing.
- Use [headless Services](/docs/concepts/services-networking/service/#headless-services) (which have a `ClusterIP` of `None`) for service discovery when you don't need `kube-proxy` load balancing.
## Using Labels
- Define and use [labels](/docs/concepts/overview/working-with-objects/labels/) that identify __semantic attributes__ of your application or Deployment, such as `{ app: myapp, tier: frontend, phase: test, deployment: v3 }`. You can use these labels to select the appropriate Pods for other resources; for example, a Service that selects all `tier: frontend` Pods, or all `phase: test` components of `app: myapp`. See the [guestbook](https://github.com/kubernetes/examples/tree/{{< param "githubbranch" >}}/guestbook/) app for examples of this approach.
A Service can be made to span multiple Deployments by omitting release-specific labels from its selector. [Deployments](/docs/concepts/workloads/controllers/deployment/) make it easy to update a running service without downtime.
A Service can be made to span multiple Deployments by omitting release-specific labels from its selector. When you need to update a running service without downtime, use a [Deployment](/docs/concepts/workloads/controllers/deployment/).
A desired state of an object is described by a Deployment, and if changes to that spec are _applied_, the deployment controller changes the actual state to the desired state at a controlled rate.
- Use the [Kubernetes common labels](/docs/concepts/overview/working-with-objects/common-labels/) for common use cases. These standardized labels enrich the metadata in a way that allows tools, including `kubectl` and [dashboard](/docs/tasks/access-application-cluster/web-ui-dashboard), to work in an interoperable way.
- You can manipulate labels for debugging. Because Kubernetes controllers (such as ReplicaSet) and Services match to Pods using selector labels, removing the relevant labels from a Pod will stop it from being considered by a controller or from being served traffic by a Service. If you remove the labels of an existing Pod, its controller will create a new Pod to take its place. This is a useful way to debug a previously "live" Pod in a "quarantine" environment. To interactively remove or add labels, use [`kubectl label`](/docs/reference/generated/kubectl/kubectl-commands#label).
## Container Images
@@ -79,9 +81,9 @@ The [imagePullPolicy](/docs/concepts/containers/images/#updating-images) and the
- `imagePullPolicy: Always`: every time the kubelet launches a container, the kubelet queries the container image registry to resolve the name to an image digest. If the kubelet has a container image with that exact digest cached locally, the kubelet uses its cached image; otherwise, the kubelet downloads (pulls) the image with the resolved digest, and uses that image to launch the container.
- `imagePullPolicy` is omitted and either the image tag is `:latest` or it is omitted: `Always` is applied.
- `imagePullPolicy` is omitted and either the image tag is `:latest` or it is omitted: `imagePullPolicy` is automatically set to `Always`. Note that this will _not_ be updated to `IfNotPresent` if the tag changes value.
- `imagePullPolicy` is omitted and the image tag is present but not `:latest`: `IfNotPresent` is applied.
- `imagePullPolicy` is omitted and the image tag is present but not `:latest`: `imagePullPolicy` is automatically set to `IfNotPresent`. Note that this will _not_ be updated to `Always` if the tag is later removed or changed to `:latest`.
- `imagePullPolicy: Never`: the image is assumed to exist locally. No attempt is made to pull the image.
@@ -94,7 +96,7 @@ You should avoid using the `:latest` tag when deploying containers in production
{{< /note >}}
{{< note >}}
The caching semantics of the underlying image provider make even `imagePullPolicy: Always` efficient. With Docker, for example, if the image already exists, the pull attempt is fast because all image layers are cached and no image download is needed.
The caching semantics of the underlying image provider make even `imagePullPolicy: Always` efficient, as long as the registry is reliably accessible. With Docker, for example, if the image already exists, the pull attempt is fast because all image layers are cached and no image download is needed.
{{< /note >}}
## Using kubectl
@@ -24,6 +24,16 @@ a password, a token, or a key. Such information might otherwise be put in a
Pod specification or in an image. Users can create Secrets and the system
also creates some Secrets.
{{< caution >}}
Kubernetes Secrets are, by default, stored as unencrypted base64-encoded
strings. By default they can be retrieved - as plain text - by anyone with API
access, or anyone with access to Kubernetes' underlying data store, etcd. In
order to safely use Secrets, it is recommended you (at a minimum):
1. [Enable Encryption at Rest](/docs/tasks/administer-cluster/encrypt-data/) for Secrets.
2. [Enable or configure RBAC rules](/docs/reference/access-authn-authz/authorization/) that restrict reading and writing the Secret. Be aware that secrets can be obtained implicitly by anyone with the permission to create a Pod.
{{< /caution >}}
<!-- body -->
## Overview of Secrets
@@ -99,14 +109,14 @@ empty-secret Opaque 0 2m6s
```
The `DATA` column shows the number of data items stored in the Secret.
In this case, `0` means we have just created an empty Secret.
In this case, `0` means we have created an empty Secret.
### Service account token Secrets
A `kubernetes.io/service-account-token` type of Secret is used to store a
token that identifies a service account. When using this Secret type, you need
to ensure that the `kubernetes.io/service-account.name` annotation is set to an
existing service account name. An Kubernetes controller fills in some other
existing service account name. A Kubernetes controller fills in some other
fields such as the `kubernetes.io/service-account.uid` annotation and the
`token` key in the `data` field set to actual token content.
@@ -271,9 +281,16 @@ However, using the builtin Secret type helps unify the formats of your credentia
and the API server does verify if the required keys are provided in a Secret
configuration.
{{< caution >}}
SSH private keys do not establish trusted communication between an SSH client and
host server on their own. A secondary means of establishing trust is needed to
mitigate "man in the middle" attacks, such as a `known_hosts` file added to a
ConfigMap.
{{< /caution >}}
### TLS secrets
Kubernetes provides a builtin Secret type `kubernetes.io/tls` for to storing
Kubernetes provides a builtin Secret type `kubernetes.io/tls` for storing
a certificate and its associated key that are typically used for TLS . This
data is primarily used with TLS termination of the Ingress resource, but may
be used with other resources or directly by a workload.
@@ -351,7 +368,7 @@ data:
A bootstrap type Secret has the following keys specified under `data`:
- `token_id`: A random 6 character string as the token identifier. Required.
- `token-id`: A random 6 character string as the token identifier. Required.
- `token-secret`: A random 16 character string as the actual token secret. Required.
- `description`: A human-readable string that describes what the token is
used for. Optional.
@@ -651,8 +668,8 @@ When a secret currently consumed in a volume is updated, projected keys are even
The kubelet checks whether the mounted secret is fresh on every periodic sync.
However, the kubelet uses its local cache for getting the current value of the Secret.
The type of the cache is configurable using the `ConfigMapAndSecretChangeDetectionStrategy` field in
the [KubeletConfiguration struct](https://github.com/kubernetes/kubernetes/blob/{{< param "docsbranch" >}}/staging/src/k8s.io/kubelet/config/v1beta1/types.go).
A Secret can be either propagated by watch (default), ttl-based, or simply redirecting
the [KubeletConfiguration struct](/docs/reference/config-api/kubelet-config.v1beta1/).
A Secret can be either propagated by watch (default), ttl-based, or by redirecting
all requests directly to the API server.
As a result, the total delay from the moment when the Secret is updated to the moment
when new keys are projected to the Pod can be as long as the kubelet sync period + cache
@@ -701,7 +718,7 @@ spec:
#### Consuming Secret Values from environment variables
Inside a container that consumes a secret in an environment variables, the secret keys appear as
Inside a container that consumes a secret in the environment variables, the secret keys appear as
normal environment variables containing the base64 decoded values of the secret data.
This is the result of commands executed inside the container from the example above:
@@ -725,6 +742,11 @@ The output is similar to:
1f2d1e2e67df
```
#### Environment variables are not updated after a secret update
If a container already consumes a Secret in an environment variable, a Secret update will not be seen by the container unless it is restarted.
There are third party solutions for triggering restarts when secrets change.
## Immutable Secrets {#secret-immutable}
{{< feature-state for_k8s_version="v1.19" state="beta" >}}
@@ -738,8 +760,8 @@ data has the following advantages:
- improves performance of your cluster by significantly reducing load on kube-apiserver, by
closing watches for secrets marked as immutable.
This feature is controlled by the `ImmutableEphemeralVolumes` [feature
gate](/docs/reference/command-line-tools-reference/feature-gates/),
This feature is controlled by the `ImmutableEphemeralVolumes`
[feature gate](/docs/reference/command-line-tools-reference/feature-gates/),
which is enabled by default since v1.19. You can create an immutable
Secret by setting the `immutable` field to `true`. For example,
```yaml
@@ -764,7 +786,7 @@ these pods.
The `imagePullSecrets` field is a list of references to secrets in the same namespace.
You can use an `imagePullSecrets` to pass a secret that contains a Docker (or other) image registry
password to the kubelet. The kubelet uses this information to pull a private image on behalf of your Pod.
See the [PodSpec API](/docs/reference/generated/kubernetes-api/{{< latest-version >}}/#podspec-v1-core) for more information about the `imagePullSecrets` field.
See the [PodSpec API](/docs/reference/generated/kubernetes-api/{{< param "version" >}}/#podspec-v1-core) for more information about the `imagePullSecrets` field.
#### Manually specifying an imagePullSecret
@@ -779,12 +801,6 @@ field set to that of the service account.
See [Add ImagePullSecrets to a service account](/docs/tasks/configure-pod-container/configure-service-account/#add-imagepullsecrets-to-a-service-account)
for a detailed explanation of that process.
### Automatic mounting of manually created Secrets
Manually created secrets (for example, one containing a token for accessing a GitHub account)
can be automatically attached to pods based on their service account.
See [Injecting Information into Pods Using a PodPreset](/docs/tasks/inject-data-application/podpreset/) for a detailed explanation of that process.
## Details
### Restrictions
@@ -849,6 +865,7 @@ start until all the Pod's volumes are mounted.
### Use-Case: As container environment variables
Create a secret
```yaml
apiVersion: v1
kind: Secret
@@ -861,6 +878,7 @@ data:
```
Create the Secret:
```shell
kubectl apply -f mysecret.yaml
```
@@ -976,7 +994,7 @@ For example, if your actual password is `S!B\*d$zDsb=`, you should execute the c
kubectl create secret generic dev-db-secret --from-literal=username=devuser --from-literal=password='S!B\*d$zDsb='
```
You do not need to escape special characters in passwords from files (`--from-file`).
You do not need to escape special characters in passwords from files (`--from-file`).
{{< /note >}}
Now make the Pods:
@@ -1157,14 +1175,12 @@ privileged, system-level components.
Applications that need to access the Secret API should perform `get` requests on
the secrets they need. This lets administrators restrict access to all secrets
while [white-listing access to individual instances](
/docs/reference/access-authn-authz/rbac/#referring-to-resources) that
while [white-listing access to individual instances](/docs/reference/access-authn-authz/rbac/#referring-to-resources) that
the app needs.
For improved performance over a looping `get`, clients can design resources that
reference a secret then `watch` the resource, re-requesting the secret when the
reference changes. Additionally, a ["bulk watch" API](
https://github.com/kubernetes/community/blob/master/contributors/design-proposals/api-machinery/bulk_watch.md)
reference changes. Additionally, a ["bulk watch" API](https://github.com/kubernetes/community/blob/master/contributors/design-proposals/api-machinery/bulk_watch.md)
to let clients `watch` individual resources has also been proposed, and will likely
be available in future releases of Kubernetes.
@@ -40,6 +40,7 @@ as are any environment variables specified statically in the Docker image.
### Cluster information
A list of all services that were running when a Container was created is available to that Container as environment variables.
This list is limited to services within the same namespace as the new Container's Pod and Kubernetes control plane services.
Those environment variables match the syntax of Docker links.
For a service named *foo* that maps to a Container named *bar*,
@@ -36,10 +36,13 @@ No parameters are passed to the handler.
`PreStop`
This hook is called immediately before a container is terminated due to an API request or management event such as liveness probe failure, preemption, resource contention and others. A call to the preStop hook fails if the container is already in terminated or completed state.
It is blocking, meaning it is synchronous,
so it must complete before the signal to stop the container can be sent.
No parameters are passed to the handler.
This hook is called immediately before a container is terminated due to an API request or management
event such as a liveness/startup probe failure, preemption, resource contention and others. A call
to the `PreStop` hook fails if the container is already in a terminated or completed state and the
hook must complete before the TERM signal to stop the container can be sent. The Pod's termination
grace period countdown begins before the `PreStop` hook is executed, so regardless of the outcome of
the handler, the container will eventually terminate within the Pod's termination grace period. No
parameters are passed to the handler.
A more detailed description of the termination behavior can be found in
[Termination of Pods](/docs/concepts/workloads/pods/pod-lifecycle/#pod-termination).
@@ -47,17 +50,18 @@ A more detailed description of the termination behavior can be found in
### Hook handler implementations
Containers can access a hook by implementing and registering a handler for that hook.
There are two types of hook handlers that can be implemented for Containers:
There are three types of hook handlers that can be implemented for Containers:
* Exec - Executes a specific command, such as `pre-stop.sh`, inside the cgroups and namespaces of the Container.
Resources consumed by the command are counted against the Container.
* TCP - Opens a TCP connecton against a specific port on the Container.
* HTTP - Executes an HTTP request against a specific endpoint on the Container.
### Hook handler execution
When a Container lifecycle management hook is called,
the Kubernetes management system execute the handler according to the hook action,
`exec` and `tcpSocket` are executed in the container, and `httpGet` is executed by the kubelet process.
`httpGet` and `tcpSocket` are executed by the kubelet process, and `exec` is executed in the container.
Hook handler calls are synchronous within the context of the Pod containing the Container.
This means that for a `PostStart` hook,
@@ -65,19 +69,15 @@ the Container ENTRYPOINT and hook fire asynchronously.
However, if the hook takes too long to run or hangs,
the Container cannot reach a `running` state.
`PreStop` hooks are not executed asynchronously from the signal
to stop the Container; the hook must complete its execution before
the signal can be sent.
If a `PreStop` hook hangs during execution,
the Pod's phase will be `Terminating` and remain there until the Pod is
killed after its `terminationGracePeriodSeconds` expires.
This grace period applies to the total time it takes for both
the `PreStop` hook to execute and for the Container to stop normally.
If, for example, `terminationGracePeriodSeconds` is 60, and the hook
takes 55 seconds to complete, and the Container takes 10 seconds to stop
normally after receiving the signal, then the Container will be killed
before it can stop normally, since `terminationGracePeriodSeconds` is
less than the total time (55+10) it takes for these two things to happen.
`PreStop` hooks are not executed asynchronously from the signal to stop the Container; the hook must
complete its execution before the TERM signal can be sent. If a `PreStop` hook hangs during
execution, the Pod's phase will be `Terminating` and remain there until the Pod is killed after its
`terminationGracePeriodSeconds` expires. This grace period applies to the total time it takes for
both the `PreStop` hook to execute and for the Container to stop normally. If, for example,
`terminationGracePeriodSeconds` is 60, and the hook takes 55 seconds to complete, and the Container
takes 10 seconds to stop normally after receiving the signal, then the Container will be killed
before it can stop normally, since `terminationGracePeriodSeconds` is less than the total time
(55+10) it takes for these two things to happen.
If either a `PostStart` or `PreStop` hook fails,
it kills the Container.
+22 -6
View File
@@ -49,16 +49,32 @@ Instead, specify a meaningful tag such as `v1.42.0`.
## Updating images
The default pull policy is `IfNotPresent` which causes the
{{< glossary_tooltip text="kubelet" term_id="kubelet" >}} to skip
pulling an image if it already exists. If you would like to always force a pull,
you can do one of the following:
When you first create a {{< glossary_tooltip text="Deployment" term_id="deployment" >}},
{{< glossary_tooltip text="StatefulSet" term_id="statefulset" >}}, Pod, or other
object that includes a Pod template, then by default the pull policy of all
containers in that pod will be set to `IfNotPresent` if it is not explicitly
specified. This policy causes the
{{< glossary_tooltip text="kubelet" term_id="kubelet" >}} to skip pulling an
image if it already exists.
If you would like to always force a pull, you can do one of the following:
- set the `imagePullPolicy` of the container to `Always`.
- omit the `imagePullPolicy` and use `:latest` as the tag for the image to use.
- omit the `imagePullPolicy` and use `:latest` as the tag for the image to use;
Kubernetes will set the policy to `Always`.
- omit the `imagePullPolicy` and the tag for the image to use.
- enable the [AlwaysPullImages](/docs/reference/access-authn-authz/admission-controllers/#alwayspullimages) admission controller.
{{< note >}}
The value of `imagePullPolicy` of the container is always set when the object is
first _created_, and is not updated if the image's tag later changes.
For example, if you create a Deployment with an image whose tag is _not_
`:latest`, and later update that Deployment's image to a `:latest` tag, the
`imagePullPolicy` field will _not_ change to `Always`. You must manually change
the pull policy of any object after its initial creation.
{{< /note >}}
When `imagePullPolicy` is defined without a specific value, it is also set to `Always`.
## Multi-architecture images with image indexes
@@ -119,7 +135,7 @@ Here are the recommended steps to configuring your nodes to use a private regist
example, run these on your desktop/laptop:
1. Run `docker login [server]` for each set of credentials you want to use. This updates `$HOME/.docker/config.json` on your PC.
1. View `$HOME/.docker/config.json` in an editor to ensure it contains just the credentials you want to use.
1. View `$HOME/.docker/config.json` in an editor to ensure it contains only the credentials you want to use.
1. Get a list of your nodes; for example:
- if you want the names: `nodes=$( kubectl get nodes -o jsonpath='{range.items[*].metadata}{.name} {end}' )`
- if you want to get the IP addresses: `nodes=$( kubectl get nodes -o jsonpath='{range .items[*].status.addresses[?(@.type=="ExternalIP")]}{.address} {end}' )`
@@ -35,10 +35,6 @@ but with different settings.
## Setup
Ensure the RuntimeClass feature gate is enabled (it is by default). See [Feature
Gates](/docs/reference/command-line-tools-reference/feature-gates/) for an explanation of enabling
feature gates. The `RuntimeClass` feature gate must be enabled on apiservers _and_ kubelets.
1. Configure the CRI implementation on nodes (runtime dependent)
2. Create the corresponding RuntimeClass resources
@@ -51,7 +47,7 @@ CRI implementation for how to configure.
{{< note >}}
RuntimeClass assumes a homogeneous node configuration across the cluster by default (which means
that all nodes are configured the same way with respect to container runtimes). To support
heterogenous node configurations, see [Scheduling](#scheduling) below.
heterogeneous node configurations, see [Scheduling](#scheduling) below.
{{< /note >}}
The configurations have a corresponding `handler` name, referenced by the RuntimeClass. The
@@ -98,7 +94,7 @@ spec:
# ...
```
This will instruct the Kubelet to use the named RuntimeClass to run this pod. If the named
This will instruct the kubelet to use the named RuntimeClass to run this pod. If the named
RuntimeClass does not exist, or the CRI cannot run the corresponding handler, the pod will enter the
`Failed` terminal [phase](/docs/concepts/workloads/pods/pod-lifecycle/#pod-phase). Look for a
corresponding [event](/docs/tasks/debug-application-cluster/debug-application-introspection/) for an
@@ -144,11 +140,9 @@ See CRI-O's [config documentation](https://raw.githubusercontent.com/cri-o/cri-o
{{< feature-state for_k8s_version="v1.16" state="beta" >}}
As of Kubernetes v1.16, RuntimeClass includes support for heterogenous clusters through its
`scheduling` fields. Through the use of these fields, you can ensure that pods running with this
RuntimeClass are scheduled to nodes that support it. To use the scheduling support, you must have
the [RuntimeClass admission controller](/docs/reference/access-authn-authz/admission-controllers/#runtimeclass)
enabled (the default, as of 1.16).
By specifying the `scheduling` field for a RuntimeClass, you can set constraints to
ensure that Pods running with this RuntimeClass are scheduled to nodes that support it.
If `scheduling` is not set, this RuntimeClass is assumed to be supported by all nodes.
To ensure pods land on nodes supporting a specific RuntimeClass, that set of nodes should have a
common label which is then selected by the `runtimeclass.scheduling.nodeSelector` field. The
@@ -185,4 +179,3 @@ are accounted for in Kubernetes.
- [RuntimeClass Scheduling Design](https://github.com/kubernetes/enhancements/blob/master/keps/sig-node/585-runtime-class/README.md#runtimeclass-scheduling)
- Read about the [Pod Overhead](/docs/concepts/scheduling-eviction/pod-overhead/) concept
- [PodOverhead Feature Design](https://github.com/kubernetes/enhancements/blob/master/keps/sig-node/20190226-pod-overhead.md)
@@ -145,7 +145,7 @@ Kubernetes provides several built-in authentication methods, and an [Authenticat
### Authorization
[Authorization](/docs/reference/access-authn-authz/webhook/) determines whether specific users can read, write, and do other operations on API resources. It just works at the level of whole resources -- it doesn't discriminate based on arbitrary object fields. If the built-in authorization options don't meet your needs, and [Authorization webhook](/docs/reference/access-authn-authz/webhook/) allows calling out to user-provided code to make an authorization decision.
[Authorization](/docs/reference/access-authn-authz/webhook/) determines whether specific users can read, write, and do other operations on API resources. It works at the level of whole resources -- it doesn't discriminate based on arbitrary object fields. If the built-in authorization options don't meet your needs, and [Authorization webhook](/docs/reference/access-authn-authz/webhook/) allows calling out to user-provided code to make an authorization decision.
### Dynamic Admission Control
@@ -28,9 +28,7 @@ The most common way to implement the APIService is to run an *extension API serv
Extension API servers should have low latency networking to and from the kube-apiserver.
Discovery requests are required to round-trip from the kube-apiserver in five seconds or less.
If your extension API server cannot achieve that latency requirement, consider making changes that let you meet it. You can also set the
`EnableAggregatedDiscoveryTimeout=false` [feature gate](/docs/reference/command-line-tools-reference/feature-gates/) on the kube-apiserver
to disable the timeout restriction. This deprecated feature gate will be removed in a future release.
If your extension API server cannot achieve that latency requirement, consider making changes that let you meet it.
## {{% heading "whatsnext" %}}
@@ -31,7 +31,7 @@ Once a custom resource is installed, users can create and access its objects usi
## Custom controllers
On their own, custom resources simply let you store and retrieve structured data.
On their own, custom resources let you store and retrieve structured data.
When you combine a custom resource with a *custom controller*, custom resources
provide a true _declarative API_.
@@ -44,7 +44,7 @@ desired state, and continually maintains this state.
You can deploy and update a custom controller on a running cluster, independently
of the cluster's lifecycle. Custom controllers can work with any kind of resource,
but they are especially effective when combined with custom resources. The
[Operator pattern](https://coreos.com/blog/introducing-operators.html) combines custom
[Operator pattern](/docs/concepts/extend-kubernetes/operator/) combines custom
resources and custom controllers. You can use custom controllers to encode domain knowledge
for specific applications into an extension of the Kubernetes API.
@@ -120,7 +120,7 @@ Kubernetes provides two ways to add custom resources to your cluster:
Kubernetes provides these two options to meet the needs of different users, so that neither ease of use nor flexibility is compromised.
Aggregated APIs are subordinate API servers that sit behind the primary API server, which acts as a proxy. This arrangement is called [API Aggregation](/docs/concepts/extend-kubernetes/api-extension/apiserver-aggregation/) (AA). To users, it simply appears that the Kubernetes API is extended.
Aggregated APIs are subordinate API servers that sit behind the primary API server, which acts as a proxy. This arrangement is called [API Aggregation](/docs/concepts/extend-kubernetes/api-extension/apiserver-aggregation/) (AA). To users, the Kubernetes API appears extended.
CRDs allow users to create new types of resources without adding another API server. You do not need to understand API Aggregation to use CRDs.
@@ -201,7 +201,7 @@ Monitoring agents for device plugin resources can be deployed as a daemon, or as
The canonical directory `/var/lib/kubelet/pod-resources` requires privileged access, so monitoring
agents must run in a privileged security context. If a device monitoring agent is running as a
DaemonSet, `/var/lib/kubelet/pod-resources` must be mounted as a
{{< glossary_tooltip term_id="volume" >}} in the plugin's
{{< glossary_tooltip term_id="volume" >}} in the device monitoring agent's
[PodSpec](/docs/reference/generated/kubernetes-api/{{< param "version" >}}/#podspec-v1-core).
Support for the "PodResources service" requires `KubeletPodResources` [feature gate](/docs/reference/command-line-tools-reference/feature-gates/) to be enabled.
@@ -24,7 +24,7 @@ Network plugins in Kubernetes come in a few flavors:
The kubelet has a single default network plugin, and a default network common to the entire cluster. It probes for plugins when it starts up, remembers what it finds, and executes the selected plugin at appropriate times in the pod lifecycle (this is only true for Docker, as CRI manages its own CNI plugins). There are two Kubelet command line parameters to keep in mind when using plugins:
* `cni-bin-dir`: Kubelet probes this directory for plugins on startup
* `network-plugin`: The network plugin to use from `cni-bin-dir`. It must match the name reported by a plugin probed from the plugin directory. For CNI plugins, this is simply "cni".
* `network-plugin`: The network plugin to use from `cni-bin-dir`. It must match the name reported by a plugin probed from the plugin directory. For CNI plugins, this is `cni`.
## Network Plugin Requirements
@@ -159,7 +159,7 @@ This option is provided to the network-plugin; currently **only kubenet supports
## Usage Summary
* `--network-plugin=cni` specifies that we use the `cni` network plugin with actual CNI plugin binaries located in `--cni-bin-dir` (default `/opt/cni/bin`) and CNI plugin configuration located in `--cni-conf-dir` (default `/etc/cni/net.d`).
* `--network-plugin=kubenet` specifies that we use the `kubenet` network plugin with CNI `bridge` and `host-local` plugins placed in `/opt/cni/bin` or `cni-bin-dir`.
* `--network-plugin=kubenet` specifies that we use the `kubenet` network plugin with CNI `bridge`, `lo` and `host-local` plugins placed in `/opt/cni/bin` or `cni-bin-dir`.
* `--network-plugin-mtu=9001` specifies the MTU to use, currently only used by the `kubenet` network plugin.
## {{% heading "whatsnext" %}}
@@ -74,7 +74,7 @@ failure.
In the webhook model, Kubernetes makes a network request to a remote service.
In the *Binary Plugin* model, Kubernetes executes a binary (program).
Binary plugins are used by the kubelet (e.g.
[Flex Volume Plugins](/docs/concepts/storage/volumes/#flexVolume)
[Flex Volume Plugins](/docs/concepts/storage/volumes/#flexvolume)
and [Network Plugins](/docs/concepts/extend-kubernetes/compute-storage-net/network-plugins/))
and by kubectl.
@@ -146,7 +146,7 @@ Kubernetes provides several built-in authentication methods, and an [Authenticat
### Authorization
[Authorization](/docs/reference/access-authn-authz/webhook/) determines whether specific users can read, write, and do other operations on API resources. It just works at the level of whole resources -- it doesn't discriminate based on arbitrary object fields. If the built-in authorization options don't meet your needs, and [Authorization webhook](/docs/reference/access-authn-authz/webhook/) allows calling out to user-provided code to make an authorization decision.
[Authorization](/docs/reference/access-authn-authz/webhook/) determines whether specific users can read, write, and do other operations on API resources. It works at the level of whole resources -- it doesn't discriminate based on arbitrary object fields. If the built-in authorization options don't meet your needs, and [Authorization webhook](/docs/reference/access-authn-authz/webhook/) allows calling out to user-provided code to make an authorization decision.
### Dynamic Admission Control
@@ -161,7 +161,7 @@ After a request is authorized, if it is a write operation, it also goes through
### Storage Plugins
[Flex Volumes](/docs/concepts/storage/volumes/#flexVolume)
[Flex Volumes](/docs/concepts/storage/volumes/#flexvolume)
allow users to mount volume types without built-in support by having the
Kubelet call a Binary Plugin to mount the volume.
@@ -103,27 +103,28 @@ as well as keeping the existing service in good shape.
## Writing your own Operator {#writing-operator}
If there isn't an Operator in the ecosystem that implements the behavior you
want, you can code your own. In [What's next](#whats-next) you'll find a few
links to libraries and tools you can use to write your own cloud native
Operator.
want, you can code your own.
You also implement an Operator (that is, a Controller) using any language / runtime
that can act as a [client for the Kubernetes API](/docs/reference/using-api/client-libraries/).
Following are a few libraries and tools you can use to write your own cloud native
Operator.
{{% thirdparty-content %}}
* [kubebuilder](https://book.kubebuilder.io/)
* [KUDO](https://kudo.dev/) (Kubernetes Universal Declarative Operator)
* [Metacontroller](https://metacontroller.app/) along with WebHooks that
you implement yourself
* [Operator Framework](https://operatorframework.io)
## {{% heading "whatsnext" %}}
* Learn more about [Custom Resources](/docs/concepts/extend-kubernetes/api-extension/custom-resources/)
* Find ready-made operators on [OperatorHub.io](https://operatorhub.io/) to suit your use case
* Use existing tools to write your own operator, eg:
* using [KUDO](https://kudo.dev/) (Kubernetes Universal Declarative Operator)
* using [kubebuilder](https://book.kubebuilder.io/)
* using [Metacontroller](https://metacontroller.app/) along with WebHooks that
you implement yourself
* using the [Operator Framework](https://operatorframework.io)
* [Publish](https://operatorhub.io/) your operator for other people to use
* Read [CoreOS' original article](https://coreos.com/blog/introducing-operators.html) that introduced the Operator pattern
* Read [CoreOS' original article](https://web.archive.org/web/20170129131616/https://coreos.com/blog/introducing-operators.html) that introduced the Operator pattern (this is an archived version of the original article).
* Read an [article](https://cloud.google.com/blog/products/containers-kubernetes/best-practices-for-building-kubernetes-operators-and-stateful-apps) from Google Cloud about best practices for building Operators
@@ -26,7 +26,7 @@ Fortunately, there is a cloud provider that offers message queuing as a managed
A cluster operator can setup Service Catalog and use it to communicate with the cloud provider's service broker to provision an instance of the message queuing service and make it available to the application within the Kubernetes cluster.
The application developer therefore does not need to be concerned with the implementation details or management of the message queue.
The application can simply use it as a service.
The application can access the message queue as a service.
## Architecture
@@ -33,7 +33,8 @@ The control plane's components make global decisions about the cluster (for exam
Control plane components can be run on any machine in the cluster. However,
for simplicity, set up scripts typically start all control plane components on
the same machine, and do not run user containers on this machine. See
[Building High-Availability Clusters](/docs/admin/high-availability/) for an example multi-master-VM setup.
[Creating Highly Available clusters with kubeadm](/docs/setup/production-environment/tools/kubeadm/high-availability/)
for an example control plane setup that runs across multiple VMs.
### kube-apiserver
@@ -51,11 +52,11 @@ the same machine, and do not run user containers on this machine. See
{{< glossary_definition term_id="kube-controller-manager" length="all" >}}
These controllers include:
Some types of these controllers are:
* Node controller: Responsible for noticing and responding when nodes go down.
* Replication controller: Responsible for maintaining the correct number of pods for every replication
controller object in the system.
* Job controller: Watches for Job objects that represent one-off tasks, then creates
Pods to run those tasks to completion.
* Endpoints controller: Populates the Endpoints object (that is, joins Services & Pods).
* Service Account & Token controllers: Create default accounts and API access tokens for new namespaces.
@@ -132,4 +133,3 @@ saving container logs to a central log store with search/browsing interface.
* Learn about [Controllers](/docs/concepts/architecture/controller/)
* Learn about [kube-scheduler](/docs/concepts/scheduling-eviction/kube-scheduler/)
* Read etcd's official [documentation](https://etcd.io/docs/)
@@ -19,7 +19,7 @@ is the {{< glossary_tooltip text="API server" term_id="kube-apiserver" >}}. The
exposes an HTTP API that lets end users, different parts of your cluster, and
external components communicate with one another.
The Kubernetes API lets you query and manipulate the state of objects in the Kubernetes API
The Kubernetes API lets you query and manipulate the state of API objects in Kubernetes
(for example: Pods, Namespaces, ConfigMaps, and Events).
Most operations can be performed through the
@@ -43,7 +43,7 @@ Each VM is a full machine running all the components, including its own operatin
Containers have become popular because they provide extra benefits, such as:
* Agile application creation and deployment: increased ease and efficiency of container image creation compared to VM image use.
* Continuous development, integration, and deployment: provides for reliable and frequent container image build and deployment with quick and easy rollbacks (due to image immutability).
* Continuous development, integration, and deployment: provides for reliable and frequent container image build and deployment with quick and efficient rollbacks (due to image immutability).
* Dev and Ops separation of concerns: create application container images at build/release time rather than deployment time, thereby decoupling applications from infrastructure.
* Observability not only surfaces OS-level information and metrics, but also application health and other signals.
* Environmental consistency across development, testing, and production: Runs the same on a laptop as it does in the cloud.
@@ -59,8 +59,8 @@ metadata:
## Applications And Instances Of Applications
An application can be installed one or more times into a Kubernetes cluster and,
in some cases, the same namespace. For example, wordpress can be installed more
than once where different websites are different installations of wordpress.
in some cases, the same namespace. For example, WordPress can be installed more
than once where different websites are different installations of WordPress.
The name of an application and the instance name are recorded separately. For
example, WordPress has a `app.kubernetes.io/name` of `wordpress` while it has
@@ -168,6 +168,6 @@ metadata:
...
```
With the MySQL `StatefulSet` and `Service` you'll notice information about both MySQL and Wordpress, the broader application, are included.
With the MySQL `StatefulSet` and `Service` you'll notice information about both MySQL and WordPress, the broader application, are included.
@@ -42,7 +42,7 @@ Example labels:
* `"partition" : "customerA"`, `"partition" : "customerB"`
* `"track" : "daily"`, `"track" : "weekly"`
These are just examples of commonly used labels; you are free to develop your own conventions. Keep in mind that label Key must be unique for a given object.
These are examples of commonly used labels; you are free to develop your own conventions. Keep in mind that label Key must be unique for a given object.
## Syntax and character set
@@ -52,7 +52,10 @@ If the prefix is omitted, the label Key is presumed to be private to the user. A
The `kubernetes.io/` and `k8s.io/` prefixes are reserved for Kubernetes core components.
Valid label values must be 63 characters or less and must be empty or begin and end with an alphanumeric character (`[a-z0-9A-Z]`) with dashes (`-`), underscores (`_`), dots (`.`), and alphanumerics between.
Valid label value:
* must be 63 characters or less (cannot be empty),
* must begin and end with an alphanumeric character (`[a-z0-9A-Z]`),
* could contain dashes (`-`), underscores (`_`), dots (`.`), and alphanumerics between.
For example, here's the configuration file for a Pod that has two labels `environment: production` and `app: nginx` :
@@ -98,7 +101,7 @@ For both equality-based and set-based conditions there is no logical _OR_ (`||`)
### _Equality-based_ requirement
_Equality-_ or _inequality-based_ requirements allow filtering by label keys and values. Matching objects must satisfy all of the specified label constraints, though they may have additional labels as well.
Three kinds of operators are admitted `=`,`==`,`!=`. The first two represent _equality_ (and are simply synonyms), while the latter represents _inequality_. For example:
Three kinds of operators are admitted `=`,`==`,`!=`. The first two represent _equality_ (and are synonyms), while the latter represents _inequality_. For example:
```
environment = production
@@ -24,6 +24,10 @@ For non-unique user-provided attributes, Kubernetes provides [labels](/docs/conc
{{< glossary_definition term_id="name" length="all" >}}
{{< note >}}
In cases when objects represent a physical entity, like a Node representing a physical host, when the host is re-created under the same name without deleting and re-creating the Node, Kubernetes treats the new host as the old one, which may lead to inconsistencies.
{{< /note >}}
Below are three types of commonly used name constraints for resources.
### DNS Subdomain Names
@@ -86,4 +90,3 @@ UUIDs are standardized as ISO/IEC 9834-8 and as ITU-T X.667.
* Read about [labels](/docs/concepts/overview/working-with-objects/labels/) in Kubernetes.
* See the [Identifiers and Names in Kubernetes](https://git.k8s.io/community/contributors/design-proposals/architecture/identifiers.md) design document.
@@ -28,7 +28,7 @@ resource can only be in one namespace.
Namespaces are a way to divide cluster resources between multiple users (via [resource quota](/docs/concepts/policy/resource-quotas/)).
It is not necessary to use multiple namespaces just to separate slightly different
It is not necessary to use multiple namespaces to separate slightly different
resources, such as different versions of the same software: use
[labels](/docs/concepts/overview/working-with-objects/labels) to distinguish
resources within the same namespace.
@@ -91,7 +91,7 @@ kubectl config view --minify | grep namespace:
When you create a [Service](/docs/concepts/services-networking/service/),
it creates a corresponding [DNS entry](/docs/concepts/services-networking/dns-pod-service/).
This entry is of the form `<service-name>.<namespace-name>.svc.cluster.local`, which means
that if a container just uses `<service-name>`, it will resolve to the service which
that if a container only uses `<service-name>`, it will resolve to the service which
is local to a namespace. This is useful for using the same configuration across
multiple namespaces such as Development, Staging and Production. If you want to reach
across namespaces, you need to use the fully qualified domain name (FQDN).
@@ -31,7 +31,7 @@ When using imperative commands, a user operates directly on live objects
in a cluster. The user provides operations to
the `kubectl` command as arguments or flags.
This is the simplest way to get started or to run a one-off task in
This is the recommended way to get started or to run a one-off task in
a cluster. Because this technique operates directly on live
objects, it provides no history of previous configurations.
@@ -47,7 +47,7 @@ kubectl create deployment nginx --image nginx
Advantages compared to object configuration:
- Commands are simple, easy to learn and easy to remember.
- Commands are expressed as a single action word.
- Commands require only a single step to make changes to the cluster.
Disadvantages compared to object configuration:
@@ -33,16 +33,16 @@ On certain Linux installations, the operating system sets the PIDs limit to a lo
such as `32768`. Consider raising the value of `/proc/sys/kernel/pid_max`.
{{< /note >}}
You can configure a kubelet to limit the number of PIDs a given pod can consume.
You can configure a kubelet to limit the number of PIDs a given Pod can consume.
For example, if your node's host OS is set to use a maximum of `262144` PIDs and
expect to host less than `250` pods, one can give each pod a budget of `1000`
expect to host less than `250` Pods, one can give each Pod a budget of `1000`
PIDs to prevent using up that node's overall number of available PIDs. If the
admin wants to overcommit PIDs similar to CPU or memory, they may do so as well
with some additional risks. Either way, a single pod will not be able to bring
with some additional risks. Either way, a single Pod will not be able to bring
the whole machine down. This kind of resource limiting helps to prevent simple
fork bombs from affecting operation of an entire cluster.
Per-pod PID limiting allows administrators to protect one pod from another, but
Per-Pod PID limiting allows administrators to protect one Pod from another, but
does not ensure that all Pods scheduled onto that host are unable to impact the node overall.
Per-Pod limiting also does not protect the node agents themselves from PID exhaustion.
@@ -92,8 +92,26 @@ the [feature gate](/docs/reference/command-line-tools-reference/feature-gates/)
`SupportPodPidsLimit` to work.
{{< /note >}}
## PID based eviction
You can configure kubelet to start terminating a Pod when it is misbehaving and consuming abnormal amount of resources.
This feature is called eviction. You can [Configure Out of Resource Handling](/docs/tasks/administer-cluster/out-of-resource) for various eviction signals.
Use `pid.available` eviction signal to configure the threshold for number of PIDs used by Pod.
You can set soft and hard eviction policies. However, even with the hard eviction policy, if the number of PIDs growing very fast,
node can still get into unstable state by hitting the node PIDs limit.
Eviction signal value is calculated periodically and does NOT enforce the limit.
PID limiting - per Pod and per Node sets the hard limit.
Once the limit is hit, workload will start experiencing failures when trying to get a new PID.
It may or may not lead to rescheduling of a Pod,
depending on how workload reacts on these failures and how liveleness and readiness
probes are configured for the Pod. However, if limits were set correctly,
you can guarantee that other Pods workload and system processes will not run out of PIDs
when one Pod is misbehaving.
## {{% heading "whatsnext" %}}
- Refer to the [PID Limiting enhancement document](https://github.com/kubernetes/enhancements/blob/097b4d8276bc9564e56adf72505d43ce9bc5e9e8/keps/sig-node/20190129-pid-limiting.md) for more information.
- For historical context, read [Process ID Limiting for Stability Improvements in Kubernetes 1.14](/blog/2019/04/15/process-id-limiting-for-stability-improvements-in-kubernetes-1.14/).
- Read [Managing Resources for Containers](/docs/concepts/configuration/manage-resources-containers/).
- Learn how to [Configure Out of Resource Handling](/docs/tasks/administer-cluster/out-of-resource).
@@ -197,7 +197,7 @@ alias kubectl-user='kubectl --as=system:serviceaccount:psp-example:fake-user -n
### Create a policy and a pod
Define the example PodSecurityPolicy object in a file. This is a policy that
simply prevents the creation of privileged pods.
prevents the creation of privileged pods.
The name of a PodSecurityPolicy object must be a valid
[DNS subdomain name](/docs/concepts/overview/working-with-objects/names#dns-subdomain-names).
@@ -216,12 +216,17 @@ kubectl-user create -f- <<EOF
apiVersion: v1
kind: Pod
metadata:
name: pause
name: pause
spec:
containers:
- name: pause
- name: pause
image: k8s.gcr.io/pause
EOF
```
The output is similar to this:
```
Error from server (Forbidden): error when creating "STDIN": pods "pause" is forbidden: unable to validate against any pod security policy: []
```
@@ -264,12 +269,17 @@ kubectl-user create -f- <<EOF
apiVersion: v1
kind: Pod
metadata:
name: pause
name: pause
spec:
containers:
- name: pause
- name: pause
image: k8s.gcr.io/pause
EOF
```
The output is similar to this
```
pod "pause" created
```
@@ -281,14 +291,19 @@ kubectl-user create -f- <<EOF
apiVersion: v1
kind: Pod
metadata:
name: privileged
name: privileged
spec:
containers:
- name: pause
- name: pause
image: k8s.gcr.io/pause
securityContext:
privileged: true
EOF
```
The output is similar to this:
```
Error from server (Forbidden): error when creating "STDIN": pods "privileged" is forbidden: unable to validate against any pod security policy: [spec.containers[0].securityContext.privileged: Invalid value: true: Privileged containers are not allowed]
```
@@ -58,7 +58,7 @@ Neither contention nor changes to quota will affect already created resources.
## Enabling Resource Quota
Resource Quota support is enabled by default for many Kubernetes distributions. It is
enabled when the API server `--enable-admission-plugins=` flag has `ResourceQuota` as
enabled when the {{< glossary_tooltip text="API server" term_id="kube-apiserver" >}} `--enable-admission-plugins=` flag has `ResourceQuota` as
one of its arguments.
A resource quota is enforced in a particular namespace when there is a
@@ -610,17 +610,28 @@ plugins:
values: ["cluster-services"]
```
Now, "cluster-services" pods will be allowed in only those namespaces where a quota object with a matching `scopeSelector` is present.
For example:
Then, create a resource quota object in the `kube-system` namespace:
```yaml
scopeSelector:
matchExpressions:
- scopeName: PriorityClass
operator: In
values: ["cluster-services"]
{{< codenew file="policy/priority-class-resourcequota.yaml" >}}
```shell
$ kubectl apply -f https://k8s.io/examples/policy/priority-class-resourcequota.yaml -n kube-system
```
```
resourcequota/pods-cluster-services created
```
In this case, a pod creation will be allowed if:
1. the Pod's `priorityClassName` is not specified.
1. the Pod's `priorityClassName` is specified to a value other than `cluster-services`.
1. the Pod's `priorityClassName` is set to `cluster-services`, it is to be created
in the `kube-system` namespace, and it has passed the resource quota check.
A Pod creation request is rejected if its `priorityClassName` is set to `cluster-services`
and it is to be created in a namespace other than `kube-system`.
## {{% heading "whatsnext" %}}
- See [ResourceQuota design doc](https://git.k8s.io/community/contributors/design-proposals/resource-management/admission_control_resource_quota.md) for more information.
@@ -5,24 +5,23 @@ reviewers:
- bsalamat
title: Assigning Pods to Nodes
content_type: concept
weight: 50
weight: 20
---
<!-- overview -->
You can constrain a {{< glossary_tooltip text="Pod" term_id="pod" >}} to only be able to run on particular
{{< glossary_tooltip text="Node(s)" term_id="node" >}}, or to prefer to run on particular nodes.
There are several ways to do this, and the recommended approaches all use
[label selectors](/docs/concepts/overview/working-with-objects/labels/) to make the selection.
You can constrain a {{< glossary_tooltip text="Pod" term_id="pod" >}} so that it can only run on particular set of
{{< glossary_tooltip text="Node(s)" term_id="node" >}}.
There are several ways to do this and the recommended approaches all use
[label selectors](/docs/concepts/overview/working-with-objects/labels/) to facilitate the selection.
Generally such constraints are unnecessary, as the scheduler will automatically do a reasonable placement
(e.g. spread your pods across nodes, not place the pod on a node with insufficient free resources, etc.)
but there are some circumstances where you may want more control on a node where a pod lands, for example to ensure
(e.g. spread your pods across nodes so as not place the pod on a node with insufficient free resources, etc.)
but there are some circumstances where you may want to control which node the pod deploys to - for example to ensure
that a pod ends up on a machine with an SSD attached to it, or to co-locate pods from two different
services that communicate a lot into the same availability zone.
<!-- body -->
## nodeSelector
@@ -120,12 +119,12 @@ pod is eligible to be scheduled on, based on labels on the node.
There are currently two types of node affinity, called `requiredDuringSchedulingIgnoredDuringExecution` and
`preferredDuringSchedulingIgnoredDuringExecution`. You can think of them as "hard" and "soft" respectively,
in the sense that the former specifies rules that *must* be met for a pod to be scheduled onto a node (just like
in the sense that the former specifies rules that *must* be met for a pod to be scheduled onto a node (similar to
`nodeSelector` but using a more expressive syntax), while the latter specifies *preferences* that the scheduler
will try to enforce but will not guarantee. The "IgnoredDuringExecution" part of the names means that, similar
to how `nodeSelector` works, if labels on a node change at runtime such that the affinity rules on a pod are no longer
met, the pod will still continue to run on the node. In the future we plan to offer
`requiredDuringSchedulingRequiredDuringExecution` which will be just like `requiredDuringSchedulingIgnoredDuringExecution`
met, the pod continues to run on the node. In the future we plan to offer
`requiredDuringSchedulingRequiredDuringExecution` which will be identical to `requiredDuringSchedulingIgnoredDuringExecution`
except that it will evict pods from nodes that cease to satisfy the pods' node affinity requirements.
Thus an example of `requiredDuringSchedulingIgnoredDuringExecution` would be "only run the pod on nodes with Intel CPUs"
@@ -246,7 +245,7 @@ as at least one already-running pod that has a label with key "security" and val
on node N if node N has a label with key `topology.kubernetes.io/zone` and some value V
such that there is at least one node in the cluster with key `topology.kubernetes.io/zone` and
value V that is running a pod that has a label with key "security" and value "S1".) The pod anti-affinity
rule says that the pod cannot be scheduled onto a node if that node is in the same zone as a pod with
rule says that the pod should not be scheduled onto a node if that node is in the same zone as a pod with
label having key "security" and value "S2". See the
[design doc](https://git.k8s.io/community/contributors/design-proposals/scheduling/podaffinity.md)
for many more examples of pod affinity and anti-affinity, both the `requiredDuringSchedulingIgnoredDuringExecution`
@@ -261,7 +260,7 @@ for performance and security reasons, there are some constraints on topologyKey:
and `preferredDuringSchedulingIgnoredDuringExecution`.
2. For pod anti-affinity, empty `topologyKey` is also not allowed in both `requiredDuringSchedulingIgnoredDuringExecution`
and `preferredDuringSchedulingIgnoredDuringExecution`.
3. For `requiredDuringSchedulingIgnoredDuringExecution` pod anti-affinity, the admission controller `LimitPodHardAntiAffinityTopology` was introduced to limit `topologyKey` to `kubernetes.io/hostname`. If you want to make it available for custom topologies, you may modify the admission controller, or simply disable it.
3. For `requiredDuringSchedulingIgnoredDuringExecution` pod anti-affinity, the admission controller `LimitPodHardAntiAffinityTopology` was introduced to limit `topologyKey` to `kubernetes.io/hostname`. If you want to make it available for custom topologies, you may modify the admission controller, or disable it.
4. Except for the above cases, the `topologyKey` can be any legal label-key.
In addition to `labelSelector` and `topologyKey`, you can optionally specify a list `namespaces`

Some files were not shown because too many files have changed in this diff Show More