Skip to content

Commit d2d9faf

Browse files
authored
Merge pull request #6692 from wind0r/update_vpc_cni
Update vpc-cni to 1.12.6
2 parents e265ede + 33d80e4 commit d2d9faf

3 files changed

Lines changed: 30 additions & 37 deletions

File tree

pkg/addons/default/assets/aws-node.yaml

Lines changed: 25 additions & 32 deletions
Original file line numberDiff line numberDiff line change
@@ -1,26 +1,9 @@
11
---
2-
# Source: aws-vpc-cni/templates/serviceaccount.yaml
3-
apiVersion: v1
4-
kind: ServiceAccount
5-
metadata:
6-
name: aws-node
7-
namespace: kube-system
8-
labels:
9-
app.kubernetes.io/name: aws-node
10-
app.kubernetes.io/instance: aws-vpc-cni
11-
k8s-app: aws-node
12-
app.kubernetes.io/version: "v1.11.3"
13-
---
14-
# Source: aws-vpc-cni/templates/customresourcedefinition.yaml
2+
# Source: crds/customresourcedefinition.yaml
153
apiVersion: apiextensions.k8s.io/v1
164
kind: CustomResourceDefinition
175
metadata:
186
name: eniconfigs.crd.k8s.amazonaws.com
19-
labels:
20-
app.kubernetes.io/name: aws-node
21-
app.kubernetes.io/instance: aws-vpc-cni
22-
k8s-app: aws-node
23-
app.kubernetes.io/version: "v1.11.3"
247
spec:
258
scope: Cluster
269
group: crd.k8s.amazonaws.com
@@ -37,6 +20,19 @@ spec:
3720
plural: eniconfigs
3821
singular: eniconfig
3922
kind: ENIConfig
23+
24+
---
25+
# Source: aws-vpc-cni/templates/serviceaccount.yaml
26+
apiVersion: v1
27+
kind: ServiceAccount
28+
metadata:
29+
name: aws-node
30+
namespace: kube-system
31+
labels:
32+
app.kubernetes.io/name: aws-node
33+
app.kubernetes.io/instance: aws-vpc-cni
34+
k8s-app: aws-node
35+
app.kubernetes.io/version: "v1.12.6"
4036
---
4137
# Source: aws-vpc-cni/templates/clusterrole.yaml
4238
apiVersion: rbac.authorization.k8s.io/v1
@@ -47,7 +43,7 @@ metadata:
4743
app.kubernetes.io/name: aws-node
4844
app.kubernetes.io/instance: aws-vpc-cni
4945
k8s-app: aws-node
50-
app.kubernetes.io/version: "v1.11.3"
46+
app.kubernetes.io/version: "v1.12.6"
5147
rules:
5248
- apiGroups:
5349
- crd.k8s.amazonaws.com
@@ -73,7 +69,7 @@ rules:
7369
- apiGroups: ["", "events.k8s.io"]
7470
resources:
7571
- events
76-
verbs: ["create", "patch", "list", "get"]
72+
verbs: ["create", "patch", "list"]
7773
---
7874
# Source: aws-vpc-cni/templates/clusterrolebinding.yaml
7975
apiVersion: rbac.authorization.k8s.io/v1
@@ -84,7 +80,7 @@ metadata:
8480
app.kubernetes.io/name: aws-node
8581
app.kubernetes.io/instance: aws-vpc-cni
8682
k8s-app: aws-node
87-
app.kubernetes.io/version: "v1.11.3"
83+
app.kubernetes.io/version: "v1.12.6"
8884
roleRef:
8985
apiGroup: rbac.authorization.k8s.io
9086
kind: ClusterRole
@@ -104,7 +100,7 @@ metadata:
104100
app.kubernetes.io/name: aws-node
105101
app.kubernetes.io/instance: aws-vpc-cni
106102
k8s-app: aws-node
107-
app.kubernetes.io/version: "v1.11.3"
103+
app.kubernetes.io/version: "v1.12.6"
108104
spec:
109105
updateStrategy:
110106
rollingUpdate:
@@ -125,7 +121,7 @@ spec:
125121
hostNetwork: true
126122
initContainers:
127123
- name: aws-vpc-cni-init
128-
image: "602401143452.dkr.ecr.us-west-2.amazonaws.com/amazon-k8s-cni-init:v1.11.3"
124+
image: "602401143452.dkr.ecr.us-west-2.amazonaws.com/amazon-k8s-cni-init:v1.12.6"
129125
env:
130126
- name: DISABLE_TCP_EARLY_DEMUX
131127
value: "false"
@@ -143,7 +139,7 @@ spec:
143139
{}
144140
containers:
145141
- name: aws-node
146-
image: "602401143452.dkr.ecr.us-west-2.amazonaws.com/amazon-k8s-cni:v1.11.3"
142+
image: "602401143452.dkr.ecr.us-west-2.amazonaws.com/amazon-k8s-cni:v1.12.6"
147143
ports:
148144
- containerPort: 61678
149145
name: metrics
@@ -172,8 +168,6 @@ spec:
172168
value: "true"
173169
- name: AWS_VPC_ENI_MTU
174170
value: "9001"
175-
- name: AWS_VPC_K8S_CNI_CONFIGURE_RPFILTER
176-
value: "false"
177171
- name: AWS_VPC_K8S_CNI_CUSTOM_NETWORK_CFG
178172
value: "false"
179173
- name: AWS_VPC_K8S_CNI_EXTERNALSNAT
@@ -212,23 +206,25 @@ spec:
212206
valueFrom:
213207
fieldRef:
214208
fieldPath: spec.nodeName
209+
- name: MY_POD_NAME
210+
valueFrom:
211+
fieldRef:
212+
fieldPath: metadata.name
215213
resources:
216214
requests:
217215
cpu: 25m
218216
securityContext:
219217
capabilities:
220218
add:
221219
- NET_ADMIN
222-
allowPrivilegeEscalation: false
220+
- NET_RAW
223221
volumeMounts:
224222
- mountPath: /host/opt/cni/bin
225223
name: cni-bin-dir
226224
- mountPath: /host/etc/cni/net.d
227225
name: cni-net-dir
228226
- mountPath: /host/var/log/aws-routed-eni
229227
name: log-dir
230-
- mountPath: /var/run/dockershim.sock
231-
name: dockershim
232228
- mountPath: /var/run/aws-node
233229
name: run-dir
234230
- mountPath: /run/xtables.lock
@@ -240,9 +236,6 @@ spec:
240236
- name: cni-net-dir
241237
hostPath:
242238
path: /etc/cni/net.d
243-
- name: dockershim
244-
hostPath:
245-
path: /var/run/dockershim.sock
246239
- name: log-dir
247240
hostPath:
248241
path: /var/log/aws-routed-eni
Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
11
package defaultaddons
22

33
// Please refer to https://docs.aws.amazon.com/eks/latest/userguide/cni-upgrades.html
4-
//go:generate curl --silent --location https://raw.githubusercontent.com/aws/amazon-vpc-cni-k8s/v1.11.3/config/master/aws-k8s-cni.yaml?raw=1 --output assets/aws-node.yaml
4+
//go:generate curl --silent --location https://raw.githubusercontent.com/aws/amazon-vpc-cni-k8s/v1.12.6/config/master/aws-k8s-cni.yaml?raw=1 --output assets/aws-node.yaml

pkg/addons/default/aws_node_test.go

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -78,11 +78,11 @@ var _ = Describe("AWS Node", func() {
7878
Expect(err).NotTo(HaveOccurred())
7979
Expect(awsNode.Spec.Template.Spec.Containers).To(HaveLen(1))
8080
Expect(awsNode.Spec.Template.Spec.Containers[0].Image).To(
81-
Equal("602401143452.dkr.ecr.us-east-1.amazonaws.com/amazon-k8s-cni:v1.11.3"),
81+
Equal("602401143452.dkr.ecr.us-east-1.amazonaws.com/amazon-k8s-cni:v1.12.6"),
8282
)
8383
Expect(awsNode.Spec.Template.Spec.InitContainers).To(HaveLen(1))
8484
Expect(awsNode.Spec.Template.Spec.InitContainers[0].Image).To(
85-
Equal("602401143452.dkr.ecr.us-east-1.amazonaws.com/amazon-k8s-cni-init:v1.11.3"),
85+
Equal("602401143452.dkr.ecr.us-east-1.amazonaws.com/amazon-k8s-cni-init:v1.12.6"),
8686
)
8787
})
8888
})
@@ -98,11 +98,11 @@ var _ = Describe("AWS Node", func() {
9898
Expect(err).NotTo(HaveOccurred())
9999
Expect(awsNode.Spec.Template.Spec.Containers).To(HaveLen(1))
100100
Expect(awsNode.Spec.Template.Spec.Containers[0].Image).To(
101-
Equal("961992271922.dkr.ecr.cn-northwest-1.amazonaws.com.cn/amazon-k8s-cni:v1.11.3"),
101+
Equal("961992271922.dkr.ecr.cn-northwest-1.amazonaws.com.cn/amazon-k8s-cni:v1.12.6"),
102102
)
103103
Expect(awsNode.Spec.Template.Spec.InitContainers).To(HaveLen(1))
104104
Expect(awsNode.Spec.Template.Spec.InitContainers[0].Image).To(
105-
Equal("961992271922.dkr.ecr.cn-northwest-1.amazonaws.com.cn/amazon-k8s-cni-init:v1.11.3"),
105+
Equal("961992271922.dkr.ecr.cn-northwest-1.amazonaws.com.cn/amazon-k8s-cni-init:v1.12.6"),
106106
)
107107
})
108108
})

0 commit comments

Comments
 (0)