8
8
hostNetwork : true
9
9
containers :
10
10
- name : konnectivity-server-container
11
- image : us.gcr.io/k8s-artifacts-prod/kas-network-proxy/proxy-server:v0.0.8
11
+ image : us.gcr.io/k8s-artifacts-prod/kas-network-proxy/proxy-server:v0.0.12
12
12
command : ["/proxy-server"]
13
13
args : [
14
- " --log-file=/var/log/konnectivity-server.log" ,
15
- " --logtostderr=false" ,
16
- " --log-file-max-size=0" ,
14
+ " --logtostderr=true" ,
17
15
# This needs to be consistent with the value set in egressSelectorConfiguration.
18
- " --uds-name=/etc/srv/ kubernetes/konnectivity-server/konnectivity-server.socket" ,
16
+ " --uds-name=/etc/kubernetes/konnectivity-server/konnectivity-server.socket" ,
19
17
# The following two lines assume the Konnectivity server is
20
18
# deployed on the same machine as the apiserver, and the certs and
21
19
# key of the API Server are at the specified location.
22
- " --cluster-cert=/etc/srv/ kubernetes/pki/apiserver.crt" ,
23
- " --cluster-key=/etc/srv/ kubernetes/pki/apiserver.key" ,
20
+ " --cluster-cert=/etc/kubernetes/pki/apiserver.crt" ,
21
+ " --cluster-key=/etc/kubernetes/pki/apiserver.key" ,
24
22
# This needs to be consistent with the value set in egressSelectorConfiguration.
25
23
" --mode=grpc" ,
26
24
" --server-port=0" ,
27
25
" --agent-port=8132" ,
28
26
" --admin-port=8133" ,
27
+ " --health-port=8134" ,
29
28
" --agent-namespace=kube-system" ,
30
29
" --agent-service-account=konnectivity-agent" ,
31
- " --kubeconfig=/etc/srv/ kubernetes/konnectivity-server/kubeconfig " ,
30
+ " --kubeconfig=/etc/kubernetes/konnectivity-server.conf " ,
32
31
" --authentication-audience=system:konnectivity-server"
33
32
]
34
33
livenessProbe :
35
34
httpGet :
36
35
scheme : HTTP
37
36
host : 127.0.0.1
38
- port : 8133
37
+ port : 8134
39
38
path : /healthz
40
39
initialDelaySeconds : 30
41
40
timeoutSeconds : 60
@@ -46,25 +45,28 @@ spec:
46
45
- name : adminport
47
46
containerPort : 8133
48
47
hostPort : 8133
48
+ - name : healthport
49
+ containerPort : 8134
50
+ hostPort : 8134
49
51
volumeMounts :
50
- - name : varlogkonnectivityserver
51
- mountPath : /var/log/konnectivity-server.log
52
- readOnly : false
53
- - name : pki
54
- mountPath : /etc/srv/ kubernetes/pki
52
+ - name : k8s-certs
53
+ mountPath : /etc/kubernetes/pki
54
+ readOnly : true
55
+ - name : kubeconfig
56
+ mountPath : /etc/kubernetes/konnectivity-server.conf
55
57
readOnly : true
56
58
- name : konnectivity-uds
57
- mountPath : /etc/srv/ kubernetes/konnectivity-server
59
+ mountPath : /etc/kubernetes/konnectivity-server
58
60
readOnly : false
59
61
volumes :
60
- - name : varlogkonnectivityserver
62
+ - name : k8s-certs
61
63
hostPath :
62
- path : /var/log/konnectivity-server.log
63
- type : FileOrCreate
64
- - name : pki
64
+ path : /etc/kubernetes/pki
65
+ - name : kubeconfig
65
66
hostPath :
66
- path : /etc/srv/kubernetes/pki
67
+ path : /etc/kubernetes/konnectivity-server.conf
68
+ type : FileOrCreate
67
69
- name : konnectivity-uds
68
70
hostPath :
69
- path : /etc/srv/ kubernetes/konnectivity-server
71
+ path : /etc/kubernetes/konnectivity-server
70
72
type : DirectoryOrCreate
0 commit comments