Fix node authorization for cloudprovider installs (#1794)

In 1.8, the Node authorization mode should be listed first to
allow kubelet to access secrets. This seems to only impact
environments with cloudprovider enabled.
This commit is contained in:
Matthew Mosesohn
2017-10-14 11:28:46 +01:00
committed by GitHub
parent 2972bceb90
commit 92d038062e
2 changed files with 5 additions and 4 deletions

View File

@@ -147,8 +147,8 @@ openstack_lbaas_enabled: false
## List of authorization modes that must be configured for
## the k8s cluster. Only 'AlwaysAllow', 'AlwaysDeny', 'Node' and
## 'RBAC' modes are tested.
authorization_modes: ['RBAC', 'Node']
## 'RBAC' modes are tested. Order is important.
authorization_modes: ['Node', 'RBAC']
rbac_enabled: "{{ 'RBAC' in authorization_modes or kubeadm_enabled }}"
## List of key=value pairs that describe feature gates for