102 lines
5.7 KiB
Plaintext
102 lines
5.7 KiB
Plaintext
|
apiVersion: kustomize.config.k8s.io/v1beta1
|
||
|
kind: Kustomization
|
||
|
resources:
|
||
|
- cluster-template.yaml
|
||
|
patchesStrategicMerge:
|
||
|
- |-
|
||
|
apiVersion: controlplane.cluster.x-k8s.io/v1beta1
|
||
|
kind: KubeadmControlPlane
|
||
|
metadata:
|
||
|
name: '${CLUSTER_NAME}'
|
||
|
namespace: '${NAMESPACE}'
|
||
|
spec:
|
||
|
kubeadmConfigSpec:
|
||
|
clusterConfiguration:
|
||
|
imageRepository: registry.<fqdn>/kubeadm
|
||
|
- |-
|
||
|
apiVersion: bootstrap.cluster.x-k8s.io/v1beta1
|
||
|
kind: KubeadmConfigTemplate
|
||
|
metadata:
|
||
|
name: '${CLUSTER_NAME}-md-0'
|
||
|
namespace: '${NAMESPACE}'
|
||
|
spec:
|
||
|
template:
|
||
|
spec:
|
||
|
clusterConfiguration:
|
||
|
imageRepository: registry.<fqdn>/kubeadm
|
||
|
- |-
|
||
|
apiVersion: bootstrap.cluster.x-k8s.io/v1beta1
|
||
|
kind: KubeadmConfigTemplate
|
||
|
metadata:
|
||
|
name: '${CLUSTER_NAME}-md-0'
|
||
|
namespace: '${NAMESPACE}'
|
||
|
spec:
|
||
|
template:
|
||
|
spec:
|
||
|
files:
|
||
|
- encoding: base64
|
||
|
content: |
|
||
|
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
|
||
|
permissions: '0744'
|
||
|
- content: |
|
||
|
network: {config: disabled}
|
||
|
owner: root:root
|
||
|
path: /etc/cloud/cloud.cfg.d/99-disable-network-config.cfg
|
||
|
- content: |
|
||
|
{{ _template.rootca | indent(width=6, first=True) }}
|
||
|
owner: root:root
|
||
|
path: /usr/local/share/ca-certificates/root_ca.crt
|
||
|
|
||
|
patchesJson6902:
|
||
|
- target:
|
||
|
group: controlplane.cluster.x-k8s.io
|
||
|
version: v1beta1
|
||
|
kind: KubeadmControlPlane
|
||
|
name: .*
|
||
|
patch: |-
|
||
|
- op: add
|
||
|
path: /spec/kubeadmConfigSpec/files/-
|
||
|
value:
|
||
|
encoding: base64
|
||
|
content: |
|
||
|
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
|
||
|
permissions: '0744'
|
||
|
- op: add
|
||
|
path: /spec/kubeadmConfigSpec/files/-
|
||
|
value:
|
||
|
content: |
|
||
|
network: {config: disabled}
|
||
|
owner: root:root
|
||
|
path: /etc/cloud/cloud.cfg.d/99-disable-network-config.cfg
|
||
|
- op: add
|
||
|
path: /spec/kubeadmConfigSpec/files/-
|
||
|
value:
|
||
|
content: |
|
||
|
{{ _template.rootca | indent(width=8, first=True) }}
|
||
|
owner: root:root
|
||
|
path: /usr/local/share/ca-certificates/root_ca.crt
|
||
|
- target:
|
||
|
group: bootstrap.cluster.x-k8s.io
|
||
|
version: v1beta1
|
||
|
kind: KubeadmConfigTemplate
|
||
|
name: .*
|
||
|
patch: |-
|
||
|
- op: add
|
||
|
path: /spec/template/spec/preKubeadmCommands/-
|
||
|
value: update-ca-certificates
|
||
|
- op: add
|
||
|
path: /spec/template/spec/preKubeadmCommands/-
|
||
|
value: bash /root/network.sh
|
||
|
- target:
|
||
|
group: controlplane.cluster.x-k8s.io
|
||
|
version: v1beta1
|
||
|
kind: KubeadmControlPlane
|
||
|
name: .*
|
||
|
patch: |-
|
||
|
- op: add
|
||
|
path: /spec/kubeadmConfigSpec/preKubeadmCommands/-
|
||
|
value: update-ca-certificates
|
||
|
- op: add
|
||
|
path: /spec/kubeadmConfigSpec/preKubeadmCommands/-
|
||
|
value: bash /root/network.sh
|