diff --git a/docs/getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/prepare-to-upgrade-a-hardened-cluster-to-k8s-v1-25.md b/docs/getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/prepare-to-upgrade-a-hardened-cluster-to-k8s-v1-25.md index 21cdb0f38ea..79622f00992 100644 --- a/docs/getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/prepare-to-upgrade-a-hardened-cluster-to-k8s-v1-25.md +++ b/docs/getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/prepare-to-upgrade-a-hardened-cluster-to-k8s-v1-25.md @@ -1,5 +1,5 @@ --- -title: Preparing to Upgrade a Hardened Custom/Imported Cluster to Kubernetes v1.25 +title: Upgrade a Hardened Custom/Imported Cluster to Kubernetes v1.25 --- Kubernetes v1.25 changes how clusters describe and implement security policies. From this version forward, [Pod Security Policies (PSPs)](https://kubernetes.io/docs/concepts/security/pod-security-policy/) are no longer available. Kubernetes v1.25 replaces them with new security objects: [Pod Security Standards (PSS)](https://kubernetes.io/docs/concepts/security/pod-security-standards/), and [Pod Security Admissions (PSAs)](https://kubernetes.io/docs/concepts/security/pod-security-admission/). @@ -14,16 +14,19 @@ If you have custom or imported hardened clusters, you must make special preparat 1. Edit the RKE2 configuration file: 1. Update the `profile` field to `cis-1.23`. 1. Specify the path for the configuration file that you just added: `pod-security-admission-config-file: /etc/rancher/rke2/rancher-psact.yaml`. - -After you perform these steps, you can upgrade the cluster's Kubernetes version through the Rancher UI. Follow the [official K3s instructions](https://docs.k3s.io/known-issues#:~:text=Upgrading%20Hardened%20Clusters%20from%20v1.24.x%20to%20v1.25.x), but use a [custom](./rancher-psact.yaml) Rancher PSA configuration template, instead of the configuration provided on the official K3s site. - -After you perform these steps, you can upgrade the cluster's Kubernetes version through the Rancher UI. +After you perform these steps, you can upgrade the cluster's Kubernetes version through the Rancher UI: + +1. In the upper left corner, click **☰ > Cluster Management**. +1. Find the cluster you want to update in the **Clusters** table, and click the **⋮**. +1. Select **Edit Config**. +1. In the **Kubernetes Version** dropdown menu, select the version that you would like to use. + ## Upgrading Custom Hardened Clusters to Kubernetes ≥v1.25