mirror of
https://github.com/rancher/rancher-docs.git
synced 2026-09-29 22:49:17 +00:00
Compare commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
76cb8bbd34 | ||
|
|
a7a0a05827 | ||
|
|
860d55373c | ||
|
|
ad82b388e9 | ||
|
|
4d915c71c7 | ||
|
|
c332bc07b1 | ||
|
|
aa7ca68533 | ||
|
|
dd49eee58b | ||
|
|
2dcfa6f6b8 | ||
|
|
4a0d71b3f3 | ||
|
|
917fb71cc6 | ||
|
|
968b17b439 | ||
|
|
837642ac0a | ||
|
|
ce8a2066c6 | ||
|
|
dd56eb8dfa | ||
|
|
55eaa901b9 | ||
|
|
f8442a4de8 | ||
|
|
ba36e5a3cc | ||
|
|
1d573ebad8 | ||
|
|
6d1b2bfaa1 | ||
|
|
fb61897f02 | ||
|
|
ec6ca0421f | ||
|
|
3850db7f7a | ||
|
|
a71cd82b3b | ||
|
|
10c050251f | ||
|
|
0ee6a3b95a | ||
|
|
aab097c91f | ||
|
|
ce270291b4 | ||
|
|
7302475fb7 | ||
|
|
0c4649c273 | ||
|
|
ee021062c6 | ||
|
|
5fa51c65b8 | ||
|
|
a649d9bff4 | ||
|
|
9cbbe1fe64 | ||
|
|
f68384825a | ||
|
|
9b6e8a64e7 | ||
|
|
3e550789b5 | ||
|
|
69e366256f |
@@ -1,29 +0,0 @@
|
||||
name: Create issue to track porting between Community and Product docs
|
||||
|
||||
on:
|
||||
pull_request_target:
|
||||
types:
|
||||
- closed
|
||||
paths-ignore:
|
||||
- '**/README.md'
|
||||
|
||||
permissions:
|
||||
issues: write
|
||||
pull-requests: read
|
||||
|
||||
jobs:
|
||||
create_issue:
|
||||
if: github.event.pull_request.merged == true && contains( github.event.pull_request.labels.*.name, 'port/community-product')
|
||||
runs-on: ubuntu-latest
|
||||
steps:
|
||||
- name: Create issue
|
||||
env:
|
||||
GH_TOKEN: ${{ github.token }}
|
||||
REPO_TYPE: ${{ contains( github.repository, 'product-docs') && 'Product' || 'Community' }}
|
||||
PR_TITLE: ${{ github.event.pull_request.title }}
|
||||
run: |
|
||||
gh issue create \
|
||||
--repo ${{ github.repository }} \
|
||||
--title "Port $REPO_TYPE docs PR #${{ github.event.pull_request.number }}: $PR_TITLE" \
|
||||
--body "Reference: https://github.com/${{ github.repository }}/pull/${{ github.event.pull_request.number }}" \
|
||||
--label port/community-product
|
||||
@@ -25,7 +25,7 @@ jobs:
|
||||
run: yarn install --frozen-lockfile
|
||||
- name: Build website
|
||||
env:
|
||||
NODE_OPTIONS: "--max_old_space_size=8192"
|
||||
NODE_OPTIONS: "--max_old_space_size=10240"
|
||||
run: yarn build --no-minify
|
||||
|
||||
- name: Upload Build Artifact
|
||||
|
||||
@@ -27,5 +27,5 @@ jobs:
|
||||
run: yarn run remark --quiet --use remark-lint-no-dead-urls ./docs
|
||||
- name: Test build website
|
||||
env:
|
||||
NODE_OPTIONS: "--max_old_space_size=7168"
|
||||
NODE_OPTIONS: "--max_old_space_size=10240"
|
||||
run: yarn build --no-minify
|
||||
@@ -6,10 +6,6 @@ title: Deprecated Features in Rancher
|
||||
<link rel="canonical" href="https://ranchermanager.docs.rancher.com/faq/deprecated-features"/>
|
||||
</head>
|
||||
|
||||
## What is Rancher's deprecation policy?
|
||||
|
||||
We have published our official deprecation policy in the support [terms of service](https://rancher.com/support-maintenance-terms).
|
||||
|
||||
## Where can I find out which features have been deprecated in Rancher?
|
||||
|
||||
Rancher will publish deprecated features as part of the [release notes](https://github.com/rancher/rancher/releases) for Rancher found on GitHub. Please consult the following patch releases for deprecated features:
|
||||
|
||||
@@ -6,10 +6,6 @@ title: Deprecated Features in Rancher
|
||||
<link rel="canonical" href="https://ranchermanager.docs.rancher.com/faq/deprecated-features"/>
|
||||
</head>
|
||||
|
||||
## What is Rancher's deprecation policy?
|
||||
|
||||
We have published our official deprecation policy in the support [terms of service](https://rancher.com/support-maintenance-terms).
|
||||
|
||||
## Where can I find out which features have been deprecated in Rancher?
|
||||
|
||||
Rancher will publish deprecated features as part of the [release notes](https://github.com/rancher/rancher/releases) for Rancher found on GitHub. Please consult the following patch releases for deprecated features:
|
||||
|
||||
+1
-1
@@ -65,7 +65,7 @@ Kubernetes workers should open UDP port `8472` (VXLAN) and TCP port `9099` (heal
|
||||
|
||||

|
||||
|
||||
For more information, see the [Canal GitHub Page.](https://github.com/projectcalico/canal)
|
||||
For more information, refer to the [Rancher maintained Canal source](https://github.com/rancher/rke2-charts/tree/main-source/packages/rke2-canal) and the [Canal GitHub Page](https://github.com/projectcalico/canal).
|
||||
|
||||
#### Flannel
|
||||
|
||||
-4
@@ -6,10 +6,6 @@ title: Deprecated Features in Rancher
|
||||
<link rel="canonical" href="https://ranchermanager.docs.rancher.com/faq/deprecated-features"/>
|
||||
</head>
|
||||
|
||||
## What is Rancher's deprecation policy?
|
||||
|
||||
The community version of Rancher follows the same deprecation policy as Rancher Prime. The official deprecation policy is documented in the [Rancher Prime Deprecation Policy](https://www.suse.com/support/rancher-prime/#Rancher-Prime-Deprecation-Policy).
|
||||
|
||||
## Where can I find out which features have been deprecated in Rancher?
|
||||
|
||||
Rancher will publish deprecated features as part of the [release notes](https://github.com/rancher/rancher/releases) for Rancher found on GitHub. Please consult the following patch releases for deprecated features:
|
||||
+2
-1
@@ -96,7 +96,8 @@ To enable draining each node during a cluster upgrade,
|
||||
|
||||
:::note
|
||||
|
||||
There is a [known issue](https://github.com/rancher/rancher/issues/25478) in which the Rancher UI doesn't show the state of etcd and controlplane as drained, even though they are being drained.
|
||||
- There is a [known issue](https://github.com/rancher/rancher/issues/25478) in which the Rancher UI doesn't show the state of etcd and controlplane as drained, even though they are being drained.
|
||||
- During an upgrade, nodes may be drained even when no user-visible YAML changes are present. This can occur if non-dynamic configuration files are updated or if a new `system-agent-installer` image is introduced. In such cases, Rancher generates a new upgrade plan, resulting in a new plan hash. When `Upgrade Strategy` is set to `Drain nodes`, this plan change can trigger node draining.
|
||||
|
||||
:::
|
||||
|
||||
+29
-15
@@ -16,11 +16,15 @@ For configuration details, refer to the [official Kubernetes documentation](http
|
||||
<Tabs groupId="k8s-distro">
|
||||
<TabItem value="RKE2" default>
|
||||
|
||||
### Method 1 (Recommended): Set `audit-policy-file` in `machineGlobalConfig`
|
||||
### Method 1 (Recommended): Set `audit-policy-file` in `machineGlobalConfig` or `machineSelectorConfig`
|
||||
|
||||
You can set `audit-policy-file` in the configuration file. Rancher delivers the file to the path `/var/lib/rancher/rke2/etc/config-files/audit-policy-file` in control plane nodes, and sets the proper options in the RKE2 server.
|
||||
You can set `audit-policy-file` in the configuration file using either `machineGlobalConfig` or `machineSelectorConfig`.
|
||||
|
||||
Example:
|
||||
When using `machineGlobalConfig`, Rancher delivers the file to the path `/var/lib/rancher/rke2/etc/config-files/audit-policy-file` on **all nodes** (both control plane and worker nodes), and sets the proper options in the RKE2 server. This may cause unwanted worker node reconciliation when the audit policy is modified.
|
||||
|
||||
To avoid worker node reconciliation, use `machineSelectorConfig` with a label selector to target only control plane nodes. This ensures that the audit policy file is only delivered to control plane nodes.
|
||||
|
||||
Example using `machineGlobalConfig`:
|
||||
```yaml
|
||||
apiVersion: provisioning.cattle.io/v1
|
||||
kind: Cluster
|
||||
@@ -38,6 +42,28 @@ spec:
|
||||
- pods
|
||||
```
|
||||
|
||||
Example using `machineSelectorConfig` (recommended to avoid worker node reconciliation):
|
||||
```yaml
|
||||
apiVersion: provisioning.cattle.io/v1
|
||||
kind: Cluster
|
||||
spec:
|
||||
rkeConfig:
|
||||
machineSelectorConfig:
|
||||
- config:
|
||||
audit-policy-file: |
|
||||
apiVersion: audit.k8s.io/v1
|
||||
kind: Policy
|
||||
rules:
|
||||
- level: RequestResponse
|
||||
resources:
|
||||
- group: ""
|
||||
resources:
|
||||
- pods
|
||||
machineLabelSelector:
|
||||
matchLabels:
|
||||
rke.cattle.io/control-plane-role: 'true'
|
||||
```
|
||||
|
||||
### Method 2: Use the Directives, `machineSelectorFiles` and `machineGlobalConfig`
|
||||
|
||||
:::note
|
||||
@@ -103,12 +129,6 @@ spec:
|
||||
rke.cattle.io/control-plane-role: 'true'
|
||||
```
|
||||
|
||||
:::tip
|
||||
|
||||
You can also use the directive `machineSelectorConfig` with proper machineLabelSelectors to achieve the same effect.
|
||||
|
||||
:::
|
||||
|
||||
For more information about cluster configuration, refer to the [RKE2 cluster configuration reference](../../reference-guides/cluster-configuration/rancher-server-configuration/rke2-cluster-configuration.md) pages.
|
||||
|
||||
</TabItem>
|
||||
@@ -178,12 +198,6 @@ spec:
|
||||
rke.cattle.io/control-plane-role: 'true'
|
||||
```
|
||||
|
||||
:::tip
|
||||
|
||||
You can also use the directive `machineSelectorConfig` with proper machineLabelSelectors to achieve the same effect.
|
||||
|
||||
:::
|
||||
|
||||
For more information about cluster configuration, refer to the [K3s cluster configuration reference](../../reference-guides/cluster-configuration/rancher-server-configuration/k3s-cluster-configuration.md) pages.
|
||||
|
||||
</TabItem>
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user