Compare commits

...
Author SHA1 Message Date
Petr Kovar 7003beb2c0 Merge pull request #2371 from pmkovar/CNAME
Retire the site/repo
2026-07-20 18:37:26 +02:00
Petr Kovar 604ae2a456 Retire the site
* Update messaging.
* Remove static/CNAME and .github/workflows/deploy.yml.
2026-07-20 18:07:17 +02:00
Billy Tat 5a1404977b Merge pull request #2369 from btat/single-source-message
Add messaging to redirect users due to repo consolidaton
2026-07-08 14:07:22 -07:00
Billy Tat 26e74c50fb Disable blank issues 2026-07-08 13:32:14 -07:00
Billy Tat 52e38c7aa7 Add messaging to redirect users due to repo consolidaton 2026-07-08 13:25:18 -07:00
Billy Tat 3f09667eb3 Merge pull request #2368 from sunilarjun/add-v2.15
Add v2.15
2026-07-06 12:25:25 -07:00
Sunil Singh 9d3641d47e Adding placeholder headers for UI in monitoring-and-alerting.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-07-06 11:50:02 -07:00
Sunil Singh aeab58a35b Adding v2.15 documentation with prerelease banner
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-07-06 11:11:00 -07:00
Sunil Singh 8380a52408 Archive v2.10, update versions listing, remove redirects, add notice.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-07-06 09:39:26 -07:00
Billy Tat 3f484a4eeb Merge pull request #2365 from btat/june-cves
Add June CVEs
2026-06-29 17:36:01 -07:00
Billy Tat 8e6e56c616 Add June CVEs 2026-06-29 17:08:27 -07:00
Billy Tat 877d8d64a4 Merge pull request #2354 from rancher/v2.11.15
Merge release v2.11.15 to main
2026-06-29 15:26:42 -07:00
Billy Tat 366203efce Merge pull request #2353 from rancher/v2.12.11
Merge release v2.12.11 to main
2026-06-29 15:26:15 -07:00
Billy Tat b3270468cb Merge pull request #2351 from rancher/v2.14.3
Merge release v2.14.3 to main
2026-06-29 14:59:19 -07:00
Billy Tat 9c575f0cc9 Merge pull request #2352 from rancher/v2.13.7
Merge release v2.13.7 to main
2026-06-29 14:59:01 -07:00
Billy Tat ee9c5ac5a6 Merge pull request #2364 from rancher/main
Merge main to v2.14.3
2026-06-29 10:14:16 -07:00
Billy Tat 5eca2248b5 Merge pull request #2363 from rancher/main
Merge main to v2.13.7
2026-06-29 10:14:12 -07:00
Billy Tat 1ecf8c381a Merge pull request #2362 from rancher/main
Merge main to v2.12.11
2026-06-29 10:14:05 -07:00
Billy Tat ff84491713 Merge pull request #2361 from rancher/main
Merge main to v2.11.15
2026-06-29 10:13:56 -07:00
Billy Tat 9df1f039ea Merge pull request #2359 from btat/v2.14.3-bump-date
v2.14.3 bump release date
2026-06-24 15:34:53 -07:00
Billy Tat 4db036ff1e Merge pull request #2358 from btat/v2.13.7-bump-date
v2.13.7 bump release date
2026-06-24 15:34:49 -07:00
Billy Tat 16d3a461a1 Merge pull request #2357 from btat/v2.12.11-bump-date
v2.12.11 bump release date
2026-06-24 15:34:45 -07:00
Billy Tat 3e5b7fb089 Merge pull request #2356 from btat/v2.11.15-bump-date
v2.11.15 bump release date
2026-06-24 15:34:39 -07:00
Billy Tat 514b4d9102 v2.14.3 bump release date 2026-06-24 13:56:27 -07:00
Billy Tat 3564997b7f v2.13.7 bump release date 2026-06-24 13:55:16 -07:00
Billy Tat 5bc6084ed2 v2.12.11 bump release date 2026-06-24 13:53:14 -07:00
Billy Tat 73c4472b52 v2.11.15 bump release date 2026-06-24 13:51:55 -07:00
Billy Tat a90b35afe8 Merge pull request #2355 from btat/v2.14.3-maintenance-cni-popularity
Update CNI popularity
2026-06-24 09:24:59 -07:00
Billy Tat 5d9351e1eb Update CNI popularity 2026-06-23 16:23:57 -07:00
Billy Tat a6a9abfb3e Merge pull request #2350 from btat/v2.14.3-maintenance
v2.14.3 maintenance items
2026-06-22 16:44:14 -07:00
Billy Tat 9c6e164321 Merge pull request #2349 from btat/v2.13.7-maintenance
v2.13.7 maintenance items
2026-06-22 16:43:52 -07:00
Billy Tat a5c685f9db Merge pull request #2348 from btat/v2.12.11-maintenance
v2.12.11 maintenance items
2026-06-22 16:43:43 -07:00
Billy Tat 95a630d449 Merge pull request #2347 from btat/v2.11.15-maintenance
v2.11.15 maintenance items
2026-06-22 16:43:33 -07:00
Billy TatandSunil Singh b883d21513 Fix spacing
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-06-22 16:06:56 -07:00
Billy Tat 89b9dfc428 Update versions table 2026-06-22 15:37:01 -07:00
Billy Tat 53a863dae6 Update webhook table 2026-06-22 15:36:27 -07:00
Billy Tat ba7049fc37 Update CSP adapter table 2026-06-22 15:31:09 -07:00
Billy Tat 6e60486f0f Update deprecated features table 2026-06-22 15:27:36 -07:00
Billy Tat 41d2111def Update versions table 2026-06-22 15:26:14 -07:00
Billy Tat 65d57a23ef Update webhook table 2026-06-22 15:25:33 -07:00
Billy Tat edcf576121 Update CSP adapter table 2026-06-22 15:24:56 -07:00
Billy Tat 21ae15f242 Update deprecated features table 2026-06-22 15:23:48 -07:00
Billy Tat 40969c63b0 Update versions table 2026-06-22 15:22:27 -07:00
Billy Tat 02ac40aea4 Update webhook table 2026-06-22 15:21:25 -07:00
Billy Tat ffb5103f46 Update CSP adapter table 2026-06-22 15:20:32 -07:00
Billy Tat ccdfbf1880 Update deprecated features table 2026-06-22 15:11:44 -07:00
Billy Tat ff1fc68df2 Update versions table 2026-06-22 14:58:45 -07:00
Billy Tat 9ee4473de4 Update webhook table 2026-06-22 14:55:38 -07:00
Billy Tat d423b370ca Update CSP adapter table 2026-06-22 14:54:11 -07:00
Billy Tat 369135fa0a Update deprecated features table 2026-06-22 14:52:26 -07:00
Petr Kovar 65dd2737b9 Merge pull request #2343 from pmkovar/aws
Update aws-marketplace to point to SRFA
2026-06-16 20:15:44 +02:00
Petr Kovar dea969130e Also update version-2.14 2026-06-16 15:50:06 +02:00
Petr Kovar 6a0ed47d7c Update aws-marketplace to point to SRFA 2026-06-15 18:54:31 +02:00
Sunil Singh 5e84867d38 Merge pull request #2330 from rancher/copilot/update-about-rancher-selinux-docs
docs: update rancher-selinux for v0.9 — Rancher AI, CentOS 10, and platform updates (main + v2.13)
2026-05-29 12:40:41 -07:00
Sunil Singh 1b869a48eb Merge pull request #2333 from andypitcher/cis-1.12
rancher-security: add k3s/rke2 cis-1.12
2026-05-29 12:34:46 -07:00
Sunil Singh 30f11a2ed2 Syncing changes to version-2.14 folder.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-29 12:06:35 -07:00
Sunil Singh 0a8d40db55 Adding changes to /docs folder.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-29 12:01:48 -07:00
Andy Pitcher 42a6a3d2fb rancher-security: add k3s/rke2 cis-1.12
Signed-off-by: Andy Pitcher <andy.pitcher@suse.com>
2026-05-29 15:15:57 +02:00
Lucas Saintarbor 5d278c77a5 Update CVE page w/ Rancher CVEs for May Release (#2332)
* Update CVE page w/ Rancher CVEs for May Release

* Fix v2.11-zh CVE table

* Fix v2.10-zh CVE table

* Fix v2.10-zh CVE table pt2
2026-05-28 13:38:02 -07:00
Sunil Singh 5ff3581630 Merge pull request #2329 from rancher/v2.14.2
Merge release v2.14.2 to main
2026-05-28 09:43:09 -07:00
Sunil Singh 37b8db8823 Merge pull request #2331 from sunilarjun/date-v2.14.2
Updating community release date
2026-05-28 09:10:47 -07:00
Sunil Singh c15221a43f Updating community release date
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-28 08:35:35 -07:00
copilot-swe-agent[bot] 768c73c66c docs: revert rancher-selinux changes in v2.10, v2.11, and v2.12 2026-05-28 11:28:55 +00:00
copilot-swe-agent[bot] 3ba1cea2ae docs: merge Logging/Monitoring and Rancher AI SELinux sections (main + v2.13) 2026-05-28 09:36:42 +00:00
copilot-swe-agent[bot] be9dc30647 docs: update rancher-selinux docs for v0.9 across versions 2026-05-28 08:50:34 +00:00
copilot-swe-agent[bot] be0202bab4 Initial plan 2026-05-28 08:27:25 +00:00
Lucas Saintarbor 67c0f1c3c4 Merge pull request #2328 from rancher/v2.13.6
Merge release v2.13.6 to main
2026-05-27 15:14:43 -07:00
Lucas Saintarbor 75c792d297 Merge pull request #2327 from rancher/v2.12.10
Merge release v2.12.10 to main
2026-05-27 15:13:54 -07:00
Lucas Saintarbor 64369895cb Merge pull request #2326 from rancher/v2.11.14
Merge release v2.11.14 to main
2026-05-27 15:12:51 -07:00
Lucas Saintarbor 28130a9cd3 Merge pull request #2325 from rancher/v2.10.12
Merge release v2.10.12 to main
2026-05-27 15:12:09 -07:00
Sunil Singh 84b151ba01 Merge pull request #2321 from sunilarjun/v2.13.6-maintenance
v2.13.6 maintenance items
2026-05-26 10:33:33 -07:00
Sunil Singh 9f2239b355 Merge pull request #2322 from sunilarjun/v2.14.2-maintenance
v2.14.2 maintenance items
2026-05-26 10:32:28 -07:00
Sunil Singh e348d8ae96 Update webhook
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-26 09:59:13 -07:00
Sunil Singh f2b53f0297 Update webhook
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-26 09:58:11 -07:00
Sunil Singh b15636ea3b Update webhook v2.14.2
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-26 09:53:26 -07:00
Sunil Singh 18facc20dc Merge pull request #2320 from sunilarjun/v2.12.10-maintenance
v2.12.10 maintenance items
2026-05-26 08:12:13 -07:00
Sunil Singh 0ba3bf937e Merge pull request #2319 from sunilarjun/v2.11.14-maintenance
v2.11.14 maintenance items
2026-05-26 08:11:53 -07:00
Sunil Singh 4537a4fe0b Merge pull request #2318 from sunilarjun/v2.10.12-maintenance
v2.10.12 maintenance items
2026-05-26 08:11:35 -07:00
Sunil Singh 01bfd00de6 Merge pull request #2324 from sunilarjun/update-logging-inotify
[v2.14.2] Logging - inotify troubleshooting
2026-05-22 11:34:10 -07:00
Sunil Singh 97c7ee878e Adding troubleshooting info to logging page - inotify system update
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-22 10:47:37 -07:00
Sunil Singh 24f3481a30 Merge pull request #2317 from sunilarjun/fix-ingress-troubleshooting
Fix troubleshooting commands - Ingress Controller
2026-05-21 07:53:34 -07:00
Sunil Singh 76d839d8d9 Update deprecated features table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 17:08:34 -07:00
Sunil Singh fa45b2448c Update CSP adapter table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 17:07:26 -07:00
Sunil Singh e9f87ecbd6 Update webhook table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 17:05:58 -07:00
Sunil Singh 45bd2e660b Update versions table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 17:04:05 -07:00
Sunil Singh 7a818a8616 Update deprecated features table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 17:01:49 -07:00
Sunil Singh 5b880d38b1 Update CSP adapter table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 17:00:39 -07:00
Sunil Singh e5adc9708d Update webhook table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:59:00 -07:00
Sunil Singh 9ae475be33 Update versions table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:56:43 -07:00
Sunil Singh 0e72872376 Update deprecated features table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:54:23 -07:00
Sunil Singh 99d72ac6e0 Update CSP adapter table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:52:34 -07:00
Sunil Singh 184053bc1a Update webhook table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:50:47 -07:00
Sunil Singh 9d5ae85d8d Update versions table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:49:21 -07:00
Sunil Singh 82ea5770cc Update deprecated features table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:46:03 -07:00
Sunil Singh 68c68e5715 Update CSP adapter table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:43:13 -07:00
Sunil Singh 71f3b829d6 Update webhook table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:40:48 -07:00
Sunil Singh 46c874f466 Update versions table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:38:43 -07:00
Sunil Singh 5493a494d8 Update deprecated features table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:34:25 -07:00
Sunil Singh 2360f9a7b9 Update CNI popularity table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:30:52 -07:00
Sunil Singh 8798ed2016 Update CSP adapter
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:26:13 -07:00
Sunil Singh 7cc72a01c8 Update webhook
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 16:15:26 -07:00
Sunil Singh f25f4a4040 Update versions table
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 15:58:55 -07:00
Sunil Singh 9381d6f714 Updating ingress controller commands to correct namespace and app name.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-20 13:29:55 -07:00
Lucas Saintarbor 78f2f5160e Merge pull request #2278 from ManuelSimon/update-worker-nodes
[Rancher2] Docs: Migrate worker nodes troubleshooting guide from RKE/Docker to RKE2/K3s/containerd
2026-05-20 12:49:13 -07:00
Petr Kovar 2b8743287d Merge pull request #2203 from ManuelSimon/update-documentation
[Rancher2] Docs: Migrate etcd troubleshooting guide from RKE/Docker to RKE2/K3s/containerd
2026-05-20 16:17:37 +02:00
Petr Kovar c5bc0a85a8 Merge pull request #2315 from axeal/upgrade-path-fix
Fix helm search command and explicitly call out minor version
2026-05-13 18:06:11 +02:00
Alex Seymour 457d9d8114 Fix helm search command and explicitly call out minor version 2026-05-13 17:12:20 +02:00
Petr Kovar 7bece923f8 Merge pull request #2313 from axeal/update-migration-cattle-system-agent-restart-node
Clarify instructions for restarting cattle-cluster-agent pods after R…
2026-05-13 16:27:34 +02:00
Petr Kovar 9858b7a3e5 Merge branch 'main' into update-migration-cattle-system-agent-restart-node 2026-05-13 15:39:29 +02:00
Petr Kovar 6230e57cae Merge pull request #2314 from axeal/add-upgrade-path-requirement
Add upgrade path requirements for Rancher minor version upgrades
2026-05-13 15:37:01 +02:00
Alex Seymour 0476c4aebe Add upgrade path requirements for Rancher minor version upgrades 2026-05-13 13:02:10 +02:00
Alex Seymour bac3129453 Clarify instructions for restarting cattle-cluster-agent pods after Rancher migration 2026-05-13 12:13:16 +02:00
Billy Tat ed0b4be092 Merge pull request #2099 from Mtze/patch-1
Clarify Grafana default Admin username in documentation
2026-05-08 14:42:35 -07:00
Billy Tat 5bb0484e29 Apply e584530b to other instances and versions 2026-05-08 13:46:52 -07:00
Matthias Linhuber a4bf2e1aea Correct Grafana default Admin username in documentation
Updated the default Admin username for Grafana login instructions.
2026-05-08 13:44:52 -07:00
Sunil Singh 897ff93fd6 Merge pull request #2115 from k0chan/patch-1
Fix typo in vSphere storage guide
2026-05-07 11:33:44 -07:00
Sunil Singh e913bab46b Updating across versions
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-05-07 11:00:20 -07:00
Kamil Kochański a1aab226d2 Fix typo in vSphere storage guide 2026-05-07 10:32:58 -07:00
Billy Tat b2be054e7a Merge pull request #1511 from diogoasouza/updating-extensions-docs-2.10
updating extensions doc to match versioned_docs/version-2.9
2026-05-06 17:22:26 -07:00
Billy Tat b65bedd4e8 Port changes to other versions 2026-05-06 16:26:42 -07:00
Diogo Souza b86c4eaedb updating extensions doc for 2.10 2026-05-01 17:08:47 -07:00
Billy Tat d3cc52f288 Merge pull request #1806 from Tejeev/patch-5
Re-added the ping test to he troubleshooting guide
2026-05-01 16:09:29 -07:00
Billy Tat b15041642a Port to other versions 2026-05-01 15:36:45 -07:00
Petr Kovar d2815b8707 Update docs/troubleshooting/other-troubleshooting-tips/networking.md 2026-05-01 15:34:41 -07:00
Tejeev f62e904391 Re-added the ping test to he troubleshooting guide 2026-05-01 15:34:40 -07:00
Billy Tat a19ff57088 Merge pull request #2290 from btat/product-sync/pr744-security-warning-cluster-members
Sync Product PR #744 (Add security warning for Cluster Members on Cluster and Project Roles page)
2026-05-01 13:52:12 -07:00
Sunil Singh 449014cbd9 Merge pull request #2306 from sunilarjun/cve-april-2026
Adding CVEs for April Release
2026-04-30 14:44:43 -07:00
Sunil Singh 37d85a3833 Adding CVEs for April release to relevant release notes and CVE pages.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-30 14:11:31 -07:00
Sunil Singh e730f390d8 Merge pull request #2301 from rancher/v2.11.13
Merge release v2.11.13 to main
2026-04-30 12:57:30 -07:00
Sunil Singh d8fd870142 Merge pull request #2300 from rancher/v2.12.9
Merge release v2.12.9 to main
2026-04-30 12:57:12 -07:00
Sunil Singh 9fa2d8e5aa Merge pull request #2299 from rancher/v2.13.5
Merge release v2.13.5 to main
2026-04-30 12:56:53 -07:00
Sunil Singh f83dd9585d Merge pull request #2298 from rancher/v2.14.1
Merge release v2.14.1 to main
2026-04-30 12:56:38 -07:00
Lucas SaintarborandBilly Tat a9d5652d7b Ingress NGINX Retirement Guide (#2239)
* Add draft of Guide to Ingress NGINX Retirement

* Revise Guide to Ingress NGINX Retirement page for community

* Add note about version availability for Dual Mode migration option

Co-authored-by: Billy Tat <btat@suse.com>

* Update note on Rancher version availability

* Remove note in Downstream RKE2 clusters (provisioned by Rancher) section

---------

Co-authored-by: Billy Tat <btat@suse.com>
2026-04-30 10:16:36 -07:00
Lucas Saintarbor 87d72bff15 Merge pull request #2304 from LucasSaintarbor/v2.14.1-update-release-date
v2.14.1 - Update release date
2026-04-30 09:49:16 -07:00
Lucas Saintarbor 3266d18193 Merge pull request #2303 from LucasSaintarbor/v2.13.5-update-release-date
v2.13.5 - Update release date
2026-04-30 09:49:04 -07:00
Lucas Saintarbor 164438c8a4 Merge pull request #2302 from LucasSaintarbor/v2.12.9-update-release-date
v2.12.9 - Update release date
2026-04-30 09:48:54 -07:00
Lucas Saintarbor 234dc42242 Merge pull request #2305 from LucasSaintarbor/v2.11.13-update-release-date
v2.11.13 - Update release date
2026-04-30 09:48:44 -07:00
LucasSaintarbor 9fa8554e5d Update release date 2026-04-30 09:21:35 -07:00
LucasSaintarbor dc28a2d032 Update release date 2026-04-30 09:15:51 -07:00
LucasSaintarbor 1449954b54 Update release date 2026-04-30 09:12:26 -07:00
LucasSaintarbor 42a424060c Update release date 2026-04-30 09:09:07 -07:00
Lucas Saintarbor c2931d5353 Merge pull request #2291 from LucasSaintarbor/v2.11.13-maintenance
v2.11.13 - Rancher Manager Release Maintenance
2026-04-29 12:02:28 -07:00
Lucas Saintarbor 8310097e5c Merge pull request #2292 from LucasSaintarbor/v2.12.9-maintenance
v2.12.9 - Rancher Manager Release Maintenance
2026-04-29 12:02:06 -07:00
Lucas Saintarbor 4f9cce33e8 Merge pull request #2293 from LucasSaintarbor/v2.13.5-maintenance
v2.13.5 - Rancher Manager Release Maintenance
2026-04-29 12:01:52 -07:00
Lucas Saintarbor 74c45ead36 Merge pull request #2294 from LucasSaintarbor/v2.14.1-maintenance
v2.14.1 - Rancher Manager Release Maintenance
2026-04-29 11:31:58 -07:00
Lucas SaintarborandSunil Singh 855e2b749c Apply suggestions from code review
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-29 10:44:30 -07:00
Lucas SaintarborandSunil Singh 63266f0e6b Apply suggestions from code review
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-29 10:43:16 -07:00
Lucas SaintarborandSunil Singh a54277e3a1 Apply suggestions from code review
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-29 10:42:32 -07:00
Lucas SaintarborandSunil Singh e74c66f9a9 Apply suggestions from code review
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-29 10:42:08 -07:00
Sunil Singh a6ce99063e Merge pull request #2296 from sunilarjun/issue-1619
Update AWS EC2 SG Rules Table
2026-04-27 16:51:09 -07:00
Sunil Singh 94a9530424 Removing changes from archived docs
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-27 16:21:05 -07:00
Sunil Singh a00a96eae4 Adding changes to latest zh version
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-27 14:36:22 -07:00
Sunil Singh 72aefdd9ae Adding changes to /docs page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-27 14:32:31 -07:00
Sunil Singh eb7abf42ed Updating AWS EC2 Security Group table with missing inbound rule types
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-27 14:29:03 -07:00
Sunil Singh f2e5e87f9f Merge pull request #2295 from sunilarjun/fix-header
Fixing headers - configure-with-existing-gateway.md
2026-04-24 11:46:30 -07:00
Sunil Singh bf5c4290da Updating Rancher AWS EC2 security group table.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-24 11:27:20 -07:00
Sunil Singh 2a9662b409 Fixing headers - configure-with-existing-gateway.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-24 11:09:07 -07:00
LucasSaintarbor ba1e7dd446 Update the CSP adapter compatibility matrix 2026-04-24 09:42:40 -07:00
LucasSaintarbor 2abf1b019c Update the deprecated features table 2026-04-24 09:41:22 -07:00
LucasSaintarbor 618e58539b Update the Rancher:webhook version mapping table 2026-04-24 09:39:39 -07:00
LucasSaintarbor 4f42e8680f Update the versions table 2026-04-24 09:37:54 -07:00
LucasSaintarbor 8aaf57db5c Update the deprecated features table 2026-04-24 09:31:58 -07:00
LucasSaintarbor 291c9c82c0 Update the CSP adapter compatibility matrix 2026-04-24 09:29:45 -07:00
LucasSaintarbor c1b06ca71f Update the Rancher:webhook version mapping table 2026-04-24 09:28:09 -07:00
LucasSaintarbor 679f03f57f Update the versions table 2026-04-24 09:16:12 -07:00
LucasSaintarbor 3d89ebed1d Update the versions table 2026-04-24 09:13:50 -07:00
LucasSaintarbor 470885f2cf Update the deprecated features table 2026-04-24 09:07:18 -07:00
LucasSaintarbor 07acfb962e Update the CSP adapter compatibility matrix 2026-04-24 09:05:22 -07:00
LucasSaintarbor 34f757d4e4 Update the Rancher:webhook version mapping table 2026-04-24 09:03:57 -07:00
LucasSaintarbor e7b048f0f5 Update the deprecated features table 2026-04-24 08:58:17 -07:00
LucasSaintarbor de46f6451d Update the CNI popularity table 2026-04-24 08:55:38 -07:00
LucasSaintarbor 73323f3bfe Update the CSP adapter compatibility matrix 2026-04-24 08:51:57 -07:00
LucasSaintarbor 0538aa7158 Update the Rancher:webhook version mapping table 2026-04-24 08:49:43 -07:00
LucasSaintarbor 902a97c3d7 Update the versions table 2026-04-24 08:45:23 -07:00
Billy Tat 7d11c5dfb7 Fix header level (#2288) 2026-04-24 08:16:38 -07:00
Billy Tat 0c0d5992e0 Sync Product PR #744 (Add security warning for Cluster Members on Cluster and Project Roles page) 2026-04-22 14:22:17 -07:00
Billy Tat dc25596ac3 Remove Helm 2 references (#2286)
Support removed in v2.9
2026-04-21 18:13:57 -07:00
Sunil Singh 3b0e2fc79e Merge pull request #2285 from sunilarjun/update-CAPI-link
Updating CAPI page broken link
2026-04-21 10:47:25 -07:00
Sunil Singh cac472d581 Updating CAPI integrations page broken link tied to CAPI Operator
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-21 09:46:24 -07:00
Sunil Singh 7a2543aa79 Merge pull request #2284 from sunilarjun/rke1-removal
Removing RKE1 material - upgrade-and-rollback-kubernetes.md
2026-04-21 09:19:30 -07:00
Corentin Néau 5522fd59fc Remove superfluous words from Equinix Metal quickstart guide (#2282)
Those words seem out of place among the rest of instructions.
2026-04-21 09:02:01 -07:00
Sunil Singh 3532fe7017 Removing RKE1 material - upgrade-and-rollback-kubernetes.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-21 08:49:14 -07:00
Sunil Singh 9f6c99c6ba Merge pull request #2276 from ManuelSimon/update-nginx-proxy
[Rancher2] Docs: Clarify RKE1-only scope in nginx-proxy troubleshooting guide
2026-04-20 09:07:29 -07:00
Manuel Simón Nóvoa a321c9fa41 Docs: Migrate worker nodes troubleshooting guide from RKE/Docker to RKE2/K3s/containerd 2026-04-20 17:12:58 +02:00
ManuelandSunil Singh 4bf3d6e8ae Update versioned_docs/version-2.14/troubleshooting/kubernetes-components/troubleshooting-nginx-proxy.md
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-20 16:56:10 +02:00
ManuelandSunil Singh 37beb2b6f0 Update versioned_docs/version-2.13/troubleshooting/kubernetes-components/troubleshooting-nginx-proxy.md
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-20 16:56:01 +02:00
ManuelandSunil Singh 01ccbc20d6 Update versioned_docs/version-2.12/troubleshooting/kubernetes-components/troubleshooting-nginx-proxy.md
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-20 16:55:52 +02:00
ManuelandSunil Singh 7832687c63 Update docs/troubleshooting/kubernetes-components/troubleshooting-nginx-proxy.md
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-04-20 16:55:23 +02:00
Billy Tat f9c3f936c4 Remove cross reference to EOL version (#2283) 2026-04-18 08:26:33 -07:00
Sunil Singh 9c5b4fa914 Merge pull request #2067 from sunilarjun/rke1-removal-guides
RKE1 Removals - Part of New User Guides Section
2026-04-16 15:58:13 -07:00
Sunil Singh 5015ab7494 Updating hostPath volume info with K3s/RKE2 content. Updating intro and header for cloud credential page after review.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-16 15:26:45 -07:00
Sunil Singh 84980417f2 Adding changes to v2.14
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 14:21:53 -07:00
Sunil Singh 3af18a49d6 Adding rancher-system-agent update to communicating-with-downstream-user-clusters.md, based on https://github.com/moio/rancher-docs/pull/3.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:40 -07:00
Sunil Singh f81f06a044 Adding rancher-system-agent update to about-rancher-agents.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:40 -07:00
Sunil Singh 0bdbf14c90 Updating redirects for v2.11/v2.10 nodes-and-node-pools pages
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:40 -07:00
Sunil Singh 165624ffe2 Updating redirects for v2.12/v2.13
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:39 -07:00
Sunil Singh 45c072d017 Updating the sidebars file for v2.12/v2.13
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:39 -07:00
Sunil Singh e359906eab Removing node template page link
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:39 -07:00
Sunil Singh d7c979be62 Updating node-and-machine-pools.md relative links.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:39 -07:00
Sunil Singh 2e6316d9ec Updating nutanix.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:39 -07:00
Sunil Singh 9bf5faf731 Updating user settings and manage cloud credentials pages after removal of RKE1 specific content/links.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:39 -07:00
Sunil Singh 1c3d1e539d Updating Nutanix provisioning page to point to upstream Nutanix docs.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:53:30 -07:00
Sunil Singh 28f46f2304 Updating nodes-and-node-pools.md to nodes-and-machine-pools.md and updating sidebar files/redirects.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:50:12 -07:00
Sunil Singh 9883901f1b Updating kubernetes-clusters-in-rancher-setup.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:50:11 -07:00
Sunil Singh f934437788 Updating use-new-nodes-in-an-infra-provider.md with correct terminology and link to RKE2 cluster configuration.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:50:11 -07:00
Sunil Singh 161c534071 RKE1 removal from specified pages in new user guides section.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-04-15 10:50:05 -07:00
Sunil Singh 8a5dda6521 Merge pull request #2262 from ManuelSimon/update-controlplane-nodes
[Rancher2] Docs: Migrate controlplane troubleshooting guide from RKE/Docker to RKE2/K3s/containerd
2026-04-15 10:19:02 -07:00
Manuel Simón Nóvoa 57567c5e99 Docs: Clarify RKE1-only scope in nginx-proxy troubleshooting guide 2026-04-15 15:20:11 +02:00
Manuel Simón Nóvoa b5da180fc9 Docs: Migrate controlplane troubleshooting guide from RKE/Docker to RKE2/K3s/containerd 2026-04-15 14:30:31 +02:00
Petr Kovar 7cca9e7574 Merge pull request #2267 from allexistence/docs/improve-airgap-image-save
docs: improve air-gap image save step
2026-04-14 20:03:18 +02:00
Petr Kovar b25d27891d Merge pull request #2260 from Trolldemorted/patch-1
Be more precise in PSA configuration templates
2026-04-14 20:00:53 +02:00
Petr Kovar 0012664266 Merge branch 'main' into docs/improve-airgap-image-save 2026-04-14 19:27:15 +02:00
Benedikt Radtke 569182d3b9 Fix imprecise wording wrt PSA templates for the local cluster (fixes #2259) 2026-04-11 15:17:59 +02:00
rishabh 3a373c0fa3 docs: backport air-gap image step improvements to v2.10–v2.14
Signed-off-by: rishabh <rishank69@gmail.com>
2026-04-11 18:06:50 +08:00
Petr Kovar 87f969991c Merge pull request #2268 from jmeza-xyz/remove-duplicate-paragraph-#2266
Duplicated paragraph removal in Rollbacks page #2266
2026-04-10 15:02:39 +02:00
Meza a429153ede Duplicated paragraph removal in Rollbacks page #2266
Signed-off-by: Meza <meza-xyz@proton.me>
2026-04-07 11:08:56 -04:00
Lucas Saintarbor fdf78e919f Merge pull request #2256 from rancher/v2.14.0
Merge release v2.14.0 to main
2026-03-26 14:18:43 -07:00
Billy Tat 51bfd1f8f9 Pin GH Actions to commit sha (#2265) 2026-03-26 13:00:23 -07:00
Sunil Singh 9090fcb2ab Merge pull request #2182 from thatmidwesterncoder/remove_embedded_capi_references
Remove Provisioning CAPI chart/feature-flag references, update to only mention Turtles
2026-03-26 11:53:17 -07:00
Lucas Saintarbor d2226322cf Merge pull request #2254 from rancher/v2.13.4
Merge release v2.13.4 to main
2026-03-26 08:41:59 -07:00
Lucas Saintarbor e30e3a4d18 v2.12.8 - Rancher Manager Release Maintenance (#2242) (#2253)
* Update the deprecated features table

* Update the CSP adapter compatibility matrix

* Update the Rancher:webhook version mapping table

* Update the versions table
2026-03-25 20:11:25 -07:00
Lucas Saintarbor ebcf5ee71f Merge pull request #2252 from rancher/v2.11.12
Merge release v2.11.12 to main
2026-03-25 20:10:45 -07:00
Jacob Lindgren 3bb734d303 fixup mention of rollback steps for 2.14.x -> 2.13.x rollback 2026-03-25 13:31:18 -05:00
Sunil Singh 7fafc61e6a Updating overview.md page wrt docs feedback, also adding changes to v2.14 docs pages.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-24 14:43:17 -07:00
Jacob Lindgren 21348fdb7b remove provisioning-capi- chart references 2026-03-24 14:08:08 -07:00
Pedro Franco de CarvalhoandSunil Singh 4eb2a3abb8 How-to for native CAPI providers (#2251)
* how-to for native CAPI providers

* address review comments

* Updating upstream cluster phrasing

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* review comments

---------

Signed-off-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-03-24 13:57:12 -07:00
MaryandPetr Kovar 6913cccd17 Update GitHub link to point to main branch (#2136)
* Update GitHub link to point to main branch

related to https://github.com/rancher/rancher/issues/51277

* changing master to main on user-cluster.sh script

* updating 2.14

---------

Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-03-24 13:28:46 -07:00
Petr Kovar 5b6f57ebb6 Merge pull request #2151 from mallardduck/214-gateway-extra
Gateway API advanced config with External Gateway
2026-03-24 18:50:45 +01:00
Lucas SaintarborandBilly Tat 7e0ceeffd5 [2.14] Upstream Kubernetes ResourceQuota types support (#2263)
* Update Resource Quota Type Reference page for support of all upstream Kubernetes ResourceQuota types

* Apply changes to v2.14 / zh files

* Apply suggestions from code review

Co-authored-by: Billy Tat <btat@suse.com>

* Apply feedback to other versions/zh, reword/reorder intro

* Add back zh content

---------

Co-authored-by: Billy Tat <btat@suse.com>
2026-03-24 10:27:52 -07:00
Petr Kovar a82a5207c8 Backport to version-2.14 2026-03-24 18:14:13 +01:00
Petr Kovar e33daa65dd Update sidebars.js 2026-03-24 18:01:46 +01:00
Dan Pock 715c942c1b Add advanced docs for External Gateway usage via Gateway API 2026-03-24 18:01:46 +01:00
Lucas SaintarborandBilly Tat 85a32cd276 Add v3 API token deprecation notice (#2250)
* Add v3 API token deprecation warning shared file / Add warning to applicable pages

* Update Deprecation of v3 API tokens warning

* Update shared-files/_v3-api-tokens-deprecation-warning.md

Co-authored-by: Billy Tat <btat@suse.com>

* Update src/theme/MDXComponents.js

Co-authored-by: Billy Tat <btat@suse.com>

* Fix/update typo in shared file name (v3APITokensDeprecationWarning)

* Fix wording in Deprecation of v3 API tokens warning

---------

Co-authored-by: Billy Tat <btat@suse.com>
2026-03-24 08:34:56 -07:00
Lucas Saintarbor 2f4b822cb3 [2.14] OAuth2 and OIDC Access Tokens Support (#2235)
* Update Configure Rancher as an OIDC provider page for OAuth2/OIDC Access tokens support

* Add note about OAuth2/fix wording about previous behavior
2026-03-24 08:26:39 -07:00
hridyesh bisht 877b9cbf9d Merge pull request #2248 from kakabisht/feat-add-info-fleet-resource
Adding information about Fleet resource limits
2026-03-23 23:29:18 +05:30
Billy Tat f58c1ea9e7 Update labels to reflect release of v2.14 (#2258) 2026-03-23 10:40:39 -07:00
hridyesh bishtandLucas Saintarbor 1ea3682342 Update docs/integrations-in-rancher/fleet/overview.md
Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2026-03-23 22:43:55 +05:30
Lucas SaintarborandBilly Tat 4c23b0dd50 [2.14] OIDC PKCE Support (#2236)
* Add shared fle for OIDC Support for PKCE Extension

* Update OIDC pages

* Update shared-files/_oidc-pkce-support.md

Co-authored-by: Billy Tat <btat@suse.com>

* Reword OIDC PKCE support text

---------

Co-authored-by: Billy Tat <btat@suse.com>
2026-03-23 09:57:02 -07:00
Jack Luo 44d690d4cc [2.13] add 2.14.0 to rollback special cases (#2257) 2026-03-23 08:58:11 -07:00
Jack Luo 1870b57b6e [2.14.0] add 2.14.0 to rollback special cases (#2255) 2026-03-23 08:57:45 -07:00
Manuel Simón Nóvoa 64269bea22 Docs: Migrate etcd troubleshooting guide from RKE/Docker to RKE2/K3s/containerd
- Updates `troubleshooting-etcd-nodes.md` to replace Docker-based commands with `crictl` and `etcdctl` for RKE2 and K3s.
- Replaces `curl` connectivity checks with `openssl s_client` to support etcd 3.5+ gRPC requirements and isolate transport layer testing.
- Adds prerequisites section with necessary environment exports.
- Updates all `etcdctl` commands to use explicit inline certificate paths for RKE2 and K3s.
- Replaces shell-dependent container commands with host-side processing to support distroless images.
- Updates log level configuration instructions for RKE2/K3s config files.
2026-03-23 12:25:51 +01:00
hridyesh bisht 333dcfe06c Adding information in docs 2026-03-23 14:24:18 +05:30
hridyesh bishtandLucas Saintarbor 5be76d49c9 Update versioned_docs/version-2.14/integrations-in-rancher/fleet/overview.md
Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2026-03-23 14:07:03 +05:30
hridyesh bishtandLucas Saintarbor cdd40292a4 Update versioned_docs/version-2.14/integrations-in-rancher/fleet/overview.md
Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2026-03-23 14:06:56 +05:30
Lucas Saintarbor f614319214 v2.14.0 - Rancher Manager Release Maintenance (#2249)
* Update the deprecated features table

* Update the CSP adapter compatibility matrix

* Update the Rancher:webhook version mapping table

* Update the versions table

* Update the CNI popularity table
2026-03-20 14:08:10 -07:00
Lucas Saintarbor 5076ce5f0a v2.13.4 - Rancher Manager Release Maintenance (#2243)
* Update the deprecated features table

* Update the CSP adapter compatibility matrix

* Update the Rancher:webhook version mapping table

* Update the versions table
2026-03-20 12:00:43 -07:00
Lucas Saintarbor 8485d73025 v2.12.8 - Rancher Manager Release Maintenance (#2242)
* Update the deprecated features table

* Update the CSP adapter compatibility matrix

* Update the Rancher:webhook version mapping table

* Update the versions table
2026-03-20 12:00:22 -07:00
Lucas SaintarborandBilly Tat d6460bbf45 v2.11.12 - Rancher Manager Release Maintenance (#2241)
* Update the deprecated features table

* Update the CSP adapter compatibility matrix

* Update the Rancher:webhook version mapping table

* Update the versions table

* Update src/pages/versions.md

Co-authored-by: Billy Tat <btat@suse.com>

---------

Co-authored-by: Billy Tat <btat@suse.com>
2026-03-20 12:00:02 -07:00
Lucas SaintarborandBilly Tat ceff92f1fa Update Notifications page (#2228)
* Add Notification Banner page

* Remove notifications banner page

* Rename Notificaitons Center page to Notifications / Update Notifications page

* Undo change to canonical link

* Undo change to canonical link

* Update docs/how-to-guides/new-user-guides/authentication-permissions-and-global-configuration/notification-center.md

Co-authored-by: Billy Tat <btat@suse.com>

* Fix typo on v2.13/v2.14 page

---------

Co-authored-by: Billy Tat <btat@suse.com>
2026-03-20 11:26:38 -07:00
hridyesh bisht 56ca46001c Adding information about Fleet resource limits 2026-03-20 16:37:01 +05:30
Lucas Saintarbor 591188c891 Merge pull request #2247 from rancher/main
Sync main to v2.14.0
2026-03-19 17:27:29 -07:00
Lucas Saintarbor f5b155469b Merge pull request #2246 from rancher/main
Sync main to v2.13.4
2026-03-19 16:41:12 -07:00
Lucas Saintarbor 8390518777 Merge pull request #2245 from rancher/main
Sync main to v2.12.8
2026-03-19 16:40:57 -07:00
Lucas Saintarbor f21c904c75 Merge pull request #2244 from rancher/main
Sync main to v2.11.12
2026-03-19 16:40:49 -07:00
Sunil Singh 2b7f6179cd Merge pull request #2238 from sunilarjun/update-ingress
Update ingress-nginx pt 1
2026-03-19 16:06:15 -07:00
Sunil Singh 8c8f8a5f2e Fixing anchors
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 15:32:38 -07:00
Sunil Singh 50c0b2901e Update dns.md after review
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 15:20:49 -07:00
Sunil Singh ff518c995c Update vsphere-storage.md after review
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 15:20:24 -07:00
Sunil Singh b124e543ab Updating sidebars wrt removed page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 14:28:26 -07:00
Sunil Singh 00e60c489c Removing links to removed RKE1 page from latest-v2.12.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 14:17:10 -07:00
Sunil Singh 5856a33216 Updating load-balancer-and-ingress-controller.md across versions
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 13:38:12 -07:00
Sunil Singh 8abdff2e16 Updating ingress-configurations.md across versions
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 13:26:41 -07:00
Sunil Singh 27c40e5b37 Updating layer-4-and-layer-7-load-balancing.md, adding note v2.10/v2.11 as RKE still applicable
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 13:25:20 -07:00
Sunil Singh 0a206c2a71 Updating how-monitoring-works.md across versions
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 12:54:23 -07:00
Sunil Singh 0035f604cf Removing rke1-cluster-configuration.md - includes nginx/part of RKE1 removal
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 11:23:11 -07:00
Billy Tat b6192dee43 Ingress nginx replacement (#2237)
* Replace/remove ingress-nginx references

* Add links to annotations + remove example using unsupported annotation
2026-03-19 11:14:14 -07:00
Sunil Singh a572532618 Updating kubernetes-resources.md after review
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 11:01:37 -07:00
Sunil Singh 4ed8b39eca Update HA example output rke2-for-rancher.md after review
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-19 10:59:59 -07:00
ab794679b1 Document the extended project resource quotas (#2175)
* tweak: paragraph describing how to go beyond the fixed builtin resources

* chore: formatting fixes (alignments)
tweak: added ref and explanations for `extended`

* fix: namespace limit of a namespace is nonsense. switched to cpu limits.

* tweak: added editing of extended via `edit yaml`

* add unit ref for memory/storage

* address comments

* updated to match the dashboard's new `custom` resource type.

* Update docs/how-to-guides/advanced-user-guides/manage-projects/manage-project-resource-quotas/manage-project-resource-quotas.md

Co-authored-by: Jonathan Crowther <jonathan.crowther@suse.com>

* Apply to v2.14 folder: 'Document the extended project resource quotas'

---------

Co-authored-by: Jonathan Crowther <jonathan.crowther@suse.com>
Co-authored-by: Billy Tat <btat@suse.com>
2026-03-18 14:07:13 -07:00
Sunil Singh 4174efc9b6 Updating nginx to traefik - kubernetes-resources.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-18 08:57:33 -07:00
Sunil Singh eef73d106d Reverting changes to troubleshooting.md as handled in related PR.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-17 16:28:53 -07:00
Sunil Singh 946b9fc10a Removing nginx-ingress, updating some phrasing regarding Traefik Ingress usage.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-17 15:54:04 -07:00
Petr Kovar 8fbc785b2c Merge pull request #2195 from swastik959/ipv6
[main] Updated docs for ipv6/dual-stack cluster provisioning on rancher
2026-03-17 19:13:34 +01:00
Lucas Saintarbor 5053c7a5be Merge pull request #2234 from rancher/main
Sync main to v2.14.0
2026-03-16 14:47:29 -07:00
Lucas Saintarbor 2386faad52 Move Configuring OIDC Single Logout (SLO) section on relevant pages (#2233) 2026-03-16 11:37:28 -07:00
swastik959 20d9e00055 Update docs for ipv6/dual-stack and backport to v2.14 2026-03-16 17:11:19 +05:30
Sunil Singh a91e98aeed Merge pull request #2224 from sunilarjun/update-ns
Updating ns exemptions
2026-03-12 14:12:46 -07:00
Sunil Singh dd90555a64 Removing ingress-nginx due to deprecation and replacing with traefik.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-12 11:12:28 -07:00
MezaandLucas Saintarbor fc747f457a [main] Replace references to deprecated Helm chart values (#2221)
* [main] Replace references to deprecated Helm chart values

Signed-off-by: Meza <meza-xyz@proton.me>

---------

Signed-off-by: Meza <meza-xyz@proton.me>
Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2026-03-12 10:21:03 -07:00
Manuel BuilandPetr Kovar e88572c810 Add Traefik migration to docs and backports (#2184)
Signed-off-by: Manuel Buil <mbuil@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-03-12 09:11:56 -07:00
Lucas Saintarbor 50736e012a Explain SAML and OpenLDAP Group Permissions (#2225)
* Add SamlOpenLDAPGroupPermissions shared file

* Add SamlOpenLDAPGroupPermissions shared file to Configure Keycloak (SAML) page

* Add SamlOpenLDAPGroupPermissions shared file to Configure Okta (SAML) page

* Add SamlOpenLDAPGroupPermissions shared file to Configure PingIdentity (SAML) page

* Add SamlOpenLDAPGroupPermissions shared file to Configuring Rancher for Microsoft AD FS page

* Add SamlOpenLDAPGroupPermissions shared file to Group Permissions with Shibboleth and OpenLDAP page

* Add SamlOpenLDAPGroupPermissions shared file to other versions of Configure Keycloak (SAML) page

* Add SamlOpenLDAPGroupPermissions shared file to other versions of Configure Okta (SAML) page

* Add SamlOpenLDAPGroupPermissions shared file to other versions Configure PingIdentity (SAML) page

* Add SamlOpenLDAPGroupPermissions shared file to other versions of  Configuring Rancher for Microsoft AD FS page

* Add SamlOpenLDAPGroupPermissions shared file to other versions of Group Permissions with Shibboleth and OpenLDAP page
2026-03-12 08:46:15 -07:00
Billy Tat 85021d6a4d Merge pull request #2229 from btat/version-status
Update banners to reflect current version status
2026-03-11 16:50:29 -07:00
Billy Tat b336f5f47c Update banners to reflect current version status
v2.10 will be EOL 2026-06
v2.11 EOM 2025-10 and will be EOL 2026-10
v2.12 EOM 2026-02
2026-03-11 15:56:19 -07:00
Siva Kanakala 94c60502ea Merge pull request #2208 from skanakal/upgrade-doc-2204
Add subsection to review Rancher feature chart versions before Rancher upgrade
2026-03-11 14:08:55 +05:30
Lucas SaintarborandSunil Singh feca2e63ec Sync main to v2.14.0 (#2226)
* Increase max-old-space-size to 8192 bytes

* Increase max-old-space-size to 9216 bytes

* Increase max-old-space-size to 10240 bytes

---------

Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2026-03-10 13:51:36 -07:00
Siva Kanakala cc2e26e03e upgrade-feature-charts 2026-03-10 21:02:39 +05:30
Sunil Singh 473eea4b41 Update code block after review
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-09 14:16:40 -07:00
Sunil Singh a5e6676adb Merge branch 'main' into update-ns 2026-03-06 15:10:54 -08:00
Sunil Singh a7a0a05827 Merge pull request #2223 from LucasSaintarbor/increase-max-old-space-size
Increase max-old-space-size in test deployment
2026-03-06 15:08:06 -08:00
Sunil Singh b531d54872 Updating ns exemption list in sample configurations.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-03-06 14:21:52 -08:00
LucasSaintarbor 860d55373c Increase max-old-space-size to 10240 bytes 2026-03-06 13:32:27 -08:00
LucasSaintarbor ad82b388e9 Increase max-old-space-size to 9216 bytes 2026-03-06 12:40:53 -08:00
LucasSaintarbor 4d915c71c7 Increase max-old-space-size to 8192 bytes 2026-03-06 12:04:46 -08:00
Lucas Saintarbor 2dcfa6f6b8 Add v2.14 preview docs (#2212) 2026-03-05 12:30:57 -08:00
Lucas Saintarbor 4a0d71b3f3 Archive v2.9 docs (#2219)
* Archive v2.9 content files / add archive notice

* Update config / sidebar

* Remove v2.9 redirects

* Fix typo in config

* Update versions listing page

* Fix typo in notice files

* Fix typo in versions listing page
2026-03-04 16:54:35 -08:00
Billy Tat 917fb71cc6 Merge pull request #2218 from btat/remove-workflow
Remove workflow
2026-03-04 11:54:31 -08:00
Billy Tat 968b17b439 Remove workflow 2026-03-04 11:21:47 -08:00
Lucas SaintarborandPetr Kovar 837642ac0a v2.13.2 - Rancher Manager Release Maintenance (#2201)
Helps #2187.

Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-02-25 15:46:35 -08:00
Lucas SaintarborandPetr Kovar ce8a2066c6 v2.12.7 - Rancher Manager Release Maintenance (#2200)
Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-02-25 15:46:27 -08:00
Lucas SaintarborandPetr Kovar dd56eb8dfa v2.11.11 - Rancher Manager Release Maintenance (#2199)
Helps #2185.

Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-02-25 15:46:17 -08:00
Billy Tat 55eaa901b9 Merge pull request #2074 from andreas-kupries/rancher-45110-global-resource-docs
initial page listing some of rancher's global resources
2026-02-24 08:59:10 -08:00
Billy Tat f8442a4de8 Backport changes to v2.9-v2.12 2026-02-24 08:25:06 -08:00
Petr Kovar ba36e5a3cc Merge pull request #2167 from rancher/copilot/clarify-audit-policy-delivery
Clarify audit-policy-file delivery scope and recommend machineSelectorConfig
2026-02-24 16:52:56 +01:00
Billy Tat 1d573ebad8 Merge pull request #2191 from LucasSaintarbor/remove-deprecation-policy
Remove deprecated policy section from Deprecated Features in Rancher page
2026-02-20 08:50:01 -08:00
LucasSaintarbor 6d1b2bfaa1 Remove deprecated policy section from Deprecated Features in Rancher page 2026-02-20 08:11:54 -08:00
Sunil Singh fb61897f02 Merge pull request #2179 from apoorvajagtap/nodedrain-2178
Documents node draining behvaiour during Rancher upgrades
2026-02-10 15:17:47 -08:00
Petr Kovar ec6ca0421f Merge pull request #2180 from axeal/air-gapped-migration-docs
Improve air-gapped migration documentation
2026-02-10 17:25:54 +01:00
Alex Seymour 3850db7f7a Update indentation for air-gapped note 2026-02-10 14:32:40 +01:00
Sunil Singh a71cd82b3b Combining the note admonitions to decrease repetition.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-02-09 10:46:44 -08:00
Sunil Singh 10c050251f Merge pull request #2172 from sunilarjun/port-pr-699-prod-docs
Sync Product PR #699 (Updating CNI - Canal Section)
2026-02-09 10:45:27 -08:00
Apoorva Jagtap 0ee6a3b95a adds note for node-drain behavior 2026-02-06 12:14:50 +05:30
Petr Kovar aab097c91f Merge pull request #2181 from pmkovar/security-advisories-and-cves.md
Remove leftover reference
2026-02-05 21:26:37 +01:00
Petr Kovar ce270291b4 Remove leftover reference 2026-02-05 20:56:52 +01:00
Alex Seymour 7302475fb7 Update air-gapped migration instructions for Rancher backup and restore 2026-02-05 15:05:12 +01:00
Alex Seymour 0c4649c273 Clarify outbound connectivity requirements for rancher-backup installation in air-gapped environments 2026-02-05 15:05:01 +01:00
Alex Seymour ee021062c6 Enhance air-gapped migration instructions for Rancher backup and restore 2026-02-05 15:00:08 +01:00
Lucas Saintarbor 20fab76cfc Update CVE pages (#2174) 2026-01-29 15:43:33 -08:00
a94f94128a Merge release v2.13.2 to main (#2164)
* Sync changes from main to v2.13.2 (#2156)

* Fixed links to images

* Added documentation for using the keywords option in Chart.yaml

* Sync Product PR #587 (Add ec2:DescribeAvailabilityZones to control plane and etcd/worker permissions)

* Revert image link change, it would break the docs website

* Fixed some typos and backported docs

---------

Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>

* v2.13.2 - Rancher Manager Release Maintenance (#2160)

* Update the versions table

* Update the Rancher:webhook version mapping table

* Update the CSP adapter compatibility matrix

* Update the deprecated features table

* Update release date (#2171)

---------

Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-01-29 12:58:11 -08:00
5b60dca51d Merge release v2.12.6 to main (#2163)
* Sync changes from main to v2.12.6 (#2155)

* Fixed links to images

* Added documentation for using the keywords option in Chart.yaml

* Sync Product PR #587 (Add ec2:DescribeAvailabilityZones to control plane and etcd/worker permissions)

* Revert image link change, it would break the docs website

* Fixed some typos and backported docs

---------

Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>

* v2.12.6 - Rancher Manager Release Maintenance (#2159)

* Update the versions table

* Update the Rancher:webhook version mapping table

* Update the CSP adapter compatibility matrix

* Update the deprecated features table

* Update release date (#2170)

---------

Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-01-29 12:57:59 -08:00
78f538b5c3 Merge release v2.11.10 to main (#2162)
* Sync changes from main to v2.11.10 (#2154)

* Fixed links to images

* Added documentation for using the keywords option in Chart.yaml

* Sync Product PR #587 (Add ec2:DescribeAvailabilityZones to control plane and etcd/worker permissions)

* Revert image link change, it would break the docs website

* Fixed some typos and backported docs

---------

Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>

* v2.11.10 - Rancher Manager Release Maintenance (#2158)

* Update the versions table

* Update the Rancher:webhook version mapping table

* Update the CSP adapter compatibility matrix

* Update the deprecated features table

* Update release date (#2169)

---------

Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-01-29 12:57:48 -08:00
b6a5fcc2af Merge release v2.10.11 to main (#2173)
* Sync changes from main to v2.10.11 (#2153)

* Fixed links to images

* Added documentation for using the keywords option in Chart.yaml

* Sync Product PR #587 (Add ec2:DescribeAvailabilityZones to control plane and etcd/worker permissions)

* Revert image link change, it would break the docs website

* Fixed some typos and backported docs

---------

Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>

* v2.10.11 - Rancher Manager Release Maintenance (#2157)

* Update the Rancher:webhook version mapping table

* Update the CNI popularity table

* Update the versions table

* Update the CSP adapter compatibility matrix

* Update the deprecated features table

* Update release date (#2168)

---------

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
Co-authored-by: mschroeder-fzj <m.schroeder@fz-juelich.de>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>
2026-01-29 12:57:36 -08:00
Sunil Singh 5fa51c65b8 Porting product docs PR #699 https://github.com/rancher/rancher-product-docs/pull/699
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2026-01-29 11:24:00 -08:00
copilot-swe-agent[bot]andjiaqiluo a649d9bff4 Remove redundant machineSelectorConfig tips from Method 2
Co-authored-by: jiaqiluo <6218999+jiaqiluo@users.noreply.github.com>
2026-01-29 19:19:22 +00:00
copilot-swe-agent[bot]andsnasovich 9cbbe1fe64 Update audit-policy-file documentation to clarify delivery and recommend machineSelectorConfig
Co-authored-by: snasovich <85187633+snasovich@users.noreply.github.com>
2026-01-29 16:27:48 +00:00
copilot-swe-agent[bot] f68384825a Initial plan 2026-01-29 16:25:14 +00:00
Petr Kovar ab234cc365 Merge pull request #2113 from mschroeder-fzj/main
Creating Apps: Added doc for `keywords`
2026-01-27 16:26:47 +01:00
Marcel Schröder 6dc122f0f9 Fixed some typos and backported docs 2026-01-26 07:27:35 +01:00
Marcel Schröder 2c2d1fd70c Revert image link change, it would break the docs website 2026-01-26 07:14:59 +01:00
mschroeder-fzj 385a493e52 Merge branch 'rancher:main' into main 2026-01-26 07:03:54 +01:00
Billy Tat d870a1a12a Merge pull request #2148 from btat/product-sync/pr587-ec2-permissions
Sync Product PR #587 (Add ec2:DescribeAvailabilityZones to control plane and etcd/worker permissions)
2026-01-23 09:48:39 -08:00
Andreas Kupries 9b6e8a64e7 address comment, rephrase for clarity 2026-01-23 09:30:25 +01:00
Andreas Kupries 3e550789b5 address comments 2026-01-23 09:30:25 +01:00
Andreas Kupries 69e366256f initial page listing some of rancher's global resources
(known incomplete)
2026-01-23 09:30:25 +01:00
Petr Kovar 3d9908ed90 Merge branch 'main' into main 2026-01-20 16:26:50 +01:00
Billy Tat be7c002fc6 Merge pull request #2150 from rancher/revert-2146-add-fossa-workflow
Revert "Add FOSSA scanning workflow"
2026-01-16 13:45:09 -08:00
Billy Tat c5aac3c2ea Revert "Add FOSSA scanning workflow" 2026-01-16 13:10:12 -08:00
Billy Tat 2a925479f5 Sync Product PR #587 (Add ec2:DescribeAvailabilityZones to control plane and etcd/worker permissions) 2026-01-15 16:14:25 -08:00
Sunil Singh 3db5dcfe5b Merge pull request #2146 from macedogm/add-fossa-workflow
Add FOSSA scanning workflow
2026-01-14 08:34:53 -08:00
Guilherme Macedo 493918ef4b Add FOSSA scanning workflow
Signed-off-by: Guilherme Macedo <guilherme@gmacedo.com>
2026-01-13 23:08:44 -03:00
Billy Tat b9dc7cf45f Merge pull request #2117 from axeal/patch-2
Clarify JSON array format for OIDC groups and full_group_path claims
2026-01-13 15:56:16 -08:00
Billy Tat 50a89fceea Apply to other versions 2026-01-13 15:22:44 -08:00
Alex Seymour c13e9c7023 Clarify JSON array format for OIDC groups and full_group_path claims
Clarify JSON array format for OIDC groups and full_group_path claims, after a recent case where an issue occurred as a result of the groups claim formatted as a comma-separated string
2026-01-13 15:15:41 -08:00
Billy Tat 86ce745693 Merge pull request #2139 from btat/copyright
Bump copyright year
2026-01-12 16:24:10 -08:00
Billy Tat ea4b542e49 Bump copyright year 2026-01-12 15:02:56 -08:00
mschroeder-fzj 5519e07a14 Merge branch 'rancher:main' into main 2026-01-12 09:29:20 +01:00
Petr Kovar 607605ef8c Merge pull request #2119 from rancher/copilot/update-deprecation-policy-links
Fix deprecated deprecation policy link in FAQ
2026-01-08 20:35:04 +01:00
Petr Kovar 6c6d269350 Merge branch 'main' into copilot/update-deprecation-policy-links 2026-01-08 20:00:00 +01:00
mschroeder-fzj 4bb5fd9918 Merge branch 'rancher:main' into main 2026-01-05 11:42:24 +01:00
Billy Tat 1db0a99873 Merge pull request #2133 from btat/fix-checkmark
Fix checkmark entity
2025-12-30 09:21:16 -08:00
Billy Tat 613ac34951 Fix checkmark entity 2025-12-30 08:29:25 -08:00
Billy Tat 8d0683cf27 Merge pull request #2130 from jmeza-xyz/etcd-tuning-fix-typo
[docs] etcd tuning fix typo etcd-args
2025-12-19 16:18:50 -08:00
Sunil Singh 8c8388e576 Merge pull request #2131 from sunilarjun/v2.13.1-registry-note
Adding admonition for registry issue v2.13.1
2025-12-19 15:13:48 -08:00
Sunil Singh 8b903fb7e6 Adding admonition for registry issue v2.13.1
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-12-19 14:37:40 -08:00
Meza e4ef173aef [docs] etcd tuning fix typos etcd-args
Signed-off-by: Meza <meza-xyz@proton.me>
2025-12-19 15:39:32 -05:00
Meza 941e23dbc5 [docs] Update etcd tuning with incorrect RKE1 references (#2128)
* [docs] Update etcd tuning with incorrect RKE1 references

Signed-off-by: Meza <meza-xyz@proton.me>

* Update versioned 2.12/2.13 and zh docs

Signed-off-by: Meza <meza-xyz@proton.me>

* Updated zh current doc

Signed-off-by: Meza <meza-xyz@proton.me>

---------

Signed-off-by: Meza <meza-xyz@proton.me>
2025-12-19 10:21:40 -08:00
Sunil Singh 50de72dac8 Merge pull request #2127 from rancher/v2.13.1
Merge release v2.13.1 into main
2025-12-18 19:28:07 -08:00
Sunil Singh bd5ce6a698 Merge pull request #2126 from rancher/v2.12.5
Merge release v2.12.5 into main
2025-12-18 19:27:48 -08:00
Sunil Singh 6b578c03b8 Merge pull request #2125 from rancher/v2.11.9
Merge release v2.11.9 into main
2025-12-18 19:27:32 -08:00
Petr Kovar 3e84995a70 Merge pull request #2123 from pmkovar/v2.11.9-maintenance
v2.11.9 - Rancher Manager Release Maintenance
2025-12-18 18:03:09 +01:00
Petr Kovar 73eba84c8f Merge pull request #2122 from pmkovar/v2.12.5-maintenance
v2.12.5 - Rancher Manager Release Maintenance
2025-12-18 18:02:29 +01:00
Petr Kovar 83169414e0 Merge pull request #2121 from pmkovar/v2.13.1-maintenance
v2.13.1 - Rancher Manager Release Maintenance
2025-12-18 18:01:58 +01:00
Petr Kovar 59c6d18303 Apply suggestions from code review 2025-12-18 16:19:48 +01:00
Petr Kovar cc971f12cd Apply suggestions from code review 2025-12-18 16:18:45 +01:00
Petr Kovar 56217388e0 Apply suggestions from code review 2025-12-18 16:17:39 +01:00
Petr Kovar 4038b6b6a0 Update _cni-popularity.md 2025-12-16 20:13:07 +01:00
Petr Kovar f3ebddde6e v2.11.9 - Rancher Manager Release Maintenance
Helps #2106.
2025-12-16 19:35:49 +01:00
Petr Kovar 8dc10af3d1 v2.12.5 - Rancher Manager Release Maintenance
Helps #2107.
2025-12-16 19:22:53 +01:00
Petr Kovar 8a705b1d66 v2.13.1 - Rancher Manager Release Maintenance
Helps #2108.
2025-12-16 17:44:38 +01:00
Silvio Moioli 7aabf39e2c Merge branch 'main' into copilot/update-deprecation-policy-links 2025-12-16 08:57:52 +01:00
Jonathan Crowther 033a6ecb52 Make the projects workflow page reference the backingNamespace field (#2075)
* Make the projects workflow page reference the backingNamespace field

* Add suggestions

* Fix typo
2025-12-15 12:56:35 -08:00
copilot-swe-agent[bot]andmoio d5155ccdee Update deprecation policy links to SUSE Rancher Prime page
Co-authored-by: moio <250541+moio@users.noreply.github.com>
2025-12-12 09:29:25 +00:00
copilot-swe-agent[bot] 8e43347812 Initial plan 2025-12-12 09:25:21 +00:00
mschroeder-fzj d8c3493599 Merge branch 'rancher:main' into main 2025-12-09 08:14:00 +01:00
Billy Tat d69bad7fd4 Merge pull request #2114 from btat/self-ref-link
Remove self-referencing link
2025-12-03 09:09:46 -08:00
Billy Tat cb8c124163 Remove self-referencing link 2025-11-28 16:38:25 -08:00
mschroeder-fzj 3eb8905153 Added documentation for using the keywords option in Chart.yaml 2025-11-27 09:36:51 +01:00
mschroeder-fzj 66a6f2019d Fixed links to images 2025-11-27 09:36:16 +01:00
Jake Hyde abf80148ac Add docs for tls-additional (#1981)
* Add docs for tls-additional

* Address review comments

* Add tls-additional docs to previous versions
2025-11-26 15:15:30 -08:00
Meza 49fa9264c4 Fix broken indentation in api workflow docs (#2110)
Signed-off-by: Meza <meza-xyz@proton.me>
2025-11-26 11:32:19 -08:00
+4 24fc5a657c Merge release v2.13.0 to main (#2091)
* Sync main to v2.13.0 (#2065)

* It's bad form to ask users to pass something they just curled from the internet directly to sh

Updated the instructions for uninstalling the rancher-system-agent to use a temporary script file instead of piping directly to sh.

* doc(rancher-security): improve structure and content to latest, v2.13-preview and v2.12 (#2024)

- add Rancher Kubernetes Distributions (K3s/RKE2) Self-Assessment and Hardening Guide section
- add kubernetes cluster security best practices link to rancher-security section
- add k3s-selinux and update selinux-rpm details
- remove rhel/centos 7 support

Signed-off-by: Andy Pitcher <andy.pitcher@suse.com>

* Updating across supported versions and translations.

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

---------

Signed-off-by: Andy Pitcher <andy.pitcher@suse.com>
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Tejeev <tj@rancher.com>
Co-authored-by: Andy Pitcher <andy.pitcher@suse.com>
Co-authored-by: Sunil Singh <sunil.singh@suse.com>

* Update roletemplate aggregation doc and version information

* Add versioned docs

* Remove ext token and kubeconfig feature flag sections and document bearer Token

* Update corresponding v2.13 pages

* update doc for pni in gke

* Adding reverted session idle information from PR 1653

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.13.0] Add versions table entry

* [2.13.0] Add webhook version

* [2.13.0] Add CSP Adapter version

* [2.13.0] Add deprecated feature table entry

* [2.13.0] Update CNI popularity stats

* Update GKE Cluster Configuration for Project Network Isolation instructions

* Fix link and port to 2.13

* [2.13.0] Add Swagger JSON

* [v2.13.0] Add info about Azure AD Roles claims (#2079)

* Add info about Azure AD roles claims compatibility

* Apply suggestions from code review

Co-authored-by: Sunil Singh <sunil.singh@suse.com>

* Add suggestions to v2.13

---------

Co-authored-by: Sunil Singh <sunil.singh@suse.com>

* [2.13.0] Remove preview designation

* user public api docs (#2069)

* user public api docs

* Apply suggestions from code review

Co-authored-by: Andreas Kupries <akupries@suse.com>

* Apply suggestions from code review

Co-authored-by: Peter Matseykanets <pmatseykanets@gmail.com>

* explain plaintext is never stored

* add users 2.13 versioned docs

* remove extra ```

* Apply suggestions from code review

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* add space before code block

---------

Co-authored-by: Andreas Kupries <akupries@suse.com>
Co-authored-by: Peter Matseykanets <pmatseykanets@gmail.com>
Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* support IPv6 (#2041)

* [v2.13.0] Add Configure GitHub App page (#2081)

* Add Configure GitHub App page

* Apply suggestions from code review

Co-authored-by: Billy Tat <btat@suse.com>

* Fix header/GH URL & add suggestions to v2.13

* Apply suggestions from code review

Co-authored-by: Petr Kovar <pknbe@volny.cz>

* Apply suggestions from code review to v2.13

* Add note describing why to use Installation ID

* Apply suggestions from code review

Co-authored-by: Billy Tat <btat@suse.com>

---------

Co-authored-by: Billy Tat <btat@suse.com>
Co-authored-by: Petr Kovar <pknbe@volny.cz>

* [v2.13.0] Add info about Generic OIDC Custom Mapping (#2080)

* Add info about Generic OIDC Custom Mapping

* Apply suggestions from code review

Co-authored-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Billy Tat <btat@suse.com>

* Apply suggestions from code review

Co-authored-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Billy Tat <btat@suse.com>

* Add suggestions to v2.13

* Remove repetitive statement in intro

* Move Prereq intro/note to appropriate section

* Fix formatting, UI typo, add Custom Claims section under Configuration Reference section

* Add section about how a custom groups claim works / note about search limitations for groups in RBAC

---------

Co-authored-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Billy Tat <btat@suse.com>

* [v2.13.0] Add info about OIDC SLO support (#2086)

* Add shared file covering OIDC SLO support to OIDC auth pages

* Ad How to get the End Session Endpoint steps

* Add generic curl exampleto retrieve end_session_endpoint

* [2.13.0] Bump release date

---------

Signed-off-by: Andy Pitcher <andy.pitcher@suse.com>
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
Co-authored-by: Tejeev <tj@rancher.com>
Co-authored-by: Andy Pitcher <andy.pitcher@suse.com>
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Jonathan Crowther <jonathan.crowther@suse.com>
Co-authored-by: Peter Matseykanets <peter.matseykanets@suse.com>
Co-authored-by: Petr Kovar <petr.kovar@suse.com>
Co-authored-by: Krunal Hingu <krunal.hingu222@gmail.com>
Co-authored-by: Raul Cabello Martin <raul.cabello@suse.com>
Co-authored-by: Andreas Kupries <akupries@suse.com>
Co-authored-by: Peter Matseykanets <pmatseykanets@gmail.com>
Co-authored-by: Jack Luo <jiaqi.luo@suse.com>
Co-authored-by: Petr Kovar <pknbe@volny.cz>
2025-11-25 10:51:39 -08:00
Billy TatandLucas Saintarbor 94197793cb Merge release v2.12.4 to main (#2090)
* [2.12.4] Add versions table entry

* [2.12.4] Bump webhook table entry

* [2.12.4] Add deprecated feature table entry

* [2.12.4] Add CSP Adapter table entry

* Fix version availability - no longer has Community

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

---------

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2025-11-24 17:43:12 -08:00
Billy Tat 28fa33e752 Merge pull request #2089 from rancher/v2.11.8
Merge release v2.11.8 to main
2025-11-24 17:04:13 -08:00
Petr Kovar b3c79206b3 Merge pull request #1953 from OdedNeuhaus/patch-1
Scale down the original Rancher server
2025-11-24 19:56:49 +01:00
Billy Tat 81f32d6a4c Merge pull request #2083 from btat/v2.11.8-maintenance
v2.11.8 maintenance tasks
2025-11-19 15:00:33 -08:00
Billy Tat ccdc8cecfa Merge pull request #2072 from pmkovar/backport_docs.sh
Add backport_docs.sh
2025-11-19 14:45:13 -08:00
Billy TatandLucas Saintarbor ea88c5ed74 Fix version typo
Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2025-11-19 07:59:10 -08:00
Billy Tat f10c1c630a [2.11.8] Add CSP Adapter table entry 2025-11-18 17:12:21 -08:00
Billy Tat efd1a027cc [2.11.8] Add deprecated feature table entry 2025-11-18 17:12:21 -08:00
Billy Tat 592c6e02cb [2.11.8] Bump webhook version 2025-11-18 17:12:16 -08:00
Billy Tat 2ca8417958 [2.11.8] Add versions table entry 2025-11-18 15:54:11 -08:00
Petr Kovar 6e2f0ddfc0 Add backport_docs.sh
A script to backport changes (added, modified, and removed files)
from 'docs/' and 'sidebars.js' to their versioned counterparts.
2025-11-11 17:23:07 +01:00
Petr Kovar 4372563bb6 Merge pull request #2055 from masap/fix-2054
Fix difference beteween `psa-config-templates.md` and `psa-restricted-exemptions.md`
2025-11-10 19:31:08 +01:00
Petr Kovar c899b6563b Backport changes 2025-11-10 19:09:24 +01:00
Petr Kovar ce6faea156 Merge branch 'main' into patch-1 2025-11-10 19:08:11 +01:00
Gabriel Blais-DuchesneandLucas Saintarbor 764dbfd2e2 Fix v1.29 in-tree provider usage instructions for Azure (#2033)
* Update azure.md for in-tree cloud providers in v1.29

Correct 'DisableKubeletCloudCredentialProvider' feature gate name to 'DisableKubeletCloudCredentialProviders'. Add both feature gates in the argument for Kubelet, Controller Manager and API Server since both are required in all of these components in v1.29. Also added the Cloud Provider Integration changes blog post for more details along with an example of the argument.

* Add v1.29 Azure in-tree provider details on versioned docs compatible with v1.29

* Apply new link to upstream documentation

Apply new link to upstream documentation for the Azure in-tree cloud providers.

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Added Azure in-tree provider corrections to 2.13 docs

---------

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2025-11-07 15:21:49 -08:00
Petr Kovar 0167f01846 Merge branch 'main' into fix-2054 2025-11-05 18:49:57 +01:00
Sunil Singh 53df2febeb Merge pull request #2052 from Tejeev/patch-6
It's bad form to ask users to pass something they just curled from th…
2025-11-03 15:44:23 -08:00
Sunil Singh 2a36becbeb Updating across supported versions and translations.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-11-03 15:11:31 -08:00
Andy Pitcher dae5fda314 doc(rancher-security): improve structure and content to latest, v2.13-preview and v2.12 (#2024)
- add Rancher Kubernetes Distributions (K3s/RKE2) Self-Assessment and Hardening Guide section
- add kubernetes cluster security best practices link to rancher-security section
- add k3s-selinux and update selinux-rpm details
- remove rhel/centos 7 support

Signed-off-by: Andy Pitcher <andy.pitcher@suse.com>
2025-10-31 09:25:39 -07:00
Masashi Honma 85eada02ef Fix difference beteween psa-config-templates.md and psa-restricted-exemptions.md
Fixes #2054.

Signed-off-by: Masashi Honma <masashi.honma@gmail.com>
2025-10-29 17:12:48 +09:00
Billy Tat 56deac4918 Merge pull request #2053 from btat/v2.13-preview
Add v2.13 preview docs
2025-10-27 15:37:47 -07:00
Billy Tat 51a03551a5 Add v2.13 preview docs 2025-10-24 16:06:44 -07:00
Tejeev adb2726735 It's bad form to ask users to pass something they just curled from the internet directly to sh
Updated the instructions for uninstalling the rancher-system-agent to use a temporary script file instead of piping directly to sh.
2025-10-24 16:26:42 -06:00
Billy Tat 1eecb56ddb Merge pull request #2050 from btat/october-cves
Add CVEs for October release
2025-10-23 17:22:03 -07:00
Billy Tat 5d4808b401 Add CVEs for October release 2025-10-23 17:13:13 -07:00
Billy Tat ca1c3b1c9b Merge pull request #2042 from btat/archive-2.8
Archive v2.8 docs
2025-10-23 16:57:07 -07:00
Lucas SaintarborandBilly Tat a96be82c13 Merge v2.11.7 into main (#2040)
* v2.11.7 Maintenance Tasks (#2039)

* Update versions table

* Update webhook version table

* Update CSP Adapter version table

* Update deprecated features table

* Update release date in deprecated features table

* Update i18n/zh/docusaurus-plugin-content-docs/version-2.11/faq/deprecated-features.md

Co-authored-by: Billy Tat <btat@suse.com>

* Revert "Update v2.11.7 release date"

* Revert "Revert "Update v2.11.7 release date"" (#2046)

---------

Co-authored-by: Billy Tat <btat@suse.com>
2025-10-23 16:48:03 -07:00
cdb48f5742 Merge v2.12.3 into main (#2038)
* v2.12.3 Maintenance Tasks (#2037)

* Update versions table

* Update webhook table

* Update CSP table

* Update deprecated features table

* Update CNI popularity table

* Fix date in deprecated features table

* Fix past versions section for 2.12

* Update i18n/zh/docusaurus-plugin-content-docs/current/faq/deprecated-features.md

Co-authored-by: Sunil Singh <sunil.singh@suse.com>

---------

Co-authored-by: Sunil Singh <sunil.singh@suse.com>

* Update release date in deprecated features table

* Revert "Update v2.12.3 release date" (#2047)

* Revert "Revert "Update v2.12.3 release date" (#2047)" (#2048)

This reverts commit 78fc987164.

---------

Co-authored-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Billy Tat <btat@suse.com>
2025-10-23 16:40:41 -07:00
Billy Tat 7cb353b7db Remove banner 2025-10-23 16:30:54 -07:00
Billy Tat d33e92176a Fix typo 2025-10-22 17:01:11 -07:00
Billy Tat a63b361315 Versions listing page: consolidate v2.8 sections and use archive link 2025-10-22 16:58:35 -07:00
Billy Tat ae00f6aedb Remove v2.8 redirects 2025-10-22 16:54:52 -07:00
Billy Tat 49deb2f991 Adjust configs 2025-10-22 16:52:34 -07:00
Billy Tat 664d230752 Archive v2.8 content files 2025-10-22 16:42:33 -07:00
Petr Kovar 1fec8a91d1 Merge pull request #2026 from masap/fix-2025
Add namespace for Supportability Review for PSA namespace exemption
2025-10-20 16:08:37 +02:00
Masashi Honma 7d9c247590 Merge branch 'main' into fix-2025 2025-10-20 11:03:54 +09:00
Sunil Singh a66a50baca Merge pull request #2031 from sunilarjun/rke1-removal
RKE1 removal/updates - /getting-started pages
2025-10-16 15:13:58 -07:00
Lucas SaintarborandBilly Tat 0d8c6f407d Port Product docs PR #486: Update SAML Provider Caveats Note (#2032)
* Port Product docs PR #486

* Apply suggestions from code review

Co-authored-by: Billy Tat <btat@suse.com>

* Fix typo on Configure PingIdentity page

---------

Co-authored-by: Billy Tat <btat@suse.com>
2025-10-15 15:16:30 -07:00
Masashi Honma 0a47ac603c Add namespace for Supportability Review for PSA namespace exemption
Resolves #2025.

Supportability Review pods require the “runAsNonRoot=false” permission, so
enabling PSA causes them to fail to start. To fix this, we need to add the
`sr-operator-system` namespace to the exemption list.

Signed-off-by: Masashi Honma <masashi.honma@gmail.com>
2025-10-15 09:23:13 +09:00
Sunil Singh 2de03c3174 Updating sidebars.js and v2.12 sidebars.js with removed files
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-14 16:35:37 -07:00
Sunil Singh e62158bdc4 RKE1 removal - amazon-ec2.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-14 16:19:14 -07:00
Sunil Singh ee20ee6a00 RKE1 removal - rke1-for-rancher.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-14 16:07:45 -07:00
Sunil Singh 754eadd89d RKE1 removal - install-rancher.md/set-up-infrastructure.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-14 15:50:40 -07:00
Sunil Singh a66819106b RKE1 removal - install-kubernetes.md behind http proxy page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-13 16:05:04 -07:00
Sunil Singh 4c0fb7dfe2 RKE1 removal - install-kubernetes.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-13 16:00:44 -07:00
Sunil Singh fc01044d64 RKE1 removal - air-gapped-helm-cli-install.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-13 15:54:26 -07:00
Sunil Singh ca221dbff1 RKE1 removal - port-requirements.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-13 15:49:43 -07:00
Sunil Singh 626ace76e3 RKE1 removal - installation-requirements.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-13 15:44:56 -07:00
Sunil Singh c0592ddefd RKE1 removal - install-docker.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-13 15:30:58 -07:00
Sunil Singh 286cbbac30 RKE1 removal - dockershim page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-13 15:26:44 -07:00
Petr Kovar 492e5cec9e Merge pull request #2027 from pmkovar/autoscaler
Remove install-cluster-autoscaler
2025-10-13 13:00:59 +02:00
Petr Kovar 2d5688ce74 Remove install-cluster-autoscaler
Related to #1989.

Also, attempt to update rancher-architecture-rancher-api-server.svg
for RKE2.
2025-10-10 15:48:57 +02:00
Sunil Singh 1fb958af06 Merge pull request #1940 from daviswill2/main
Update ARM64 Rancher Docs
2025-10-07 11:57:19 -07:00
Sunil Singh 7bc347e34b Reverting line 22 change as was already updated for RKE1 removal
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-07 11:13:00 -07:00
Sunil Singh 9ee0363d7f Updating the sidebars.js file to original state, updating rancher-on-arm64.md files for latest/v2.12 with changes.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-10-07 10:05:48 -07:00
William Davis 4e937f8739 Update rancher-on-arm64.md (#5) 2025-10-07 10:04:33 -07:00
William Davis d809302b92 Update sidebars.js (#4) 2025-10-07 10:02:37 -07:00
Sunil Singh 854fc2a4d7 Merge pull request #2019 from sunilarjun/rke-pr-1873
RKE1 removal/updates - adv user guides
2025-10-02 10:58:27 -07:00
Sunil Singh e52555e081 Removing/updating RKE in adv user guide pages.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-09-29 15:55:10 -07:00
Petr Kovar 7d899ad89e Merge branch 'main' into patch-1 2025-09-29 22:11:54 +02:00
Petr Kovar a1d77d98a4 Merge pull request #1989 from pmkovar/rke2
Update for RKE2
2025-09-29 17:49:57 +02:00
Petr KovarandSunil Singh b226c5cac0 Apply suggestions from code review
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-09-29 14:49:00 +02:00
Petr Kovar 52a65bd4f4 Merge branch 'main' into rke2 2025-09-26 19:35:29 +02:00
Petr Kovar c3c513ce26 More updates for RKE2 2025-09-26 19:34:37 +02:00
Sunil Singh 3e91e5070a Merge pull request #2017 from sunilarjun/update-cve-sept25
Updating CVEs for September maintenance
2025-09-25 13:14:13 -07:00
Billy Tat aff66f3502 Merge pull request #2016 from rancher/v2.12.2
Merge v2.12.2 into main
2025-09-25 13:12:11 -07:00
Billy Tat ef088726c1 Merge pull request #2012 from rancher/v2.11.6
Merge v2.11.6 into main
2025-09-25 13:11:53 -07:00
Billy Tat 6576f3403b Merge pull request #2013 from rancher/v2.10.10
Merge v2.10.10 into main
2025-09-25 13:11:40 -07:00
Billy Tat 6b33f040c5 Merge pull request #2014 from rancher/v2.9.12
Merge v2.9.12 into main
2025-09-25 13:11:15 -07:00
Sunil Singh 69bc08efb8 Updating date
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-09-25 12:44:58 -07:00
Sunil Singh 7c7006a1cb Updating CVEs for September maintenance
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-09-25 12:32:59 -07:00
Petr Kovar 34b392bc54 Update release date 2025-09-25 16:00:13 +02:00
Petr Kovar 600b48ad86 Update release date 2025-09-25 15:57:54 +02:00
Petr Kovar e0c5676afd Update release date 2025-09-25 15:52:47 +02:00
Petr Kovar caee5e5aad Update release date 2025-09-25 15:32:01 +02:00
Petr Kovar a68d026725 Merge branch 'main' into v2.12.2 2025-09-25 00:27:49 +02:00
Petr Kovar b67b664a8b Merge pull request #2008 from pmkovar/v2.12.2-maintenance
V2.12.2 Maintenance Tasks
2025-09-25 00:26:47 +02:00
Petr Kovar 58d860a8e3 Do not update swagger-v2.12.json 2025-09-24 23:44:32 +02:00
Billy Tat 5dbbe1c7af Merge pull request #2000 from moio/impersonation_implemented
Service account impersonation feature was implemented, remove unimplemented notice
2025-09-24 14:33:27 -07:00
Petr Kovar 6d8f4a0550 Merge pull request #2009 from pmkovar/v2.11.6-maintenance
v2.11.6 Maintenance Tasks
2025-09-24 23:06:33 +02:00
Petr Kovar 0311a02d4e Merge pull request #2010 from pmkovar/v2.10.10-maintenance
v2.10.10 Maintenance Tasks
2025-09-24 23:06:09 +02:00
Petr Kovar 269bff3b1c Merge pull request #2011 from pmkovar/v2.9.12-maintenance
v2.9.12 Maintenance Tasks
2025-09-24 23:05:48 +02:00
Petr KovarandSunil Singh ad043ae777 Apply suggestion from @sunilarjun
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-09-24 23:03:27 +02:00
Petr KovarandSunil Singh 4a93a185ba Apply suggestion from @sunilarjun
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-09-24 23:03:13 +02:00
Petr KovarandSunil Singh 8a6ea7ed82 Apply suggestion from @sunilarjun
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-09-24 23:03:05 +02:00
Petr KovarandSunil Singh 77cb40c6c6 Apply suggestion from @sunilarjun
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-09-24 23:02:53 +02:00
Petr Kovar 00994c3771 Update release date 2025-09-24 21:50:52 +02:00
Petr Kovar 7466c6c87e Update release date 2025-09-24 21:48:01 +02:00
Petr Kovar aa6dc661e7 Update release date 2025-09-24 21:43:48 +02:00
Petr KovarandSunil Singh f19a5f6742 Apply suggestions from code review
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-09-24 21:40:52 +02:00
Petr Kovar af084e180f v2.9.12 Maintenance Tasks 2025-09-24 20:30:43 +02:00
Petr Kovar 0e63970a32 v2.10.10 Maintenance Tasks 2025-09-24 20:19:23 +02:00
Petr Kovar f4d37c28fa v2.11.6 Maintenance Tasks 2025-09-24 20:07:40 +02:00
Petr Kovar 481b772443 Update openapi/swagger-v2.12.json 2025-09-24 19:50:41 +02:00
Petr Kovar 4c1c9745ca v2.12.1 Maintenance Tasks 2025-09-24 19:33:57 +02:00
Billy Tat 2c52ded7aa Merge pull request #2003 from btat/broken-links
Fix broken external links
2025-09-23 16:15:23 -07:00
Billy Tat 0776e42de1 Merge pull request #2004 from rancher/fix-ui-server-side-pagination
Ensure list of UI limitations with vai/server-side pagination enabled is correct
2025-09-23 15:06:39 -07:00
Billy Tat d9453c584f Merge pull request #2005 from sunilarjun/permissions-warning-note
Update Global Permissions Page - Trusted Users Warning Note
2025-09-23 15:03:23 -07:00
Sunil Singh 0363de899c Adding warning note to global permissions page for users with permissions to modify accounts or resources.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-09-23 13:41:14 -07:00
Richard Cox 46f2abc478 Ensure list of UI limitations with vai/server-side pagination enabled is correct 2025-09-23 14:37:59 +01:00
Billy Tat 9ac5d6e9fe Fix broken external links 2025-09-22 16:15:38 -07:00
Silvio Moioli 2134a96f70 Feature was implemented, remove unimplemented notice
Signed-off-by: Silvio Moioli <silvio@moioli.net>
2025-09-18 10:23:23 +02:00
Billy Tat 37463bd3a5 Merge pull request #1988 from khushalchandak17/fix/aadclientsecret-placeholder
[Docs] fix aadClientSecret placeholder (<tenant-id> → <client-secret>)
2025-09-16 08:29:59 -07:00
Billy Tat 7f0395e9cd Merge pull request #1868 from pdellamore/update-rancher-security-best-practices
Add new sections to Rancher Security Best Practices
2025-09-15 08:44:42 -07:00
Billy Tat eeac744361 Fix broken link 2025-09-15 08:11:03 -07:00
Corentin Néau aed36e9bc4 Add restore warning for Fleet users (#1881)
Restoring setups with Fleet workloads requires a few more steps, now
referenced with a link to Fleet documentation.
2025-09-10 10:32:38 -07:00
Petr Kovar 887e853d1c Update for RKE2 2025-09-10 19:18:07 +02:00
khushalchandak17 1777251cb9 docs(azure): fix aadClientSecret placeholder (<tenant-id> → <client-secret>) across EN + i18n + versioned docs
Signed-off-by: khushalchandak17 <khushal.chandak@suse.com>
2025-09-10 12:34:41 +05:30
Billy Tat e607807380 Merge pull request #1982 from helt/patch-1
Update rancher-cli.md
2025-09-05 13:41:00 -07:00
Billy Tat 49ff9224b2 Merge pull request #1986 from btat/cves-fix
Fix mismatched CVE IDs
2025-09-05 11:14:40 -07:00
Billy Tat b28d01f1a9 Fix mismatched CVE IDs 2025-09-04 16:44:11 -07:00
Billy Tat 7efe1ebb42 Add back incorrectly removed CVE 2025-09-04 16:07:28 -07:00
Billy Tat c2b7e90208 Merge pull request #1985 from jiaqiluo/fix-format
Fix Link Format
2025-09-04 12:54:20 -07:00
Jiaqi Luo a263c2192c fix format 2025-09-04 10:47:28 -07:00
Billy Tat 46b5d4060e Merge pull request #1984 from btat/relevant-cves
Only list CVEs relevant to the given version
2025-09-04 08:17:32 -07:00
Billy Tat 006408da08 Only list CVEs relevant to the given version 2025-09-03 17:01:56 -07:00
Lucas Saintarbor b7dd8f185b Update CVE page (#1983) 2025-09-03 15:58:31 -07:00
helt 075974e5d5 Update rancher-cli.md 2025-09-03 08:07:30 +02:00
helt 23816aec5d Update rancher-cli.md 2025-09-03 08:06:42 +02:00
Pietro Dell'Amore 2922315ba0 Fix important section 2025-09-01 10:26:19 -03:00
helt 21fefc1b38 Update rancher-cli.md
Removed deprecated commands of 2.11
2025-08-31 12:09:45 +02:00
Sunil Singh 6177452735 Merge pull request #1977 from rancher/v2.12.1
Merge release branch v2.12.1 into main
2025-08-28 16:08:32 -07:00
Billy TatandSunil Singh 9decee9ee7 Merge release branch v2.11.5 into main (#1976)
* [2.11.5] versions update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.11.5] webhook update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.11.5] CSP adapter update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.11.5] deprecated features update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* Update release date

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

---------

Signed-off-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-08-28 11:13:56 -07:00
Sunil Singh c1c11a335b Merge pull request #1979 from sunilarjun/update-date
Update release date
2025-08-28 08:54:47 -07:00
Sunil Singh d6e594c7bf Updating date
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-08-28 08:25:48 -07:00
Billy TatandSunil Singh 92637ee27c Merge release branch v2.10.9 into main (#1975)
* [2.10.9] versions update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.10.9] webhook update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.10.9] CSP adapter update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.10.9] deprecated features update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

---------

Signed-off-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-08-28 08:01:03 -07:00
Billy TatandSunil Singh 42a4484d7c Merge release branch v2.9.11 into main (#1974)
* [2.9.11] versions update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.9.11] webhook update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.9.11] CSP adapter update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

* [2.9.11] deprecated features update

Signed-off-by: Sunil Singh <sunil.singh@suse.com>

---------

Signed-off-by: Sunil Singh <sunil.singh@suse.com>
Co-authored-by: Sunil Singh <sunil.singh@suse.com>
2025-08-28 07:59:51 -07:00
Sunil Singh 14cbc7bd0d Merge pull request #1973 from sunilarjun/update-custom-cluster-section
Adding back custom cluster section
2025-08-25 12:04:34 -07:00
Sunil Singh 11486ac437 Adding back custom cluster section with updated links to RKE2/K3s sites.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-08-25 11:22:18 -07:00
Billy Tat 9bdb705c91 Merge pull request #1972 from btat/misc-errors
Fix errors from PR #1882 #1930
2025-08-25 10:00:43 -07:00
Billy Tat 7a4dfe349d Fix missed removals from PR #1882 2025-08-25 09:23:42 -07:00
Billy Tat 50b12d2577 Fix typos from PR #1930 2025-08-25 09:19:00 -07:00
Billy Tat 4739ef2238 Merge pull request #1971 from jbiers/document-bro-monitoring-features
[main] Document BRO monitoring features
2025-08-22 10:57:33 -07:00
Julia Bier bf2add3f04 Add sections on BRO monitoring to versioned docs 2025-08-22 12:23:03 -04:00
Julia Bier 9993243e49 Add sections on BRO monitoring 2025-08-22 12:22:08 -04:00
Billy Tat 9049774f69 Merge pull request #1967 from sunilarjun/v2.12.1-maintenance
v2.12.1 Maintenance Tasks
2025-08-21 18:46:31 -07:00
Oded Neuhaus 73363534e8 Merge branch 'main' into patch-1 2025-08-21 23:31:41 +03:00
Oded NeuhausandPetr Kovar 73a2dc4671 Update docs/how-to-guides/new-user-guides/backup-restore-and-disaster-recovery/migrate-rancher-to-new-cluster.md
Co-authored-by: Petr Kovar <pknbe@volny.cz>
2025-08-21 23:31:17 +03:00
Oded NeuhausandPetr Kovar b43b19fda2 Update docs/how-to-guides/new-user-guides/backup-restore-and-disaster-recovery/migrate-rancher-to-new-cluster.md
Co-authored-by: Petr Kovar <pknbe@volny.cz>
2025-08-21 23:31:03 +03:00
Sunil Singh 4b09a47046 [2.12.1] CNI update
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-08-21 13:29:24 -07:00
Sunil Singh 2d91d1ca9b [2.12.1] deprecated features update
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-08-21 13:25:43 -07:00
Sunil Singh 77e9bc07aa [2.12.1] CSP adapter update
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-08-21 13:22:17 -07:00
Billy Tat 1ac6e81329 Merge pull request #1954 from LucasSaintarbor/rke1-removal-integrations-in-rancher-pt2
Remove RKE1: /integrations-in-rancher pages Part 2
2025-08-21 13:19:20 -07:00
Sunil Singh 98ec291627 [2.12.1] webhook update
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-08-21 13:19:09 -07:00
Billy Tat f6b53affe0 Merge pull request #1955 from btat/sync-pr1603
Sync PR #1603 (Detail resourceset usage in Backup docs) to 2.10
2025-08-21 13:19:01 -07:00
Sunil Singh 5ada24df1c [2.12.1] versions update
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-08-21 13:15:58 -07:00
Billy Tat 91a1c316be Merge pull request #1965 from btat/revise-api-ref
Remove NodeDriver.management.cattle.io from RK-API ref
2025-08-21 10:01:47 -07:00
Billy Tat a17cc6c019 Remove NodeDriver.management.cattle.io from RK-API ref 2025-08-21 09:28:20 -07:00
Billy Tat d2d2208f38 Merge pull request #1963 from rancher/main
Sync main to v2.12.1
2025-08-20 15:42:47 -07:00
Billy Tat 7e01f8d408 Merge pull request #1961 from btat/revise-api-ref
Remove CustomMachine.rke.cattle.io and ETCDSnapshot.rke.cattle.io from the RK-API reference
2025-08-20 08:46:07 -07:00
Billy Tat 942717bd89 Remove APIs weren't intended to be listed 2025-08-20 08:03:16 -07:00
Billy Tat 85f5bbc922 Sync PR #1603 (Detail resourceset usage in Backup docs) to 2.10 2025-08-12 16:41:39 -07:00
LucasSaintarbor d23aff28d8 Remove RKE references in monitoring-and-alerting 2025-08-12 15:09:41 -07:00
LucasSaintarbor 64526859ce Remove RKE references in windows-support 2025-08-12 15:09:13 -07:00
OdedNeuhaus 5046e36283 Update migrate-rancher-to-new-cluster.md
I was migrating my Rancher instance to a new cluster running RKE2 (the original local cluster was running RKE1),
if followed the steps as described in https://ranchermanager.docs.rancher.com/how-to-guides/new-user-guides/backup-restore-and-disaster-recovery/migrate-rancher-to-new-cluster

I found out that after i made the change on my DNS server - all the clusters that were registrated to my original Rancher server - were stuck on updating in the new Rancher server.

I figured out that the cattle-cluster-agents were still communicating with the old Rancher server, and had to be restarted, or fail their connection with it - in order to make them communicate with the new Rancher server.

I assume that more Rancher users can experience this problem, and this add to the Rancher migration guide will make their migrating operation easier.
2025-08-11 20:20:22 +03:00
Billy Tat 32e9b1f9c6 Merge pull request #1951 from btat/cluster-drivers
Remove invalid node and cluster drivers
2025-08-08 15:41:31 -07:00
Billy Tat 94ff32cc80 Remove invalid node and cluster drivers 2025-08-08 14:42:11 -07:00
Billy Tat 40abdb7d85 Merge pull request #1948 from btat/audit-log
[2.12] Add missing flag to enable auditlog
2025-08-07 16:43:23 -07:00
Billy Tat 7f39814047 [2.12] Add missing flag to enable auditlog 2025-08-07 15:55:01 -07:00
Lucas Saintarbor 20f3c5fd4c Remove RKE1: /integrations-in-rancher pages Part 1 (#1946)
* Remove RKE reference in logging-helm-chart-options

* Remove RKE reference in neuvector/overview

* Remove RKE reference in monitoring-and-alerting/how-monitoring-works
2025-08-06 11:52:55 -07:00
Pietro Dell'Amore 8ff2134ee0 Add docs team suggestions 2025-08-06 09:14:51 -03:00
Sunil Singh 91ec72ff28 Merge pull request #1934 from joshmeranda/imperative-api-required
[main] add aggregation layer configuration required
2025-08-04 09:41:48 -07:00
joshmeranda 0e5afc1dd6 clarify imperative api supported versions 2025-08-04 10:56:15 -04:00
Josh MerandaandPetr Kovar e3725b97a0 Update versioned_docs/version-2.12/getting-started/installation-and-upgrade/installation-requirements/installation-requirements.md
Co-authored-by: Petr Kovar <pknbe@volny.cz>
2025-08-04 10:50:13 -04:00
Josh MerandaandPetr Kovar 69ddd76917 Update docs/getting-started/installation-and-upgrade/installation-requirements/installation-requirements.md
Co-authored-by: Petr Kovar <pknbe@volny.cz>
2025-08-04 10:50:06 -04:00
Dan P.andLucas Saintarbor d0511be5c3 Expand helm requirements page to explain matching the helm policy (#1943)
* Add details on selecting proper Helm 3 version

* Simplify notes about helm V2 into a single bulletpoint

* Add note about tools that use helm indirectly for users

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Update docs/getting-started/installation-and-upgrade/resources/helm-version-requirements.md

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>

* Sync new helm docs to versioned docs

* Add helm info to 2.10/2.9 docs with updated example

---------

Co-authored-by: Lucas Saintarbor <lucas.saintarbor@suse.com>
2025-08-01 14:45:01 -07:00
Sunil Singh 976f1aa2dc Merge pull request #1941 from sunilarjun/remove-rke-getting-started
Remove RKE-  /getting-started section
2025-07-31 16:38:30 -07:00
Lucas Saintarbor 13d44fde15 Remove RKE references in launch-kubernetes-with-rancher.md (#1942) 2025-07-31 16:31:24 -07:00
Sunil Singh 557c98b9db Merge branch 'main' into remove-rke-getting-started 2025-07-31 15:58:54 -07:00
Sunil Singh eedc5691bb rm rke1 getting-started/installation-and-upgrade/installation-references/tls-settings.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 15:16:08 -07:00
Sunil Singh 4156df0eab rm rke1 getting-started/installation-and-upgrade/installation-references/helm-chart-options.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 15:12:50 -07:00
Sunil Singh 5e0d2ddf8e rm rke1 getting-started/installation-and-upgrade/installation-references/feature-flags.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 15:10:14 -07:00
Sunil Singh 5fe045cba2 rm rke1 getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/upgrades.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 15:07:03 -07:00
Sunil Singh 4b109ff5a7 rm rke1 getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/troubleshooting.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 14:39:04 -07:00
Sunil Singh 191bbc611a rm rke1 getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/install-upgrade-on-a-kubernetes-cluster.md
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 14:23:03 -07:00
Sunil Singh 13a5965ba7 rm rke1 getting-started/overview.md page
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 14:19:19 -07:00
Sunil Singh 5928170579 Merge pull request #1939 from sunilarjun/update-link-oidc
Updating OIDC Link - /docs folder
2025-07-31 14:00:50 -07:00
Sunil Singh ab606b6e51 Updating broken link in /docs configure-oidc-provider.md page.
Signed-off-by: Sunil Singh <sunil.singh@suse.com>
2025-07-31 10:55:37 -07:00
Petr Kovar 30a5a05733 Merge branch 'main' into imperative-api-required 2025-07-31 19:30:20 +02:00
Sunil Singh 8268557cfb Merge pull request #1935 from yassan/patch-1
Fix incorrect link URL on "Configure Rancher as an OIDC provider" page
2025-07-31 09:18:19 -07:00
Lucas Saintarbor 4d0b5d2eee Add back RKE2 CAPI info to Launching Kubernetes with Rancher page (#1937) 2025-07-31 08:41:35 -07:00
yassan(Yasukazu Nagatomi) 90c2f00d9b Fix incorrect doc page URL 2025-07-31 15:53:08 +09:00
joshmeranda 80dc50b560 add aggregation layer configuration required 2025-07-30 09:47:29 -04:00
Pietro Dell'Amore bdd3b90804 Improve sections writing 2025-07-22 12:09:49 -03:00
Pietro Dell'Amore cbf320ed00 Add new sections to Rancher Security Best Practices 2025-07-15 11:41:40 -03:00
6075 changed files with 295705 additions and 22880 deletions
+1
View File
@@ -0,0 +1 @@
blank_issues_enabled: false
@@ -4,6 +4,13 @@ about: Track tasks that need to be done every release.
title: '<VERSION> - Rancher Manager Release Maintenance Task Checklist'
---
> [!IMPORTANT]
> Hello, our team is currently in the process of consolidating our Rancher documentation repositories. With this change, the contents of this repository was moved to [rancher/rancher-product-docs](https://github.com/rancher/rancher-product-docs).
>
> We understand this is a significant change and disruption to the standard process and wish to note the Rancher documentation team is here to assist in any way it can to make the transition process straight forward. Going forward, we kindly ask that any new issue reports or contributions be made to the `rancher-product-docs` repository instead. If you wish to make contributions, please refer to our updated [README](https://github.com/rancher/rancher-product-docs/blob/main/README.md) for guidance.
>
> Please note as part of this change, the Chinese portion of the site was dropped. No URLs for the Community documentation site changed.
This issue is to track tasks that need to be done every release regardless of whether the release has new feature content or not.
- [ ] Create a new branch for the release. Release-specific updates should use this branch as its base
@@ -3,6 +3,13 @@ name: Request a New Feature
about: For requesting new feature(s) to be added to the docs.
---
> [!IMPORTANT]
> Hello, our team is currently in the process of consolidating our Rancher documentation repositories. With this change, the contents of this repository was moved to [rancher/rancher-product-docs](https://github.com/rancher/rancher-product-docs).
>
> We understand this is a significant change and disruption to the standard process and wish to note the Rancher documentation team is here to assist in any way it can to make the transition process straight forward. Going forward, we kindly ask that any new issue reports or contributions be made to the `rancher-product-docs` repository instead. If you wish to make contributions, please refer to our updated [README](https://github.com/rancher/rancher-product-docs/blob/main/README.md) for guidance.
>
> Please note as part of this change, the Chinese portion of the site was dropped. No URLs for the Community documentation site changed.
## Related Issues
<!--
@@ -3,6 +3,13 @@ name: Request an Update
about: For fixing docs errors/typos, adding needed/missing information, updating verbiage, deleting outdated info, etc.
---
> [!IMPORTANT]
> Hello, our team is currently in the process of consolidating our Rancher documentation repositories. With this change, the contents of this repository was moved to [rancher/rancher-product-docs](https://github.com/rancher/rancher-product-docs).
>
> We understand this is a significant change and disruption to the standard process and wish to note the Rancher documentation team is here to assist in any way it can to make the transition process straight forward. Going forward, we kindly ask that any new issue reports or contributions be made to the `rancher-product-docs` repository instead. If you wish to make contributions, please refer to our updated [README](https://github.com/rancher/rancher-product-docs/blob/main/README.md) for guidance.
>
> Please note as part of this change, the Chinese portion of the site was dropped. No URLs for the Community documentation site changed.
## Related Issues
<!--
List any issues or tickets on other platforms that are associated with the request. For example, include a link to the issue tracking that feature in the Rancher repo, or list the Jira ticket number for the request.
+7
View File
@@ -2,6 +2,13 @@
Check the Rancher docs issues to see if there is an existing issue for this pull request. If there is, enter the issue number below.
-->
> [!IMPORTANT]
> Hello, our team is currently in the process of consolidating our Rancher documentation repositories. With this change, the contents of this repository was moved to [rancher/rancher-product-docs](https://github.com/rancher/rancher-product-docs).
>
> We understand this is a significant change and disruption to the standard process and wish to note the Rancher documentation team is here to assist in any way it can to make the transition process straight forward. Going forward, we kindly ask that any new issue reports or contributions be made to the `rancher-product-docs` repository instead. If you wish to make contributions, please refer to our updated [README](https://github.com/rancher/rancher-product-docs/blob/main/README.md) for guidance.
>
> Please note as part of this change, the Chinese portion of the site was dropped. No URLs for the Community documentation site changed.
Fixes #[issue_number]
## Reminders
-29
View File
@@ -1,29 +0,0 @@
name: Create issue to track porting between Community and Product docs
on:
pull_request_target:
types:
- closed
paths-ignore:
- '**/README.md'
permissions:
issues: write
pull-requests: read
jobs:
create_issue:
if: github.event.pull_request.merged == true && contains( github.event.pull_request.labels.*.name, 'port/community-product')
runs-on: ubuntu-latest
steps:
- name: Create issue
env:
GH_TOKEN: ${{ github.token }}
REPO_TYPE: ${{ contains( github.repository, 'product-docs') && 'Product' || 'Community' }}
PR_TITLE: ${{ github.event.pull_request.title }}
run: |
gh issue create \
--repo ${{ github.repository }} \
--title "Port $REPO_TYPE docs PR #${{ github.event.pull_request.number }}: $PR_TITLE" \
--body "Reference: https://github.com/${{ github.repository }}/pull/${{ github.event.pull_request.number }}" \
--label port/community-product
-52
View File
@@ -1,52 +0,0 @@
name: Deploy to GitHub Pages
on:
push:
branches:
- main
paths-ignore:
- '**/README.md'
- '**/.github/ISSUE_TEMPLATE/**'
jobs:
build:
name: Build Docusaurus
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
with:
fetch-depth: 0
- uses: actions/setup-node@v4
with:
node-version: 18
cache: yarn
- name: Install dependencies
run: yarn install --frozen-lockfile
- name: Build website
env:
NODE_OPTIONS: "--max_old_space_size=8192"
run: yarn build --no-minify
- name: Upload Build Artifact
uses: actions/upload-pages-artifact@v3
with:
path: build
deploy:
name: Deploy to GitHub Pages
needs: build
permissions:
pages: write
id-token: write
environment:
name: github-pages
url: ${{ steps.deployment.outputs.page_url }}
runs-on: ubuntu-latest
steps:
- name: Deploy to GitHub Pages
id: deployment
uses: actions/deploy-pages@v4
+4 -4
View File
@@ -11,10 +11,10 @@ jobs:
name: Test deployment
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@v4
- uses: actions/checkout@34e114876b0b11c390a56381ad16ebd13914f8d5 # v4
with:
fetch-depth: 0
- uses: actions/setup-node@v4
- uses: actions/setup-node@49933ea5288caeca8642d1e84afbd3f7d6820020 # v4
with:
node-version: 18
cache: yarn
@@ -27,5 +27,5 @@ jobs:
run: yarn run remark --quiet --use remark-lint-no-dead-urls ./docs
- name: Test build website
env:
NODE_OPTIONS: "--max_old_space_size=7168"
run: yarn build --no-minify
NODE_OPTIONS: "--max_old_space_size=10240"
run: yarn build --no-minify
+8 -1
View File
@@ -1,5 +1,12 @@
# Contribute to Rancher Docs
> [!IMPORTANT]
> The contents of this repository was moved to [rancher/rancher-product-docs](https://github.com/rancher/rancher-product-docs).
>
> We understand this is a significant change and disruption to the standard process and wish to note the Rancher documentation team is here to assist in any way it can to make the transition process straight forward. Going forward, we kindly ask that any new issue reports or contributions be made to the `rancher-product-docs` repository instead. If you wish to make contributions, please refer to our updated [README](https://github.com/rancher/rancher-product-docs/blob/main/README.md) for guidance.
>
> Please note as part of this change, the Chinese portion of the site was dropped. No URLs for the Community documentation site changed.
Welcome to the [Rancher docs](https://ranchermanager.docs.rancher.com/) repository. See the [Rancher software](https://github.com/rancher/rancher) repository if you have questions or requests for the Rancher platform.
## Make a Suggestion
@@ -93,7 +100,7 @@ Subsequent executions will check for updated dependencies, if there are none, it
License
=======
Copyright (c) 2014-2025 [SUSE, LLC.](https://www.suse.com/)
Copyright (c) 2014-2026 [SUSE, LLC.](https://www.suse.com/)
Licensed under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License.
@@ -25,11 +25,15 @@ spec:
EOF
```
Use `metadata.generateName` to ensure a unique project ID, but note that `kubectl apply` does not work with `metadata.generateName`, so `kubectl create` must be used instead.
When creating a new project, you have two primary options for setting the name:
- **Automatic Generation:** Use `metadata.generateName` to ensure a unique project ID. However, note that you must use `kubectl create` (instead of `kubectl apply`) with this option, as `kubectl apply` does not support it.
- **Manual Naming:** You can explicitly set the project ID using `metadata.name`. If a project with that exact name already exists, the name request is denied.
The display name seen in the UI is set by `spec.displayName`. If `spec.displayName` is not provided, the field `metadata.name` is used instead.
Set `metadata.namespace` and `spec.clusterName` to the ID for the cluster the project belongs to.
If you create a project through a cluster member account, you must include the annotation, `field.cattle.io/creatorId`, and set it to the cluster member account's user ID.
If you create a project through a cluster member account and want that account to be able to access the project, you must include the annotation `field.cattle.io/creatorId`, and set it to the cluster member account's user ID.
```bash
kubectl create -f - <<EOF
@@ -37,8 +41,7 @@ apiVersion: management.cattle.io/v3
kind: Project
metadata:
annotations:
field.cattle.io/creatorId:
user-id
field.cattle.io/creatorId: user-id
generateName: p-
namespace: c-m-abcde
spec:
@@ -47,7 +50,7 @@ spec:
EOF
```
Setting the `field.cattle.io/creatorId` field allows the cluster member account to see project resources with the `get` command and view the project in the Rancher UI. Cluster owner and admin accounts don't need to set this annotation to perform these tasks.
Setting the `field.cattle.io/creatorId` field creates a `ProjectRoleTemplateBinding` that grants the specified user the ability to see project resources with the `get` command and view the project in the Rancher UI. Cluster owner and admin accounts don't need to set this annotation to perform these tasks.
Setting the `field.cattle.io/creator-principal-name` annotation to the user's principal preserves it in a projectroletemplatebinding automatically created for the project owner.
@@ -98,9 +101,13 @@ spec:
EOF
```
### Backing Namespace
After creating the project, the field `status.backingNamespace` gets populated. This represents the namespace in the management cluster that is created to manage project related resources. Examples of resources stored in the backing namespace are [project scoped secrets](../../how-to-guides/new-user-guides/kubernetes-resources-setup/secrets.md#creating-secrets-in-projects) and [project role template bindings](../../how-to-guides/new-user-guides/authentication-permissions-and-global-configuration/manage-role-based-access-control-rbac/cluster-and-project-roles.md#project-roles).
## Adding a Member to a Project
Look up the project ID to specify the `metadata.namespace` field and `projectName` field values.
Look up the project's [backing namespace](#backing-namespace) to specify the `metadata.namespace` field value and look up the project's ID to specify the `projectName` field value.
```bash
kubectl --namespace c-m-abcde get projects
@@ -120,7 +127,7 @@ apiVersion: management.cattle.io/v3
kind: ProjectRoleTemplateBinding
metadata:
generateName: prtb-
namespace: p-vwxyz
namespace: c-m-abcde-p-vwxyz
projectName: c-m-abcde:p-vwxyz
roleTemplateName: project-member
userPrincipalName: keycloak_user://user
@@ -146,16 +153,16 @@ Create a projectroletemplatebinding for each role you want to assign to the proj
## Listing Project Members
Look up the project ID:
Look up the project backing namespace:
```bash
kubectl --namespace c-m-abcde get projects
```
to list projectroletemplatebindings in the project's namespace:
To list projectroletemplatebindings in the project's backing namespace:
```bash
kubectl --namespace p-vwxyz get projectroletemplatebindings
kubectl --namespace c-m-abcde-p-vwxyz get projectroletemplatebindings
```
## Deleting a Member From a Project
@@ -165,14 +172,14 @@ Lookup the projectroletemplatebinding IDs containing the member in the project's
Delete the projectroletemplatebinding from the project's namespace:
```bash
kubectl --namespace p-vwxyz delete projectroletemplatebindings prtb-qx874 prtb-7zw7s
kubectl --namespace c-m-abcde-p-vwxyz delete projectroletemplatebindings prtb-qx874 prtb-7zw7s
```
## Creating a Namespace in a Project
The Project resource resides in the management cluster, even if the Project is for a managed cluster. The namespaces under the project reside in the managed cluster.
On the management cluster, look up the project ID for the cluster you are administrating since it generated using `metadata.generateName`:
On the management cluster, look up the project ID for the cluster you are administrating if generated using `metadata.generateName`:
```bash
kubectl --namespace c-m-abcde get projects
@@ -208,3 +215,5 @@ kubectl --namespace c-m-abcde delete project p-vwxyz
```
Note that this command doesn't delete the namespaces and resources that formerly belonged to the project.
It does delete all project role template bindings for the projects, so recreating the project will not restore members added to the project, and you have to add users as members again.
@@ -65,7 +65,7 @@ Kubernetes workers should open UDP port `8472` (VXLAN) and TCP port `9099` (heal
![](/img/canal-diagram.png)
For more information, see the [Canal GitHub Page.](https://github.com/projectcalico/canal)
For more information, refer to the [Rancher maintained Canal source](https://github.com/rancher/rke2-charts/tree/main-source/packages/rke2-canal) and the [Canal GitHub Page](https://github.com/projectcalico/canal).
#### Flannel
@@ -6,16 +6,16 @@ title: Deprecated Features in Rancher
<link rel="canonical" href="https://ranchermanager.docs.rancher.com/faq/deprecated-features"/>
</head>
## What is Rancher's deprecation policy?
We have published our official deprecation policy in the support [terms of service](https://rancher.com/support-maintenance-terms).
## Where can I find out which features have been deprecated in Rancher?
Rancher will publish deprecated features as part of the [release notes](https://github.com/rancher/rancher/releases) for Rancher found on GitHub. Please consult the following patch releases for deprecated features:
| Patch Version | Release Date |
|---------------|---------------|
| [2.10.12](https://github.com/rancher/rancher/releases/tag/v2.10.12) | May 27, 2026 |
| [2.10.11](https://github.com/rancher/rancher/releases/tag/v2.10.11) | January 29, 2026 |
| [2.10.10](https://github.com/rancher/rancher/releases/tag/v2.10.10) | September 25, 2025 |
| [2.10.9](https://github.com/rancher/rancher/releases/tag/v2.10.9) | August 27, 2025 |
| [2.10.8](https://github.com/rancher/rancher/releases/tag/v2.10.8) | July 30, 2025 |
| [2.10.7](https://github.com/rancher/rancher/releases/tag/v2.10.7) | June 25, 2025 |
| [2.10.6](https://github.com/rancher/rancher/releases/tag/v2.10.6) | May 22, 2025 |
@@ -52,12 +52,6 @@ az group create --name rancher-rg --location eastus
To create an AKS cluster, run the following command. Use a VM size that applies to your use case. Refer to [this article](https://docs.microsoft.com/en-us/azure/virtual-machines/sizes) for available sizes and options. When choosing a Kubernetes version, be sure to first consult the [support matrix](https://rancher.com/support-matrix/) to find the highest version of Kubernetes that has been validated for your Rancher version.
:::note
If you're updating from an older version of Kubernetes, to Kubernetes v1.22 or above, you also need to [update](https://kubernetes.github.io/ingress-nginx/user-guide/k8s-122-migration/) ingress-nginx.
:::
```
az aks create \
--resource-group rancher-rg \
@@ -81,48 +75,46 @@ This command merges your cluster's credentials into the existing kubeconfig and
## 5. Install an Ingress
The cluster needs an Ingress so that Rancher can be accessed from outside the cluster. Installing an Ingress requires allocating a public IP address. Ensure you have sufficient quota, otherwise it will fail to assign the IP address. Limits for public IP addresses are applicable at a regional level per subscription.
The cluster needs an Ingress so that Rancher can be accessed from outside the cluster. Installing an Ingress requires allocating a public IP address. Ensure you have sufficient quota, otherwise it will fail to assign the IP address. Limits for public IP addresses are applicable at a regional level per subscription. You can use a managed ingress controller provided by Azure or a third-party ingress controller like Traefik.
To make sure that you choose the correct Ingress-NGINX Helm chart, first find an `Ingress-NGINX version` that's compatible with your Kubernetes version in the [Kubernetes/ingress-nginx support table](https://github.com/kubernetes/ingress-nginx#supported-versions-table).
:::warning
It is not recommended to install a third-party ingress controller, like Traefik, if a managed ingress controller is already being used.
:::
Then, list the Helm charts available to you by running the following command:
:::warning
**Ingress-NGINX EOL:** The community `ingress-nginx` controller reaches End-of-Life (EOL) in March 2026. This page uses Traefik, which is the recommended migration path for Rancher environments.
:::
```
helm repo add ingress-nginx https://kubernetes.github.io/ingress-nginx
Traefik includes a native Ingress NGINX provider. This allows you to migrate from NGINX without rewriting your existing Ingress objects, as Traefik will automatically interpret `nginx.ingress.kubernetes.io` annotations. If you are upgrading a cluster that is already using `ingress-nginx`, follow this [guide](https://doc.traefik.io/traefik/migrate/nginx-to-traefik/) for more information.
To install Traefik (chart version 39.0.0) on a fresh cluster, run the following `helm` commands:
```bash
helm repo add traefik https://traefik.github.io/charts
helm repo update
helm search repo ingress-nginx -l
```
The `helm search` command's output contains an `APP VERSION` column. The versions under this column are equivalent to the `Ingress-NGINX version` you chose earlier. Using the app version, select a chart version that bundles an app compatible with your Kubernetes install. For example, if you have Kubernetes v1.24, you can select the v4.6.0 Helm chart, since Ingress-NGINX v1.7.0 comes bundled with that chart, and v1.7.0 is compatible with Kubernetes v1.24. When in doubt, select the most recent compatible version.
Now that you know which Helm chart `version` you need, run the following command. It installs an `nginx-ingress-controller` with a Kubernetes load balancer service:
```
helm search repo ingress-nginx -l
helm upgrade --install \
ingress-nginx ingress-nginx/ingress-nginx \
--namespace ingress-nginx \
--set controller.service.type=LoadBalancer \
--set controller.service.annotations."service\.beta\.kubernetes\.io/azure-load-balancer-health-probe-request-path"=/healthz \
--set controller.service.externalTrafficPolicy=Local \
--version 4.6.0 \
--create-namespace
traefik traefik/traefik \
--namespace traefik \
--version 39.0.0 \
--create-namespace \
--set service.type=LoadBalancer \
--set ping.enabled=true \
--set service.annotations."service\.beta\.kubernetes\.io/azure-load-balancer-health-probe-request-path"=/ping
```
## 6. Get Load Balancer IP
To get the address of the load balancer, run:
```
kubectl get service ingress-nginx-controller --namespace=ingress-nginx
```bash
kubectl get service traefik --namespace=traefik
```
The result should look similar to the following:
```
```bash
NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S)
AGE
ingress-nginx-controller LoadBalancer 10.0.116.18 40.31.180.83 80:31229/TCP,443:31050/TCP
traefik LoadBalancer 10.0.116.18 40.31.180.83 80:31229/TCP,443:31050/TCP
67s
```
@@ -145,7 +137,7 @@ Use that DNS name from the previous step as the Rancher server URL when you inst
When installing Rancher on top of this setup, you will also need to pass the value below into the Rancher Helm install command in order to set the name of the ingress controller to be used with Rancher's ingress resource:
```
--set ingress.ingressClassName=nginx
--set ingress.ingressClassName=traefik
```
Refer [here for the Helm install command](install-upgrade-on-a-kubernetes-cluster.md#5-install-rancher-with-helm-and-your-chosen-certificate-option) for your chosen certificate option.
@@ -52,8 +52,6 @@ Then enter the following values:
To create an EKS cluster, run the following command. Use the AWS region that applies to your use case. When choosing a Kubernetes version, be sure to first consult the [support matrix](https://rancher.com/support-matrix/) to find the highest version of Kubernetes that has been validated for your Rancher version.
**Note:** If you're updating from an older version of Kubernetes, to Kubernetes v1.22 or above, you also need to [update](https://kubernetes.github.io/ingress-nginx/user-guide/k8s-122-migration/) ingress-nginx.
```
eksctl create cluster \
--name rancher-server \
@@ -88,46 +86,48 @@ rancher-server-cluster us-west-2 True
### 5. Install an Ingress
The cluster needs an Ingress so that Rancher can be accessed from outside the cluster.
The cluster needs an Ingress so that Rancher can be accessed from outside the cluster. Installing an Ingress requires allocating a public IP address. Ensure you have sufficient quota, otherwise it will fail to assign the IP address. Limits for public IP addresses are applicable at a regional level per subscription. You can use a managed ingress controller provided by AWS (ALB) or a third-party ingress controller like Traefik.
To make sure that you choose the correct Ingress-NGINX Helm chart, first find an `Ingress-NGINX version` that's compatible with your Kubernetes version in the [Kubernetes/ingress-nginx support table](https://github.com/kubernetes/ingress-nginx#supported-versions-table).
:::warning
It is not recommended to install a third-party ingress controller, like Traefik, if a managed ingress controller (ALB) is already being used.
:::
Then, list the Helm charts available to you by running the following command:
```
helm repo add ingress-nginx https://kubernetes.github.io/ingress-nginx
:::warning
**Ingress-NGINX EOL:** The community `ingress-nginx` controller reaches End-of-Life (EOL) in March 2026. This page uses Traefik, which is the recommended migration path for Rancher environments.
:::
Traefik includes a native Ingress NGINX provider. This allows you to migrate from NGINX without rewriting your existing Ingress objects, as Traefik will automatically interpret `nginx.ingress.kubernetes.io` annotations. If you are upgrading a cluster that is already using `ingress-nginx`, follow this [guide](https://doc.traefik.io/traefik/migrate/nginx-to-traefik/) for more information.
To install Traefik (chart version 39.0.0) on a fresh cluster, run the following `helm` commands:
```bash
helm repo add traefik https://traefik.github.io/charts
helm repo update
helm search repo ingress-nginx -l
```
The `helm search` command's output contains an `APP VERSION` column. The versions under this column are equivalent to the `Ingress-NGINX version` you chose earlier. Using the app version, select a chart version that bundles an app compatible with your Kubernetes install. For example, if you have Kubernetes v1.23, you can select the v4.6.0 Helm chart, since Ingress-NGINX v1.7.0 comes bundled with that chart, and v1.7.0 is compatible with Kubernetes v1.23. When in doubt, select the most recent compatible version.
Now that you know which Helm chart `version` you need, run the following command. It installs an `nginx-ingress-controller` with a Kubernetes load balancer service:
```
helm upgrade --install \
ingress-nginx ingress-nginx/ingress-nginx \
--namespace ingress-nginx \
--set controller.service.type=LoadBalancer \
--version 4.6.0 \
--create-namespace
traefik traefik/traefik \
--namespace traefik \
--version 39.0.0 \
--create-namespace \
--set service.type=LoadBalancer \
--set ping.enabled=true \
```
### 6. Get Load Balancer IP
To get the address of the load balancer, run:
```
kubectl get service ingress-nginx-controller --namespace=ingress-nginx
```bash
kubectl get service traefik --namespace=traefik
```
The result should look similar to the following:
```
NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S)
```bash
NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S)
AGE
ingress-nginx-controller LoadBalancer 10.100.90.18 a904a952c73bf4f668a17c46ac7c56ab-962521486.us-west-2.elb.amazonaws.com 80:31229/TCP,443:31050/TCP
27m
traefik LoadBalancer 10.100.90.18 a904a952c73bf4f668a17c46ac7c56ab-962521486.us-west-2.elb.amazonaws.com 80:31229/TCP,443:31050/TCP
67s
```
Save the `EXTERNAL-IP`.
@@ -149,7 +149,7 @@ Use that DNS name from the previous step as the Rancher server URL when you inst
When installing Rancher on top of this setup, you will also need to pass the value below into the Rancher Helm install command in order to set the name of the ingress controller to be used with Rancher's ingress resource:
```
--set ingress.ingressClassName=nginx
--set ingress.ingressClassName=traefik
```
Refer [here for the Helm install command](install-upgrade-on-a-kubernetes-cluster.md#5-install-rancher-with-helm-and-your-chosen-certificate-option) for your chosen certificate option.
@@ -124,7 +124,6 @@ When choosing a Kubernetes version, be sure to first consult the [support matrix
To successfully create a GKE cluster with Rancher, your GKE must be in Standard mode. GKE has two modes of operation when creating a Kubernetes cluster, Autopilot and Standard mode. The cluster configuration for Autopilot mode has restrictions on editing the kube-system namespace. However, Rancher needs to create resources in the kube-system namespace during installation. As a result, you will not be able to install Rancher on a GKE cluster created in Autopilot mode. For more information about the difference between GKE Autopilot mode and Standard mode, visit [Compare GKE Autopilot and Standard.](https://cloud.google.com/kubernetes-engine/docs/resources/autopilot-standard-feature-comparison)
**Note:** If you're updating from an older version of Kubernetes, to Kubernetes v1.22 or above, you also need to [update](https://kubernetes.github.io/ingress-nginx/user-guide/k8s-122-migration/) ingress-nginx.
```
gcloud container clusters create cluster-name --num-nodes=3 --cluster-version=<VERSION>
@@ -140,36 +139,48 @@ gcloud container clusters get-credentials cluster-name
This command configures `kubectl` to use the cluster you created.
## 7. Install an Ingress
The cluster needs an Ingress so that Rancher can be accessed from outside the cluster.
The cluster needs an Ingress so that Rancher can be accessed from outside the cluster. Installing an Ingress requires allocating a public IP address. Ensure you have sufficient quota, otherwise it will fail to assign the IP address. Limits for public IP addresses are applicable at a regional level per subscription. You can use a managed ingress controller provided by GCP or a third-party ingress controller like Traefik.
The following command installs an `nginx-ingress-controller` with a LoadBalancer service:
:::warning
It is not recommended to install a third-party ingress controller, like Traefik, if a managed ingress controller is already being used.
:::
```
helm repo add ingress-nginx https://kubernetes.github.io/ingress-nginx
:::warning
**Ingress-NGINX EOL:** The community `ingress-nginx` controller reaches End-of-Life (EOL) in March 2026. This page uses Traefik, which is the recommended migration path for Rancher environments.
:::
Traefik includes a native Ingress NGINX provider. This allows you to migrate from NGINX without rewriting your existing Ingress objects, as Traefik will automatically interpret `nginx.ingress.kubernetes.io` annotations. If you are upgrading a cluster that is already using `ingress-nginx`, follow this [guide](https://doc.traefik.io/traefik/migrate/nginx-to-traefik/) for more information.
To install Traefik (chart version 39.0.0) on a fresh cluster, run the following `helm` commands:
```bash
helm repo add traefik https://traefik.github.io/charts
helm repo update
helm upgrade --install \
ingress-nginx ingress-nginx/ingress-nginx \
--namespace ingress-nginx \
--set controller.service.type=LoadBalancer \
--version 4.0.18 \
--create-namespace
traefik traefik/traefik \
--namespace traefik \
--version 39.0.0 \
--create-namespace \
--set service.type=LoadBalancer \
--set ping.enabled=true \
```
## 8. Get the Load Balancer IP
## 8. Get Load Balancer IP
To get the address of the load balancer, run:
```
kubectl get service ingress-nginx-controller --namespace=ingress-nginx
```bash
kubectl get service traefik --namespace=traefik
```
The result should look similar to the following:
```
NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S) AGE
ingress-nginx-controller LoadBalancer 10.3.244.156 35.233.206.34 80:31876/TCP,443:32497/TCP 81s
traefik LoadBalancer 10.3.244.156 35.233.206.34 80:31876/TCP,443:32497/TCP 81s
```
Save the `EXTERNAL-IP`.
@@ -191,7 +202,7 @@ Use the DNS name from the previous step as the Rancher server URL when you insta
When installing Rancher on top of this setup, you will also need to set the name of the ingress controller to be used with Rancher's ingress resource:
```
--set ingress.ingressClassName=nginx
--set ingress.ingressClassName=traefik
```
Refer [here for the Helm install command](install-upgrade-on-a-kubernetes-cluster.md#5-install-rancher-with-helm-and-your-chosen-certificate-option) for your chosen certificate option.
@@ -13,7 +13,7 @@ This section describes how to troubleshoot an installation of Rancher on a Kuber
Most of the troubleshooting will be done on objects in these 3 namespaces.
- `cattle-system` - `rancher` deployment and pods.
- `ingress-nginx` - Ingress controller pods and services.
- `traefik` - Ingress controller pods and services.
- `cert-manager` - `cert-manager` pods.
### "default backend - 404"
@@ -123,10 +123,10 @@ kubectl -n cattle-system describe ingress
If its ready and the SSL is still not working you may have a malformed cert or secret.
Check the nginx-ingress-controller logs. Because the nginx-ingress-controller has multiple containers in its pod you will need to specify the name of the container.
Check the `traefik` logs.
```
kubectl -n ingress-nginx logs -f nginx-ingress-controller-rfjrq nginx-ingress-controller
kubectl logs -n traefik traefik-6b94b8b688-bngw2
...
W0705 23:04:58.240571 7 backend_ssl.go:49] error obtaining PEM from secret cattle-system/tls-rancher-ingress: error retrieving secret cattle-system/tls-rancher-ingress: secret cattle-system/tls-rancher-ingress was not found
```
@@ -148,11 +148,6 @@ The most common cause of this issue is port 8472/UDP is not open between the nod
Once the network issue is resolved, the `canal` pods should timeout and restart to establish their connections.
### nginx-ingress-controller Pods show RESTARTS
The most common cause of this issue is the `canal` pods have failed to establish the overlay network. See [canal Pods show READY `2/3`](#canal-pods-show-ready-23) for troubleshooting.
### Failed to dial to /var/run/docker.sock: ssh: rejected: administratively prohibited (open failed)
Some causes of this error include:
@@ -29,14 +29,35 @@ Review the list of known issues for each Rancher version, which can be found in
Note that upgrades _to_ or _from_ any chart in the [rancher-alpha repository](../resources/choose-a-rancher-version.md#helm-chart-repositories) aren't supported.
### Upgrade Path
:::important
**Important:** The only tested and supported Rancher upgrade path between minor versions (e.g. v2.9.x to v2.10.x) is to upgrade from the latest available patch version of your current running minor release to the latest available patch version of the next minor release.
Before initiating a minor version upgrade, verify that you are running the most recent patch release of your current version.
You can query the available chart versions with the Helm CLI:
1. Update your local Helm repo cache.
```
helm repo update
```
1. Search for available versions in your [specific repository](../resources/choose-a-rancher-version.md#helm-chart-repositories) (e.g., rancher-stable):
```
helm search repo rancher-<CHART_REPO>/rancher --versions
```
If your installation is not on the latest patch version of the current minor release, you must upgrade to that version before proceeding to the next minor version.
:::
### Helm Version
The upgrade instructions assume you are using Helm 3.
<DeprecationHelm2 />
For migration of installs started with Helm 2, refer to the official [Helm 2 to 3 migration docs.](https://helm.sh/blog/migrate-from-helm-v2-to-helm-v3/) The [Helm 2 upgrade page here](https://github.com/rancher/rancher-docs/tree/main/archived_docs/en/version-2.0-2.4/getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/upgrades/helm2.md) provides a copy of the older upgrade instructions that used Helm 2, and it is intended to be used if upgrading to Helm 3 is not feasible.
### For air-gapped installs: Populate private registry
For [air-gapped installs only,](../other-installation-methods/air-gapped-helm-cli-install/air-gapped-helm-cli-install.md) collect and populate images for the new Rancher server version. Follow the guide to [populate your private registry](../other-installation-methods/air-gapped-helm-cli-install/publish-images.md) with the images for the Rancher version that you want to upgrade to.
@@ -107,8 +128,21 @@ You'll use the backup as a restore point if something goes wrong during upgrade.
```plain
helm fetch rancher-<CHART_REPO>/rancher --version=2.6.8
```
### 3. Review Rancher Feature Chart Versions Before Upgrade
### 3. Upgrade Rancher
Rancher feature charts follow specific release lines that align with Rancher versions. Major versions of feature charts correspond to Rancher minor versions and follow a defined versioning scheme.
Before upgrading Rancher, review any installed Rancher feature charts and upgrade them to the latest available version within their current chart release line. This helps ensure compatibility and avoids potential issues during or after the Rancher upgrade.
To review installed feature charts:
1. In the Rancher UI, go to **Apps & Marketplace**.
2. Select **Installed Apps**.
3. Review the chart versions and upgrade to the latest patch release within the same chart major version if needed.
For more information, see the [Helm Charts in Rancher – Versioning Scheme](../../../how-to-guides/new-user-guides/helm-charts-in-rancher/helm-charts-in-rancher.md#versioning-scheme).
### 4. Upgrade Rancher
This section describes how to upgrade normal (Internet-connected) or air-gapped installations of Rancher with Helm.
@@ -132,17 +166,17 @@ There will be more values that are listed with this command. This is just an exa
:::
:::tip
:::tip
Your deployment name may vary; for example, if you're deploying Rancher through the AWS Marketplace, the deployment name is 'rancher-stable'.
Thus:
Your deployment name may vary; for example, if you're deploying Rancher through the AWS Marketplace, the deployment name is 'rancher-stable'.
Thus:
```
helm get values rancher-stable -n cattle-system
hostname: rancher.my.org
```
:::
:::
If you are upgrading cert-manager to the latest version from v1.5 or below, follow the [cert-manager upgrade docs](../resources/upgrade-cert-manager.md#option-c-upgrade-cert-manager-from-versions-15-and-below) to learn how to upgrade cert-manager without needing to perform an uninstall or reinstall of Rancher. Otherwise, follow the [steps to upgrade Rancher](#steps-to-upgrade-rancher) below.
@@ -165,17 +199,17 @@ The above is an example, there may be more values from the previous step that ne
:::
:::tip
:::tip
If you deploy Rancher through the AWS Marketplace, the deployment name is 'rancher-stable'.
Thus:
If you deploy Rancher through the AWS Marketplace, the deployment name is 'rancher-stable'.
Thus:
```
helm upgrade rancher-stable rancher-<CHART_REPO>/rancher \
--namespace cattle-system \
--set hostname=rancher.my.org
```
:::
:::
Alternatively, it's possible to export the current values to a file and reference that file during upgrade. For example, to only change the Rancher version:
@@ -185,7 +219,7 @@ Alternatively, it's possible to export the current values to a file and referenc
```
1. Update only the Rancher version:
```
helm upgrade rancher rancher-<CHART_REPO>/rancher \
--namespace cattle-system \
@@ -193,18 +227,10 @@ Alternatively, it's possible to export the current values to a file and referenc
--version=2.6.8
```
### 4. Verify the Upgrade
### 5. Verify the Upgrade
Log into Rancher to confirm that the upgrade succeeded.
:::tip
Having network issues following upgrade?
See [Restoring Cluster Networking](https://github.com/rancher/rancher-docs/tree/main/archived_docs/en/version-2.0-2.4/getting-started/installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/upgrades/namespace-migration.md).
:::
## Known Upgrade Issues
A list of known issues for each Rancher version can be found in the release notes on [GitHub](https://github.com/rancher/rancher/releases) and on the [Rancher forums.](https://forums.rancher.com/c/announcements/12)
@@ -127,18 +127,14 @@ This option is only effective on the initial Rancher install. See [Issue 16522](
To customize or use a different ingress with Rancher server you can set your own Ingress annotations.
Please refer to the Traefik documentation for the full list of Ingress NGINX annotations that are [supported](https://doc.traefik.io/traefik/reference/routing-configuration/kubernetes/ingress-nginx/#annotations-support) and [unsupported](https://doc.traefik.io/traefik/reference/routing-configuration/kubernetes/ingress-nginx/#unsupported-annotations) by Traefik's kubernetesIngressNginx provider.
Example on setting a custom certificate issuer:
```plain
--set ingress.extraAnnotations.'cert-manager\.io/cluster-issuer'=issuer-name
```
Example on setting a static proxy header with `ingress.configurationSnippet`. This value is parsed like a template so variables can be used.
```plain
--set ingress.configurationSnippet='more_set_input_headers X-Forwarded-Host {{ .Values.hostname }};'
```
### HTTP Proxy
Rancher requires internet access for some functionality (Helm charts). Use `proxy` to set your proxy server or use `extraEnv` to set the `HTTPS_PROXY` environment variable to point to your proxy server.
@@ -211,34 +207,6 @@ If you are using a Private CA signed certificate (or if `agent-tls-mode` is set
Your load balancer must support long lived websocket connections and will need to insert proxy headers so Rancher can route links correctly.
### Configuring Ingress for External TLS when Using NGINX v0.22
In NGINX v0.22, the behavior of NGINX has [changed](https://github.com/kubernetes/ingress-nginx/blob/06efac9f0b6f8f84b553f58ccecf79dc42c75cc6/Changelog.md) regarding forwarding headers and external TLS termination. Therefore, in the scenario that you are using external TLS termination configuration with NGINX v0.22, you must enable the `use-forwarded-headers` option for ingress:
For RKE installations, edit the `cluster.yml` to add the following settings.
```yaml
ingress:
provider: nginx
options:
use-forwarded-headers: 'true'
```
For RKE2 installations, you can create a custom `rke2-ingress-nginx-config.yaml` file at `/var/lib/rancher/rke2/server/manifests/rke2-ingress-nginx-config.yaml` containing this required setting to enable using forwarded headers with external TLS termination. Without this required setting applied, the external LB will continuously respond with redirect loops it receives from the ingress controller. (This can be created before or after rancher is installed, rke2 server agent will notice this addition and automatically apply it.)
```yaml
---
apiVersion: helm.cattle.io/v1
kind: HelmChartConfig
metadata:
name: rke2-ingress-nginx
namespace: kube-system
spec:
valuesContent: |-
controller:
config:
use-forwarded-headers: "true"
```
### Required Headers
- `Host`
@@ -255,66 +223,3 @@ spec:
### Health Checks
Rancher will respond `200` to health checks on the `/healthz` endpoint.
### Example NGINX config
This NGINX configuration is tested on NGINX 1.14.
:::caution
This NGINX configuration is only an example and may not suit your environment. For complete documentation, see [NGINX Load Balancing - HTTP Load Balancing](https://docs.nginx.com/nginx/admin-guide/load-balancer/http-load-balancer/).
:::
- Replace `IP_NODE1`, `IP_NODE2` and `IP_NODE3` with the IP addresses of the nodes in your cluster.
- Replace both occurrences of `FQDN` to the DNS name for Rancher.
- Replace `/certs/fullchain.pem` and `/certs/privkey.pem` to the location of the server certificate and the server certificate key respectively.
```
worker_processes 4;
worker_rlimit_nofile 40000;
events {
worker_connections 8192;
}
http {
upstream rancher {
server IP_NODE_1:80;
server IP_NODE_2:80;
server IP_NODE_3:80;
}
map $http_upgrade $connection_upgrade {
default Upgrade;
'' close;
}
server {
listen 443 ssl http2;
server_name FQDN;
ssl_certificate /certs/fullchain.pem;
ssl_certificate_key /certs/privkey.pem;
location / {
proxy_set_header Host $host;
proxy_set_header X-Forwarded-Proto $scheme;
proxy_set_header X-Forwarded-Port $server_port;
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
proxy_pass http://rancher;
proxy_http_version 1.1;
proxy_set_header Upgrade $http_upgrade;
proxy_set_header Connection $connection_upgrade;
# This allows the ability for the execute shell window to remain open for up to 15 minutes. Without this parameter, the default is 1 minute and will automatically close.
proxy_read_timeout 900s;
proxy_buffering off;
}
}
server {
listen 80;
server_name FQDN;
return 301 https://$server_name$request_uri;
}
}
```
@@ -10,10 +10,7 @@ Changing the default TLS settings depends on the chosen installation method.
## Running Rancher in a highly available Kubernetes cluster
When you install Rancher inside of a Kubernetes cluster, TLS is offloaded at the cluster's ingress controller. The possible TLS settings depend on the used ingress controller:
* nginx-ingress-controller (default for RKE1 and RKE2): [Default TLS Version and Ciphers](https://kubernetes.github.io/ingress-nginx/user-guide/tls/#default-tls-version-and-ciphers).
* traefik (default for K3s): [TLS Options](https://doc.traefik.io/traefik/https/tls/#tls-options).
When you install a Rancher managed Kubernetes cluster, TLS is offloaded at the cluster's ingress controller. Traefik is the default ingress for K3s and can be used with RKE2, refer to [TLS Options](https://doc.traefik.io/traefik/https/tls/#tls-options) for further information.
## Running Rancher in a single Docker container
@@ -284,21 +284,26 @@ In these cases, you have to explicitly allow this traffic in your host firewall,
When using the [AWS EC2 node driver](../../../how-to-guides/new-user-guides/launch-kubernetes-with-rancher/use-new-nodes-in-an-infra-provider/create-an-amazon-ec2-cluster.md) to provision cluster nodes in Rancher, you can choose to let Rancher create a security group called `rancher-nodes`. The following rules are automatically added to this security group.
| Type | Protocol | Port Range | Source/Destination | Rule Type |
| Type | Protocol | Port Range | Source/Destination | Rule Type |
|-----------------|:--------:|:-----------:|------------------------|:---------:|
| SSH | TCP | 22 | 0.0.0.0/0 | Inbound |
| HTTP | TCP | 80 | 0.0.0.0/0 | Inbound |
| Custom TCP Rule | TCP | 443 | 0.0.0.0/0 | Inbound |
| Custom TCP Rule | TCP | 2376 | 0.0.0.0/0 | Inbound |
| Custom TCP Rule | TCP | 2379-2380 | sg-xxx (rancher-nodes) | Inbound |
| Custom UDP Rule | UDP | 4789 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 6443 | 0.0.0.0/0 | Inbound |
| Custom UDP Rule | UDP | 8472 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 10250-10252 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 10256 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 30000-32767 | 0.0.0.0/0 | Inbound |
| Custom UDP Rule | UDP | 30000-32767 | 0.0.0.0/0 | Inbound |
| All traffic | All | All | 0.0.0.0/0 | Outbound |
| SSH | TCP | 22 | 0.0.0.0/0 and ::/0 | Inbound |
| HTTP | TCP | 80 | 0.0.0.0/0 and ::/0 | Inbound |
| Custom TCP Rule | TCP | 443 | 0.0.0.0/0 and ::/0 | Inbound |
| Custom TCP Rule | TCP | 8443 | 0.0.0.0/0 and ::/0 | Inbound |
| Custom TCP Rule | TCP | 2376 | 0.0.0.0/0 and ::/0 | Inbound |
| Custom TCP Rule | TCP | 6443 | 0.0.0.0/0 and ::/0 | Inbound |
| Custom TCP Rule | TCP | 179 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 5473 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 9345 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 2379-2380 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 10250-10252 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 10256 | sg-xxx (rancher-nodes) | Inbound |
| Custom UDP Rule | UDP | 4789 | sg-xxx (rancher-nodes) | Inbound |
| Custom UDP Rule | UDP | 8472 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 9796 | sg-xxx (rancher-nodes) | Inbound |
| Custom TCP Rule | TCP | 30000-32767 | 0.0.0.0/0 and ::/0 | Inbound |
| Custom UDP Rule | UDP | 30000-32767 | 0.0.0.0/0 and ::/0 | Inbound |
| All traffic | All | All | 0.0.0.0/0 and ::/0 | Outbound |
### Opening SUSE Linux Ports
@@ -212,7 +212,7 @@ configs:
ca_file: <path to the ca file used in the registry>
```
For more information on private registries configuration file for RKE2, refer to the [RKE2 documentation.](https://docs.rke2.io/install/containerd_registry_configuration)
For more information on private registries configuration file for RKE2, refer to the [RKE2 documentation.](https://docs.rke2.io/install/private_registry)
## 3. Install RKE2
@@ -42,7 +42,7 @@ If you will use ARM64 hosts, the registry must support manifests. As of April 20
1. Go to our [releases page,](https://github.com/rancher/rancher/releases) find the Rancher v2.x.x release that you want to install, and click **Assets**. Note: Don't use releases marked `rc` or `Pre-release`, as they are not stable for production environments.
2. From the release's **Assets** section, download the following files, which are required to install Rancher in an air gap environment:
2. From the release's **Assets** section, download the following files, which are required to install Rancher in an air-gap environment:
| Release File | Description |
| ---------------- | -------------- |
@@ -83,16 +83,39 @@ In a Kubernetes Install, if you elect to use the Rancher default self-signed TLS
### 3. Save the images to your workstation
1. Make `rancher-save-images.sh` an executable:
```
(Optional) Verify the image list before pulling:
```bash
wc -l rancher-images.txt
head rancher-images.txt
```
1. Make `rancher-save-images.sh` executable:
```bash
chmod +x rancher-save-images.sh
```
1. Run `rancher-save-images.sh` with the `rancher-images.txt` image list to create a tarball of all the required images:
```plain
```bash
./rancher-save-images.sh --image-list ./rancher-images.txt
```
**Result:** Docker begins pulling the images used for an air gap install. Be patient. This process takes a few minutes. When the process completes, your current directory will output a tarball named `rancher-images.tar.gz`. Check that the output is in the directory.
(Optional) Specify a custom output file:
```bash
./rancher-save-images.sh \
--image-list ./rancher-images.txt \
--images rancher-images-custom.tar.gz
```
**Result:** Docker begins pulling the images required for an air-gap installation. The process may take several minutes.
1. Verify that the tarball was created:
```bash
ls -lh rancher-images.tar.gz
```
If some images fail to pull, review the output and retry after resolving any issues.
### 4. Populate the private registry
@@ -163,7 +186,7 @@ Your registry must support manifests. As of April 2020, Amazon Elastic Container
./rancher-save-images.ps1
```
**Result:** Docker begins pulling the images used for an air gap install. Be patient. This process takes a few minutes. When the process completes, your current directory will output a tarball named `rancher-windows-images.tar.gz`. Check that the output is in the directory.
**Result:** Docker begins pulling the images used for an air-gap install. Be patient. This process takes a few minutes. When the process completes, your current directory will output a tarball named `rancher-windows-images.tar.gz`. Check that the output is in the directory.
<a name="windows-3"></a>
@@ -273,7 +296,7 @@ The workstation must have Docker 18.02+ in order to support manifests, which are
./rancher-save-images.sh --image-list ./rancher-images.txt
```
**Result:** Docker begins pulling the images used for an air gap install. Be patient. This process takes a few minutes. When the process completes, your current directory will output a tarball named `rancher-images.tar.gz`. Check that the output is in the directory.
**Result:** Docker begins pulling the images used for an air-gap install. Be patient. This process takes a few minutes. When the process completes, your current directory will output a tarball named `rancher-images.tar.gz`. Check that the output is in the directory.
<a name="linux-4"></a>
@@ -10,8 +10,6 @@ Now that you have a running RKE cluster, you can install Rancher in it. For secu
### Install the Helm CLI
<DeprecationHelm2 />
Install the [Helm](https://helm.sh/docs/intro/install/) CLI on a host where you have a kubeconfig to access your Kubernetes cluster:
```
@@ -42,8 +42,24 @@ kubectl -n cattle-system create secret generic tls-ca \
The configured `tls-ca` secret is retrieved when Rancher starts. On a running Rancher installation the updated CA will take effect after new Rancher pods are started.
The certificate chain must be properly formatted, or components may fail to download resources from the Rancher server.
:::
## Adding Additional CA Certificates
If you are using a node driver that makes API requests with a different CA than the one configured for Rancher, you can add additional root certificates and certificate chains.
Create a unique file ending in `.pem` for each certificate that is required, and use kubectl to create the
`tls-additional` secret in the `cattle-system` namespace.
```console
kubectl -n cattle-system create secret generic tls-additional \
--from-file=cacerts1.pem=cacerts1.pem --from-file=cacerts2.pem=cacerts2.pem
```
Rancher mounts these CA root certificates and certificate chains into the node driver pod during provisioning.
## Updating a Private CA Certificate
Follow the steps on [this page](update-rancher-certificate.md) to update the SSL certificate of the ingress in a Rancher [high availability Kubernetes installation](../install-upgrade-on-a-kubernetes-cluster/install-upgrade-on-a-kubernetes-cluster.md) or to switch from the default self-signed certificate to a custom certificate.
Follow the steps on [this page](update-rancher-certificate.md) to update the SSL certificate of the ingress in a Rancher [high availability Kubernetes installation](../install-upgrade-on-a-kubernetes-cluster/install-upgrade-on-a-kubernetes-cluster.md) or to switch from the default self-signed certificate to a custom certificate.
@@ -0,0 +1,30 @@
---
title: Helm Version Requirements
---
<head>
<link rel="canonical" href="https://ranchermanager.docs.rancher.com/getting-started/installation-and-upgrade/resources/helm-version-requirements"/>
</head>
This section contains the requirements for Helm, which is the tool used to install Rancher on a high-availability Kubernetes cluster.
## Identifying the Proper Helm v3 Version
Select any Helm v3 version that is officially compatible with the Kubernetes version range you are using from our [Rancher Support Matrix](https://www.suse.com/suse-rancher/support-matrix/all-supported-versions).
To apply this rule, you may need to reference two external resources:
- **Helm Version Compatibility:** Refer to the [Helm Version Support Policy](https://helm.sh/docs/topics/version_skew/) and select the version matching the rule for your Rancher minor target.
- **Rancher's Kubernetes Support Range:** Use the [Rancher Support Matrix](https://www.suse.com/suse-rancher/support-matrix/all-supported-versions) to identify the Kubernetes versions supported by your target Rancher minor version.
### Example
- **Scenario:** You are targeting Rancher v2.10.8, which supports Kubernetes versions v1.28 through v1.31.
- **Application:** Our rule requires a Helm version that supports this range. You can verify this by checking the Helm version's compatibility with the highest version in the range, Kubernetes v1.31.
- **Result:** You find that Helm v3.16 support the Kubernetes v1.28-v1.31 range.
- We recommend Helm v3.16 because matches Rancher's range exactly.
## Additional Notes
- Helm v3.2.x or higher is required to install or upgrade Rancher v2.5.
- When using tools that run Helm commands for you (like Terraform), you must make sure they are configured to use the correct Helm version.
@@ -145,18 +145,6 @@ Before you can perform the upgrade, you must prepare your air gapped environment
--set cainjector.image.repository=<REGISTRY.YOURDOMAIN.COM:PORT>/quay.io/jetstack/cert-manager-cainjector
```
<DeprecationHelm2 />
The Helm 2 command is as follows:
```plain
helm template ./cert-manager-v0.12.0.tgz --output-dir . \
--name cert-manager --namespace cert-manager \
--set image.repository=<REGISTRY.YOURDOMAIN.COM:PORT>/quay.io/jetstack/cert-manager-controller
--set webhook.image.repository=<REGISTRY.YOURDOMAIN.COM:PORT>/quay.io/jetstack/cert-manager-webhook
--set cainjector.image.repository=<REGISTRY.YOURDOMAIN.COM:PORT>/quay.io/jetstack/cert-manager-cainjector
```
1. Download the required CRD file for cert-manager (old and new)
```plain
@@ -96,7 +96,8 @@ To enable draining each node during a cluster upgrade,
:::note
There is a [known issue](https://github.com/rancher/rancher/issues/25478) in which the Rancher UI doesn't show the state of etcd and controlplane as drained, even though they are being drained.
- There is a [known issue](https://github.com/rancher/rancher/issues/25478) in which the Rancher UI doesn't show the state of etcd and controlplane as drained, even though they are being drained.
- During an upgrade, nodes may be drained even when no user-visible YAML changes are present. This can occur if non-dynamic configuration files are updated or if a new `system-agent-installer` image is introduced. In such cases, Rancher generates a new upgrade plan, resulting in a new plan hash. When `Upgrade Strategy` is set to `Drain nodes`, this plan change can trigger node draining.
:::
@@ -0,0 +1,18 @@
---
title: Rancher for AWS
description: Learn about Rancher for AWS from the AWS Marketplace listing.
---
<head>
<link rel="canonical" href="https://ranchermanager.docs.rancher.com/getting-started/quick-start-guides/deploy-rancher-manager/aws-marketplace"/>
</head>
SUSE Rancher for AWS (SRA/SRFA) is a fully managed Software-as-a-Service (SaaS) offering available through the [AWS Marketplace](https://aws.amazon.com/marketplace/pp/prodview-yrzugbpzuukww). It provides a centralized control plane to manage, monitor, and scale Kubernetes clusters within an AWS environment.
For deployment prerequisites, architecture requirements, and subscription details, refer to the [AWS Marketplace listing](https://aws.amazon.com/marketplace/pp/prodview-yrzugbpzuukww). For more information, refer to the [product documentation](https://documentation.suse.com/cloudnative/rancher-srfa/).
:::note
SUSE Rancher for AWS is an offering distinct from deploying and managing the Rancher server manually on Amazon EKS. If you intend to install and manage your own Rancher deployment on an EKS cluster, refer to [Installing Rancher on Amazon EKS](../../installation-and-upgrade/install-upgrade-on-a-kubernetes-cluster/rancher-on-amazon-eks.md).
:::
@@ -26,7 +26,7 @@ Deploying to Amazon AWS will incur charges.
- [Amazon AWS Account](https://aws.amazon.com/account/): An Amazon AWS Account is required to create resources for deploying Rancher and Kubernetes.
- [Amazon AWS Access Key](https://docs.aws.amazon.com/general/latest/gr/managing-aws-access-keys.html): Use this link to follow a tutorial to create an Amazon AWS Access Key if you don't have one yet.
- [IAM Policy created](https://docs.aws.amazon.com/IAM/latest/UserGuide/access_policies_create.html#access_policies_create-start): Defines the permissions an account attached with this policy has.
- Install [Terraform](https://www.terraform.io/downloads.html): Used to provision the server and cluster in Amazon AWS.
- Install [Terraform](https://developer.hashicorp.com/terraform/install): Used to provision the server and cluster in Amazon AWS.
### Example IAM Policy
@@ -27,7 +27,7 @@ Deploying to Microsoft Azure will incur charges.
- [Microsoft Azure Subscription](https://docs.microsoft.com/en-us/azure/cost-management-billing/manage/create-subscription#create-a-subscription-in-the-azure-portal): Use this link to follow a tutorial to create a Microsoft Azure subscription if you don't have one yet.
- [Micsoroft Azure Tenant](https://docs.microsoft.com/en-us/azure/active-directory/develop/quickstart-create-new-tenant): Use this link and follow instructions to create a Microsoft Azure tenant.
- [Microsoft Azure Client ID/Secret](https://docs.microsoft.com/en-us/azure/active-directory/develop/howto-create-service-principal-portal): Use this link and follow instructions to create a Microsoft Azure client and secret.
- [Terraform](https://www.terraform.io/downloads.html): Used to provision the server and cluster in Microsoft Azure.
- [Terraform](https://developer.hashicorp.com/terraform/install): Used to provision the server and cluster in Microsoft Azure.
## Getting Started
@@ -25,7 +25,7 @@ Deploying to DigitalOcean will incur charges.
- [DigitalOcean Account](https://www.digitalocean.com): You will require an account on DigitalOcean as this is where the server and cluster will run.
- [DigitalOcean Access Key](https://www.digitalocean.com/community/tutorials/how-to-create-a-digitalocean-space-and-api-key): Use this link to create a DigitalOcean Access Key if you don't have one.
- [Terraform](https://www.terraform.io/downloads.html): Used to provision the server and cluster to DigitalOcean.
- [Terraform](https://developer.hashicorp.com/terraform/install): Used to provision the server and cluster to DigitalOcean.
## Getting Started
@@ -65,7 +65,7 @@ Log in to Rancher to begin using the application. After you log in, you'll make
Replace `<SERVER_IP>` with your host IP address.
2. When prompted, create a password for the default `admin` account there cowpoke!
2. When prompted, create a password for the default `admin` account.
3. Set the **Rancher Server URL**. The URL can either be an IP address or a host name. However, each node added to your cluster must be able to connect to this URL.<br/><br/>If you use a hostname in the URL, this hostname must be resolvable by DNS on the nodes you want to add to you cluster.
@@ -97,7 +97,7 @@ You can access your cluster after its state is updated to **Active**.
**Active** clusters are assigned two Projects:
- `Default`, containing the `default` namespace
- `System`, containing the `cattle-system`, `ingress-nginx`, `kube-public`, and `kube-system` namespaces
- `System`, containing the `cattle-system`, `traefik`, `kube-public`, and `kube-system` namespaces
#### Finished
@@ -26,7 +26,7 @@ Deploying to Google GCP will incur charges.
- [Google GCP Account](https://console.cloud.google.com/): A Google GCP Account is required to create resources for deploying Rancher and Kubernetes.
- [Google GCP Project](https://cloud.google.com/appengine/docs/standard/nodejs/building-app/creating-project): Use this link to follow a tutorial to create a GCP Project if you don't have one yet.
- [Google GCP Service Account](https://cloud.google.com/iam/docs/creating-managing-service-account-keys): Use this link and follow instructions to create a GCP service account and token file.
- [Terraform](https://www.terraform.io/downloads.html): Used to provision the server and cluster in Google GCP.
- [Terraform](https://developer.hashicorp.com/terraform/install): Used to provision the server and cluster in Google GCP.
## Getting Started
@@ -41,7 +41,6 @@ Deploying to Google GCP will incur charges.
- `gcp_account_json` - GCP service account file path and file name
- `rancher_server_admin_password` - Admin password for created Rancher server. See [Setting up the Bootstrap Password](../../installation-and-upgrade/resources/bootstrap-password.md#password-requirements) for password requirements.
5. **Optional:** Modify optional variables within `terraform.tfvars`.
See the [Quickstart Readme](https://github.com/rancher/quickstart) and the [GCP Quickstart Readme](https://github.com/rancher/quickstart/tree/master/rancher/gcp) for more information.
Suggestions include:
@@ -25,7 +25,7 @@ Deploying to Hetzner Cloud will incur charges.
- [Hetzner Cloud Account](https://www.hetzner.com): You will require an account on Hetzner as this is where the server and cluster will run.
- [Hetzner API Access Key](https://docs.hetzner.cloud/#getting-started): Use these instructions to create a Hetzner Cloud API Key if you don't have one.
- [Terraform](https://www.terraform.io/downloads.html): Used to provision the server and cluster to Hetzner.
- [Terraform](https://developer.hashicorp.com/terraform/install): Used to provision the server and cluster to Hetzner.
## Getting Started
@@ -23,9 +23,9 @@ Deploying to Linode will incur charges.
:::
- [Linode Account](https://linode.com): The Linode account to run provision server and cluster under.
- [Linode Personal Access Token](https://www.linode.com/docs/products/tools/api/guides/manage-api-tokens/): A Linode Personal Access Token to authenticate with.
- [Terraform](https://www.terraform.io/downloads.html): Used to provision the server and cluster on Linode.
- [Linode Account](https://www.linode.com/): The Linode account to run provision server and cluster under.
- [Linode Personal Access Token](https://techdocs.akamai.com/cloud-computing/docs/manage-personal-access-tokens): A Linode Personal Access Token to authenticate with.
- [Terraform](https://developer.hashicorp.com/terraform/install): Used to provision the server and cluster on Linode.
## Getting Started
@@ -48,7 +48,7 @@ See the [Quickstart Readme](https://github.com/rancher/quickstart) and the [Lino
- `prefix` - The prefix for all created infrastructure.
- `linode_type` - The type/plan that all infrastructure Linodes should use.
- Default: `g6-standard-2`
- For a complete list of plans, see the [official Plan Types page](https://www.linode.com/docs/products/compute/compute-instances/plans/).
- For a complete list of plans, see the [official Plan Types page](https://techdocs.akamai.com/cloud-computing/docs/compute-instance-plan-types).
6. Run `terraform init`.
@@ -25,7 +25,7 @@ Deploying to Outscale will incur charges.
- [Outscale Account](https://en.outscale.com/): You will require an account on Outscale as this is where the server and cluster will run.
- [Outscale Access Key](https://docs.outscale.com/en/userguide/About-Access-Keys.html): Use these instructions to create an Outscale Access Key if you don't have one.
- [Terraform](https://www.terraform.io/downloads.html): Used to provision the server and cluster in Outscale.
- [Terraform](https://developer.hashicorp.com/terraform/install): Used to provision the server and cluster in Outscale.
## Getting Started
@@ -16,7 +16,7 @@ The intent of these guides is to quickly launch a sandbox that you can use to ev
## Prerequisites
- [Vagrant](https://www.vagrantup.com): Vagrant is required as this is used to provision the machine based on the Vagrantfile.
- [Vagrant](https://developer.hashicorp.com/vagrant): Vagrant is required as this is used to provision the machine based on the Vagrantfile.
- [Virtualbox](https://www.virtualbox.org): The virtual machines that Vagrant provisions need to be provisioned to VirtualBox.
- At least 4GB of free RAM.
@@ -16,11 +16,15 @@ For configuration details, refer to the [official Kubernetes documentation](http
<Tabs groupId="k8s-distro">
<TabItem value="RKE2" default>
### Method 1 (Recommended): Set `audit-policy-file` in `machineGlobalConfig`
### Method 1 (Recommended): Set `audit-policy-file` in `machineGlobalConfig` or `machineSelectorConfig`
You can set `audit-policy-file` in the configuration file. Rancher delivers the file to the path `/var/lib/rancher/rke2/etc/config-files/audit-policy-file` in control plane nodes, and sets the proper options in the RKE2 server.
You can set `audit-policy-file` in the configuration file using either `machineGlobalConfig` or `machineSelectorConfig`.
Example:
When using `machineGlobalConfig`, Rancher delivers the file to the path `/var/lib/rancher/rke2/etc/config-files/audit-policy-file` on **all nodes** (both control plane and worker nodes), and sets the proper options in the RKE2 server. This may cause unwanted worker node reconciliation when the audit policy is modified.
To avoid worker node reconciliation, use `machineSelectorConfig` with a label selector to target only control plane nodes. This ensures that the audit policy file is only delivered to control plane nodes.
Example using `machineGlobalConfig`:
```yaml
apiVersion: provisioning.cattle.io/v1
kind: Cluster
@@ -38,6 +42,28 @@ spec:
- pods
```
Example using `machineSelectorConfig` (recommended to avoid worker node reconciliation):
```yaml
apiVersion: provisioning.cattle.io/v1
kind: Cluster
spec:
rkeConfig:
machineSelectorConfig:
- config:
audit-policy-file: |
apiVersion: audit.k8s.io/v1
kind: Policy
rules:
- level: RequestResponse
resources:
- group: ""
resources:
- pods
machineLabelSelector:
matchLabels:
rke.cattle.io/control-plane-role: 'true'
```
### Method 2: Use the Directives, `machineSelectorFiles` and `machineGlobalConfig`
:::note
@@ -103,12 +129,6 @@ spec:
rke.cattle.io/control-plane-role: 'true'
```
:::tip
You can also use the directive `machineSelectorConfig` with proper machineLabelSelectors to achieve the same effect.
:::
For more information about cluster configuration, refer to the [RKE2 cluster configuration reference](../../reference-guides/cluster-configuration/rancher-server-configuration/rke2-cluster-configuration.md) pages.
</TabItem>
@@ -178,12 +198,6 @@ spec:
rke.cattle.io/control-plane-role: 'true'
```
:::tip
You can also use the directive `machineSelectorConfig` with proper machineLabelSelectors to achieve the same effect.
:::
For more information about cluster configuration, refer to the [K3s cluster configuration reference](../../reference-guides/cluster-configuration/rancher-server-configuration/k3s-cluster-configuration.md) pages.
</TabItem>

Some files were not shown because too many files have changed in this diff Show More