Support all taints in network plugins manifests (#6208)

flannel, ovn and multus network plugins did not support all taint keys. This
update changes the tolerations to support them all.

According to the documentation:

```
There are two special cases: An empty key with operator Exists matches all keys,
values and effects which means this will tolerate everything. An empty effect matches
all effects with key key.
```

Usage of the empty `key` and `effect` ensures the network plugin daemonset will
be deployed on every nodes (ex: in case of custom taints, or NoExecute effect)
This commit is contained in:
Flavien 2020-06-02 14:38:15 +02:00 committed by GitHub
parent cc507d7ace
commit 7ff8fc259b
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23
4 changed files with 4 additions and 15 deletions

View file

@ -29,13 +29,7 @@ spec:
hostNetwork: true
serviceAccountName: calico-node
tolerations:
- effect: NoExecute
operator: Exists
- effect: NoSchedule
operator: Exists
# Mark pod as critical for rescheduling (Will have no effect starting with kubernetes 1.12)
- key: CriticalAddonsOnly
operator: "Exists"
- operator: Exists
# Minimize downtime during a rolling upgrade or deletion; tell Kubernetes to do a "force
# deletion": https://kubernetes.io/docs/concepts/workloads/pods/pod/#termination-of-pods.
terminationGracePeriodSeconds: 0

View file

@ -120,7 +120,6 @@ spec:
dnsPolicy: ClusterFirstWithHostNet
tolerations:
- operator: Exists
effect: NoSchedule
volumes:
- name: run
hostPath:

View file

@ -99,7 +99,6 @@ spec:
spec:
tolerations:
- operator: Exists
effect: NoSchedule
priorityClassName: system-cluster-critical
serviceAccountName: ovn
hostNetwork: true
@ -210,8 +209,7 @@ spec:
type: infra
spec:
tolerations:
- operator: Exists
effect: NoSchedule
- operator: Exists
serviceAccountName: ovn
hostPID: true
containers:

View file

@ -23,9 +23,7 @@ spec:
nodeSelector:
kubernetes.io/arch: amd64
tolerations:
- key: node-role.kubernetes.io/master
operator: Exists
effect: NoSchedule
- operator: Exists
serviceAccountName: multus
containers:
- name: kube-multus