This commit is contained in:
parent
87fee0cccf
commit
f7242d39b9
3 changed files with 16 additions and 1 deletions
|
@ -189,7 +189,7 @@ To re-define default action please set the following variable in your inventory:
|
||||||
calico_endpoint_to_host_action: "ACCEPT"
|
calico_endpoint_to_host_action: "ACCEPT"
|
||||||
```
|
```
|
||||||
|
|
||||||
## Optional : Define address on which Felix will respond to health requests
|
### Optional : Define address on which Felix will respond to health requests
|
||||||
|
|
||||||
Since Calico 3.2.0, HealthCheck default behavior changed from listening on all interfaces to just listening on localhost.
|
Since Calico 3.2.0, HealthCheck default behavior changed from listening on all interfaces to just listening on localhost.
|
||||||
|
|
||||||
|
@ -199,6 +199,15 @@ To re-define health host please set the following variable in your inventory:
|
||||||
calico_healthhost: "0.0.0.0"
|
calico_healthhost: "0.0.0.0"
|
||||||
```
|
```
|
||||||
|
|
||||||
|
### Optional : Configure Calico Node probe timeouts
|
||||||
|
|
||||||
|
Under certain conditions a deployer may need to tune the Calico liveness and readiness probes timeout settings. These can be configured like this:
|
||||||
|
|
||||||
|
```yml
|
||||||
|
calico_node_livenessprobe_timeout: 10
|
||||||
|
calico_node_readinessprobe_timeout: 10
|
||||||
|
```
|
||||||
|
|
||||||
## Config encapsulation for cross server traffic
|
## Config encapsulation for cross server traffic
|
||||||
|
|
||||||
Calico supports two types of encapsulation: [VXLAN and IP in IP](https://docs.projectcalico.org/v3.11/networking/vxlan-ipip). VXLAN is supported in some environments where IP in IP is not (for example, Azure).
|
Calico supports two types of encapsulation: [VXLAN and IP in IP](https://docs.projectcalico.org/v3.11/networking/vxlan-ipip). VXLAN is supported in some environments where IP in IP is not (for example, Azure).
|
||||||
|
|
|
@ -103,3 +103,7 @@
|
||||||
|
|
||||||
# Enable calico traffic encryption with wireguard
|
# Enable calico traffic encryption with wireguard
|
||||||
# calico_wireguard_enabled: false
|
# calico_wireguard_enabled: false
|
||||||
|
|
||||||
|
# Under certain situations liveness and readiness probes may need tunning
|
||||||
|
# calico_node_livenessprobe_timeout: 10
|
||||||
|
# calico_node_readinessprobe_timeout: 10
|
||||||
|
|
|
@ -305,6 +305,7 @@ spec:
|
||||||
{% endif %}
|
{% endif %}
|
||||||
periodSeconds: 10
|
periodSeconds: 10
|
||||||
initialDelaySeconds: 10
|
initialDelaySeconds: 10
|
||||||
|
timeoutSeconds: {{ calico_node_livenessprobe_timeout | default(10) }}
|
||||||
failureThreshold: 6
|
failureThreshold: 6
|
||||||
readinessProbe:
|
readinessProbe:
|
||||||
exec:
|
exec:
|
||||||
|
@ -315,6 +316,7 @@ spec:
|
||||||
{% endif %}
|
{% endif %}
|
||||||
- -felix-ready
|
- -felix-ready
|
||||||
periodSeconds: 10
|
periodSeconds: 10
|
||||||
|
timeoutSeconds: {{ calico_node_readinessprobe_timeout | default(10) }}
|
||||||
failureThreshold: 6
|
failureThreshold: 6
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- mountPath: /lib/modules
|
- mountPath: /lib/modules
|
||||||
|
|
Loading…
Reference in a new issue