This repository has been archived by the owner on Aug 25, 2021. It is now read-only.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Companion to hashicorp/consul-k8s#521 and hashicorp/consul-k8s#524
Changes proposed in this PR:
-enable-openshift
flag to connect injector when openshift is enabled globallyHow I've tested this PR:
Deployed manually on openshift with the image built from hashicorp/consul-k8s#524 (
ishustava/consul-k8s-dev:05-25-2021-0bc1f55
)First, I need to allow Envoy to run as the specific user and the init contianer to run with elevated privileges:
This will allow any pod with the default service account to run as any user and have elevated privileges to run iptables.
Deployed static-server and static-client with:
How I expect reviewers to test this PR:
Checklist: