allow pods to reach metric ports running on control plane nodes when using gce alias ip#18052
Conversation
…using gce alias ip
|
/lgtm |
|
Thanks @upodroid. |
|
@hakman: Overrode contexts on behalf of hakman: pull-kops-e2e-k8s-aws-calico DetailsIn response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
|
[APPROVALNOTIFIER] This PR is APPROVED This pull-request has been approved by: hakman The full list of commands accepted by this bot can be found here. The pull request process is described here DetailsNeeds approval from an approver in each of these files:
Approvers can indicate their approval by writing |
@serathius @hakman
This should fix the GCE scale jobs unable to read metrics from control plane nodes.
Also, this feature should already exist for amazonvpc but it doesn't work.
kops/pkg/model/awsmodel/firewall.go
Line 216 in 3df8618
all-nodes-to-master-*SG being created for aws cni jobs.