- Sort Score
- Result 10 results
- Languages All
Results 1 - 10 of 212 for nftables (0.27 sec)
-
cmd/kube-proxy/app/server_linux.go
logger.Info("Using nftables Proxier") if dualStack { // TODO this has side effects that should only happen when Run() is invoked. proxier, err = nftables.NewDualStackProxier( ctx, config.NFTables.SyncPeriod.Duration, config.NFTables.MinSyncPeriod.Duration, config.NFTables.MasqueradeAll, int(*config.NFTables.MasqueradeBit), localDetectors, s.Hostname,
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sat Jun 08 13:48:54 UTC 2024 - 18.1K bytes - Viewed (0) -
pkg/proxy/nftables/proxier.go
{filterOutputChain, knftables.FilterType, knftables.OutputHook, knftables.DNATPriority + "-10"}, {filterOutputPostDNATChain, knftables.FilterType, knftables.OutputHook, knftables.DNATPriority + "+10"}, {natPreroutingChain, knftables.NATType, knftables.PreroutingHook, knftables.DNATPriority}, {natOutputChain, knftables.NATType, knftables.OutputHook, knftables.DNATPriority},
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sat Jun 08 13:48:54 UTC 2024 - 55.5K bytes - Viewed (0) -
pkg/proxy/metrics/metrics.go
// proxy has seen. NFTablesSyncFailuresTotal = metrics.NewCounter( &metrics.CounterOpts{ Subsystem: kubeProxySubsystem, Name: "sync_proxy_rules_nftables_sync_failures_total", Help: "Cumulative proxy nftables sync failures", StabilityLevel: metrics.ALPHA, }, ) // NFTablesCleanupFailuresTotal is the number of nftables stale chain cleanup
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Tue May 21 14:39:54 UTC 2024 - 13.7K bytes - Viewed (0) -
CHANGELOG/CHANGELOG-1.31.md
- The iptables mode of kube-proxy now tracks accepted packets that are destined for node-ports on localhost by introducing `kubeproxy_iptables_localhost_nodeports_accepted_packets_total` metric.
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Jun 12 20:34:14 UTC 2024 - 60.3K bytes - Viewed (0) -
hack/local-up-cluster.sh
# jump through hoops to avoid removing docker/containerd # when installing nftables and kmod, as those docker/containerd # packages depend on iptables dpkg -r --force-depends iptables && \ apt -y --fix-broken install && \ apt -y install nftables kmod && \ apt -y install iptables } function tolerate_cgroups_v2 {
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sat May 25 02:33:52 UTC 2024 - 53.3K bytes - Viewed (0) -
api/api-rules/violation_exceptions.list
API rule violation: names_match,k8s.io/kube-proxy/config/v1alpha1,KubeProxyConfiguration,IPTables API rule violation: names_match,k8s.io/kube-proxy/config/v1alpha1,KubeProxyConfiguration,NFTables API rule violation: names_match,k8s.io/kubelet/config/v1beta1,KubeletConfiguration,IPTablesDropBit
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon May 27 02:59:09 UTC 2024 - 29.9K bytes - Viewed (0) -
pkg/features/kube_features.go
// owner: @danwinship // kep: https://kep.k8s.io/3866 // alpha: v1.29 // beta: v1.31 // // Allows running kube-proxy with `--mode nftables`. NFTablesProxyMode featuregate.Feature = "NFTablesProxyMode" // owner: @aravindhp @LorbusChris // kep: http://kep.k8s.io/2271 // alpha: v1.27 // beta: v1.30 //
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Jun 12 22:51:23 UTC 2024 - 45.2K bytes - Viewed (0) -
cluster/gce/gci/configure-helper.sh
if iptables -w -L INPUT | grep "Chain INPUT (policy DROP)" > /dev/null; then echo "Add rules to accept all inbound TCP/UDP/ICMP packets" iptables -w -A INPUT -w -p TCP -j ACCEPT iptables -w -A INPUT -w -p UDP -j ACCEPT iptables -w -A INPUT -w -p ICMP -j ACCEPT iptables -w -A INPUT -w -p SCTP -j ACCEPT fi
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Mon Jun 10 22:07:47 UTC 2024 - 141.1K bytes - Viewed (0) -
CHANGELOG/CHANGELOG-1.29.md
At this point it should be functionally mostly identical to the iptables mode, except that it does not (and will not) support Service NodePorts on 127.0.0.1. (Also note that there are currently no command-line arguments for the nftables-specific config; you will need to use a config file if you want to set the equivalent of any of the `--iptables-xxx` options.)
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Jun 12 03:42:38 UTC 2024 - 324.5K bytes - Viewed (0) -
CHANGELOG/CHANGELOG-1.30.md
- github.com/a8m/tree: [10a5fd5](https://github.com/a8m/tree/tree/10a5fd5) - github.com/benbjohnson/clock: [v1.1.0](https://github.com/benbjohnson/clock/tree/v1.1.0) - github.com/danwinship/knftables: [v0.0.13](https://github.com/danwinship/knftables/tree/v0.0.13) - github.com/dnaeon/go-vcr: [v1.2.0](https://github.com/dnaeon/go-vcr/tree/v1.2.0) - github.com/dougm/pretty: [2ee9d74](https://github.com/dougm/pretty/tree/2ee9d74)
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Wed Jun 12 04:05:28 UTC 2024 - 253.2K bytes - Viewed (0)