- Sort Score
- Result 10 results
- Languages All
Results 11 - 20 of 36 for Setns (0.05 sec)
-
cni/pkg/nodeagent/server.go
ConstructInitialSnapshot(ambientPods []*corev1.Pod) error Start(ctx context.Context) // IsPodInMesh(ctx context.Context, pod *metav1.ObjectMeta, netNs string) (bool, error) AddPodToMesh(ctx context.Context, pod *corev1.Pod, podIPs []netip.Addr, netNs string) error RemovePodFromMesh(ctx context.Context, pod *corev1.Pod) error DelPodFromMesh(ctx context.Context, pod *corev1.Pod) error Stop() }
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri May 31 21:45:18 UTC 2024 - 7.2K bytes - Viewed (0) -
cni/pkg/nodeagent/net_test.go
assert.Equal(t, nlDeps.DelLoopbackRoutesCnt.Load(), 1) // make sure the uid was taken from cache and netns closed netns := fixture.podNsMap.Take(string(pod.UID)) assert.Equal(t, nil, netns) // run gc to clean up ns: //revive:disable-next-line:call-to-gc Just a test that we are cleaning up the netns runtime.GC() assertNSClosed(t, closed) } func TestServerDeletePod(t *testing.T) {
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 06 05:10:23 UTC 2024 - 17.8K bytes - Viewed (0) -
pkg/proxy/util/nfacct/handler.go
// an instance of netlinkHandler with the initialized socket. func newNetlinkHandler() (handler, error) { socket, err := nl.GetNetlinkSocketAt(netns.None(), netns.None(), unix.NETLINK_NETFILTER) if err != nil { return nil, err } return &netlinkHandler{socket: socket}, nil } // newRequest creates a netlink request tailored for the NFAcct subsystem encapsulating the
Registered: Sat Jun 15 01:39:40 UTC 2024 - Last Modified: Sat Apr 27 06:47:50 UTC 2024 - 2.6K bytes - Viewed (0) -
cni/pkg/nodeagent/ztunnelserver.go
"number of connections to ztunnel") type ZtunnelServer interface { Run(ctx context.Context) PodDeleted(ctx context.Context, uid string) error PodAdded(ctx context.Context, pod *v1.Pod, netns Netns) error Close() error } /* To clean up stale ztunnels we may need to ztunnel to send its (uid, bootid / boot time) to us so that we can remove stale entries when the ztunnel pod is deleted
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu May 23 22:07:03 UTC 2024 - 12.3K bytes - Viewed (0) -
cni/pkg/nodeagent/cni-watcher.go
return msg, nil } func (s *CniPluginServer) ReconcileCNIAddEvent(ctx context.Context, addCmd CNIPluginAddEvent) error { log := log.WithLabels("cni-event", addCmd) log.Debugf("netns: %s", addCmd.Netns) // The CNI node plugin should have already checked the pod against the k8s API before forwarding us the event,
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Thu Jun 06 21:31:35 UTC 2024 - 6.7K bytes - Viewed (0) -
manifests/charts/istio-cni/templates/daemonset.yaml
- mountPath: /var/run/istio-cni name: cni-socket-dir {{- if .Values.cni.ambient.enabled }} - mountPath: /host/var/run/netns mountPropagation: HostToContainer name: cni-netns-dir - mountPath: /var/run/ztunnel name: cni-ztunnel-sock-dir {{ end }} resources: {{- if .Values.cni.resources }}
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri May 17 21:52:29 UTC 2024 - 7.9K bytes - Viewed (0) -
manifests/charts/istio-cni/values.yaml
cniConfFileName: "" # This directory must exist on the node, if it does not, consult your container runtime # documentation for the appropriate path. cniNetnsDir: # Defaults to '/var/run/netns', in minikube/docker/others can be '/var/run/docker/netns'. excludeNamespaces: - kube-system # Allows user to set custom affinity for the DaemonSet affinity: {} # Custom annotations on pod level, if you need them
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue May 21 18:32:01 UTC 2024 - 5.2K bytes - Viewed (0) -
cni/README.md
- on pod add, determines whether pod should have netns setup to redirect to Istio proxy. See [cmdAdd](#cmdadd-workflow) for detailed logic. - it connects to K8S using the kubeconfig and JWT token copied from install-cni to get Pod and Namespace. Since this is a short-running command, each invocation creates a new connection. - If so, calls `istio-iptables` with params to setup pod netns - If ambient, sets up the ambient logic.
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri May 03 19:29:42 UTC 2024 - 12.3K bytes - Viewed (0) -
tools/istio-iptables/pkg/dependencies/implementation.go
// 2. Matches where rules are actually defined in the netns we're operating in // (legacy or nft, with a preference for the latter if both present) // // This is designed to handle situations where, for instance, the host has nft-defined rules, and our default container // binary is `legacy`, or vice-versa - we must match the binaries we have in our $PATH to what rules are actually defined // in our current netns context. //
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Tue May 07 19:54:50 UTC 2024 - 8.2K bytes - Viewed (0) -
cni/pkg/nodeagent/options.go
) const ( // to reliably identify kubelet healthprobes from inside the pod (versus standard kube-proxy traffic, // since the IP is normally the same), we SNAT identified host probes in the host netns to a fixed // APIPA/"link-local" IP. // // It doesn't matter what this IP is, so long as it's not routable and doesn't collide with anything else. //
Registered: Fri Jun 14 15:00:06 UTC 2024 - Last Modified: Fri May 17 21:52:29 UTC 2024 - 2.1K bytes - Viewed (0)