fix(cilium): revert to KubePrism

panic segfault with apiServerURLs
This commit is contained in:
JJGadgets
2025-07-30 13:11:34 +08:00
committed by GitHub
parent e929e00771
commit d975e7a6de

View File

@@ -32,10 +32,10 @@ ipam:
mode: kubernetes
kubeProxyReplacement: true
### Talos 1.5 and above come with KubePrism which is an internal TCP load balancer for kube-apiserver. DO NOT COPY IF NOT ON TALOS OR A KUBEPRISM-SUPPORTED KUBERNETES DISTRIBUTION!!!
# k8sServiceHost: "127.0.0.1"
# k8sServicePort: "7445"
k8s:
apiServerURLs: "https://${IP_ROUTER_VLAN_K8S_PREFIX}1:6443 https://${IP_ROUTER_VLAN_K8S_PREFIX}2:6443 https://${IP_ROUTER_VLAN_K8S_PREFIX}3:6443"
k8sServiceHost: "127.0.0.1"
k8sServicePort: "7445"
# k8s:
# apiServerURLs: "https://${IP_ROUTER_VLAN_K8S_PREFIX}1:6443 https://${IP_ROUTER_VLAN_K8S_PREFIX}2:6443 https://${IP_ROUTER_VLAN_K8S_PREFIX}3:6443"
kubeProxyReplacementHealthzBindAddr: "0.0.0.0:10256"
enableIPv4Masquerade: false # BGP advertise PodCIDR so only FortiGate does NAT
directRoutingSkipUnreachable: true # use local L2 within cluster while outside cluster uses BGP