
This introduces a new document called `EncryptionPolicy` to configure this behavior. It currently only supports using symmetric encryption with `GPG`, but that should be available on all Ubuntu systems (which is what we currently support) and should also be fairly reliable. Change-Id: I06d4faa119b736773df0d8cbf0e7a23fd98edcdf Depends-On: https://review.openstack.org/#/c/602175/
22 lines
485 B
YAML
22 lines
485 B
YAML
---
|
|
schema: promenade/Kubelet/v1
|
|
metadata:
|
|
schema: metadata/Document/v1
|
|
name: kubelet
|
|
layeringDefinition:
|
|
abstract: false
|
|
layer: site
|
|
storagePolicy: cleartext
|
|
data:
|
|
arguments:
|
|
- --cni-bin-dir=/opt/cni/bin
|
|
- --cni-conf-dir=/etc/cni/net.d
|
|
- --eviction-max-pod-grace-period=-1
|
|
- --network-plugin=cni
|
|
- --node-status-update-frequency=5s
|
|
- --serialize-image-pulls=false
|
|
- --v=5
|
|
images:
|
|
pause: gcr.io/google_containers/pause-amd64:3.0
|
|
...
|