Ed Robinson
Ed Robinson
I suspect if we did this it would stop the node termination handler accessing the metadata service... could we find a workaround?
https://docs.aws.amazon.com/eks/latest/userguide/best-practices-security.html#restrict-ec2-credential-access
Before we can make this change we have to check that anything not running in the host network that needs IAM permissions, and is currently relying on them. I think...
Sounds good to me 👍
+1 for the link being in an annotation We should also think about the namspace secrets etc are created in... If traefik has its own isolated namespace then its fine...
There is some prior art on this: e.g. https://github.com/jetstack/cert-manager where they are using some `CustomResourceDefinition`s to store the acme config stuff... Also, there is a standard format for the secret...
Perhaps we could use https://github.com/lox/httpcache
This is possible, but I would need to be convinced of a few things. - are the fcgi libarie(s) available for go (I know of one) good enough, or are...
I think the issue could be providing a glob for `.journal` files rather than a directory name. Could you try with `path /var/log/journal` If this is the case perhaps we...
All add-ons installed by the module use public eks images managed by aws now!