ST
Size: a a a
ST
СЛ
k
k
СЛ
rules:
# Do not log from kube-system accounts
- level: None
userGroups:
- system:serviceaccounts:kube-system
- system:authenticated
- level: None
users:
- system:apiserver
- system:kube-scheduler
- system:volume-scheduler
- system:kube-controller-manager
- system:node
2020-11-10 15:09:51
{"kind":"Event","apiVersion":"audit.k8s.io/v1","level":"Metadata","auditID":"d424ea88-ec06-4556-b067-f6e3bf25be72","stage":"ResponseComplete","requestURI":"/apis/coordination.k8s.io/v1/namespaces/kube-system/leases/kube-scheduler?timeout=10s","verb":"get","user":{"username":"system:kube-scheduler","groups":["system:authenticated"]},"sourceIPs":["10.118.12.20"],"userAgent":"kube-scheduler/v1.19.2 (linux/amd64) kubernetes/f574309/leader-election","objectRef":{"resource":"leases","namespace":"kube-system","name":"kube-scheduler","apiGroup":"coordination.k8s.io","apiVersion":"v1"},"responseStatus":{"metadata":{},"code":200},"requestReceivedTimestamp":"2020-11-10T12:09:51.066952Z","stageTimestamp":"2020-11-10T12:09:51.067804Z","annotations":{"authorization.k8s.io/decision":"allow","authorization.k8s.io/reason":"RBAC: allowed by ClusterRoleBinding \"system:kube-scheduler\" of ClusterRole \"system:kube-scheduler\" to User \"system:kube-scheduler\""}}
BD
rules:
# Do not log from kube-system accounts
- level: None
userGroups:
- system:serviceaccounts:kube-system
- system:authenticated
- level: None
users:
- system:apiserver
- system:kube-scheduler
- system:volume-scheduler
- system:kube-controller-manager
- system:node
2020-11-10 15:09:51
{"kind":"Event","apiVersion":"audit.k8s.io/v1","level":"Metadata","auditID":"d424ea88-ec06-4556-b067-f6e3bf25be72","stage":"ResponseComplete","requestURI":"/apis/coordination.k8s.io/v1/namespaces/kube-system/leases/kube-scheduler?timeout=10s","verb":"get","user":{"username":"system:kube-scheduler","groups":["system:authenticated"]},"sourceIPs":["10.118.12.20"],"userAgent":"kube-scheduler/v1.19.2 (linux/amd64) kubernetes/f574309/leader-election","objectRef":{"resource":"leases","namespace":"kube-system","name":"kube-scheduler","apiGroup":"coordination.k8s.io","apiVersion":"v1"},"responseStatus":{"metadata":{},"code":200},"requestReceivedTimestamp":"2020-11-10T12:09:51.066952Z","stageTimestamp":"2020-11-10T12:09:51.067804Z","annotations":{"authorization.k8s.io/decision":"allow","authorization.k8s.io/reason":"RBAC: allowed by ClusterRoleBinding \"system:kube-scheduler\" of ClusterRole \"system:kube-scheduler\" to User \"system:kube-scheduler\""}}
СЛ
СЛ
JM
DL
BD
rules:
# Do not log from kube-system accounts
- level: None
userGroups:
- system:serviceaccounts:kube-system
- system:authenticated
- level: None
users:
- system:apiserver
- system:kube-scheduler
- system:volume-scheduler
- system:kube-controller-manager
- system:node
2020-11-10 15:09:51
{"kind":"Event","apiVersion":"audit.k8s.io/v1","level":"Metadata","auditID":"d424ea88-ec06-4556-b067-f6e3bf25be72","stage":"ResponseComplete","requestURI":"/apis/coordination.k8s.io/v1/namespaces/kube-system/leases/kube-scheduler?timeout=10s","verb":"get","user":{"username":"system:kube-scheduler","groups":["system:authenticated"]},"sourceIPs":["10.118.12.20"],"userAgent":"kube-scheduler/v1.19.2 (linux/amd64) kubernetes/f574309/leader-election","objectRef":{"resource":"leases","namespace":"kube-system","name":"kube-scheduler","apiGroup":"coordination.k8s.io","apiVersion":"v1"},"responseStatus":{"metadata":{},"code":200},"requestReceivedTimestamp":"2020-11-10T12:09:51.066952Z","stageTimestamp":"2020-11-10T12:09:51.067804Z","annotations":{"authorization.k8s.io/decision":"allow","authorization.k8s.io/reason":"RBAC: allowed by ClusterRoleBinding \"system:kube-scheduler\" of ClusterRole \"system:kube-scheduler\" to User \"system:kube-scheduler\""}}
JM
RG
RG
NGINX master process died (-1): signal: killed
-------------------------------------------------------------------------------
E1110 12:29:26.873900 6 controller.go:156] Unexpected failure reloading the backend:
RG
Conditions:
Type Status Reason
---- ------ ------
Available False MinimumReplicasUnavailable
Progressing True ReplicaSetUpdated
OldReplicaSets: <none>
NewReplicaSet: nginx-ingress-ingress-nginx-controller-7f6ff55d5d (3/3 replicas created)
RG
controller:
publishService:
enabled: "true"
config:
use-forwarded-headers: "true"
nodeSelector:
doks.digitalocean.com/node-pool: nginx-ingress
replicaCount: 3
resources:
limits:
cpu: 10m
memory: 20Mi
requests:
cpu: 10m
memory: 20Mi
AP
SM
controller:
publishService:
enabled: "true"
config:
use-forwarded-headers: "true"
nodeSelector:
doks.digitalocean.com/node-pool: nginx-ingress
replicaCount: 3
resources:
limits:
cpu: 10m
memory: 20Mi
requests:
cpu: 10m
memory: 20Mi