-
Notifications
You must be signed in to change notification settings - Fork 126
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
AWS: Increase HttpPutResponseHopLimit to 3 for EC2 instances #1833
AWS: Increase HttpPutResponseHopLimit to 3 for EC2 instances #1833
Conversation
Signed-off-by: Waleed Malik <[email protected]>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
/lgtm
/approve
LGTM label has been added. Git tree hash: f0d4cbc8fa9ea768195399ca21b9591af6149c8c
|
[APPROVALNOTIFIER] This PR is APPROVED This pull-request has been approved by: xmudrii The full list of commands accepted by this bot can be found here. The pull request process is described here
Needs approval from an approver in each of these files:
Approvers can indicate their approval by writing |
/hold |
/test pull-machine-controller-e2e-aws |
/retest |
…matic#1833) Signed-off-by: Waleed Malik <[email protected]>
/cherrypick release/v1.59 |
/cherrypick release/v1.58 |
/cherrypick release/v1.57 |
@xrstf: new pull request created: #1834 In response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
@xrstf: new pull request created: #1835 In response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
@xrstf: new pull request created: #1836 In response to this:
Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes-sigs/prow repository. |
What this PR does / why we need it:
The latest Ubuntu 22.04 images have IMDSv2 enabled as a default. By default, the limit of hops of PUT requests to metadata service is 2. The instance metadata service is not reachable from the container network in case if further hops are required.
We came across this issue while working with Cilium as CNI. The issue has been documented here.
Although, the issue mentions a workaround to make it work with Cilium. Fixing it just for a single component is not ideal since a tool like
machine-controller
shouldn't judge how the underlying network or programs hosted on the machines provisioned by it are configured. Hence, we went with a more generic fix for this, i.e. to set the HTTP PUT response hop limit to 3. This ensures a much wider compatibility.Which issue(s) this PR fixes:
Fixes #
What type of PR is this?
/kind bug
Special notes for your reviewer:
Does this PR introduce a user-facing change? Then add your Release Note here:
Documentation: