Cilium v1.7 Documentation
net.git/commit/? id=d5256083f62e2720f75bb3c5a928a0afe47d6bc3] . This fix is included in stable kernels v4.9.155, 4.14.98, 4.19.20, 4.20.6 or higher. Without this kernel fix, ipvlan in L3S mode cannot for TCP and UDP requires a v4.19.57, v5.1.16, v5.2.0 or more recent Linux kernel. Note that v5.0.y kernels do not have the fix required to run host-reachable services with UDP since at this point in time see the backend address instead of the service address. This limitation will be resolved in future kernels. The missing getpeername(2) hook is known to not work in combination with libceph deployments. See0 码力 | 885 页 | 12.41 MB | 1 年前3Cilium v1.6 Documentation
net.git/commit/? id=d5256083f62e2720f75bb3c5a928a0afe47d6bc3] . This fix is included in stable kernels v4.9.155, 4.14.98, 4.19.20, 4.20.6 or higher. Without this kernel fix, ipvlan in L3S mode cannot for TCP and UDP requires a v4.19.57, v5.1.16, v5.2.0 or more recent Linux kernel. Note that v5.0.y kernels do not have the fix required to run host-reachable services with UDP since at this point in time see the backend address instead of the service address. This limitation will be resolved in future kernels. Kubernetes NodePort (beta) This guide explains how to configure Cilium to enable Kubernetes NodePort0 码力 | 734 页 | 11.45 MB | 1 年前3Cilium v1.10 Documentation
net.git/commit/? id=d5256083f62e2720f75bb3c5a928a0afe47d6bc3] . This fix is included in stable kernels v4.9.155, 4.14.98, 4.19.20, 4.20.6 or higher. Without this kernel fix, ipvlan in L3S mode cannot (i.e. CONFIG_WIREGUARD=m on Linux 5.6 and newer, or via the out-of-tree WireGuard module on older kernels). Cilium CLI If you are deploying Cilium with the Cilium CLI, pass the following options: cilium won’t be encrypted. L7 policy enforcement and visibility eBPF-based host routing Support for older kernels via user-mode WireGuard The current status of these limitations is tracked in GitHub issue 154620 码力 | 1307 页 | 19.26 MB | 1 年前3Cilium v1.11 Documentation
(i.e. CONFIG_WIREGUARD=m on Linux 5.6 and newer, or via the out-of-tree WireGuard module on older kernels). See WireGuard Installation [https://www.wireguard.com/install/] for details on how to install the for TCP and UDP requires a v4.19.57, v5.1.16, v5.2.0 or more recent Linux kernel. Note that v5.0.y kernels do not have the fix required to run host-reachable services with UDP since at this point in time reverse translate the connected sock addresses for application’s getpeername(2) calls in Cilium. For kernels older than v5.8 such reverse translation is not taking place for this system call. For the vast majority0 码力 | 1373 页 | 19.37 MB | 1 年前3Cilium v1.8 Documentation
net.git/commit/? id=d5256083f62e2720f75bb3c5a928a0afe47d6bc3] . This fix is included in stable kernels v4.9.155, 4.14.98, 4.19.20, 4.20.6 or higher. Without this kernel fix, ipvlan in L3S mode cannot for TCP and UDP requires a v4.19.57, v5.1.16, v5.2.0 or more recent Linux kernel. Note that v5.0.y kernels do not have the fix required to run host-reachable services with UDP since at this point in time reverse translate the connected sock addresses for application’s getpeername(2) calls in Cilium. For kernels older than v5.8 such reverse translation is not taking place for this system call. For the vast majority0 码力 | 1124 页 | 21.33 MB | 1 年前3Cilium v1.5 Documentation
net.git/commit/? id=d5256083f62e2720f75bb3c5a928a0afe47d6bc3] . This fix is included in stable kernels v4.9.155 , 4.14.98 , 4.19.20 , 4.20.6 or higher. Without this kernel fix, ipvlan in L3S mode cannot ship kernels that are newer than 4.8, but even recent versions of general purpose opera�ng systems such as Ubuntu 16.10 ship fairly recent kernels. Some Linux distribu�ons s�ll ship older kernels but many many of them allow installing recent kernels from separate kernel package repositories. For more detail on kernel versions, see: Linux Kernel. Key-Value Store The Key-Value (KV) Store is used for the0 码力 | 740 页 | 12.52 MB | 1 年前3Cilium v1.9 Documentation
net.git/commit/? id=d5256083f62e2720f75bb3c5a928a0afe47d6bc3] . This fix is included in stable kernels v4.9.155, 4.14.98, 4.19.20, 4.20.6 or higher. Without this kernel fix, ipvlan in L3S mode cannot for TCP and UDP requires a v4.19.57, v5.1.16, v5.2.0 or more recent Linux kernel. Note that v5.0.y kernels do not have the fix required to run host-reachable services with UDP since at this point in time reverse translate the connected sock addresses for application’s getpeername(2) calls in Cilium. For kernels older than v5.8 such reverse translation is not taking place for this system call. For the vast majority0 码力 | 1263 页 | 18.62 MB | 1 年前3
共 7 条
- 1