kubespray/roles/kubernetes/master
Aleksandr Didenko 3a39904011 Move calico-policy-controller into separate role
By default Calico CNI does not create any network access policies
or profiles if 'policy' is enabled in CNI config. And without any
policies/profiles network access to/from PODs is blocked.

K8s related policies are created by calico-policy-controller in
such case. So we need to start it as soon as possible, before any
real workloads.

This patch also fixes kube-api port in calico-policy-controller
yaml template.

Closes #1132
2017-03-17 11:21:52 +01:00
..
defaults Merge pull request #1080 from VincentS/Granular_Auth_Control 2017-03-15 13:12:51 +03:00
files Address standalone kubelet config case 2016-12-13 16:35:53 +01:00
handlers Cleanup legacy syntax, spacing, files all to yml 2017-02-17 16:22:34 -05:00
meta Add tags 2016-12-09 12:14:28 +01:00
tasks Merge branch 'master' into idempotency2 2017-03-16 09:29:43 +03:00
templates Move calico-policy-controller into separate role 2017-03-17 11:21:52 +01:00
vars Address standalone kubelet config case 2016-12-13 16:35:53 +01:00