Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Fix SELinux race condition on non-bootstrap controllers in multi-cont…
…roller (poseidon#808) * Fix race condition for bootstrap-secrets SELinux context on non-bootstrap controllers in multi-controller FCOS clusters * On first boot from disk on non-bootstrap controllers, adding bootstrap-secrets races with kubelet.service starting, which can cause the secrets assets to have the wrong label until kubelet.service restarts (service, reboot, auto-update) * This can manifest as `kube-apiserver`, `kube-controller-manager`, and `kube-scheduler` pods crashlooping on spare controllers on first cluster creation
- Loading branch information