This message was deleted.
# logging
a
This message was deleted.
m
And this is our values.yaml
additionalLoggingSources:
aks:
enabled: false
eks:
enabled: false
gke:
enabled: false
k3s:
container_engine: systemd
enabled: false
stripUnderscores: false
kubeAudit:
auditFilename: ''
enabled: false
fluentbit:
logTag: kube-audit
tolerations:
- effect: NoSchedule
key: <http://node-role.kubernetes.io/controlplane|node-role.kubernetes.io/controlplane>
value: 'true'
- effect: NoExecute
key: <http://node-role.kubernetes.io/etcd|node-role.kubernetes.io/etcd>
value: 'true'
pathPrefix: ''
rke:
enabled: false
fluentbit:
log_level: info
mem_buffer_limit: 5MB
rke2:
enabled: true
stripUnderscores: false
affinity: {}
annotations: {}
createCustomResource: false
debug: false
disablePvc: true
extraArgs:
- '-enable-leader-election=true'
fluentbit:
filterKubernetes:
Merge_Log: ''
Merge_Log_Key: ''
Merge_Log_Trim: ''
Merge_Parser: ''
inputTail:
Buffer_Chunk_Size: ''
Buffer_Max_Size: ''
Mem_Buf_Limit: ''
Multiline_Flush: ''
Skip_Long_Lines: ''
resources: {}
tolerations:
- effect: NoSchedule
key: <http://node-role.kubernetes.io/controlplane|node-role.kubernetes.io/controlplane>
value: 'true'
- effect: NoExecute
key: <http://node-role.kubernetes.io/etcd|node-role.kubernetes.io/etcd>
value: 'true'
fluentd:
bufferStorageVolume: {}
livenessProbe:
initialDelaySeconds: 30
periodSeconds: 15
tcpSocket:
port: 24240
nodeSelector: {}
resources: {}
tolerations: {}
fullnameOverride: ''
global:
cattle:
systemProjectId: p-x84kt
dockerRootDirectory: ''
psp:
enabled: true
rkeWindowsPathPrefix: c:\
seLinux:
enabled: true
http:
port: 8080
service:
annotations: {}
clusterIP: None
labels: {}
type: ClusterIP
image:
pullPolicy: IfNotPresent
repository: rancher/mirrored-banzaicloud-logging-operator
tag: 3.17.7
imagePullSecrets: []
images:
config_reloader:
repository: rancher/mirrored-jimmidyson-configmap-reload
tag: v0.4.0
fluentbit:
repository: rancher/mirrored-fluent-fluent-bit
tag: 1.9.3
fluentbit_debug:
repository: rancher/mirrored-fluent-fluent-bit
tag: 1.9.3-debug
fluentd:
repository: rancher/mirrored-banzaicloud-fluentd
tag: v1.14.6-alpine-5
nodeagent_fluentbit:
os: windows
repository: rancher/fluent-bit
tag: 1.8.9
loggingOverlay: {}
monitoring:
serviceMonitor:
additionalLabels: {}
enabled: false
metricRelabelings: []
relabelings: []
nameOverride: ''
namespaceOverride: ''
nodeAgents:
tls:
enabled: false
nodeSelector:
<http://kubernetes.io/os|kubernetes.io/os>: linux
podLabels: {}
podSecurityContext:
runAsUser: 999
priorityClassName: {}
rbac:
enabled: true
psp:
annotations:
<http://seccomp.security.alpha.kubernetes.io/allowedProfileNames|seccomp.security.alpha.kubernetes.io/allowedProfileNames>: docker/default,runtime/default
<http://seccomp.security.alpha.kubernetes.io/defaultProfileName|seccomp.security.alpha.kubernetes.io/defaultProfileName>: runtime/default
enabled: true
replicaCount: 1
resources: {}
securityContext: {}
serviceAccount:
annotations: {}
systemdLogPath: /run/log/journal
tolerations:
- effect: NoSchedule
key: <http://cattle.io/os|cattle.io/os>
operator: Equal
value: linux
I found out that in this particular Version fluentd: security: podSecurityContext: runAsUser: 100 is missing. We added the podSecurityContext into rancher-logging-root and now everything is working. We will upgrade to rancher 2.7.2 or .3 soon so we can upgrade the logging app.
210 Views