adamant-kite-43734
07/27/2023, 7:59 PMkind-church-47495
07/27/2023, 8:06 PMfaint-park-33707
07/27/2023, 8:07 PMkind-church-47495
07/27/2023, 8:08 PMfaint-park-33707
07/27/2023, 8:08 PMfaint-park-33707
07/27/2023, 8:10 PMkind-church-47495
07/27/2023, 8:10 PMallow perm=any all : dir=/var/lib/rancher/
allow perm=any all : dir=/opt/cni/
allow perm=any all : dir=/run/k3s/
allow perm=any all : dir=/var/lib/kubelet/
cp -f /usr/share/rke2/rke2-cis-sysctl.conf /etc/sysctl.d/60-rke2-cis.conf
and then
systemctl restart systemd-sysctl
and if you are using a DISA STIG'd image, check in the /etc/sysctl.d/ folder and make sure that one is the last appliedfaint-park-33707
07/27/2023, 8:12 PMrough-farmer-49135
07/27/2023, 8:16 PMrough-farmer-49135
07/27/2023, 8:17 PMfaint-park-33707
07/27/2023, 8:19 PMrough-farmer-49135
07/27/2023, 8:23 PMfaint-park-33707
07/27/2023, 8:26 PMfaint-park-33707
07/27/2023, 8:26 PMkind-church-47495
07/27/2023, 8:27 PMfaint-park-33707
07/27/2023, 8:30 PMkind-church-47495
07/27/2023, 8:31 PMfaint-park-33707
07/27/2023, 8:32 PMfaint-park-33707
07/27/2023, 8:32 PMfaint-park-33707
07/27/2023, 8:33 PMkind-church-47495
07/27/2023, 8:44 PMfaint-park-33707
07/27/2023, 8:44 PMfaint-park-33707
07/27/2023, 8:45 PMfaint-park-33707
07/27/2023, 8:46 PMkind-church-47495
07/27/2023, 8:54 PMfaint-park-33707
07/27/2023, 8:56 PMkind-church-47495
07/27/2023, 8:56 PMfaint-park-33707
07/27/2023, 8:57 PMfaint-park-33707
07/27/2023, 8:58 PMfaint-park-33707
07/27/2023, 8:58 PMkind-church-47495
07/27/2023, 8:58 PMfaint-park-33707
07/27/2023, 8:59 PMfaint-park-33707
07/27/2023, 8:59 PMfaint-park-33707
07/27/2023, 8:59 PMrough-farmer-49135
07/27/2023, 10:12 PMroute
would show the IP ranges going to the flannel network interfaces for each other node (which might not be there if you didn't add the config for Network Manager that's in some of the docs but not all of them).faint-park-33707
07/28/2023, 2:14 PM