Commit 73defa8
committed
Add xt_comment, nf_tables and other iptables kernel modules for k3s support
Enable iptables comment match and nftables in the kernel config, and
include the corresponding module packages in all rootfs images.
These modules are required by Kubernetes kube-proxy (iptables mode)
and modern iptables-nft backend. Without xt_comment, kube-proxy cannot
create ClusterIP routing rules, breaking all pod networking.1 parent 9be73ef commit 73defa8
2 files changed
Lines changed: 35 additions & 0 deletions
File tree
- meta-dstack
- recipes-core/images
- recipes-kernel/linux/files
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
26 | 26 | | |
27 | 27 | | |
28 | 28 | | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
29 | 49 | | |
30 | 50 | | |
31 | 51 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | 1 | | |
2 | 2 | | |
3 | 3 | | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
4 | 19 | | |
5 | 20 | | |
6 | 21 | | |
| |||
0 commit comments