Update Iptables from 1.6.2 to 1.8.x in flatcar OS version 2605.8.0 #394
Labels
channel/alpha
Issue concerns the Alpha channel.
kind/enhancement
Enhancement of an existing component.
Current situation
Currently, we are running Kubernetes clusters on flatcar OS in production.
Kubernetes 1.16.x onwards updated their internal iptables version within the hyperkube images to 1.8.3(nft) . However the iptables version on flatcar OS remains 1.6.2.
Kube-proxy which is a component of kubernetes utilizes iptables internally for all pod routing and the version of iptables they are using 1.8.3( using --random-fully as a mandatory flag) which is incompatible with the host OS(flatcar). This is causing the iptables rules to break on the host.
Impact
We are unable to upgrade kubernetes running on flatcar OS because of iptables incompatible version with Kubernetes hyperkube image 1.16.x onwards.
Ideal future situation
Update iptables to 1.8.3 on flatcar OS.
The text was updated successfully, but these errors were encountered: