4.12
HostedCluster
apiVersion: hypershift.openshift.io/v1beta1
kind: HostedCluster
metadata:
annotations:
hypershift.openshift.io/disable-pki-reconciliation: "true"
hypershift.openshift.io/disable-profiling: kube-apiserver, kube-scheduler, kube-controller-manager
hypershift.openshift.io/force-upgrade-to: us.icr.io/armada-master/ocp-release:4.12.25-x86_64
idpoverrides.hypershift.openshift.io/IAM: |
{"urls": {"authorize": "https://iam.test.cloud.ibm.com/identity/authorize", "userInfo": "https://iam.test.cloud.ibm.com/identity/userinfo", "token": "https://iam.test.cloud.ibm.com/identity/ACCOUNTID/token"}, "claims": {"id": ["iam_id"], "email": ["email"], "name": ["name"], "preferredUsername": ["preferred_username"]}, "challenge": true}
oauth.hypershift.openshift.io/login-url-override: https://sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud:31446
finalizers:
- hypershift.openshift.io/finalizer
labels:
clusterid: cismlo21050nmreb5nhg
name: cismlo21050nmreb5nhg
namespace: master
spec:
autoscaling: {}
clusterID: 512f0876-573e-40b3-8a37-cb6f22b37e16
configuration:
apiServer:
audit:
profile: None
clientCA:
name: ""
encryption: {}
servingCerts:
namedCertificates:
- names:
- sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
servingCertificate:
name: ibm-named-certs
tlsSecurityProfile:
custom:
ciphers:
- ECDHE-ECDSA-AES128-GCM-SHA256
- ECDHE-RSA-AES128-GCM-SHA256
- ECDHE-ECDSA-AES256-GCM-SHA384
- ECDHE-RSA-AES256-GCM-SHA384
- ECDHE-ECDSA-CHACHA20-POLY1305
- ECDHE-RSA-CHACHA20-POLY1305
minTLSVersion: VersionTLS12
type: Custom
featureGate:
customNoUpgrade:
disabled:
- CSIMigrationAzureFile
- CSIMigrationvSphere
enabled:
- ExpandInUsePersistentVolumes
- RotateKubeletServerCertificate
featureSet: CustomNoUpgrade
ingress:
domain: sat-e2e-16898731-9e37478581b5d9de33607f5926d1d18f-0000.us-south.prestg.stg.containers.appdomain.cloud
loadBalancer:
platform:
type: ""
oauth:
identityProviders:
- mappingMethod: lookup
name: IAM
openID:
claims:
email:
- email
name:
- name
preferredUsername:
- preferred_username
clientID: CLIENTID
clientSecret:
name: hypershift-ibm-iam-clientsecret
issuer: https://iam.test.cloud.ibm.com/identity
type: OpenID
templates:
error:
name: ""
login:
name: ""
providerSelection:
name: ""
tokenConfig: {}
controllerAvailabilityPolicy: HighlyAvailable
dns:
baseDomain: sat-e2e-16898731-9e37478581b5d9de33607f5926d1d18f-0000.us-south.prestg.stg.containers.appdomain.cloud
etcd:
managementType: Unmanaged
unmanaged:
endpoint: https://etcd-cismlo21050nmreb5nhg-client:2379
tls:
clientSecret:
name: cismlo21050nmreb5nhg-etcd-client-tls
fips: false
imageContentSources:
- mirrors:
- us.icr.io/armada-master/ocp-release
source: quay.io/openshift-release-dev/ocp-release
- mirrors:
- us.icr.io/armada-master/ocp-release
source: quay.io/openshift-release-dev/ocp-v4.0-art-dev
infraID: cismlo21050nmreb5nhg
infrastructureAvailabilityPolicy: HighlyAvailable
issuerURL: https://kubernetes.default.svc
networking:
apiServer:
advertiseAddress: 172.20.0.1
port: 2040
clusterNetwork:
- cidr: 172.30.0.0/16
machineNetwork:
- cidr: 172.30.0.0/16
networkType: Calico
serviceNetwork:
- cidr: 172.21.0.0/16
olmCatalogPlacement: guest
platform:
ibmcloud:
providerType: UPI
type: IBMCloud
pullSecret:
name: cismlo21050nmreb5nhg-pull-secret
release:
image: us.icr.io/armada-master/ocp-release:4.12.25-x86_64
services:
- service: APIServer
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-c000.us-south.satellite.test.appdomain.cloud
port: 31446
type: NodePort
- service: OAuthServer
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
port: 32167
type: NodePort
- service: Konnectivity
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
port: 31938
type: NodePort
- service: Ignition
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
port: 30231
type: NodePort
sshKey: {}
HostedControlPlane
apiVersion: hypershift.openshift.io/v1beta1
kind: HostedControlPlane
metadata:
annotations:
hypershift.openshift.io/cluster: master/cismlo21050nmreb5nhg
hypershift.openshift.io/disable-pki-reconciliation: "true"
hypershift.openshift.io/disable-profiling: kube-apiserver, kube-scheduler, kube-controller-manager
idpoverrides.hypershift.openshift.io/IAM: |
{"urls": {"authorize": "https://iam.test.cloud.ibm.com/identity/authorize", "userInfo": "https://iam.test.cloud.ibm.com/identity/userinfo", "token": "https://iam.test.cloud.ibm.com/identity/ACCOUNTID/token"}, "claims": {"id": ["iam_id"], "email": ["email"], "name": ["name"], "preferredUsername": ["preferred_username"]}, "challenge": true}
oauth.hypershift.openshift.io/login-url-override: https://sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud:31446
finalizers:
- hypershift.openshift.io/finalizer
name: cismlo21050nmreb5nhg
namespace: master-cismlo21050nmreb5nhg
spec:
autoscaling: {}
clusterID: 512f0876-573e-40b3-8a37-cb6f22b37e16
configuration:
apiServer:
audit:
profile: None
clientCA:
name: ""
encryption: {}
servingCerts:
namedCertificates:
- names:
- sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
servingCertificate:
name: ibm-named-certs
tlsSecurityProfile:
custom:
ciphers:
- ECDHE-ECDSA-AES128-GCM-SHA256
- ECDHE-RSA-AES128-GCM-SHA256
- ECDHE-ECDSA-AES256-GCM-SHA384
- ECDHE-RSA-AES256-GCM-SHA384
- ECDHE-ECDSA-CHACHA20-POLY1305
- ECDHE-RSA-CHACHA20-POLY1305
minTLSVersion: VersionTLS12
type: Custom
featureGate:
customNoUpgrade:
disabled:
- CSIMigrationAzureFile
- CSIMigrationvSphere
enabled:
- ExpandInUsePersistentVolumes
- RotateKubeletServerCertificate
featureSet: CustomNoUpgrade
ingress:
domain: sat-e2e-16898731-9e37478581b5d9de33607f5926d1d18f-0000.us-south.prestg.stg.containers.appdomain.cloud
loadBalancer:
platform:
type: ""
oauth:
identityProviders:
- mappingMethod: lookup
name: IAM
openID:
ca:
name: ""
claims:
email:
- email
name:
- name
preferredUsername:
- preferred_username
clientID: CLIENTID
clientSecret:
name: hypershift-ibm-iam-clientsecret
issuer: https://iam.test.cloud.ibm.com/identity
type: OpenID
templates:
error:
name: ""
login:
name: ""
providerSelection:
name: ""
tokenConfig: {}
controllerAvailabilityPolicy: HighlyAvailable
dns:
baseDomain: sat-e2e-16898731-9e37478581b5d9de33607f5926d1d18f-0000.us-south.prestg.stg.containers.appdomain.cloud
etcd:
managementType: Unmanaged
unmanaged:
endpoint: https://etcd-cismlo21050nmreb5nhg-client:2379
tls:
clientSecret:
name: cismlo21050nmreb5nhg-etcd-client-tls
fips: false
imageContentSources:
- mirrors:
- us.icr.io/armada-master/ocp-release
source: quay.io/openshift-release-dev/ocp-release
- mirrors:
- us.icr.io/armada-master/ocp-release
source: quay.io/openshift-release-dev/ocp-v4.0-art-dev
infraID: cismlo21050nmreb5nhg
infrastructureAvailabilityPolicy: HighlyAvailable
issuerURL: https://kubernetes.default.svc
networking:
apiServer:
advertiseAddress: 172.20.0.1
port: 2040
clusterNetwork:
- cidr: 172.30.0.0/16
machineNetwork:
- cidr: 172.30.0.0/16
networkType: Calico
serviceNetwork:
- cidr: 172.21.0.0/16
olmCatalogPlacement: guest
platform:
ibmcloud:
providerType: UPI
type: IBMCloud
pullSecret:
name: pull-secret
releaseImage: us.icr.io/armada-master/ocp-release:4.12.25-x86_64
services:
- service: APIServer
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-c000.us-south.satellite.test.appdomain.cloud
port: 31446
type: NodePort
- service: OAuthServer
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
port: 32167
type: NodePort
- service: Konnectivity
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
port: 31938
type: NodePort
- service: Ignition
servicePublishingStrategy:
nodePort:
address: sab980c9cc8c17f3e13fa-d603ff82e51c94176a53d44566df9d79-ce00.us-south.satellite.test.appdomain.cloud
port: 30231
type: NodePort
sshKey: {}