From 12eedea2e0adad791e3eab37b4536bb1bc7f3a4c Mon Sep 17 00:00:00 2001 From: andyzhangx Date: Mon, 24 Jun 2024 01:51:19 +0000 Subject: [PATCH] doc: cut v1.29.6 release --- Makefile | 2 +- README.md | 2 +- charts/README.md | 2 +- charts/index.yaml | 101 ++- .../latest/azurefile-csi-driver-v1.29.5.tgz | Bin 13449 -> 0 bytes .../latest/azurefile-csi-driver-v1.29.6.tgz | Bin 0 -> 13450 bytes charts/latest/azurefile-csi-driver/Chart.yaml | 4 +- .../latest/azurefile-csi-driver/values.yaml | 2 +- .../v1.29.6/azurefile-csi-driver-v1.29.6.tgz | Bin 0 -> 13450 bytes .../v1.29.6/azurefile-csi-driver/Chart.yaml | 5 + .../azurefile-csi-driver/templates/NOTES.txt | 5 + .../templates/_helpers.tpl | 49 + .../templates/crd-csi-snapshot.yaml | 840 ++++++++++++++++++ .../templates/csi-azurefile-controller.yaml | 252 ++++++ .../templates/csi-azurefile-driver.yaml | 19 + ...si-azurefile-node-windows-hostprocess.yaml | 164 ++++ .../templates/csi-azurefile-node-windows.yaml | 239 +++++ .../templates/csi-azurefile-node.yaml | 234 +++++ .../templates/csi-snapshot-controller.yaml | 78 ++ .../rbac-csi-azurefile-controller.yaml | 207 +++++ .../templates/rbac-csi-azurefile-node.yaml | 29 + .../rbac-csi-snapshot-controller.yaml | 80 ++ ...rviceaccount-csi-azurefile-controller.yaml | 17 + .../serviceaccount-csi-azurefile-node.yaml | 17 + ...erviceaccount-csi-snapshot-controller.yaml | 9 + .../v1.29.6/azurefile-csi-driver/values.yaml | 263 ++++++ deploy/csi-azurefile-controller.yaml | 2 +- ...si-azurefile-node-windows-hostprocess.yaml | 4 +- deploy/csi-azurefile-node-windows.yaml | 2 +- deploy/csi-azurefile-node.yaml | 2 +- deploy/v1.29.6/crd-csi-snapshot.yaml | 838 +++++++++++++++++ deploy/v1.29.6/csi-azurefile-controller.yaml | 181 ++++ deploy/v1.29.6/csi-azurefile-driver.yaml | 15 + ...si-azurefile-node-windows-hostprocess.yaml | 122 +++ .../v1.29.6/csi-azurefile-node-windows.yaml | 195 ++++ deploy/v1.29.6/csi-azurefile-node.yaml | 168 ++++ deploy/v1.29.6/csi-snapshot-controller.yaml | 59 ++ .../rbac-csi-azurefile-controller.yaml | 194 ++++ deploy/v1.29.6/rbac-csi-azurefile-node.yaml | 30 + .../v1.29.6/rbac-csi-snapshot-controller.yaml | 78 ++ docs/install-csi-driver-v1.29.6.md | 45 + 41 files changed, 4498 insertions(+), 57 deletions(-) delete mode 100644 charts/latest/azurefile-csi-driver-v1.29.5.tgz create mode 100644 charts/latest/azurefile-csi-driver-v1.29.6.tgz create mode 100644 charts/v1.29.6/azurefile-csi-driver-v1.29.6.tgz create mode 100644 charts/v1.29.6/azurefile-csi-driver/Chart.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/NOTES.txt create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/_helpers.tpl create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/crd-csi-snapshot.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-controller.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-driver.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows-hostprocess.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/csi-snapshot-controller.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-controller.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-node.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-snapshot-controller.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-controller.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-node.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-snapshot-controller.yaml create mode 100644 charts/v1.29.6/azurefile-csi-driver/values.yaml create mode 100644 deploy/v1.29.6/crd-csi-snapshot.yaml create mode 100644 deploy/v1.29.6/csi-azurefile-controller.yaml create mode 100644 deploy/v1.29.6/csi-azurefile-driver.yaml create mode 100644 deploy/v1.29.6/csi-azurefile-node-windows-hostprocess.yaml create mode 100644 deploy/v1.29.6/csi-azurefile-node-windows.yaml create mode 100644 deploy/v1.29.6/csi-azurefile-node.yaml create mode 100644 deploy/v1.29.6/csi-snapshot-controller.yaml create mode 100644 deploy/v1.29.6/rbac-csi-azurefile-controller.yaml create mode 100644 deploy/v1.29.6/rbac-csi-azurefile-node.yaml create mode 100644 deploy/v1.29.6/rbac-csi-snapshot-controller.yaml create mode 100644 docs/install-csi-driver-v1.29.6.md diff --git a/Makefile b/Makefile index 1e74fedfe0..1034a6a99e 100755 --- a/Makefile +++ b/Makefile @@ -17,7 +17,7 @@ GIT_COMMIT ?= $(shell git rev-parse HEAD) REGISTRY ?= andyzhangx REGISTRY_NAME ?= $(shell echo $(REGISTRY) | sed "s/.azurecr.io//g") IMAGE_NAME ?= azurefile-csi -IMAGE_VERSION ?= v1.29.5 +IMAGE_VERSION ?= v1.29.6 # Use a custom version for E2E tests if we are testing in CI ifdef CI ifndef PUBLISH diff --git a/README.md b/README.md index 94e24bff00..d209f8c753 100644 --- a/README.md +++ b/README.md @@ -15,7 +15,7 @@ Disclaimer: Deploying this driver manually is not an officially supported Micros |Driver Version |Image | supported k8s version | |----------------|---------------------------------------------------------- |-----------------------| |master branch |mcr.microsoft.com/k8s/csi/azurefile-csi:latest | 1.21+ | -|v1.29.5 |mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.5 | 1.21+ | +|v1.29.6 |mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6 | 1.21+ | |v1.28.3 |mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.28.3 | 1.21+ | |v1.27.3 |mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.27.3 | 1.21+ | diff --git a/charts/README.md b/charts/README.md index 2929ff6721..ac293b81d9 100644 --- a/charts/README.md +++ b/charts/README.md @@ -16,7 +16,7 @@ ### install a specific version ```console helm repo add azurefile-csi-driver https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/master/charts -helm install azurefile-csi-driver azurefile-csi-driver/azurefile-csi-driver --namespace kube-system --version v1.29.5 +helm install azurefile-csi-driver azurefile-csi-driver/azurefile-csi-driver --namespace kube-system --version v1.29.6 ``` ### install on RedHat/CentOS diff --git a/charts/index.yaml b/charts/index.yaml index 426693ba43..81de84f638 100644 --- a/charts/index.yaml +++ b/charts/index.yaml @@ -2,26 +2,35 @@ apiVersion: v1 entries: azurefile-csi-driver: - apiVersion: v1 - appVersion: v1.29.5 - created: "2024-04-19T15:40:57.083629666Z" + appVersion: v1.29.6 + created: "2024-06-24T01:51:03.813568469Z" description: Azure File Container Storage Interface (CSI) Storage Plugin - digest: 04460bc61d38325943bf0f2eac3d42813f43929469a9ed4fca9c9a8680446568 + digest: 9d385d18e40c04306435e939ebd38939d15f0dc2e6837d1c675811fe0fae9eba name: azurefile-csi-driver urls: - - https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/master/charts/latest/azurefile-csi-driver-v1.29.5.tgz - version: v1.29.5 + - https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/master/charts/v1.29.6/azurefile-csi-driver-v1.29.6.tgz + version: v1.29.6 + - apiVersion: v1 + appVersion: v1.29.6 + created: "2024-06-24T01:51:03.776100357Z" + description: Azure File Container Storage Interface (CSI) Storage Plugin + digest: d8218f3ce31810e926104e85a8f4fe0007b1b92889c139ee13aaa749616c9dc3 + name: azurefile-csi-driver + urls: + - https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/master/charts/latest/azurefile-csi-driver-v1.29.6.tgz + version: v1.29.6 - apiVersion: v1 appVersion: v1.29.5 - created: "2024-04-19T15:40:57.126707415Z" + created: "2024-06-24T01:51:03.812468635Z" description: Azure File Container Storage Interface (CSI) Storage Plugin - digest: 04460bc61d38325943bf0f2eac3d42813f43929469a9ed4fca9c9a8680446568 + digest: aa80a357b211f1e48bd69b79d516ee7b282a9134aa5e654956505ddcc68910f8 name: azurefile-csi-driver urls: - https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/master/charts/v1.29.5/azurefile-csi-driver-v1.29.5.tgz version: v1.29.5 - apiVersion: v1 appVersion: v1.29.4 - created: "2024-04-19T15:40:57.125588026Z" + created: "2024-06-24T01:51:03.811387297Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 820020b2a8c919c8dbd28b4a92767e2feeb4d282ac6003b5781fc6abcbc5e0c7 name: azurefile-csi-driver @@ -30,7 +39,7 @@ entries: version: v1.29.4 - apiVersion: v1 appVersion: v1.29.3 - created: "2024-04-19T15:40:57.124492982Z" + created: "2024-06-24T01:51:03.809846991Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: e4a96134973d29277430319c38cb5163f93e20561b2541f4b2b51126ef6e20a8 name: azurefile-csi-driver @@ -39,7 +48,7 @@ entries: version: v1.29.3 - apiVersion: v1 appVersion: v1.29.2 - created: "2024-04-19T15:40:57.123357066Z" + created: "2024-06-24T01:51:03.808474627Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 1d1a7075f40821228925e1bb2d7addc8418222c923ea9bac311d49510b262cb9 name: azurefile-csi-driver @@ -48,7 +57,7 @@ entries: version: v1.29.2 - apiVersion: v1 appVersion: v1.29.1 - created: "2024-04-19T15:40:57.122193086Z" + created: "2024-06-24T01:51:03.807420815Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: a7e3bc8bb3e17153f35387f2040210d72ac5545a9446b0a37660273b5635e11d name: azurefile-csi-driver @@ -57,7 +66,7 @@ entries: version: v1.29.1 - apiVersion: v1 appVersion: v1.29.0 - created: "2024-04-19T15:40:57.120626497Z" + created: "2024-06-24T01:51:03.806311642Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 2da242b471ff0eaf6ea3f1a9d2c1f6aaa1b78c8cbb4e850bbefb336e043b8098 name: azurefile-csi-driver @@ -66,7 +75,7 @@ entries: version: v1.29.0 - apiVersion: v1 appVersion: v1.28.3 - created: "2024-04-19T15:40:57.118848604Z" + created: "2024-06-24T01:51:03.805214659Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 58e138f7a8f2a925c56ca26dc220cab2dc723691c23fd011b457624d11889395 name: azurefile-csi-driver @@ -75,7 +84,7 @@ entries: version: v1.28.3 - apiVersion: v1 appVersion: v1.28.2 - created: "2024-04-19T15:40:57.117417349Z" + created: "2024-06-24T01:51:03.803278263Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 426fad83a42035af15af775bd37c73309ef0cfe22686babb0668be71da70a66e name: azurefile-csi-driver @@ -84,7 +93,7 @@ entries: version: v1.28.2 - apiVersion: v1 appVersion: v1.27.3 - created: "2024-04-19T15:40:57.116041519Z" + created: "2024-06-24T01:51:03.802209604Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 330d2b11f93e2b10d36f64ed6de528b61351ca794dd9b2c3690c6f6790008732 name: azurefile-csi-driver @@ -93,7 +102,7 @@ entries: version: v1.27.3 - apiVersion: v1 appVersion: v1.27.2 - created: "2024-04-19T15:40:57.114970221Z" + created: "2024-06-24T01:51:03.801197441Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: ab72e0e5f360a38f63e87147ef47ef213016578e8ba64fbb32ecaf2aad7ffdf3 name: azurefile-csi-driver @@ -102,7 +111,7 @@ entries: version: v1.27.2 - apiVersion: v1 appVersion: v1.26.6 - created: "2024-04-19T15:40:57.113902913Z" + created: "2024-06-24T01:51:03.800149174Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 3c20488343b47ed618e8c809f6fcdd83f22e00a4d07c78ca097573cafd7075a9 name: azurefile-csi-driver @@ -111,7 +120,7 @@ entries: version: v1.26.6 - apiVersion: v1 appVersion: v1.26.5 - created: "2024-04-19T15:40:57.112865415Z" + created: "2024-06-24T01:51:03.799144865Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 62ac6ab864264ee1e2fb86e8093c8e8263c2c0d3bafff60704c31fd72e40c604 name: azurefile-csi-driver @@ -120,7 +129,7 @@ entries: version: v1.26.5 - apiVersion: v1 appVersion: v1.25.1 - created: "2024-04-19T15:40:57.111061489Z" + created: "2024-06-24T01:51:03.797246928Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 2bf374cc321c5bc8e76e06cd5df85ce7d7d14574397e7e7f7173077393f554c4 name: azurefile-csi-driver @@ -129,7 +138,7 @@ entries: version: v1.25.1 - apiVersion: v1 appVersion: v1.24.7 - created: "2024-04-19T15:40:57.108643463Z" + created: "2024-06-24T01:51:03.796222403Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 9e5b3f32ad823f845e5a09af230f7a934851943d6afcab3bd545233838680d83 name: azurefile-csi-driver @@ -138,7 +147,7 @@ entries: version: v1.24.7 - apiVersion: v1 appVersion: v1.24.6 - created: "2024-04-19T15:40:57.10736077Z" + created: "2024-06-24T01:51:03.795220642Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: dbd0a6e27a09fec002c57029bd6e34a6ee92d1c10e708935e3f2150069a35ee5 name: azurefile-csi-driver @@ -147,7 +156,7 @@ entries: version: v1.24.6 - apiVersion: v1 appVersion: v1.23.0 - created: "2024-04-19T15:40:57.106004074Z" + created: "2024-06-24T01:51:03.794222341Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 5fcb33617d16e90df1e7041b0df02e5bd92595e86381db30d356b0b2e3500bc4 name: azurefile-csi-driver @@ -156,7 +165,7 @@ entries: version: v1.23.0 - apiVersion: v1 appVersion: v1.22.0 - created: "2024-04-19T15:40:57.104700626Z" + created: "2024-06-24T01:51:03.79319356Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 253d87a8b876dbdd55870a7fee88547393179d03f193661125f5a0b63411f922 name: azurefile-csi-driver @@ -165,7 +174,7 @@ entries: version: v1.22.0 - apiVersion: v1 appVersion: v1.21.0 - created: "2024-04-19T15:40:57.103387913Z" + created: "2024-06-24T01:51:03.791247112Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: d45bf3455ebadc9cc5afaf9da66aa1ea1d4b719cfdff5af661f93bb26c01a504 name: azurefile-csi-driver @@ -174,7 +183,7 @@ entries: version: v1.21.0 - apiVersion: v1 appVersion: v1.20.0 - created: "2024-04-19T15:40:57.102020593Z" + created: "2024-06-24T01:51:03.790289968Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 7cc43d57a79137aea5414fb51a9bbd77bb679b29ee49c06865c1a5b9ba60be99 name: azurefile-csi-driver @@ -183,7 +192,7 @@ entries: version: v1.20.0 - apiVersion: v1 appVersion: v1.19.0 - created: "2024-04-19T15:40:57.098581582Z" + created: "2024-06-24T01:51:03.788837433Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 18f6efbed424efd661fde43be2e5a48a5012a46a7938c33b36963cbd9875a5af name: azurefile-csi-driver @@ -192,7 +201,7 @@ entries: version: v1.19.0 - apiVersion: v1 appVersion: v1.18.0 - created: "2024-04-19T15:40:57.097502973Z" + created: "2024-06-24T01:51:03.787919527Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 696ca23d9ee517f71ef5e852955c8d0f1017c331c025426c6fcbe7a06d006c66 name: azurefile-csi-driver @@ -201,7 +210,7 @@ entries: version: v1.18.0 - apiVersion: v1 appVersion: v1.17.0 - created: "2024-04-19T15:40:57.096328025Z" + created: "2024-06-24T01:51:03.786702843Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 5632f61265a3b78dce3e2b15e07cc9b14a7f54a778878c02ca2d9fe69ca0344e name: azurefile-csi-driver @@ -210,7 +219,7 @@ entries: version: v1.17.0 - apiVersion: v1 appVersion: v1.16.0 - created: "2024-04-19T15:40:57.095080186Z" + created: "2024-06-24T01:51:03.785175721Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: a7a2d57e8eca7dc06c8b2cffb9bccb857753eb110b8e70760b3e04f4e6a87552 name: azurefile-csi-driver @@ -219,7 +228,7 @@ entries: version: v1.16.0 - apiVersion: v1 appVersion: v1.15.0 - created: "2024-04-19T15:40:57.094012489Z" + created: "2024-06-24T01:51:03.784192553Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: c1a31dadce233a90c19dce70f6cc92ba2e20bbaa1b1883baea72381d09303118 name: azurefile-csi-driver @@ -228,7 +237,7 @@ entries: version: v1.15.0 - apiVersion: v1 appVersion: v1.14.0 - created: "2024-04-19T15:40:57.092669884Z" + created: "2024-06-24T01:51:03.783230449Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 0c9ad4afa5ebfdb2851ad93eb16a0382d61448714b7556899360730a2fdf463a name: azurefile-csi-driver @@ -237,7 +246,7 @@ entries: version: v1.14.0 - apiVersion: v1 appVersion: v1.13.0 - created: "2024-04-19T15:40:57.090444288Z" + created: "2024-06-24T01:51:03.782286563Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 214042b029d858b50a0f8bba33a7aa2b41d1b67bce16f957ca183ae7438dac3f name: azurefile-csi-driver @@ -246,7 +255,7 @@ entries: version: v1.13.0 - apiVersion: v1 appVersion: v1.12.0 - created: "2024-04-19T15:40:57.08905659Z" + created: "2024-06-24T01:51:03.7812497Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: fbd63929671066a26df898d32282a6e79c39499a39c71761c546d069459d847d name: azurefile-csi-driver @@ -255,7 +264,7 @@ entries: version: v1.12.0 - apiVersion: v1 appVersion: v1.11.0 - created: "2024-04-19T15:40:57.087585051Z" + created: "2024-06-24T01:51:03.779123996Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 76bd438f8391d08235b09fbca859f25a9fcf8e018fd1e7e33444ca9ea946ce4b name: azurefile-csi-driver @@ -264,7 +273,7 @@ entries: version: v1.11.0 - apiVersion: v1 appVersion: v1.10.0 - created: "2024-04-19T15:40:57.086153521Z" + created: "2024-06-24T01:51:03.778170758Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 845a9de8b571b255d05ae9c643d9b90a57fe6507ff3fb735c88b41f99f6f28dc name: azurefile-csi-driver @@ -273,7 +282,7 @@ entries: version: v1.10.0 - apiVersion: v1 appVersion: v1.9.0 - created: "2024-04-19T15:40:57.133351681Z" + created: "2024-06-24T01:51:03.82019483Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 59a8057fbbd6d59919b84ef0c3396d5a0a46d1f29df604457db676f4af63c714 name: azurefile-csi-driver @@ -282,7 +291,7 @@ entries: version: v1.9.0 - apiVersion: v1 appVersion: v1.8.0 - created: "2024-04-19T15:40:57.132326719Z" + created: "2024-06-24T01:51:03.819226348Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 455b7c342194311046df526d10926d94f3bef24f753a07003fb1cad211c4cb52 name: azurefile-csi-driver @@ -291,7 +300,7 @@ entries: version: v1.8.0 - apiVersion: v1 appVersion: v1.7.0 - created: "2024-04-19T15:40:57.131261814Z" + created: "2024-06-24T01:51:03.818081838Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 057b3f6ef6001d3457fbffc27f90316c981a089696abd3d38bcc8de5537dfa6f name: azurefile-csi-driver @@ -300,7 +309,7 @@ entries: version: v1.7.0 - apiVersion: v1 appVersion: v1.6.0 - created: "2024-04-19T15:40:57.13046205Z" + created: "2024-06-24T01:51:03.817017729Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: cc2a0dda824cdda4e8141e26878bbb481c5a52e45785a5dbf72e54f2a376e522 name: azurefile-csi-driver @@ -309,7 +318,7 @@ entries: version: v1.6.0 - apiVersion: v1 appVersion: v1.5.0 - created: "2024-04-19T15:40:57.129735687Z" + created: "2024-06-24T01:51:03.815421715Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 2258177477415ddecd83dc46dfd88833223623224c7fe396590b617082bcd845 name: azurefile-csi-driver @@ -318,7 +327,7 @@ entries: version: v1.5.0 - apiVersion: v1 appVersion: v1.4.0 - created: "2024-04-19T15:40:57.128910566Z" + created: "2024-06-24T01:51:03.814742898Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 40e9bc4ee187789166fcb7c3c82b85b33ecd3a6096266fe74e411d6b48961ece name: azurefile-csi-driver @@ -327,7 +336,7 @@ entries: version: v1.4.0 - apiVersion: v1 appVersion: v1.3.0 - created: "2024-04-19T15:40:57.127297163Z" + created: "2024-06-24T01:51:03.814111071Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 12942f422b7cccbfe950bbdbd5c844f5ae4b7c292f32389cba312730a6fe9a62 name: azurefile-csi-driver @@ -336,7 +345,7 @@ entries: version: v1.3.0 - apiVersion: v1 appVersion: v1.2.0 - created: "2024-04-19T15:40:57.099166132Z" + created: "2024-06-24T01:51:03.789380181Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: b62f44b757416a9e1f5a91e19285f5f5056ec6068802dd9cd82373bef40c9ee9 name: azurefile-csi-driver @@ -345,7 +354,7 @@ entries: version: v1.2.0 - apiVersion: v1 appVersion: v1.1.0 - created: "2024-04-19T15:40:57.084826269Z" + created: "2024-06-24T01:51:03.777212949Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 675d96b309a1c5c491053ebbb854c046737420929c4f0692839afdaaf0db3933 name: azurefile-csi-driver @@ -354,11 +363,11 @@ entries: version: v1.1.0 - apiVersion: v1 appVersion: v1.0.0 - created: "2024-04-19T15:40:57.084229117Z" + created: "2024-06-24T01:51:03.776651416Z" description: Azure File Container Storage Interface (CSI) Storage Plugin digest: 6fd5e54e949ef1061a08d5477bc580204c91dde8f01da195e95dd60ade209492 name: azurefile-csi-driver urls: - https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/master/charts/v1.0.0/azurefile-csi-driver-v1.0.0.tgz version: v1.0.0 -generated: "2024-04-19T15:40:57.081805297Z" +generated: "2024-06-24T01:51:03.774810264Z" diff --git a/charts/latest/azurefile-csi-driver-v1.29.5.tgz b/charts/latest/azurefile-csi-driver-v1.29.5.tgz deleted file mode 100644 index 5ac944eb38c15aa5ad4a61e68c1c30fb8f1c8880..0000000000000000000000000000000000000000 GIT binary patch literal 0 HcmV?d00001 literal 13449 zcmV;4GDc zVQyr3R8em|NM&qo0PKBxa~nC5XaB8FfuLu?_Ku389+qc#;n>hfYPYW4vOy`i8+u7}Xx4pN&yZ8FltKHuIcfIXb zJG*<|q25YrpYg;(V*Xuk>AK2|`$`@hk)MGJ!e}2&wl{DT<^JsM{H6P9BLLxZ5=s5z zfsz;WJqZCFGAc2lz|nuFI zP6nq;o^cRBf7mV_hwf}SpY|RVxPm12+8prjZ`07wczpO^8yPqo4oPt z89IjnaG*XQ$q=J}7)N8q0SWLqNTGhd0u&1f(9H;_rbg%xY55e21cyN%jiii3e=Emn zm$0pX`C?0AaV@rdMh9dVbMPV-cz$A{wiG>26Z0ZYCRjq!oaxqv{{1Wt!wbVrAN}&{ z#xvw0W3k3l+i}w$VQPw;;xTNfA|5)7g=AwC;wuPsJ8%#nLM20EkT}2+Z}_^%J6)oW zK7ZLj=oz~Hv+!^f)fmJL0enJyIPiTIQ>g~b=YS>jk>oL;XXtOLo7BHIku8g`DJ;+p z2}9MN=92&o7)MhUchLn%#o_>m0uULfAJGk_`o~y+`kNzmL%XUzMkQxq2)wW6hnM3s zed7s?o*~s6hz-z%<-;;<2Q^`WaXr3PBFi+jpe;mAP#lR7lZPdKli!zQcY|MHzuf<- z5k+riVFc_FQ{+Mx2Zvf*GnujkJ^j)sw4lDUh_DZRq$YzWrb2>N)nUkPj>nOl z9%kR9Tyuy*;$zWAI~xd%n2@I+Zy3K$!-tH>F^K9%y>aEUo#ZQD zkOSTDhp4$=H1D(G3p=^x+?DSvS-C@aTi3n4WZfkAFJLeL zU-nVwlwJ5E2;vYrt>{~w6)BBz=e2lCRI{Ot4(jK}aJOb>h?g!mhg zqmuxr)B~UB){1_A)lR?fmh|#QVy#tipxV}CwWO<*y1C!Rl@-}%_ABGU?ss>)$&_hu zqYG6Z7HoYR4jkUdB3w9}9sN<}Zq!v&wEQJI=(2=WTUcWaEB3IpUfNwkFKr9}%a}tZ zFmFK`nZ1x$Iq_Dc%}ev3bXqaWX; z6Qa{W&k&wq5-Q%23CO6QUr?szjd;0gK`RU2&+f8(Qe*XSk zxpr!$bjI23)H0!d$o}3435{cU;kkI(M@#9C|JuAg6yNM3FccNx!SV7xU5p3mT0Vx0=OcW zI@vIODkBJaQqI<7jzfOB4SuiVUH_9yOr91E_)g$K`cPc$TQBA1CYl1MP``mm4$ahs7qm_Q~LQ~|KkMnk0H7GXn%a}n%0kgCcauo zTKATjiLhO_7r$bVKAw7n`qETgAzd5-dy0crsd=4>{OQ>{s{c*8X^%31QHU!uM5^yQ0U#Srs6VO8*(4mTw$U!gBwI>_^G zluBMt_{L|({Qoq9Faj>RGFlu8Fk}Aj>{aIf>;2vR_58n&=kw>S|3DKm?rS5h1VQ;I zZ^o)y{1Noge{6mEvaz9y9p6Tn2HJL0yM?CBy+(`aa-TnYD1ZT>fI6vUbyeXG^0N0j zOwctbGd*9sKO4k}D*1i_oRa|1@5;lcKHA^a|0H7*JwY8WBL+0k|JDp{9O@l9!;oQ7 z@oTX~$~)2f%U9EkZL@mlZZvSO%Vjl2oKQJHoj(fikD^m-h55GyP@&&-$W7_5&YwD{ z^Qp5)i`aO~lmlf{o@nGWDP`6>h9r)nlBaE=SD!zlWR_Qls*9Xo5-KF7zWKVWaO;^j z3$#Yg!yLz|1fhNy2aS!Z;n8Q~h*2GS%k8FD%SD(=j|~><2}D+Y;3 z9Hg*1H^CJCrl?gu`5pZ;X0p)9U%qUNARKqaXiLjyZ9A;=cJn;h$(BbYnAb?MzvFS( zP$I3pFxo~vL~$6Vc#Z+%C`Dfg)G+o@hP%iKK*nYnoS|y305 zCY4(E&>H$~pBeVw=Yf~sR9FZT*l7Qi;op5-wEsKXyRToZ?f-o|rOB3#vke968Q^)| zMjj`OBLcS)sE%`Vum5aR*!IRXp+Vo`q0VhY?Fe+-g)q92z@hr3IGx#B%P=}apjtg% z#Uu=X7xd$#m*UNEL_8ctoJ}Aos?$E|Bsj4lk)!yk>$7orKTfrPQyk{E1vN@+Yk&V$ zCxQDAMlZ=2gv8^hk7yi*>Hg0|Zzv^S=ekZ9)U)lF4H1Ec4-L((Q(ZAb*7kTEC05St{4jeQzwrDgb{_Cj5i7ph$1{} z)8M46i4%FJI1Se6_UT!G&VD{b1J1_iW<>mv#aJceZ?Hfw7*9}pFOxc4ZH>V18k$|T zE+aw$wY#2&AtvKf6J^iZf1wMX{d`zxzL4DDv)rvuS;L_j6wr~_hDPgu>rx3_^%RBl zkWs}gVpsnFUn=j|Y-(DVxTx23K&e#A&Nxq4G;JLdO2+XR3G$n6vtb~O zCL4JjO#`l+Fg4scQOFH=lMHKVzaYPrg}D6tEY2@WLsJ@w5DSq+^s^;Vu~1#_PpYJ< zot}T&lI7ESc8h`|Svrl%CDRVKMU_ILcJ30jc4b|3X2MWZxzuumrP60)kVc{hx}*|A z?8_L3;WQ;`2U?hrmnw3_- z%(@5$@gn>YjB!8P-=YU+CqM6A6n;j-_ zw7Z#7@R{wfN^BD`o(jHXst5ec!c z5ZE3w%0N2?Rt@W+C~u$*5T=Q|YfQIVaEg&eF8hp5fGb<$vmqtFrL?t5P?hR+jx5pC zehkH-*?-&AQ+kZ2h=bNDG0oAlho#U@%1t43z_L>cLn0IR*k|K$Oo^Ntj3Bv+CF5c% zfC+?Kf($*({SlGi%b3HK@@+NiRJ+LCaqukNqJCcBwK5IOqaDbG5l}v)5i0YkX+_l} zpC4abrn}>MFv`7OvgINh0@Y!J4uG3M)b5Wq^EA*xYWE6Brc+W`jjzT;rjjnS+CJ24 z2JIV0fp(A32}Or^4B;UbaOVS{dRlm@W7`cu;`i4LfqGvM{{V#cBK#5N*q6Z7-1CK* zu<7(ojdrQeuBKK)I6J~|UdCtChe(Pot6R5>B1qRm;+bm=kv$2{zFX`Kw_ea4qJ^ls zmtE)1jylZ+^t!R`25h5NN z*Y^r6CZL9>Mhc``eF<2gWatt-o*O;GK@HI>&>I)!)ns}uC0V#A4enURxdaE*3y-^a zjRHuX+GR=$L8<+=Mo@4~dkV(9{i+Pp>YC2gxXeGO4qV+3*`;L-T{CWa*cc6`cIzs!#NJ zU^!CGJZ&ptT21Jc5VnJut3iA11)_RXuK*|-V}4!np$yweJ2%auF&iVz@c@%hQyu~Z z9q3U?QaOrUq)*j2Xj&iJ0_XG*8+#~MrV6X%MxiEEl&Xai#?UxV4(GI@vCMM0!96tv za(=z>)??0{uU~=a5n5AE?zpENrA@nyxdiK;EdqXd6Iru04e6R}t$o zN`p8=FRrF)HA4by-5xCG3)7TpF>94VSmq_Vf`JmOSePm*0T=setpnK{ewn4Io4;Lfx-=hQBf{;XIYVnF0|(7as}Tq`5s|6t7MbpL*D=C+$~cJXNt}&(I5k~rLKlq= z&J<)9oxZ<3cB$=4hVX=u07Xm)qLvE+{FocqtB65tBELzbot(}meKRRohdVw^MCm#1xI(1Dn6;kb<+5Zj5)Q7UTx|+MH|&|&>Wth9U>oxVHbU`4W%=( z*U*Y(`BddJukVPE38$iw)nv6`00~IMQN*~K6H>bhRh43bO-8La2&Z}`9XTC?X4Or| zm|jzx0HgRAi)UiIZi#CUe&C$(8B(vyB;p=op)`R2K7qi#3iPproFv({Y&sfD1_;w> zVL6uOau`7vDN89CiX-KmhA@FJCz#>|=|a~d@S7loCC z#(*lpTP;hNXh}5wP;NAe`8cky0G(h$YlCT|M^AT*bLpYv#RMyybI*wQH9(|EY<|Q*;|_(L&re z0EtPM?!Z!=2?cl}b2ZE8I!RPwm(ELTWfKnTS9R(M*>I?)vNBdAjXF^~W|&YUfC?hX z1oGae!vvw(5gF+;L6r`Z&F04p>kSt9ZgU3}X6ufbTsMRsGUUSy4U-kjxnM1T7_KgK zKr>v%v))uTOocYaGiQP{yPqWc6bo=!mA1CC*-|z*7)>5P4V#83r{-#5I%gV6mqn19 z#-Y0*H9m_l$)P%zJcf?L&N_*rF<=V?Q4J&%M0v}i$*NY-IQgzfQ4dwYZk#M7sZYt2 z*RwMK9d5Zd1}PQ$WT5f@kH(qc@+X&ZBejS*eI7s^)v`}lQwgHI51E?>4zi2+km)>d zP@Ku+%vs=efa)AbojJ`&h1oN&9Y~kR>rt@slG{_!0FBf48l)k{SPzVjJDHhL#_yC^ zC3=?RT-tP|=Ds(2G>t+fGt{M+W-YgM1DfV#grx*d`{@6@`1q&ay_f&_;>9mL?=Qdp z>BYyc{>Oj3{Lh!aCx86u<;xc@e);jIx0h$fzmk`~|3c&OwfXD!7r(&quPuqZeEFY$ zsIYSD<)E8t#mBg3=6!kwJU2QnGg*z7dAf@>YQHjmcaFYYC+2^NuPSLzY*@`4J6=O0 z-6+9t5)%2%Lm}4?$a{i7t`z#XI>_THp^i@p;`r4<8?QiOgKvChqD*-=1Cj#i>C5D> zsL7U_Ldu9hfzm8~rrn>RgR_%7_R9=+LWqM8WTMR84dztutJzEx8h55hM~n(<4m098 z(`^}M_N1vO>~1DhQx{aZ{2HYu&=~6}khCq&XR$iM=-&*TKI+sQ`PfRxRI#2J*Z)hW z<*lbs`q(Ug9}aN(gkYwt0hX?zr1enJ6@f?BaM3n!(R%=hJ}yY;Qv-l53-w$Q)VU;l zb7`RF*9*y90r+xxnB~%d$~%NkJ_ufMS#;tmu!zee50}OnE{iH$A%^e{5QEF&1D8hw zeoNTD6{G#`3g7pH5q-i0(NU{HM*?k|l>6aTX7Yuv%9XGz&Wi5Q0qZSSC`~$czhtpbI+SDEbXy)Li>jY_IE;quq}; z(U$G6bR#Fi9FNt&SnGftk&k?6RmVV-*DFjH=Wr60Eu4d-9)HGRcakM8w^4f?QI^64 z1PQH%`ICJ(2VuyQ#vBl3G`oQzcm&9cl8sv@_;UEk#aY-e7R7>U72Z$OA94y8)w)$(WWM7AW$@#3gY9i?%*$@ z^D$kINfKhV9airXyPkWO_Yjogk*y%2WX1 zwl%hd?y(W3L8#S6CFPt$>gqro>+E=s74DQ7*5W|q9j>}yWNql62(igbw;sxCn0jU$ z$2c;};*#Jc=D1W{j*!09ATjA#>Th&80s(n7#UlLA7?cUhp(z$yiaGr){UYyOuHXzy z+fyr##^?Q3ecd(k`fiZdMu3)qUuz1h!eB457Fp#AWaaCQ$GO^A9KC)~-(U=?eDC*l1+YJY!ygyAdk>A!j}zWrXydUxgFcUO!KzlZIWTo|c#gT<7Y zwZ&ptuHR$H{xxH3CFNywApwvZ{s6?u>1U^k#emTl1ZSS6w)?s$}*$ z+htm7Jdad4@I0$=ee`|>OY+(y_lFlJiQPz~$ihc7G}hsWWqNzwL*2S9 zONLJx(gkQgx(EYL*}j61(V%tl7s*+yQ`k1bb6>tJ03yA+8p-DSH}2Ic*#%2hEiP z$6UOwC|ovgH?#<#IY_Q3q~@U9KFIbx;|Y9Nr%Y0dP-1kxgKipcsDgHJEZG=KOU8vT zKD;<-ASr<(K?3k`9(P>yiaWMKGf9K`8=HK_&3;bcIJItKaH`=>JhIr-i6&g)r9r;Q z+2ec%6!t3Sk*dT<)~9i(#ye46%oEkcJyA1c-4*{t?PH*g3lB$|=T{{56qU`bHXJI@fR5_I|UK(Whz?mvqPshNXMz0^AhJIZ*K}d3EaDr`o^&_21u<5X>z2_rLx}X`O%n>%adRGXMJD|N5WS3Au}C5UU&w zbI*n0ICr+CIKnQ9>6n*<0aJv-XoPJJi+R-gVi{j%Wpt^_ChKTaZGKsFn&!qd8aOor zgbp|Bs&>?1Po^e5x;_P*?0;+LEFgmc=!_Zybh9k2dp%Td$Ob)uZpE=OU309iR-&qV}&cUHR3{9^=pY;3sg#T4`8 zB=p=OU+hV6*Q$&JgoAH(HS&oLufSxHaGv9v&(+;DOz1>e?c$I1UZ0lkz$T>0u{*+1 z1ns>O2jxZmmAYVC@)YFn;OwLfbF)L~TrJMD+`6SY3Oc*)=O+VG8P9TA5->xN#_kZI zLIMsN+$4&CO2Q!>U8B291S^-00BgLJ79#Y&FW#SSy=65d&3Iv*20$OVgE3IKsr84+ zXrwa-UZ^+SF{WeyLUwH(z{M{+zt*_}N_gQGkE0Mala0941xw}-5vDs*idx}07F4ze zP{fj?;WxUu$~-DR5!(n}NUoueIywNJvH4j^{}q$*?h3Q{*ey!!W*k8(y!!6n|OLQVsFTJ!g zQcS7Dx2h&zc^h>-s}sHH**sB>fO1YC483ISe}kv07m|Uq>0B|FjnbN?_o7~VVZAn5X+duVksJ`k>ccWM2yRdVhm254vw`0#Q5|~oy+mdIL>e!meLm>f9hGxj)!TW{%ul~ z`qPDaFea_0?}wA4`w{S%EHqbZm%MdJ{Ay5Q$b}R`b!q>+s$1^Z+IgTWf$N>WZ~T7H z!;6!AAm7DqCA7c3BXq9ZX=z}jCj4E@qE?KNfX%{`Zr^8N5cGkPTc>TKOn}dHl0`)k zsLukER1{N0sNCP{qW4sPznLJ$#>#Q}ufTnc>7V{6{&@Odw(E-X&+tqOwF;u#@$J97 z?s>g!uea@>*z5K6|3@D#59_nTXFS)zIpRW zT)3Y@Kpj|Dpkmv<7vN;2Kb4zq3P1;OBc>sBypUIU< z^HTZVYIjVR$^hpImoJ|a&gm((%@Wt_J=xraebk%Fv6{7?-?W!c>NoLoI>XhIGtniB zbz}V;A1UK*_C?h=nH@Ac=90K?e5J}^8*&h0j!m!ig`w*cF>{}YS>Z{Tul)qf`sB;K zo_txKczMhxUe=je?kF>h6`7@SvltpH%g!?Asid#yEYdn7ih0&)Bfjo4MPKtNq6cz0 z*XeUwp6prr9M1|)?X2XC&KxIl8vVE@d;n+Z<2K75u6g7~X;yb|=II`jS?WN{GDly& z&O%pnOVTsq+9U zLH;j?@n06rzcg-tB?$dxu=vZM?w7&WuaWd~H*SrjUnA+)nE5qkevO%beD{CP4v~Gc zcYqf+6_-J+FO5-O7Lopy;?JKP+I)Tc_R~a=-|5}kbE3o7_isO@`?ptu;a(Q8y%K!( z`X24C_8#r86d}Dd9(q~y^W(reKho>JKY#WR&;WT~zHEHAewrWrTg+iVLhyV+Jfo4e zB#a{s;@VO_=8B}(a&)J79JZ~a*X#B6_xALEd%a%izdJko`}^N*@9ppIy?*s-x3~XY zZ)bOV_tkf(cehP9Pb?(n-}RQRtK7J+ehaaPSnw_{ zW>x~anGF1S4k3$Ja8Q;r&3H-HX4isBz{?R6@)V?MdtDFbiexn_Ux4^<;OkZNX<0cG zU+1W06etVeq9DQA1t^4{ndqaC(D=5ock+~4cXy4v=al$x}(+sI%9ahgbcQkoECmOie*wK=O zz{@h2`>~}AHmcKszA0>)lX3gY90FeHXfnn_IE%yZ0(=fK$9?%tp_aO@i?!03v!lyp)3ItL^3|j3$txcA9Zqb(R_b} z1)M{~(3dZjcTKeWvr0=mL|?vi%ov0MTJp2HI*aoeAyF_-`?VCDJ$U#JsF|b&^+1}~(gyTKjN{&5) z)$$T+`=)52(!xqxcsL^7KO^zxRj;YURm_Eav)ywQ8UU6t2XClW25){~l<~8l&%qBd z8Jo?w3IjkVp`$(-i)cFCh8QL;eEB&t6$~6r49(u*7c8>Dk`NGo05J`4mx&+9KUb zOnc@c`*c-mV~$Gttv{Pvk=#8O?Nm!!C2~JHq@?IpI~AK|P{SNiPyGa2YzE~9t#$?} zKh=-5=fkLkTUq4U#}U3FA#tAg;Vdfu=Anak@0`<cC+L`4v?)Nd>o_prXYR^mzkI-0vr*|3O=$Pp9$_F_UFRE{g#`YY1HUVxhxyQE= z*0=3`k4YGF&{p^P!&=>BY!|V(_pC20s}HLyLNWmgLMZS53ficP*}uHrk`;+}BCDDXB*zote8L85sEItbmA`gGF8p#gUYemmJ-F6EYu%>a)H( z#8PbP2yiGzXN=2qZCmMLTZ=B~MU2Zg3sNq3r6D|dvon_}C|2{>wLyW~hgAq^5VVah z$RegI)dMwTt1~hyxZwO>wx)JogEy(03~cxgCJ?&U-sx=p!;8ar1UQ0OfsK^eRO$vmZ&8Pi&?@}tTq`b7vHADZ!`I>=!-%{#asuE(%0L?*AZ~S0{6%DtCs)!;r#g1;ra2=@#*Es!Mji2pS(MEtzo|B%#mim zOue6Q^dn52=SLlT+S=?Ka?l%qIQ*W3aF~#(_MUpKVcOS1;CRO(b7nJ_ZK>SGyrFR~ z&tgh$`&(P}{%duDT9u_wbewT^J4KyNb!Hj{ez?3myZCf={{H{`-CciG73S!ch}H;D zBZqAmoS(mW*elB0+xMR?j(+^~?)}?O?~Z>ye%H2EEjn-6#nF%NGB0B;A3F1S?lpd0 z{urd6I|Q`lB&1pO{PJ~4RqdxYZ@U2zk~7p9K)^Vz9cm%U={?JQ2@!7jP|Z%u0SE7C zIBl3|LWEv)UGA511<^Ix^06m*EaaBnZ1Jm?lsDAo6tM+XD5)$w#OlO|nPc11DL>lX zIU?L9GcA7M6clCJs>i6K+2UsqiAVZ0Jmb^%+`xS|^1VN&{JCXsCWlo)te3Ny#AXOx zPNr6e|C$T`XI0!h*uU>);{STvz1`O({NK*b?#>$jcOQ@Ec?HN{C5z&QK?ojRoY(}d zjbOmyQnLi{n-{xR!Zm4iCWv99IjWEZ3s4RYKF^+E@_mAk!ct;?be>)=T(gcVlrk-d zSa3oI>^;@iI<*u=wZ0<*@TY#LuM|#`JfEqt5a|`59y*RjFb0m5W*UgMoW+sDd9XVM z-9iZq&STd=&uxytq#7It1gNi+b42=ETL-H54vsEW+2dQ2L12xae(KL$`d#8Q?BZd=*0V_gKIW%9Sx= zf0)ACl&-OGatvceFJJ*Qc~VIrPFDyfcTrsdmOLT5Jdix0v{DqgN&k8wIhHWA$x4-} zB6Rpcze+sOF~0pk@dT4ljd-Ew)RgZQ-zVK?yzuip!8Ty@c4M;)Xnj5`dRumPU(G_8a&3A1va{2d>2N>Po#&5OKa&&EWV6`rsYBQQtHjpEB16+(C47+ga09N~zpHAV%JCQI( z`hPE{5oA#+6cLuQa1T~&(^@oYGQx87<_|B9&QE?mKL2!n{Pxqu`@SP-=`?6W0RqdJT*^;}E3ANJtt|?Y$37U6k z62Zu}XB@QGFtVrSSk$T9l#-btEfsA6lcrbKD?_6xY9x5`hZn`USf{|Nn54YsdmxyZ z?vc9ynAH=0a?mo})Ha~9RK)OA2;LB6a(qEZEX5ng=7K5u7NkuNuF5qM%}0wp8!oOp zr`Q5bX~I#pILar2Axe79QD&7`qC4?<)-a?M!I194p~{EjC);=BajnX`dLZ!2HIr(Vz7WJenX8&k1k2n;t{jXSfB4;JVFCzUY^;EkJ9$k}tf3fm?6%eslRk)_b$-z1b(aH)|LrG$b_5 zSa%Im&s-dAZgWhMpSzhq(chYieuU|P{_t-^j*|T9?uwV+;hi%N%B%&ObKTx1tw{F! zo#zrMy)2~a$iG?V=XgYW>&-swdXxN#Z<0TrY$8v`@3%Q5^gM4Q;9jlST>H0EZy>yg zMBr5hH%I2<$L>c}=wt3P5`vAIm%gl4A;wn=)uFyCeew*+5eU%AOCZc4y#h?{K?P{Q zxW1(iOQP2m`tnhjKIi5N$PzJqJH5StPH)$YaB``b`soTJMiYBww!K&G@Ztn%_FDI= zqOwHiRzGj-;rVMb-CX|eE5WCjf7d2wnIY#*Sx8z7eOrN_v$B%(uT1h+B=z%1{4(8K zq&1i5FVx}g`WnJ4O|`TF6=sJCir#54uTO;~w?$fph|&)oRGxwAjb#Q$ygUhkFgf7|=}uh;m$`*=#5WF}9VMgFY<$!8O< ztrW*srMUtWpCP(DhR@LX1`&L&QF%E0o|~J+Z=Nh~Cg10ElBO*yfD5LC?&A{4TnsIs z!V#aaLzKMBr+`=lb7;O@@-|7s)7{_!t!B6@G+@U1W5fd1^u|i@pidlW*e0Ft8fW-O zFOn%2XmKyhTzgk{cUenwRLo4{H4<=*1e|mJWY@S=iYasI15|TTFo1B7Dx4%xSun{t8=5@Bh=3D7Xcp=A=HYtD!)cCXCAB)y~n0#QW zo*N<7a(I>jjp-u;>6MQt(^%++(dQCf0UBd|4FSSJd$sAQfXOyGJU=qW4B`wVr)d(3 zp1tbr6=-{T+9V7S+!BfKKmtdYvzP|xb@!E8{xKQ|RSS`tn2!}B144sBy@DY*BEl?I zkr=T!3>3RV?cH!BN0_SrQAEaso-5w-TXG1ARsg|^m=B?kdf6`p$e>w~yCH$gA@W*} z{t8m;HPy8O9Ni4^k0KRcm9<4da@Jd{g^l@PEF|y@IacYfoa3+}z*kchd4!$qdlzi( zD@T*fH?tZyMCa>pEG`k4)%LXVwQ&_cCZ!Q#TT_*!~Ju}vS{0jSC@et7btH4?J|L*j5OY6VA z-p=~|-+OsVR!)s~*Vis*Zs~VuEc`hOp|JMTrEx4rjFaEA{m$JR-?$*uU)qqX2e%S9 z#i18*HX({MaE~+Xd@plV!n-|K6zOj{1k`EcLGdLXe=pTcAQe#AMvMR&ylCRafx>e^<@6gs&XAmhEiW zCYS(~3-p|A%_izZb=A#omM@6%YggK!r3hwbawhLq=IjTJHLkKErOIcGn4>^cC5Z zdhNb)C8Ys0ZFMW51Gcz2Y^j{gXpQHwBrCBWmD;z2#4=tb6W^NROefx2Yu2cu$Eq?D z4?*6))^t0O%XyDZH`qktT+?i&KGt$>_R4*`tlwrUvP`wq>(yoXtI@J+ZCcT$`8l~( zsP&4fwNAZXmC8Yo-@ZO4bY8W(L|kL38Wz_h_hp10SYO?@x>}*UKLI^e>WzodQEFIf zhb--!EnjoDhp>;HRr9QVIh&H&sCIHX3%zK(Fo8uPKzNXa_be!s!?)mOOE zt=ol}XdM&0QxDIj)gF~cSASGsrT$%mc7M2Vn2RZcolc?CcW8kgFeH5MB46s&^$chd zwtHLP%<%thKVj2P3nIa1#eaIQcS`>M{`T(P+W)_gr+ogm6j;uj{Zif@=TvJx1Kb?5 zp8xdkBFA{=N#WlveShIxU(;uXyhnoK%|K0D%;H!A#cen?Dc zVQyr3R8em|NM&qo0PKDJavM34XaB9IK+rQ`dq+i4vMkT=!m*)|)NWn7WrZa7++3^A z3sogajEX=FfTF~9J7OMW_vPkEF7Q#`sABO$AC_5nJ8iL0i3E_yOeB6t;NM~n0}_Jg z3*rTwOn`44j4+qoDISO4t>WqRdcD2fUH#u)uUGzWZ|7C-yY1b*S9{y9d%L}z?|R#> zcXoQ;q25YrpYg;(V*Xuk>AK2|`$`@hk)MGJ!e}2&wl{DT<^JsM{H43M5rFVHiKPB< zU&#ylo`ir77?qe%;OJa3j)#DbsRTa2KA;x|=f^M8-%rDMNazN|W9TE7#BEHlI&uCRbJh*%$uecl}tpEJP* zvg@<)2FfO_DvA(?hzTMYpZ3uf6JqN+z5-4`f>3g_RgfzEg~Y>ba;qPrI1Eo&Nc?FZ z9S=^JJmnyO$_<2kK~6cF5Ty}-x2sV}Z{ye*? zkW7Gr5T~47wd~I1lSqA%t8b^f-J4w@WdR)OiG2n`A|%IiG*W$R)q=;9&kHQfZ1Tpl zXXp$Dz=8UJBtwh>VjPVb2PDAfAcgw*3Q#N{KsO_xni`=)q~%j65*!A7G?FqB{jD6Q zUBb2k=8G+f#kJV-86A*e%)yIT;Q5J(+EVm9P0WipnP3S?bEaDx`uEc~49^WWee}z( z8_$r3jKvyHZO2W2gsCZVg2%9-ig@TC7Ltuoh_4{j?Z82R2$c+tLE->Qyy5F2?{$ej z`ut@Bp=ap&&%(n|RAUe~1n>#*Vc+*zOr;typ97ZAN0P^Yo}s^~Zc_i=M7Au#rm#Ra zBn(x5noj~WU>r?Z+(qXg6^jEL3P5C_endBz>K|hP>TizN4ehG>7?qrbA@IJMA6|~n z^o=JldWKYQAT~hfmJiFc9n^#g#`XAGi7eC9g0>JfL2)ETOdgc@O@3dJ-3@+){c``S zMijl7jg4G?rLXJyO_2*(92{tI&1A|F^z=)k(1QBXBEmlOk(vyimo!8!nvq=%tMTU>S4B z1m+z`BeUlcD<|HHw0UXX{G=Sccbvsh`g$Pr-${R;0S^AgiG&Z-2PO00pI=NP*w`?R zdFI+FHQeFOD2*U84y|0sa(4}nUnFXQCz^LQ{Iw|&(4aDMKMARKp+we>r8e)!}2 zbV77G=o!KjOhUywG65O&^9#zU$0y%^*hGKZKRY=-dAEs<&dxrZ zDc4S|lukLjomwW;582-vA))bYVY1o&2*ioQbyZpkJwpM8F{1*c?gUkuilpZbVSwXM zIvKa`Hqk*CD@Ff3;iB}H>gykjKe~xd7zJy2LXds5HNkuNObSbn>T5%BnxIG?M9g;y>tg&WGlyFRh~p`P~h&W zoawwIU+gYbk;CyY6f_0jdJfB==phjuDG zL%%S+kB7rw(eVJu5upA3Lxdyk8mc!o?8QAS1Q}8Y&=^xZga8ps7ZDTjAyj`a@EDK; zim60c=%0LJ)pdn(1Qe<1Z;Birq8lPdy4ZZR+A59@m0(#~#*@*~e854M#NqcO1hc65 z2}kLAi9_J&Fx^9MxID7Qx&J3&9EDhd*gE-eadh65w{n>}X6^sK+TAJb|Lwim*<0`b z-N$pGR6uS||NIykW2C0}&_;m+h(b1n07+(c2rGq^0 zMycfWgl~Li%>Pd#2qWO4E2G7s05j(Q&TeJ?zuDW_SZ83^`k!QMq9>^1WyF96`rn$tjRUoEfB9;fv29il-HitBb-Ap@h!ZLYsPjkR{ZVv^tuX(#04nsm4!J4))%jBg zbv|_#X%QQbnR1|v$`g&8CZ)`J$B@KPRPwY<^y>3xl+5z#P<4^>OG1Uj)Hh$36>dHA zW`Wkod6?r^l_1m)9N6L9buhQ?`m4?iey7MX~iHB ziTxB-=O&oK-xRgVC%>bA#!MDE`OBA$5rpHe7;S0!tZj#t-fo^JJK6H61oIk6_IErE z8%m_L7e?EthbRui6wfhW9Hr%5WDs0m#@agELg^6~Ko6h+{g0#_v#y=};YA z)1*@C9$G`+?K8vv`#kXSn+gkI0vqkWGW@UJ6z%`c_N%?^wf(=3r!?8pakimAJp(+? z+sNaDaYW!&0@ZPj?)9II3ftbeCN$_s;3fgL<|dvmqkT@S&mEb*d|7$lBg8J!v<2b7Dddlim+y%%1)?zKIIM7|--!|9W?wi7$4%@DLWgmPdHJ&qgoMu`=%aKk7Hpuz zq0&@5goA*Xn9`|ojes908d=D%03Sc50r8b)Q9`G~N46@p+~k0RX&wnE8RDS&2@tld zb!{l@AA-?SEJuCRHOtGc{`!J_6iI~54AWWpXXW4a(G_DMVCv*?fH0zPlkr9Y0#SsA zZ5o`EHE|;E6sN&D-99}F(CN*^7?`2YltF00ET|=|0 z)@4LUpmx{uAjD*RVxsI>`_FaZ)1MCt%@>jze3rZQDQh@1g917d+t6tJZ(S;(tDd5e z9x$r7MeOPy;7jEln{91EhlS6xInvw#6BqTG4k(ps*%@aEi>9q(LdiHDBSC)CZ8i*~ z(PSg9qiMjE6Q+hcCknX%Z<1jx?dRmTvJjVlpT+q_X=q9#5n>^dh<>&tDi*5i{YjNn zwbS!&Te5so&u&q0Bul4Jxn$bmwy07_)XrU^)~>9JPE8n!DwkT0uvGet4AMySK$lcv zhiW@&}&XN|B@k~BIem1fc_qHKoKKmB4CLC`y<5U2zVF$ z)$;Pw$MXxNehjY=sC6jg2DXcbCAC9@ZGXL_U9p%3PA==ma;~Y9noWb}Rzs!R=n?8k zGKQl1llU5FB8D*yfQQq(BC*C285C1}v+_o}(1?TT3)6xCOR)Us$R)l?x8em9sO}GI zh*=lGAYOz&f-&xA`&)GX^!Vpj=Y^k9vHMCgMFhfnhva!WZS@ihh!PX)t0?Iyc5-gt zDD7^h6nthotPif3&sFp7+SaTGje50y z1q8Ooj55%UfmOqLD9RgX1B7WJ?;6vs7Mx%ynog+&$ zwI4%qX!hSW^^_jtDdM2DN=$R~>|rVNlX6oC9kA?_!jQh>I@K<6cN{!Rx2T^Nc&$uB^JoXMVFZ*9X@tsrYFbe> z$!ACB7wPV}9*lDDmu$JnhCp=~p#$J%5ViZG%{&dXklMXMlIfIGR^zKNk*TB$t+o&J znnC-9QJ~!;bWG6!9z%G51>E@nsGb&{>ezNekof&|L!jOl#6JL`y$FAVIrb%RHTQgB zCTu!=Q=?t#v#Y7q5YCQpoR{$#^&ygC%j(uGqX^RVka*@=Lu5~av+ovr!>t!|hiDYJk9*16xV!lhQ$ew%A}$+>nCMd;K;sn)}`4r{g&siB(dZmUSM4)2gp$kLO0ua8N_^3iQTBc{Q1yOGy?kN`pI=aW26@^}^#W zUZVh#r*@grLQrbItq~Ml)1HDcZ@((Tw7RBqH7@fHssmRyM0ROeL)VO(9yUh9sU169 zas`yY{g|n?T;(-nmmEy<()3j2C8O|R;DYM#^hDAxo!Xh-`E|yZwW3h@vSxucL-Rg& zED^P&k?KOs~_PBpm7{Z5``IM!*H7N`zivS!$fpVh^3_WQiWyawQE}7V!fLs z5+=@(nMbumHHz6Bh;=a;OLUX;9u|W6M4QwC3dHEneE+r^{Tw|D`NA?!Ibl?fis}=6 z9$1c)Gf&%!m{t>dC4}uD=4#Mhdx5AP)hhss#+YAMd?>?q(#}n@Xw1e)b3DK#)Rc!n zK?i!2l2ndj7wJ5DOb=nWpQ^E08y8Fxm!CoNEuE`c=gG zjM5+u(Tl68TFsCETekgKOo zC~Rj#vo6g?*obhuXwJ~u@xVbd(`p2QO+;j>x<#hD-F1wxo-z)idJ<=&9!^b{n$Sg~ zgEIx$MJFFFj$CT{f+0L%BtQ`pf~e(!06*pi_9|i!o5*hxX(y-i3AtOW9fVgc=xAz&hjwuSJ6px9IL^-BhZ42_TfX$p1Pp#U3 zg!;66T4%~k<@{g%Nx{*bq>4|fah)_iBV$hOqF0-`PSHkn95jb#rw7Q#Vc13AYeVUb z>@~DvSw2-c&Fgz2WWuRvWHnhW7(fCNaTGDG=7iL)LRF=hV3ScR4#KIPNk>k{pjmYj zGN#wmCcr2@#^RY6uUq08gdaF(e1_EPGKsi{SSU>(fKMQ>uL6B6Aty<;Et`%8lL5kX zT3C*yxg16iM#@r3hT=#$ry)!r%n7D=LAua&kCw|2<6L?uc`?BX=iDs<$Xv}bx=s?6*roH*TG@od`c<8JLN*+#sjQ3@Nuy5Gju|Et37~>V zGJ(AJ=`cZPc0@)xO;Dx7WV87(!+L{7zT4bEh1t4eCf5z2hYa~JL&IbRb1qm5Acm_8 z9ncJy@vJwM4O5|w@ywYZ&F&}3KE(oDR;8`&Y_^mQ4n~s)P{XES%Bi_pn9iAo(q$3k zrg7+QNR7`TOme8s1&^WQu(M90XbjjwK~w_?1ySCzXtJtRG)}%NQq)6Lup1{!N$OKF z<@M|gK!;oIjX_GqJ{hPyz@u>{xctdw+(<2APM-%*N44zJ)l`CL??dM1frIQ~K4dx% z9293VIdc}c9iTb~QfE#xQepPYYX{OL@_H1kyyW&&G(h9zg9d4cG1dd4<4$H~l<_+y zR*9Y^IhQt_sk!fs9!;ZA$qaQVrdi8v-GHWf8DS}b(?0rtFE0P|yZ7=xU%dFG=l$i^ zKfSo@>VN#l%l~}&d-BJhUcP+s;+G$PdUtVp^ecJ!`!6&eUz@*vfAI?({o0bq%a{N8 zhYBmVUJkmcR(y+(vEwx~ z(v1@QCLxjEJQQ*bfxIUOD zi<)e?DWr@D6e!K&XWIQ4+CM$cW53LBCxkfoKqkuU-C$1jzM9QMp>b!5bi}Bz<}f3k zGu@V9W>1=m!tQ25HFZIi%db&t0*$er0!iEQd={%CjQ-8g>7!1~k&mr}Ocm>yas9t^ zTHbmJrH{?>_u&AiPY7nZ8er)fN?H#kT@iS64Hs<#7rh67=;MNfJ~aU7vQW<@L7hv& zHX5WFm&y-c`V#YkZ&u( zxjk`I+e$EO%Olp7$EU3TjkXHx+2clz+{W?=~;0Q?)FDYFWJ08XdJNbX0N+NDdyA`>7cpl|>=2??WUZ zI4S49>zLilB&D7H(`VFRs>~&=re+9!PEyjTAJ_Q`XXh*QO#t!EvleFPm%7x2y2On9 zg_c_*SB@-(ep*ZV7c{3fOun%B4G+>QE9OgXn8Q`rRKrHlO_v|$f0~6RIRpuOthe`) z6-iyRBw2FE5ohtR2&;8PL9?)P03pcaj%6Z+jm)?Z2)dvHj-uZXM$NTf#rC>hIokbr z6K&c4N;h&M%<)(ajI|Ef5&6i6R&@+SdA-7PaSkU@*}~aR>hWhBb|+clavQbR5oIY% zK#Se7S_%gsP%kDk61@59O#rCw6svNwsD576K!gO1_DK+sUSWM>kj@h zS|9e*yj?>iyD3wxDlb)0%gXG^OA0%A+~5YF@wmK!WY{kKXgac$K&IDY)(K*ItxN?F zZd+qZ=pGwk8iZPHR8r14q^=IcvCfY7Sm92YVJ!|s-r=eXM%IQ7iV&O3bnBtKhN)-9 zaf~CgEG`LNVvbAI89GYUWrI^#-(l7GfH&{%W zSz9cY<@!CA>|ZmsR#Kjp++6wU(j%14$op&@DXUu8?9SMxNN>hBur=RFc-4hNt4e0C zvt6dO#`8#(Q{Dqql+-`lhsEY4rN>Y3SF56NDrux(Z=}7mQ~s z)0Ym0Yo;+`ypr}$>5_lMLS`A#a4t$%E2ky5@9wjdB<=q}htyk~TPl7~N@}6c2P7pv zk)V^mc((Y|oK=`@^4zkdo+OV+*3a%XqQpI9(U#hjOlCrW&*{#`uAax-E% z$bh4tlC#v>`&T1kbE^IOU;q6*3Bk;QfB)-$l-Bw8zyABLA@i^Q{jdLNosheT2C>S~ zF!x*-j&o;QiX-fzn2vc#7%)XRj7Hezu$V`!FP8CTRz{b)Y_g6<)#jH)Cuwd>qk&U1 zKB>^)OY3vRW zDkR{b!A+tFs3aWH(KWiuM6hz{2(ZRmX(2-Y`~1Vn);m^1(u^0@X#n(*I~W6%n_7RE zj7B>sWE0>M0ykSXj9(Kv^pt3NHdWG=wm)0X^nVs^i#A|w8&t4%ciAdc zkJwtMQOVXqdpq|0Jb@{dzAbr1sgA9gOhlkD4j@aNbH}2rI#j2H^QWH0?0A?4>fa_+ zsXtw)2V>G|`hGkeENaCV3D_)5>GpjV20zg;9 zRPHqVxbNL886}4aTHn3-4c@)kHa%M-0NT|e3yEGZBbzgzH@8Gr(xlB4ln0RK`I%g) zG%uC!t#-$BsSI$gaQX5%;hdgg+bnU--jmH;*hjs&9IILT`AvKIq<#}Wr!!nVITKy7 zSU1+s@sTp_W?xi|li5MDV=jsN##gEwwjl>0=GgRFUl_VR5i|FRm=&Ic`PxswtWUn& z>&ch(iI>NG;$@wg<&HA5Sdm#OH;bXMvg|B#o=WpbMLV6q~{TfL>cjMMb`Zbb%jhSC#=GU0{$9Mnt>=4;E zdk1)NQ*jy8`qCKnWfAFLDgOM)q0QH~Z$C{0`JLXqJtsPRegF1jx_^5m817{e+bh9m zukX?RYVXnhN)gga!V!1nP46lVtZCX~4K;bw< zA@Q-O>yhNWsYyTxzD$<8V=VpA`&`e~c3Se?dq?N(B^};!WD=EOdB_Qjdcp!bbB*Gk zGe%kqNm|7qEqTNEb;xjVtcVgh?HUB-@nM0y;v_BFCAREVETE4%QaSMj`YpsFV!`{o zm{|$vW-{>SIfN`?!G2lJG~*>%n_UYk0WU{P$PPBWy6byz*$+|lIuoM_-;V@FFC z0x!#8?#Grg*r-ki`lhgHPR8voa|n2)qsbT#;WQ4zbMQIH9QWlng<9&qE>>RA3+9Jx zXF2a-8#Aihs|+s3H!Qm&EKZe5yhWX@PO3g|Y-p5Xty7FU+<*ebmX#Mf3d? z7H|d;LtnmB-Zjzg&nhkP5PkX5F=G%4Xvxp&>MYJ@gfJh9@@7%To4noWRDRUXFAf5= zo_hO-7yE~YXGiDfFC7I#zyWYiYZ=1m>=M~!w{Pn_AqNpj#=v6vc6+DS6OQ+AD>?QI zR?ADQ?c1V-N((D(;o*pQ|BS@j*S)3^S1}jz?RL*qXaHEo9K4}g8NB_0QN~YyJ_A3* zWNbFyDhvRflt;jxq%u8R279TY?jyD8Q2*Bz%)c(nkeYuMeUD~|N0gQ=O2)+IagM31 zNXS_IYL0~|9!eY4Wz3R zxmb8Xy|Jnq+h~uXb6+RrrlcN?bY{L1$-uxrX9Yym94zu;D2}9zyyWQa+mQJoL9v?0t_=#@KCD7WgP?76 zK^8GxsUD~yTb+?v!3F34vNg5y8oWu}WMIShFoDp$_D*N(A6^`sAAdSJIXwMvd~)H6 z28=;+;)_(f^t$^0)y!^N+D^NgWw_7ifDCIG&kDE+nEg8?QF#LP*r<(=yP_Ws!7Z;$B*%p=exOU6NZ85Tlr!(DCHaO}iAkU0#R9m8hd`yH?WW8}0eoMTa1+WX zcp@GQ$gP7=oRB!zCESE?7_u7=#*v&BdZ4Dky7-YQeULT1L|G$5$|9bI7L`cVh3$({ z=Zt6ABBgf`XOj6W?4yf=(?l&%Sj-Z(VztRgx%f6Eew)d6MPC#uD)#EYIMo*;4r0W@ zppRY`-YbLt4rE!YN5&*294+NHnBAB@O1*`0T?=+$od=On%ro!s2M8sS;P4PaJUusf z-adL&#O7GnDSf?Nd>sKNEO38ZziRovAJ2|H9h@B<9-Ukq@4x@_{qg%F*Ba(~&Kzk5 z%+&h{M?b>Ud4ANfr>)J-0SCPSh{Nwm2nPw7YVWD%8m4_M1dewsGG{h(*_O&}%o`f_ z@+_w0w!gJi@4r?js8w0|M8_#-w^P*VRA;7P;D?Kg)ALWKXCMC0-`(|BRbh^9iD-=g zHFDU7!TI@{hrOb_z5DR#{P4$5??1fz^#17QqxWrV)uQu`oge=AKJzl>@}V=I=U(I2 z<&Q!7xkEr(PC}Yh&o5t>RMmcZ^R^ohAvr^x0R)WW+MyProZhp{mk{BW57q3n9B}Y~ zhSP?bCPe5(*X4dGR}fv3EgyT5$3kxD%@)6UNqIwUP7zyRg_6p`L#$4Wm^rpBo${mI zokPNHGSlK0PC-$ot$K_)nk{|?k$9+2!!thpzzy7YBj5XT%AZ^IW^z~+#CkcKNo
g#X*w+1^{@|L)`QJg)%xt7K8!FbKhe^JAN! zwGj+hTxymee)D4YO1LJi&IB=RG)EPZU;)a(!ROgCOukPLQdmmtkIvG|g=^Mvg;J&k z5ets#fPJ9aTBnx6sMhyn0RGeu^_9YDlIK%379za@)I&$n2*$v%(o6&KjXRZJ5+6qmj{w3lvau&H|bx`CC3tmHd(1M zRfG;d>Q{*;I>xsjDV|^wsu3^roSO38;`^lgj2C{EC)fsz-fnD`0j6ZZ_vY%yWU!6B8sUbV>mP^>(ke^t3E`z zRYYz*Zj4wZg2Q9FFFp$3rpr1f7ijmZNL41FLo6RGZPHvVk128{lFDVc3OR2e8_&{B#00-m!!+ z(*JugjUbCsA@3B+5jyB!UQRH-ybQ_J<)uOmzTAR>B~#xeb2aGVC2qX ze@&+rwB|6(c^rmBNRC@U9@U3t`F@sswpy8yyVGCS)hXAPvxUTx&)5;r$XXop4)iaokW-Jk40 zO)oEI@$kej_p~UY@=phHcPasJyShfau+h8R$AXR#p*0U^A1fS z7}@rWgZ3Im_S77UI+dGJGBc#5qAg(3^y+$LXf#EQ1aJTFqBs}p6nGVrl-GO@1T)h; zau)!zdcsc*TBe)Y22_@c7`_U@8-h%ZF9?aHciwCTZBxkjS-Xt8I*#dYTt zTc9aTII0#$`9v^8Nv}D|tP)FfCqB;_hO{CW(p@-I`EdMX`>s5$Re4tr1b+FZ@<%Pa z|2GE;WLEyC-d?Yq|LN7MH|zbs`*>RH|Gl70w%!DMx!wg_?*guO0oS{L>s`RFb{BB9 zTX2tHPqAq;qjVBGYf?*){Xze-4rXs7+yQB|IkGn2sQbTvmi_nMD(zUsM!;BGbCW7<@G5?h|Lb8#dx z)R>H;=WIaHH;D(5}IbL zyN0P}E)F)gIVQ=^-OL~BZ%su%!gODM_%|X)Nq%*A#mn#T&Y1^g)`HEsZf}!TB>Vl& zbBUB*7E*QO->maIFN&dt)$sbQPk*DML+Z+;lo;MP3uhwj?{oAQG5MD$g z@G66wBXfD#y;OxRbDxnAY}CB;Wwi=1zFMdb^bWV$4Il+x?dHQ zB|5kId1DXHUz_RX@^@beKE?dIHaW`-Id95B(pu=-3jCavm85@VlD{IUpGV@C>E zxkP`V4tLkr5N2trr4^_!J4{gYPK$YcDlEAz(&F6ARk_o8E!`6h!N(@HhPy%oW~@I(EMQGtIplt5 zR*#UIaX;2<{9KOt1@0ePBkk5VVXe`1YjjIqRkH%DSW`XABgmSluM}6tAqt6)Me9CHJ}_0! zjSy=&Jj;N_^pSz|%14xGEOf)@bBV41jWNH50AZoM+VoVwWE&lv9hzeXaR!ppGzmq| zUiWqjw7ooS5{3wFi9~oHfg{XWOat_$`&upk7!8D~g-A`z$BK~wp+TWu!H^sgVHT@M zj9457iru01Za9)7Ox6D=B4a|&6z};hIfO(jfZ%z|htNm8?3V&$(5%Sakig{-d96o( z1u6EL>RJJgZU*^Bk&3U%+M*yi>n+y8#{4iA5_pCjtMpgSaaa-HtEq}S!p`=+3pV$a zqsiu*S&bW_^>^VGb^j`MN$0PtKkwIb@2B23Ppx-ecO2U>A>aVGr)Mu=v@Vx^saR>3 z(dAopTE}miT?G4O0~DYstlFwK7mBs6lYzUQ8S6iOg?+Dh2x$IQ;H>+9cY3c%>%ZOJ z_WJ(cdwEJ$PK|fh*Dhyn>33i({22?Ou=dlXaV$rSli#%c&fOc|xFFPD+K{UUw-PwT zp%-yBA&N9`k2CFjFLQr9k3%!nJ%l5ocm72m{nF|Dx=~VczjUJX(sdhcwuL6ZuXKSS z$j&C}ghc57-l*k{`iJQ(^{)Uzkf6U?ph7>yWZb$|b0o-BSMdUWSIxGBuN=9S?QGd5 zm;jXv^qg(YChA0W)y-~}FNpGMSK6SZ2xew-Chu0}><5iCuCgMf%4dz3qduQ89uS(J z@UFVFi%~~Am4c)j?d&N?Lna}KTzHE3qGy+P8$nGF~MU-Gd>Swa`K(=sEkcM-`c&H8HZS`4a};Zw)%gW zLjW`M|L&XK>+=2YdvCVa`u{#2$Nle>GXVDj4yh5cuOnQt#(bvmx#TE_(M)WdUWwMXUA)gKjDsejj?-5)L-=3>fVr&H+k9a^9V3<=-6$d`I`Jp-DA z?cNqRGyH$sPuTR+f=KXL@t@wCos$2*x4qL_`~Uaxl+XW`0?V1RU&`C#oNCQyfSY61 z^Pm1*NP_efB@8K{YiSsY8CxDCgq+{~);OjCtFr!o{pQX3 s{O7$q^Thw}&p6br$M45fto7XbSwHLNTX_C|00030|NV}I{s80w0Pj7c?*IS* literal 0 HcmV?d00001 diff --git a/charts/latest/azurefile-csi-driver/Chart.yaml b/charts/latest/azurefile-csi-driver/Chart.yaml index e7b7e78b10..c96c5abf55 100644 --- a/charts/latest/azurefile-csi-driver/Chart.yaml +++ b/charts/latest/azurefile-csi-driver/Chart.yaml @@ -1,5 +1,5 @@ apiVersion: v1 -appVersion: v1.29.5 +appVersion: v1.29.6 description: Azure File Container Storage Interface (CSI) Storage Plugin name: azurefile-csi-driver -version: v1.29.5 +version: v1.29.6 diff --git a/charts/latest/azurefile-csi-driver/values.yaml b/charts/latest/azurefile-csi-driver/values.yaml index 53998bd8bc..98d1cf90f1 100644 --- a/charts/latest/azurefile-csi-driver/values.yaml +++ b/charts/latest/azurefile-csi-driver/values.yaml @@ -2,7 +2,7 @@ image: baseRepo: mcr.microsoft.com azurefile: repository: /oss/kubernetes-csi/azurefile-csi - tag: v1.29.5 + tag: v1.29.6 pullPolicy: IfNotPresent csiProvisioner: repository: /oss/kubernetes-csi/csi-provisioner diff --git a/charts/v1.29.6/azurefile-csi-driver-v1.29.6.tgz b/charts/v1.29.6/azurefile-csi-driver-v1.29.6.tgz new file mode 100644 index 0000000000000000000000000000000000000000..af4893c41e78bc3c810fc4c1aea83e09eff263c4 GIT binary patch literal 13450 zcmV;5GDc zVQyr3R8em|NM&qo0PKDJavM34XaB9IK+rQ`dq+i4vMkT=!m*)|)NWn7WrZa7++3^A z3sogajEX=FfTF~9J7OMW_vPkEF7Q#`sABO$AC_5nJ8iL0i3E_yOeB6t;NM~n0}_Jg z3*rTwOn`44j4+qoDISO4t>WqRdcD2fUH#u)uUGzWZ|7C-yY1b*S9{y9d%L|i-}Sa% z@9ez(4)s=2`-~?R67%nROV?Fy+*k78i2Mv(5JvlGvb}+$DEDV~=P%v8jR1ttNhI}; z`$}HW_ap>#z^KH80!QbPaXbWcOeOFE_5r;(I6r=w{(c(9Lqazw9z!3wByM9;uJob% zWL+EcHbcF?+LB#rK?DOuJ_?!tg zkX@gRH&8ZdRZ)aEL`)FL__U9bYt%6kPFC-pjlUw}|#bJ2LLgG*R z=y-6#D`sqmh)6=x^mX z?Gm;XFkfs*EUv|t&**>*V-8-#0?$uO)Rv;>X<}Z)$plMCnls(n(7&I?VR&x1>7!qM z-FSvPWGvQrYCCTFBTP+^6Fi0uRm4LFv5;(xLVN|GZU+tmM5ttF3=#)e;tgLHd9O?K z(dRE42t7mBe-<8&q8fv^A%IVa5Bt8)Vk*^u`5dr>K9W2J^bGw?b(8w{CbDG_HiZSc zAz`Tc(|i)30pn=O;x0M|saPD~PyiwW^&`5$RR0(YP=9m8ZfIB4$Ef5i41xF6{P1#o zrf)of(KDoa1F-=*w|rQp?Vu)1Fs{efN@SU)7PN(^35p{zV)CHGZ}R(+>~8QY?3epr zHKORvY;5HED}7zpZ;D*V;^07wYbH~cpr>CNg%;G877_NLkJM!F#8gPosyYnW&CxiL z(}V1rlxq%ANPH~%XlDbV5fkzRDP*s(l-M7g!9QcdA;^9Y+3-C~Anc>p>aYAX#FR3Lm1~>)60x8#Q6m=Y zR|;_uEapB4!@SF2saB4O6vBwv&A2 z3$m{p{tz`6jOKk-d~PSVoV)U!B`bFbZ|l0Zm#n+whTT(}m45N98tHV@tQialC30$K zgHqk+5P~lmw?9c10=H8}ll9OwO#7&#)jVe*bc-f@tfzU$vcMwswW8KJx+Ox2lb2sWLDq8-M9dud3sx7Rsh826*S}(m?LN9F$0Lz#| zCNS?n8ks$pSUK@lq|Hn7<|pOoz2hv7($@o_|4#b*3~=x_P9%JwJ}8<0{`_JZ!N!Jh z%rn=8br{i4Kqc`tjW+IzIXS!zTLM{@Ka#$-7N-bawXP zOu2SyrF6>K?bI@%e#rjb2nmgE3zN64 z(#g1ew}}qISSkAN2^XcmRA2vK{LxKx!YEkF6N2octqJB^A-USJzqqVYpq6N?j{>+N zm^#@ouQt&D0>-gYUrHWMfsct0MxuLf-n>bBC0Q^lX*bF&>7_gHB3n5YtMVjjg93L~ zCZ>E;Kw>zZduIN zbOC&vYmA4+So))*+lYge!1Nu;91f{85Gp)bn@*TKrlq%5;7h+MdK1EBj6*M(NEy?FfL#Rt(q*MC&LH}}s`DIA1F71!cUDNu}&&1aY zN$c)1GjVp6ubQfCJrfsPH|*BV#LRszdCp8M>XonOv7N_^Uxy3_sgJH#1q7%(KD1Nm z8Ty6keLNigijD_JjsWfNA0ixS*HFE&VK44sA;^$IfX0~OAq0q6x`>#F525;dfyaO( zP)sGlLjU9&tF9}QBcMo4e^cc65Zw?t(#7Vh)mCwQs07Q>GMC+-)$UGd|8MWjt5@s& zzx#MDlnTi0>7O4XV~o@^AKEBz08z-M5Fp9S4uPHF-HnY4hWruu*EK{U76>FHma*7G zQ3zN7;xX-SB$i%=$n$6tt9bkQGwPm!F4s*X80gCv#fl;3dBUpTw;gUuR=z@CzI2f1 z-6)m3p74#&jQRg*1YrbRbY-+S6kx{u-`TCq|2KO(Z`SkwKAz8?xBdf7$hfbKv=Rj6 zqr4rfZt+LZNB^<)<;%u~E_QSqVH#-LP3;z%HuoAWrptZ)?4bY#gaYcMlGRm(JIKr4 z>o7srpv?4q?fz^KC#vL!32;sVK))*wpZaL;mHsCgo9GGZco{LEf&RB4md zi;7>1EmGcz-e10&W^9|)LwBQrdtEN8G2(>E0qXowcz+a~Vk^wQEr1IBu0w80e|7%U zL7h*XMOwthW2PJ^qw+)}r%5TZ-Z3O`6qP(}6TSNU86~s4I#gZc{E|>1G4;*YWrbVM zyjh?%avtV5RwW4a!#HScTn&#t8%K=l&|7Xdy;?59TzYJLH55FvW8W7)L4kLZF7Rk22gvP5?4C%is)Edj+teKjN4Uq47JEVmeeu z*EFfrx`)=#cl*q+|2_}A{HDS}n7~H+uMGdIH%0ruv;AssZ*BkY<0(zHbewG{P|pC* z^EUE0VH^>-l|XfzqkH{lqr$c~t_cnL77ul1BWj1B<1U2JjRX$WFU9H1-dcvy83NVn z@hT=^0KA|dC%qJJh9lzPDB^4aK~bIdQ76HP4T&7ZS6!ct%lmPv1)SnAzb&XyVq1HA zuR96chcJ3U#vmjfM}0)&FiiJ33qpxY-v@!f_M(g3w_cVqX4i10mtF2>K{piv=4f zai}yE58)snCZ=?%TqEEIibfXlE5OH(X+V6XS(MP}@R6-bEjKyfV46n)N`^S7egcFo zYh4=(`-fok6w6T`b2A}0_eaadR&7gpe#5Ocq|67+z=&GkE zqz8;DZV|is2l!HX$7Wlb&|%^8Y>qT{z{EwprUOc)T6V@+!lG&Gm{2l~$4HRhbejzW zX*Ai$>u4Hq<%Fr>&WS>9z?)=POZz$btt`al-)C`tQ5u@kNQ793B%+@!iHe2ldVf+S zRqgcr+mI1HyLQ9IDWguGOdD<(%J7WA6a&A(&_sEB#C2cW;l98koFnFv@S!2Sp^IRf5A zf3>{)^zr;csUO2D1Zo}1xPk5BVM*-}VcTCXX;&kgRE;Qnx`ogpzz!EI~IdX}w(ye#_1*-eQ z8e-N(Fo+l7k6?`Z+5Q&YKRy2W)p_A(RP4TzOc8;w-XVFOPFuai0;0sk`YK9#ik+O> zH%hykDFvU|4y(jA5#y=gOQwo&@M<+OLJ?;Xa7l{0Q#m)WuxC|h+jG@?yS6p!L8D%+ zUjc#bF{2E$V_?;=9*Xh?+5lmi$h*dLs|BYRY2>oc=mfa3H9i|s@>@z=Xfsa(Eu?m@kYqX~mDTuaOk^tQLaXfq zy=Kt9VH9Zh2pv;&fX5IXU;%eN0IH{jr#iOX5F~zo-4Lkv1@R9+XfMJaVUB$XT+KaS zmEDG(vz zv2lH`z+wVwh-#!jy49C}1xki4(c`(%GaS?qy#l>)QC>}^=Tee|i_+kZWt>ZJP`&WD zi`OWCFc$6! zzmJAw0yIH2=;}v!0%#nEl0;!f*)UwJz-=8E&Ay6&=P(gn6Jjapy;NbDdF`4OxLEII ziG+!BWad#VQH^3Y2Vz}J#uD8my@!QhKG7z%fC4ePGvB}MMn6Z-LcXxfQ%)GwqoVpm zp9hvB<;>HzBBs@ZUI}44h`AcH*Ipp1NA(JTqA}*z6(7p5owRe)EE=;h(i{&k2{q** zP|$%Mr6iT3*hTtOjf1B3u`O^;AF;8Aa%HNpN^TTtQbnm+C}9kZ^W<<&D;mozmmAzu zQy}Np8*e@4T-gfcT=H=mFu{)Xp?MA%RsMlm4aCAmTBhkb^9tmR8jQ996zAGQsD2f( zKBF{n!5Sx z77E+h(5y@I5jG;+E}Ap6c06#<%(NPTU=tCUs&0|#Zg(9ctf!2FsGh{xsE1S2r6zRI z=-^C2cG1a)izAoXzF-JX7zt3sgdl3UAi$5gfxU_t#3u5aMB2&ed_wLPYX{*~3p$!x z*ym7L#r?Dy0-i6LNVA*~Pjso>T=c9az*r6}qGO7JDaB*rBTae^PLCC#m9-YFsCc&&ZflyXe)Xu2Zy89S6d_u5c8 zBYO?4Se8#!PV@Sn2$^sy8d*(N3kHyYL>xtot2rUHt58)bCfH=uii2>fXVQ_=F=$rZ zgpBDmwFxkakFj_r#_N{22H^+J8J{8bx=bSOAr?v#2;dV4?5jW@OUOx*ZOf*k!DN6i zofej3X)cEmgpsn8lA$&2go&0!;}7LVqnMB53JcH)CbTw~Mtbyg$2gZBN?uH`!a4Vhh+hLlN?5tp z1zNEvZ?1+Y^Zl5MWEhH*It?d%j96-z?3^;ASGO!p9rh6L0%52z2$3F+E$aU zxoI4_8&c!52$LMDbHQWiIP9#GC>jH{P!QEXLP3KD=)b{6%Eih`Jh1>VvO~`=(v-a8D;!V ziB+O!NzSEBXKL3M(o z^-nJ@yZRsh@$x@k{+|5tr z{-MIkt(SvtsudsOo|*UQ8SvcbxXffVUgqg8+Nk}?_}w}BcAc32CBCYpJ+WambL@Bx zjdY^~zez~sHxGqeLm=-70=ZJ?F z!=ffzZVD+Q0tHI5_?dQphW1a7^Vlyl+zBBLK9GqrdpDR9bo!`MbL3+yAydVAW?cU- zotC$rLg{0({CzmU=@WvPt_E1ThLYApNmm3OUBgA&z(wx?Ao{oG7R%|86u!pe{vsqZeNGyx! zdgA!4RiL$2CW}iVv6h#_rBPNZ!c;Abpjs9$wMIv+3LTZ)0+NGA<$h|$M`ck6?E4T& z2u{lR?>c5TGf8Qu|MVF(m@0EgtEm}+pOchy>c@4y!rA!>eG@>u^Q?s#`lT*)p)N5a zf1%~p$dx0Dp`X^0{sqmc4U;cye#3+G%8L1t8|H8oHr22ZbkpUB`JZN?Ne)2*AM5SC zWJOXJElHLfa>Q9YEW&DCQP3>x96$&%xnr3~VIwmx1cEN;fTQR)gi&+tSFydWSB`c+ z-b7orztWAI2y;AE17ocNc0@k%p;a9NQC_bwU7W*7RJL&TlY0Cahuuk*xZFnVbwpVT z6A&b{8s<;-;T(h^Pa1PTl+o-4hTst(FG@CUo#4yiCl_a7!&npxs#SPPE#nF`7In@- zx~4?7Uh|-H<6ovDpoO(_25LRu(IeK;3I{r62Q4j>tZkfO>qMKHpn*WqXex-0!@7gN zjMj%eHE-7t$!^M2tIA7N)Uq|{@k$1T2f|0eMgCfKxGu?V9uVLz$ zaUA2wEQ?Emmzd*HbvZ)%R)fT(XQ{u@#RvrC)f9{HKVwiPD2Jw4Y$@jSxAcp=ce#Qy zENxG%JQ|<(TlIC<$m_d7UK;^g27aw6tO|p@$XaBTE0C41J09n1V~z7p`t+_>6!)RS z=UFwZYMpQ=D}z<61)hZW|ET@_^$~`z#Hau2z4-QfE$iKthu>W>I{Y5CS8`#b+6@*{ zX4V#qWx0NjCHvQmt(BCgB{x^Ty7UO8Gx9zgN6M-eHoG&nDbkzq4Q$PK5?*!T(5jNz z>ui^4t?@ik<&^h88d0F_qrmg5#`V$r6)eeXkK7-eA18Jrks=Ep(a>0jBbMpyc@K5# zwk#PwX-F5K{pcbLJZ1X|LPm#TndAob8&-?++y=Z}4x1-fb}Lrxnsf#OeZOl%i{@yI zIS#jMiyB&NCOzuVJU<^n6r#Lwu-@}r zZ`(Y=CEkov>V-q<*<>JjWs;jKzLW{0?1*rx1h4CSThiF88`bmf#cM=iNUFcJMqY3Qzx2miI)cX zCTEZH9Z=Y-m`AD-BUzuup&IW*bumv=7xzTXkabu56Sa?lHZD9IZJu9|*i%$Cx0Zus zn&JWH*h_cfGWkRAK%R#2kWl4RzIbVn;R9!?XgwVRdm6odd>Z<7;RGSciLOGJ;05E^ z%Jij!;hJfT7_X%LQ@Z3Iv5;AYG@OeP*2-zg?YsLdB}w~#&>{5}=az~el#*KL^8rbT zPbBE%FP<$vHD?uOn>@EHsVB)}lJ&E@SJU*7jf0IcRNGx-7irz$`QonbHt%g`*C>Rn z+L;+&@-lAD^w!;=h*o+L-tu>+6(zIfg=sZ~jm|JO<|h`+QZeVH;)xO;tA7`dvD}PU z4l>~Ar{pZP_Wsp~*qmzr{?~thPeL%W;NSoHAEkBv{jdN2YsmcTfB)-$S|{W#qCu>3 zG|W90hU47Xmf{GzD5hgx5(Z2W4xx*T4nU&F{E}N{QQMLJH(Mg&c(`ew- z3=lfptgG5lgFTs=_~`l+aI*icowI-p2B0%)2+-;Bj7x4T3wDtdu|L|(A8x%;7FrYW zK_^O(UiDP);^T4#jw#uY3+W67CH>_Lhq)Yu1p;K{d_Ct8_}y9QKJ$+e( zlatVMi+r&s!Ck8|5)cl)+11D=I=ljtMZ$TGZ$4Ld(=eeEWwnbx)_Z+gx&xb#Cdcjw zM-jC5P8^gM^;hbGZOK!Rzx~tWGR(~mrE|47({k&U>L}>!x}P5pOl3UFWl6vcMH;(9 zgbE2bXmFD#0xAiIbaajGG7+p?Is&ZmR$7SA|33e4vh|MDkTm0kbs7MDt<|^~3{6uUccpuCH-Gq7k;Scg~<}wQH45&ximbQHzXO8 zCV0Tfa0u?ZACO%p>HJPFl}abdBIig@o2(}_(G{kD+4;4W<6?g)I}W#K$1Kr_P`&ih z&PXw(65pzteC2J_^{h_xrf2g+IReT#fiU!vwf_yCs$NJ2&Zcw4TsBH;n&R)n;fKEA zObOJGCONJKMCm@0@T=LiKqf4j?2-5*OowT{!9grz4vVE|s78vD#}P3uD~<;e zRq9U{>cN<_n!X>85AR37W3td(tzGigCGo34i6IwK4ArIm^QvySV{7Mut^}@k{=V`1 zK@ZN4^MQO9yOq%X`i{`Ka;K$%k(%&#F^gI;MgleqQ@VYhg+b6qN^YIDjWPi~(@7Q; zMW8+lOj1!y5utK#w~Ibd{rzTw7#l0c>AwQ^HKu?1qxj>=f7z}p&OgI5Ez~NAa>uv- z@}}qYw!PlAgJQ4O*Z&`Vyf~=O4ySpoQEz$JS@t~Gg{S!(Xm**ZQ>uM!`Os=C{QBn2 zCzU%5Kkj=sOGe3Ig4TC$euH;!woT902!M9A$U>qQ%*f^p=*=zBl{9HH1?2(cd448W zD$Psfd#l|sT`B{dD_p*OPB^Eh*fvXCv-f0k7xqzaF2`!tety$lKB?ct&*=YWed6UYpLkhkX1SxxELLQe%FSYEtSmdroTrk$qO(Zrj40+=r;Yf!&lG*lr-&ZN z2o|QIJL8qGdgpe$Z7QBp6~&jrH|Vzf4Jt6AEjB{!I`IfOlGMAG0Pl% z`8p4|EP0&eG2dLf=sAW}pITV@jKWhnk#G;^50*b|u*$Oq%bp}y)wzN7DS`4Sfu+s^ ztOWVL9L9fHH2>1L{goi}m%-vMgSuY^U%y7u&)v8+l75Y(Ut{LinE5qk{_)-aJv&79 z&E5fC+*Di!wZ1e)eOW~MSBgJ>a%l7Q?b}ZiL4K!qZ_kMiU*Es|nC{zuJ4Wzfy$s(s<})(a(-B_U{g^9~Udz#);&Irvj$W_V+uPmM|Lyg9rT^~i?CtG+x4pafYH#~>Z@2g6 zyWY;L?VY{vQ15P=Zk||3%)jd`U01nrU&&*p+95{7Hip;2r8X@qNT6^W zqLBDl)b&X6-qa)@1Yai0-7%K_=zXqdYdbCZ?!BY)_L2^7IWmdLusq}hMm=GHow-Kw z&lw}Fg(R(Fke0k*{5oVfI95c7oOTU@^7yboUU8BZ?GjsdD;Cg49jTo70{s?Z5wYNX zUd*fnbTb+F^Bh7Jv0%R}XPWVntj(?km4KHcCgcf7)%Lm`&K1dOR=xo7Vc*xQ=##Q? zD89~7%P3G5zZ|-RFd`>iQv9Y5i z3xStqF!y6i8EjOi1ASB2G$-TsmpKHy($Qp$hj1E);W_vmWRCmtn?fyhUl%K{=mqmb zwzHh~u#Fj2?o|et;~SRU5f-OPCElXWR;O5f*B9h8`$Aa)CWvHwnipo6kGH1+?U6b#)f!GeVdTMR~KR<4xY~bSgh;=NAWo zT2HaVGr?m`WbasjCvfHj}quxRo4x z2CL;I*7j}DLZyY3w(xL7ynjaG?dx7siL00k`F6YKDl`BrV-DU>tqk7&z$oLVKc9gg zVlp=uE%GU%8ns2b zm6-O-dG_h5)W#f@^jm*6w<5WFF50P?-C@83J8CkH`(Yi-ESOzD*yaVK4;F-=M? zZoHSQYqc}WY25E)x;^*ImDQe^7#^Xq08j5SzSS|&=amm~CSFwE7LDy0_-q2)U~-Rc zBdl-R{T`Dr=AfVws4j0V!x ziCiqapx#(jjcv3?(Yddaa#K=|MmjTJiDY2lpR)oYY7Q28F%(BqMqYAs_if009IDUy z?hs3{sUyIl9Gx;Q)3t4-i)}5sq!%$R-!4eG+?9s#> zMFYklIq^lRU3y*p|7vEpEp4Y=%`)6)bU=nRjAsSh1kC=OlBhfZdu-H3$X(Hoki{B+ zJRn0)=-`%DCX(Yq7eCOYO(g7OZpxW=)slQeti+^G@nQko!$Y9b(RNejqX53IO1KGS z6g&|R2ISU3C{9S6>k@84I1Jg12jfUi3q4TNU|sx3l|IOtUZSiKB4rUzLyJnJ>caL# zsdL6NY?0Eth%?E27WUD_!D*tFC@f|PTd~??q+EQP62HylyP_`&6%~7RV4UiU5eG41 zVbDjf3-6Ude+ROx)gxn)5{{Pg8_aG@AEn+xxvmAfu+D=>DCU`W_ydFzNpN@wA)cNa zJZ~SpDq?f2>y*CUF20U{6Bf8Xu3xqM-;ZZUpAOEB4v$VQj`!bx`u_O+k!ua}J!g(I z17_;|grgr}>O4Q{*wfZ#=YWIW0L0<36V$3KeWK%(v)d`^bgDDcF!000#p(H{)3Xo%=kM+;7S{oEm-Ehiz(s^^!lOR8!=y?NUWh>)D2&Hw_&aqUnGQBLn!=1Yih%ZF-qS`Ik) zK*MRnOcNsXqU&r5?2pdU%Y|#!afMQ* z1rZC5>41Hp+FGZU!l>5wWB~ru5A~J8X_DttH5MYh0@OoC(Fn%CvC>Qf@s6`NaySom z$Dms%VZnLq8t9qL5tvkiu=gnIG-^XKJB}{`1Dr*L~3lv|4Q2jj?@Pl$? z%-A2K@HVAuESwy}n9*}s08O4$5{Q!(g2`P}SAZo?$Sw~gPbjSvMQ+l+o=c7;3~jPf zWvU1re$=lLPjrlLKTTgEiAme#Fa@}msftcq4qbs)dU3g~) z`$@Ts>UIycKzwUsp2EEg3+IP~OV>s-1o%E1N2i>rS(jf#TSXL8Nycz!Qr4%hZC8DW za;u2kdfXVXN(6_;bYFZFz)hERPA<^?$BQ36oE=~M{qpks@8=gsKPB5Ug`*QWI%-r7 z8o=M`{nxnLn|XlI{cZeKD=kOYW(QX5!l^c+No4~$VmH9W2*R)nw+>*nU-{_-ZoFd& zW2FE0Vj4jfr9$2*mLqh~zr37aet8*^tIJEJvO6cLuQa1T~&(^@oYGQx87_75)(&yIgSI{S2X^zPI7hl3wKo$g=!;G$t9-bv#0 z{l|C5Cz{0J@tN!6w&3R0`)Upc&^A&{y<~RQPtF=hnZ4S`(Iswfme3B3929$Wk-9(G zftp@kI&1jx<6n~7&lvyQ~=uUi|H4JG*Fr>S1sPf_X$@X1&T&wb~9tiyMP34bT zc>iw>6v(XnPrbcfIsenE-QD&6-+eqS_Wxc`CR=X;zFhADu6F^~yMXIm!1XTRSGxQ*||6p z8EQ<%(Q$Tid1_YtqFQbR=WgbY^|z*?A7Q$$Kl~e!qa?q&yW-_{c<0Q6GHb!+T(`GLE0X|Uxum$}bK2sUb7`m$Pu7+)<^hx)Gc$ulHJAV4cGfiQ>k3NXC~6`%p* z`j$Q{iC$Oe%SU1QoSQ2kOT_f;^!5Teyni4dZ)#_J{6YS7HM&A=BnIjy_W8YhTvlpca@Y!GmK;t zpB0N)?ul;-5ciEebL0Q!&i*tL|F_+Hvs=RdZSU>%*7(2scuJdOCQq70{;dMZXA`fj z6vtPkxdIfQA-X(<&(Qe>5qz#uc{u!@o14XNo-A)B-{*CbrY$Rg3#Nqb;}XeS3@xC- z5udO_l)THQfLH``Xue(YHc7+N-QWSOX1FUfV8;4m!~)jz#!B&^PaJ93CY|pZXZT1j zk|`HxaWBkVdslaNSxa+N%uM4o5^#+KoOAwU*SJ-REr)+gWjQm??|1xDW?56J_a+N`YF7u~i$AXl87w%ikKN`;1!4bH5G| z)}Rxf{LOP~EZEa}THwEutJ1vON@*?-*o^!CUhlpxcP~$Amn6LwFG>F9 zWgsw!LN*-(T>u4^l1=_`kcpBiydq#&t7=w&6>F+zc?4M#^_AkvI7A`wv1r|g$p@zD zxe;P5hi4hkm_9O)UipYJjfHL)eJ;@zpfTpx5FjkHSDT&+m~5kivqN*tAkIK?nkJ#> z+3VhJfwq^YO~MetEs+QhByfZ|i)nz~bYH9GAESX#wGgR^`B*VBAT%h{D;Sa^BFthH zi4lv#K(Ra2-VH}`gsJ);MPy9qnc_XaC5Mn`1rR)s`4IZ3m;F+J44M_W8xpu2BCqx6 zuOP)P1?)}vJ=Bf40>yBePCIlP+_w?)~jMnASFBL28 zGP-=LPV4whvx{KAY=8nZg;iVi=0dU7buw_*Gh_Y7udweG4*|`;3Y>NS?@sSkY5lj` z+g{)QdoNGP%Bk`0`r75pE&UFRg+F5<6xM#aG>+wnaq^qC-?@9^8yAH7OB-_a;8p^s zIP@aUCPa}2?s2A_?`7_f=W%GJx`%K?^v=KNqhC6mUpGoh?w3xKUb=3h&9=}4_?0d& z1lid{osbCq-y5~uQU5TVrT!H_2om&n3smTbn2cN3YK{cC>MCB~@2c6B@RcLivYjp4 z1QVcgfu6Ii*+iYFuDaRH@&!?T?MfT86v50)&g9+7oc*A&##L6NRQaqCbJXWE#sfn0 z6W&#qb}{N`r&5q~qn$kkX~-lbkqgiBHmXYLuY?AK4(~!Y*|YMgTDr1TEvK18eDx3T zrBzO*J?Dk>nBL)W%^FqoSXE}? zA;|mJnr#O@#S1XkFC!nWFz40(QN)1cx zkfoiI989}sMb+SsWitJ1O|Ps#mgno7Z^ZyFBr8aj@2&Bl_wvlx|GQTcq!VR4I^**|CMVw+kILBO^R3;BnQ@54+Q6*pX{-O2 zIRr36|L?x(y)NJXzV~Ktt^e=iaoqo2IRkJn;E)<2`#QoUYs|+=BPHu#`~3#nS6|^u zw{90^qIFF0PCY!AR(n()UHwskmHKxL+Wq0eVJ@Z&b~=Sl-=PJ1z>x60i+rh9*E66= z*zRqCGsFM4{e(?FErH7=k`kFp7Z-kbIPKlk!HnEubg$ZO5N*8J<|fu8yG|NJ`vGxUFN_f=W{zkc&( seg5-ao_XT`_h%gH*5mhMD%N^#{j8t$^DR98KL7y#|48#>qX6Uq08Xv51poj5 literal 0 HcmV?d00001 diff --git a/charts/v1.29.6/azurefile-csi-driver/Chart.yaml b/charts/v1.29.6/azurefile-csi-driver/Chart.yaml new file mode 100644 index 0000000000..c96c5abf55 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/Chart.yaml @@ -0,0 +1,5 @@ +apiVersion: v1 +appVersion: v1.29.6 +description: Azure File Container Storage Interface (CSI) Storage Plugin +name: azurefile-csi-driver +version: v1.29.6 diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/NOTES.txt b/charts/v1.29.6/azurefile-csi-driver/templates/NOTES.txt new file mode 100644 index 0000000000..3fadd8ad36 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/NOTES.txt @@ -0,0 +1,5 @@ +The Azure File CSI Driver is getting deployed to your cluster. + +To check Azure File CSI Driver pods status, please run: + + kubectl --namespace={{ .Release.Namespace }} get pods --selector="release={{ .Release.Name }}" --watch diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/_helpers.tpl b/charts/v1.29.6/azurefile-csi-driver/templates/_helpers.tpl new file mode 100644 index 0000000000..b1bf4dc1b6 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/_helpers.tpl @@ -0,0 +1,49 @@ +{{/* vim: set filetype=mustache: */}} + +{{/* Expand the name of the chart.*/}} +{{- define "azurefile.name" -}} +{{- default .Chart.Name .Values.nameOverride | trunc 63 | trimSuffix "-" -}} +{{- end -}} + +{{/* +Create chart name and version as used by the chart label. +*/}} +{{- define "azurefile.chart" -}} +{{- printf "%s-%s" .Chart.Name .Chart.Version | replace "+" "_" | trunc 63 | trimSuffix "-" -}} +{{- end -}} + +{{/* +Common selectors. +*/}} +{{- define "azurefile.selectorLabels" -}} +app.kubernetes.io/name: {{ template "azurefile.name" . }} +app.kubernetes.io/instance: {{ .Release.Name }} +{{- end -}} + +{{/* +Common labels. +*/}} +{{- define "azurefile.labels" -}} +{{- include "azurefile.selectorLabels" . }} +app.kubernetes.io/component: csi-driver +app.kubernetes.io/part-of: {{ template "azurefile.name" . }} +app.kubernetes.io/managed-by: {{ .Release.Service }} +{{- if .Chart.AppVersion }} +app.kubernetes.io/version: {{ .Chart.AppVersion | quote }} +{{- end }} +helm.sh/chart: {{ template "azurefile.chart" . }} +{{- if .Values.customLabels }} +{{ toYaml .Values.customLabels }} +{{- end }} +{{- end -}} + + +{{/* pull secrets for containers */}} +{{- define "azurefile.pullSecrets" -}} +{{- if .Values.imagePullSecrets }} +imagePullSecrets: +{{- range .Values.imagePullSecrets }} + - name: {{ . }} +{{- end }} +{{- end }} +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/crd-csi-snapshot.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/crd-csi-snapshot.yaml new file mode 100644 index 0000000000..76df8af7e9 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/crd-csi-snapshot.yaml @@ -0,0 +1,840 @@ +{{- if .Values.snapshot.enabled -}} +--- +apiVersion: apiextensions.k8s.io/v1 +kind: CustomResourceDefinition +metadata: + annotations: + controller-gen.kubebuilder.io/version: v0.8.0 + api-approved.kubernetes.io: "https://github.com/kubernetes-csi/external-snapshotter/pull/665" + creationTimestamp: null + name: volumesnapshots.snapshot.storage.k8s.io +spec: + group: snapshot.storage.k8s.io + names: + kind: VolumeSnapshot + listKind: VolumeSnapshotList + plural: volumesnapshots + shortNames: + - vs + singular: volumesnapshot + scope: Namespaced + versions: + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: If a new snapshot needs to be created, this contains the name of + the source PVC from which this snapshot was (or will be) created. + jsonPath: .spec.source.persistentVolumeClaimName + name: SourcePVC + type: string + - description: If a snapshot already exists, this contains the name of the existing + VolumeSnapshotContent object representing the existing snapshot. + jsonPath: .spec.source.volumeSnapshotContentName + name: SourceSnapshotContent + type: string + - description: Represents the minimum size of volume required to rehydrate from + this snapshot. + jsonPath: .status.restoreSize + name: RestoreSize + type: string + - description: The name of the VolumeSnapshotClass requested by the VolumeSnapshot. + jsonPath: .spec.volumeSnapshotClassName + name: SnapshotClass + type: string + - description: Name of the VolumeSnapshotContent object to which the VolumeSnapshot + object intends to bind to. Please note that verification of binding actually + requires checking both VolumeSnapshot and VolumeSnapshotContent to ensure + both are pointing at each other. Binding MUST be verified prior to usage of + this object. + jsonPath: .status.boundVolumeSnapshotContentName + name: SnapshotContent + type: string + - description: Timestamp when the point-in-time snapshot was taken by the underlying + storage system. + jsonPath: .status.creationTime + name: CreationTime + type: date + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1 + schema: + openAPIV3Schema: + description: VolumeSnapshot is a user's request for either creating a point-in-time + snapshot of a persistent volume, or binding to a pre-existing snapshot. + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation + of an object. Servers should convert recognized schemas to the latest + internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this + object represents. Servers may infer this from the endpoint the client + submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: 'spec defines the desired characteristics of a snapshot requested + by a user. More info: https://kubernetes.io/docs/concepts/storage/volume-snapshots#volumesnapshots + Required.' + properties: + source: + description: source specifies where a snapshot will be created from. + This field is immutable after creation. Required. + properties: + persistentVolumeClaimName: + description: persistentVolumeClaimName specifies the name of the + PersistentVolumeClaim object representing the volume from which + a snapshot should be created. This PVC is assumed to be in the + same namespace as the VolumeSnapshot object. This field should + be set if the snapshot does not exists, and needs to be created. + This field is immutable. + type: string + volumeSnapshotContentName: + description: volumeSnapshotContentName specifies the name of a + pre-existing VolumeSnapshotContent object representing an existing + volume snapshot. This field should be set if the snapshot already + exists and only needs a representation in Kubernetes. This field + is immutable. + type: string + type: object + oneOf: + - required: ["persistentVolumeClaimName"] + - required: ["volumeSnapshotContentName"] + volumeSnapshotClassName: + description: 'VolumeSnapshotClassName is the name of the VolumeSnapshotClass + requested by the VolumeSnapshot. VolumeSnapshotClassName may be + left nil to indicate that the default SnapshotClass should be used. + A given cluster may have multiple default Volume SnapshotClasses: + one default per CSI Driver. If a VolumeSnapshot does not specify + a SnapshotClass, VolumeSnapshotSource will be checked to figure + out what the associated CSI Driver is, and the default VolumeSnapshotClass + associated with that CSI Driver will be used. If more than one VolumeSnapshotClass + exist for a given CSI Driver and more than one have been marked + as default, CreateSnapshot will fail and generate an event. Empty + string is not allowed for this field.' + type: string + required: + - source + type: object + status: + description: status represents the current information of a snapshot. + Consumers must verify binding between VolumeSnapshot and VolumeSnapshotContent + objects is successful (by validating that both VolumeSnapshot and VolumeSnapshotContent + point at each other) before using this object. + properties: + boundVolumeSnapshotContentName: + description: 'boundVolumeSnapshotContentName is the name of the VolumeSnapshotContent + object to which this VolumeSnapshot object intends to bind to. If + not specified, it indicates that the VolumeSnapshot object has not + been successfully bound to a VolumeSnapshotContent object yet. NOTE: + To avoid possible security issues, consumers must verify binding + between VolumeSnapshot and VolumeSnapshotContent objects is successful + (by validating that both VolumeSnapshot and VolumeSnapshotContent + point at each other) before using this object.' + type: string + creationTime: + description: creationTime is the timestamp when the point-in-time + snapshot is taken by the underlying storage system. In dynamic snapshot + creation case, this field will be filled in by the snapshot controller + with the "creation_time" value returned from CSI "CreateSnapshot" + gRPC call. For a pre-existing snapshot, this field will be filled + with the "creation_time" value returned from the CSI "ListSnapshots" + gRPC call if the driver supports it. If not specified, it may indicate + that the creation time of the snapshot is unknown. + format: date-time + type: string + error: + description: error is the last observed error during snapshot creation, + if any. This field could be helpful to upper level controllers(i.e., + application controller) to decide whether they should continue on + waiting for the snapshot to be created based on the type of error + reported. The snapshot controller will keep retrying when an error + occurs during the snapshot creation. Upon success, this error field + will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error + during snapshot creation if specified. NOTE: message may be + logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if the snapshot is ready to be used + to restore a volume. In dynamic snapshot creation case, this field + will be filled in by the snapshot controller with the "ready_to_use" + value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing + snapshot, this field will be filled with the "ready_to_use" value + returned from the CSI "ListSnapshots" gRPC call if the driver supports + it, otherwise, this field will be set to "True". If not specified, + it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + type: string + description: restoreSize represents the minimum size of volume required + to create a volume from this snapshot. In dynamic snapshot creation + case, this field will be filled in by the snapshot controller with + the "size_bytes" value returned from CSI "CreateSnapshot" gRPC call. + For a pre-existing snapshot, this field will be filled with the + "size_bytes" value returned from the CSI "ListSnapshots" gRPC call + if the driver supports it. When restoring a volume from this snapshot, + the size of the volume MUST NOT be smaller than the restoreSize + if it is specified, otherwise the restoration will fail. If not + specified, it indicates that the size is unknown. + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + type: object + required: + - spec + type: object + served: true + storage: true + subresources: + status: {} + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: If a new snapshot needs to be created, this contains the name of the source PVC from which this snapshot was (or will be) created. + jsonPath: .spec.source.persistentVolumeClaimName + name: SourcePVC + type: string + - description: If a snapshot already exists, this contains the name of the existing VolumeSnapshotContent object representing the existing snapshot. + jsonPath: .spec.source.volumeSnapshotContentName + name: SourceSnapshotContent + type: string + - description: Represents the minimum size of volume required to rehydrate from this snapshot. + jsonPath: .status.restoreSize + name: RestoreSize + type: string + - description: The name of the VolumeSnapshotClass requested by the VolumeSnapshot. + jsonPath: .spec.volumeSnapshotClassName + name: SnapshotClass + type: string + - description: Name of the VolumeSnapshotContent object to which the VolumeSnapshot object intends to bind to. Please note that verification of binding actually requires checking both VolumeSnapshot and VolumeSnapshotContent to ensure both are pointing at each other. Binding MUST be verified prior to usage of this object. + jsonPath: .status.boundVolumeSnapshotContentName + name: SnapshotContent + type: string + - description: Timestamp when the point-in-time snapshot was taken by the underlying storage system. + jsonPath: .status.creationTime + name: CreationTime + type: date + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1beta1 + # This indicates the v1beta1 version of the custom resource is deprecated. + # API requests to this version receive a warning in the server response. + deprecated: true + # This overrides the default warning returned to clients making v1beta1 API requests. + deprecationWarning: "snapshot.storage.k8s.io/v1beta1 VolumeSnapshot is deprecated; use snapshot.storage.k8s.io/v1 VolumeSnapshot" + schema: + openAPIV3Schema: + description: VolumeSnapshot is a user's request for either creating a point-in-time snapshot of a persistent volume, or binding to a pre-existing snapshot. + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: 'spec defines the desired characteristics of a snapshot requested by a user. More info: https://kubernetes.io/docs/concepts/storage/volume-snapshots#volumesnapshots Required.' + properties: + source: + description: source specifies where a snapshot will be created from. This field is immutable after creation. Required. + properties: + persistentVolumeClaimName: + description: persistentVolumeClaimName specifies the name of the PersistentVolumeClaim object representing the volume from which a snapshot should be created. This PVC is assumed to be in the same namespace as the VolumeSnapshot object. This field should be set if the snapshot does not exists, and needs to be created. This field is immutable. + type: string + volumeSnapshotContentName: + description: volumeSnapshotContentName specifies the name of a pre-existing VolumeSnapshotContent object representing an existing volume snapshot. This field should be set if the snapshot already exists and only needs a representation in Kubernetes. This field is immutable. + type: string + type: object + volumeSnapshotClassName: + description: 'VolumeSnapshotClassName is the name of the VolumeSnapshotClass requested by the VolumeSnapshot. VolumeSnapshotClassName may be left nil to indicate that the default SnapshotClass should be used. A given cluster may have multiple default Volume SnapshotClasses: one default per CSI Driver. If a VolumeSnapshot does not specify a SnapshotClass, VolumeSnapshotSource will be checked to figure out what the associated CSI Driver is, and the default VolumeSnapshotClass associated with that CSI Driver will be used. If more than one VolumeSnapshotClass exist for a given CSI Driver and more than one have been marked as default, CreateSnapshot will fail and generate an event. Empty string is not allowed for this field.' + type: string + required: + - source + type: object + status: + description: status represents the current information of a snapshot. Consumers must verify binding between VolumeSnapshot and VolumeSnapshotContent objects is successful (by validating that both VolumeSnapshot and VolumeSnapshotContent point at each other) before using this object. + properties: + boundVolumeSnapshotContentName: + description: 'boundVolumeSnapshotContentName is the name of the VolumeSnapshotContent object to which this VolumeSnapshot object intends to bind to. If not specified, it indicates that the VolumeSnapshot object has not been successfully bound to a VolumeSnapshotContent object yet. NOTE: To avoid possible security issues, consumers must verify binding between VolumeSnapshot and VolumeSnapshotContent objects is successful (by validating that both VolumeSnapshot and VolumeSnapshotContent point at each other) before using this object.' + type: string + creationTime: + description: creationTime is the timestamp when the point-in-time snapshot is taken by the underlying storage system. In dynamic snapshot creation case, this field will be filled in by the snapshot controller with the "creation_time" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "creation_time" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. If not specified, it may indicate that the creation time of the snapshot is unknown. + format: date-time + type: string + error: + description: error is the last observed error during snapshot creation, if any. This field could be helpful to upper level controllers(i.e., application controller) to decide whether they should continue on waiting for the snapshot to be created based on the type of error reported. The snapshot controller will keep retrying when an error occurs during the snapshot creation. Upon success, this error field will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error during snapshot creation if specified. NOTE: message may be logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if the snapshot is ready to be used to restore a volume. In dynamic snapshot creation case, this field will be filled in by the snapshot controller with the "ready_to_use" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "ready_to_use" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it, otherwise, this field will be set to "True". If not specified, it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + type: string + description: restoreSize represents the minimum size of volume required to create a volume from this snapshot. In dynamic snapshot creation case, this field will be filled in by the snapshot controller with the "size_bytes" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "size_bytes" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. When restoring a volume from this snapshot, the size of the volume MUST NOT be smaller than the restoreSize if it is specified, otherwise the restoration will fail. If not specified, it indicates that the size is unknown. + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + type: object + required: + - spec + type: object + served: false + storage: false + subresources: + status: {} +status: + acceptedNames: + kind: "" + plural: "" + conditions: [] + storedVersions: [] +--- +apiVersion: apiextensions.k8s.io/v1 +kind: CustomResourceDefinition +metadata: + annotations: + controller-gen.kubebuilder.io/version: v0.8.0 + api-approved.kubernetes.io: "https://github.com/kubernetes-csi/external-snapshotter/pull/665" + creationTimestamp: null + name: volumesnapshotclasses.snapshot.storage.k8s.io +spec: + group: snapshot.storage.k8s.io + names: + kind: VolumeSnapshotClass + listKind: VolumeSnapshotClassList + plural: volumesnapshotclasses + shortNames: + - vsclass + - vsclasses + singular: volumesnapshotclass + scope: Cluster + versions: + - additionalPrinterColumns: + - jsonPath: .driver + name: Driver + type: string + - description: Determines whether a VolumeSnapshotContent created through the + VolumeSnapshotClass should be deleted when its bound VolumeSnapshot is deleted. + jsonPath: .deletionPolicy + name: DeletionPolicy + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1 + schema: + openAPIV3Schema: + description: VolumeSnapshotClass specifies parameters that a underlying storage + system uses when creating a volume snapshot. A specific VolumeSnapshotClass + is used by specifying its name in a VolumeSnapshot object. VolumeSnapshotClasses + are non-namespaced + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation + of an object. Servers should convert recognized schemas to the latest + internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + deletionPolicy: + description: deletionPolicy determines whether a VolumeSnapshotContent + created through the VolumeSnapshotClass should be deleted when its bound + VolumeSnapshot is deleted. Supported values are "Retain" and "Delete". + "Retain" means that the VolumeSnapshotContent and its physical snapshot + on underlying storage system are kept. "Delete" means that the VolumeSnapshotContent + and its physical snapshot on underlying storage system are deleted. + Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the storage driver that handles this + VolumeSnapshotClass. Required. + type: string + kind: + description: 'Kind is a string value representing the REST resource this + object represents. Servers may infer this from the endpoint the client + submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + parameters: + additionalProperties: + type: string + description: parameters is a key-value map with storage driver specific + parameters for creating snapshots. These values are opaque to Kubernetes. + type: object + required: + - deletionPolicy + - driver + type: object + served: true + storage: true + subresources: {} + - additionalPrinterColumns: + - jsonPath: .driver + name: Driver + type: string + - description: Determines whether a VolumeSnapshotContent created through the VolumeSnapshotClass should be deleted when its bound VolumeSnapshot is deleted. + jsonPath: .deletionPolicy + name: DeletionPolicy + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1beta1 + # This indicates the v1beta1 version of the custom resource is deprecated. + # API requests to this version receive a warning in the server response. + deprecated: true + # This overrides the default warning returned to clients making v1beta1 API requests. + deprecationWarning: "snapshot.storage.k8s.io/v1beta1 VolumeSnapshotClass is deprecated; use snapshot.storage.k8s.io/v1 VolumeSnapshotClass" + schema: + openAPIV3Schema: + description: VolumeSnapshotClass specifies parameters that a underlying storage system uses when creating a volume snapshot. A specific VolumeSnapshotClass is used by specifying its name in a VolumeSnapshot object. VolumeSnapshotClasses are non-namespaced + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + deletionPolicy: + description: deletionPolicy determines whether a VolumeSnapshotContent created through the VolumeSnapshotClass should be deleted when its bound VolumeSnapshot is deleted. Supported values are "Retain" and "Delete". "Retain" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are kept. "Delete" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are deleted. Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the storage driver that handles this VolumeSnapshotClass. Required. + type: string + kind: + description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + parameters: + additionalProperties: + type: string + description: parameters is a key-value map with storage driver specific parameters for creating snapshots. These values are opaque to Kubernetes. + type: object + required: + - deletionPolicy + - driver + type: object + served: false + storage: false + subresources: {} +status: + acceptedNames: + kind: "" + plural: "" + conditions: [] + storedVersions: [] +--- +apiVersion: apiextensions.k8s.io/v1 +kind: CustomResourceDefinition +metadata: + annotations: + controller-gen.kubebuilder.io/version: v0.8.0 + api-approved.kubernetes.io: "https://github.com/kubernetes-csi/external-snapshotter/pull/665" + creationTimestamp: null + name: volumesnapshotcontents.snapshot.storage.k8s.io +spec: + group: snapshot.storage.k8s.io + names: + kind: VolumeSnapshotContent + listKind: VolumeSnapshotContentList + plural: volumesnapshotcontents + shortNames: + - vsc + - vscs + singular: volumesnapshotcontent + scope: Cluster + versions: + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: Represents the complete size of the snapshot in bytes + jsonPath: .status.restoreSize + name: RestoreSize + type: integer + - description: Determines whether this VolumeSnapshotContent and its physical + snapshot on the underlying storage system should be deleted when its bound + VolumeSnapshot is deleted. + jsonPath: .spec.deletionPolicy + name: DeletionPolicy + type: string + - description: Name of the CSI driver used to create the physical snapshot on + the underlying storage system. + jsonPath: .spec.driver + name: Driver + type: string + - description: Name of the VolumeSnapshotClass to which this snapshot belongs. + jsonPath: .spec.volumeSnapshotClassName + name: VolumeSnapshotClass + type: string + - description: Name of the VolumeSnapshot object to which this VolumeSnapshotContent + object is bound. + jsonPath: .spec.volumeSnapshotRef.name + name: VolumeSnapshot + type: string + - description: Namespace of the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. + jsonPath: .spec.volumeSnapshotRef.namespace + name: VolumeSnapshotNamespace + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1 + schema: + openAPIV3Schema: + description: VolumeSnapshotContent represents the actual "on-disk" snapshot + object in the underlying storage system + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation + of an object. Servers should convert recognized schemas to the latest + internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this + object represents. Servers may infer this from the endpoint the client + submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: spec defines properties of a VolumeSnapshotContent created + by the underlying storage system. Required. + properties: + deletionPolicy: + description: deletionPolicy determines whether this VolumeSnapshotContent + and its physical snapshot on the underlying storage system should + be deleted when its bound VolumeSnapshot is deleted. Supported values + are "Retain" and "Delete". "Retain" means that the VolumeSnapshotContent + and its physical snapshot on underlying storage system are kept. + "Delete" means that the VolumeSnapshotContent and its physical snapshot + on underlying storage system are deleted. For dynamically provisioned + snapshots, this field will automatically be filled in by the CSI + snapshotter sidecar with the "DeletionPolicy" field defined in the + corresponding VolumeSnapshotClass. For pre-existing snapshots, users + MUST specify this field when creating the VolumeSnapshotContent + object. Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the CSI driver used to create the + physical snapshot on the underlying storage system. This MUST be + the same as the name returned by the CSI GetPluginName() call for + that driver. Required. + type: string + source: + description: source specifies whether the snapshot is (or should be) + dynamically provisioned or already exists, and just requires a Kubernetes + object representation. This field is immutable after creation. Required. + properties: + snapshotHandle: + description: snapshotHandle specifies the CSI "snapshot_id" of + a pre-existing snapshot on the underlying storage system for + which a Kubernetes object representation was (or should be) + created. This field is immutable. + type: string + volumeHandle: + description: volumeHandle specifies the CSI "volume_id" of the + volume from which a snapshot should be dynamically taken from. + This field is immutable. + type: string + type: object + oneOf: + - required: ["snapshotHandle"] + - required: ["volumeHandle"] + sourceVolumeMode: + description: SourceVolumeMode is the mode of the volume whose snapshot + is taken. Can be either “Filesystem” or “Block”. If not specified, + it indicates the source volume's mode is unknown. This field is + immutable. This field is an alpha field. + type: string + volumeSnapshotClassName: + description: name of the VolumeSnapshotClass from which this snapshot + was (or will be) created. Note that after provisioning, the VolumeSnapshotClass + may be deleted or recreated with different set of values, and as + such, should not be referenced post-snapshot creation. + type: string + volumeSnapshotRef: + description: volumeSnapshotRef specifies the VolumeSnapshot object + to which this VolumeSnapshotContent object is bound. VolumeSnapshot.Spec.VolumeSnapshotContentName + field must reference to this VolumeSnapshotContent's name for the + bidirectional binding to be valid. For a pre-existing VolumeSnapshotContent + object, name and namespace of the VolumeSnapshot object MUST be + provided for binding to happen. This field is immutable after creation. + Required. + properties: + apiVersion: + description: API version of the referent. + type: string + fieldPath: + description: 'If referring to a piece of an object instead of + an entire object, this string should contain a valid JSON/Go + field access statement, such as desiredState.manifest.containers[2]. + For example, if the object reference is to a container within + a pod, this would take on a value like: "spec.containers{name}" + (where "name" refers to the name of the container that triggered + the event) or if no container name is specified "spec.containers[2]" + (container with index 2 in this pod). This syntax is chosen + only to have some well-defined way of referencing a part of + an object. TODO: this design is not final and this field is + subject to change in the future.' + type: string + kind: + description: 'Kind of the referent. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + name: + description: 'Name of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#names' + type: string + namespace: + description: 'Namespace of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/namespaces/' + type: string + resourceVersion: + description: 'Specific resourceVersion to which this reference + is made, if any. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#concurrency-control-and-consistency' + type: string + uid: + description: 'UID of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#uids' + type: string + type: object + required: + - deletionPolicy + - driver + - source + - volumeSnapshotRef + type: object + status: + description: status represents the current information of a snapshot. + properties: + creationTime: + description: creationTime is the timestamp when the point-in-time + snapshot is taken by the underlying storage system. In dynamic snapshot + creation case, this field will be filled in by the CSI snapshotter + sidecar with the "creation_time" value returned from CSI "CreateSnapshot" + gRPC call. For a pre-existing snapshot, this field will be filled + with the "creation_time" value returned from the CSI "ListSnapshots" + gRPC call if the driver supports it. If not specified, it indicates + the creation time is unknown. The format of this field is a Unix + nanoseconds time encoded as an int64. On Unix, the command `date + +%s%N` returns the current time in nanoseconds since 1970-01-01 + 00:00:00 UTC. + format: int64 + type: integer + error: + description: error is the last observed error during snapshot creation, + if any. Upon success after retry, this error field will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error + during snapshot creation if specified. NOTE: message may be + logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if a snapshot is ready to be used + to restore a volume. In dynamic snapshot creation case, this field + will be filled in by the CSI snapshotter sidecar with the "ready_to_use" + value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing + snapshot, this field will be filled with the "ready_to_use" value + returned from the CSI "ListSnapshots" gRPC call if the driver supports + it, otherwise, this field will be set to "True". If not specified, + it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + description: restoreSize represents the complete size of the snapshot + in bytes. In dynamic snapshot creation case, this field will be + filled in by the CSI snapshotter sidecar with the "size_bytes" value + returned from CSI "CreateSnapshot" gRPC call. For a pre-existing + snapshot, this field will be filled with the "size_bytes" value + returned from the CSI "ListSnapshots" gRPC call if the driver supports + it. When restoring a volume from this snapshot, the size of the + volume MUST NOT be smaller than the restoreSize if it is specified, + otherwise the restoration will fail. If not specified, it indicates + that the size is unknown. + format: int64 + minimum: 0 + type: integer + snapshotHandle: + description: snapshotHandle is the CSI "snapshot_id" of a snapshot + on the underlying storage system. If not specified, it indicates + that dynamic snapshot creation has either failed or it is still + in progress. + type: string + type: object + required: + - spec + type: object + served: true + storage: true + subresources: + status: {} + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: Represents the complete size of the snapshot in bytes + jsonPath: .status.restoreSize + name: RestoreSize + type: integer + - description: Determines whether this VolumeSnapshotContent and its physical snapshot on the underlying storage system should be deleted when its bound VolumeSnapshot is deleted. + jsonPath: .spec.deletionPolicy + name: DeletionPolicy + type: string + - description: Name of the CSI driver used to create the physical snapshot on the underlying storage system. + jsonPath: .spec.driver + name: Driver + type: string + - description: Name of the VolumeSnapshotClass to which this snapshot belongs. + jsonPath: .spec.volumeSnapshotClassName + name: VolumeSnapshotClass + type: string + - description: Name of the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. + jsonPath: .spec.volumeSnapshotRef.name + name: VolumeSnapshot + type: string + - description: Namespace of the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. + jsonPath: .spec.volumeSnapshotRef.namespace + name: VolumeSnapshotNamespace + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1beta1 + # This indicates the v1beta1 version of the custom resource is deprecated. + # API requests to this version receive a warning in the server response. + deprecated: true + # This overrides the default warning returned to clients making v1beta1 API requests. + deprecationWarning: "snapshot.storage.k8s.io/v1beta1 VolumeSnapshotContent is deprecated; use snapshot.storage.k8s.io/v1 VolumeSnapshotContent" + schema: + openAPIV3Schema: + description: VolumeSnapshotContent represents the actual "on-disk" snapshot object in the underlying storage system + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: spec defines properties of a VolumeSnapshotContent created by the underlying storage system. Required. + properties: + deletionPolicy: + description: deletionPolicy determines whether this VolumeSnapshotContent and its physical snapshot on the underlying storage system should be deleted when its bound VolumeSnapshot is deleted. Supported values are "Retain" and "Delete". "Retain" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are kept. "Delete" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are deleted. For dynamically provisioned snapshots, this field will automatically be filled in by the CSI snapshotter sidecar with the "DeletionPolicy" field defined in the corresponding VolumeSnapshotClass. For pre-existing snapshots, users MUST specify this field when creating the VolumeSnapshotContent object. Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the CSI driver used to create the physical snapshot on the underlying storage system. This MUST be the same as the name returned by the CSI GetPluginName() call for that driver. Required. + type: string + source: + description: source specifies whether the snapshot is (or should be) dynamically provisioned or already exists, and just requires a Kubernetes object representation. This field is immutable after creation. Required. + properties: + snapshotHandle: + description: snapshotHandle specifies the CSI "snapshot_id" of a pre-existing snapshot on the underlying storage system for which a Kubernetes object representation was (or should be) created. This field is immutable. + type: string + volumeHandle: + description: volumeHandle specifies the CSI "volume_id" of the volume from which a snapshot should be dynamically taken from. This field is immutable. + type: string + type: object + volumeSnapshotClassName: + description: name of the VolumeSnapshotClass from which this snapshot was (or will be) created. Note that after provisioning, the VolumeSnapshotClass may be deleted or recreated with different set of values, and as such, should not be referenced post-snapshot creation. + type: string + volumeSnapshotRef: + description: volumeSnapshotRef specifies the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. VolumeSnapshot.Spec.VolumeSnapshotContentName field must reference to this VolumeSnapshotContent's name for the bidirectional binding to be valid. For a pre-existing VolumeSnapshotContent object, name and namespace of the VolumeSnapshot object MUST be provided for binding to happen. This field is immutable after creation. Required. + properties: + apiVersion: + description: API version of the referent. + type: string + fieldPath: + description: 'If referring to a piece of an object instead of an entire object, this string should contain a valid JSON/Go field access statement, such as desiredState.manifest.containers[2]. For example, if the object reference is to a container within a pod, this would take on a value like: "spec.containers{name}" (where "name" refers to the name of the container that triggered the event) or if no container name is specified "spec.containers[2]" (container with index 2 in this pod). This syntax is chosen only to have some well-defined way of referencing a part of an object. TODO: this design is not final and this field is subject to change in the future.' + type: string + kind: + description: 'Kind of the referent. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + name: + description: 'Name of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#names' + type: string + namespace: + description: 'Namespace of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/namespaces/' + type: string + resourceVersion: + description: 'Specific resourceVersion to which this reference is made, if any. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#concurrency-control-and-consistency' + type: string + uid: + description: 'UID of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#uids' + type: string + type: object + required: + - deletionPolicy + - driver + - source + - volumeSnapshotRef + type: object + status: + description: status represents the current information of a snapshot. + properties: + creationTime: + description: creationTime is the timestamp when the point-in-time snapshot is taken by the underlying storage system. In dynamic snapshot creation case, this field will be filled in by the CSI snapshotter sidecar with the "creation_time" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "creation_time" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. If not specified, it indicates the creation time is unknown. The format of this field is a Unix nanoseconds time encoded as an int64. On Unix, the command `date +%s%N` returns the current time in nanoseconds since 1970-01-01 00:00:00 UTC. + format: int64 + type: integer + error: + description: error is the last observed error during snapshot creation, if any. Upon success after retry, this error field will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error during snapshot creation if specified. NOTE: message may be logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if a snapshot is ready to be used to restore a volume. In dynamic snapshot creation case, this field will be filled in by the CSI snapshotter sidecar with the "ready_to_use" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "ready_to_use" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it, otherwise, this field will be set to "True". If not specified, it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + description: restoreSize represents the complete size of the snapshot in bytes. In dynamic snapshot creation case, this field will be filled in by the CSI snapshotter sidecar with the "size_bytes" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "size_bytes" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. When restoring a volume from this snapshot, the size of the volume MUST NOT be smaller than the restoreSize if it is specified, otherwise the restoration will fail. If not specified, it indicates that the size is unknown. + format: int64 + minimum: 0 + type: integer + snapshotHandle: + description: snapshotHandle is the CSI "snapshot_id" of a snapshot on the underlying storage system. If not specified, it indicates that dynamic snapshot creation has either failed or it is still in progress. + type: string + type: object + required: + - spec + type: object + served: false + storage: false + subresources: + status: {} +status: + acceptedNames: + kind: "" + plural: "" + conditions: [] + storedVersions: [] +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-controller.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-controller.yaml new file mode 100644 index 0000000000..a69383bf11 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-controller.yaml @@ -0,0 +1,252 @@ +kind: Deployment +apiVersion: apps/v1 +metadata: + name: {{ .Values.controller.name }} + namespace: {{ .Release.Namespace }} + labels: + app: {{ .Values.controller.name }} + {{- include "azurefile.labels" . | nindent 4 }} +{{- with .Values.controller.labels }} +{{ . | toYaml | indent 4 }} +{{- end }} +{{- with .Values.controller.annotations }} + annotations: +{{ . | toYaml | indent 4 }} +{{- end }} +spec: + replicas: {{ .Values.controller.replicas }} + selector: + matchLabels: + {{- include "azurefile.selectorLabels" . | nindent 6 }} + app: {{ .Values.controller.name }} + template: + metadata: + labels: + {{- include "azurefile.labels" . | nindent 8 }} + app: {{ .Values.controller.name }} + {{- if .Values.workloadIdentity.clientID }} + azure.workload.identity/use: "true" + {{- end }} +{{- with .Values.controller.podLabels }} +{{ toYaml . | indent 8 }} +{{- end }} +{{- with .Values.controller.podAnnotations }} + annotations: +{{ toYaml . | indent 8 }} +{{- end }} + spec: + hostNetwork: {{ .Values.controller.hostNetwork }} + serviceAccountName: {{ .Values.serviceAccount.controller }} + nodeSelector: + kubernetes.io/os: linux +{{- with .Values.controller.nodeSelector }} +{{ toYaml . | indent 8 }} +{{- end }} + {{- if .Values.controller.runOnMaster}} + node-role.kubernetes.io/master: "" + {{- end}} + {{- if .Values.controller.runOnControlPlane}} + node-role.kubernetes.io/control-plane: "" + {{- end}} + priorityClassName: system-cluster-critical +{{- with .Values.controller.tolerations }} + tolerations: +{{ toYaml . | indent 8 }} +{{- end }} +{{- with .Values.controller.affinity }} + affinity: +{{ toYaml . | indent 8 }} +{{- end }} + {{- if .Values.imagePullSecrets }} + imagePullSecrets: +{{ toYaml .Values.imagePullSecrets | indent 8 }} + {{- end }} + containers: + - name: csi-provisioner +{{- if hasPrefix "/" .Values.image.csiProvisioner.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.csiProvisioner.repository }}:{{ .Values.image.csiProvisioner.tag }}" +{{- else }} + image: "{{ .Values.image.csiProvisioner.repository }}:{{ .Values.image.csiProvisioner.tag }}" +{{- end }} + args: + - "-v=2" + - "--csi-address=$(ADDRESS)" + - "--leader-election" + - "--leader-election-namespace={{ .Release.Namespace }}" + - "--timeout=1200s" + - "--extra-create-metadata=true" + - "--kube-api-qps=50" + - "--kube-api-burst=100" + - "--feature-gates=HonorPVReclaimPolicy=true" + env: + - name: ADDRESS + value: /csi/csi.sock + imagePullPolicy: {{ .Values.image.csiProvisioner.pullPolicy }} + volumeMounts: + - mountPath: /csi + name: socket-dir + resources: {{- toYaml .Values.controller.resources.csiProvisioner | nindent 12 }} + - name: csi-snapshotter +{{- if hasPrefix "/" .Values.snapshot.image.csiSnapshotter.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.snapshot.image.csiSnapshotter.repository }}:{{ .Values.snapshot.image.csiSnapshotter.tag }}" +{{- else }} + image: "{{ .Values.snapshot.image.csiSnapshotter.repository }}:{{ .Values.snapshot.image.csiSnapshotter.tag }}" +{{- end }} + args: + - "-csi-address=$(ADDRESS)" + - "-leader-election" + - "--leader-election-namespace={{ .Release.Namespace }}" + - "-v=2" + env: + - name: ADDRESS + value: /csi/csi.sock + volumeMounts: + - name: socket-dir + mountPath: /csi + resources: {{- toYaml .Values.controller.resources.csiSnapshotter | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: csi-resizer +{{- if hasPrefix "/" .Values.image.csiResizer.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.csiResizer.repository }}:{{ .Values.image.csiResizer.tag }}" +{{- else }} + image: "{{ .Values.image.csiResizer.repository }}:{{ .Values.image.csiResizer.tag }}" +{{- end }} + args: + - "-csi-address=$(ADDRESS)" + - "-v=2" + - "-leader-election" + - "--leader-election-namespace={{ .Release.Namespace }}" + - '-handle-volume-inuse-error=false' + - '-timeout=120s' + - '-feature-gates=RecoverVolumeExpansionFailure=true' + env: + - name: ADDRESS + value: /csi/csi.sock + imagePullPolicy: {{ .Values.image.csiResizer.pullPolicy }} + volumeMounts: + - name: socket-dir + mountPath: /csi + resources: {{- toYaml .Values.controller.resources.csiResizer | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: liveness-probe +{{- if hasPrefix "/" .Values.image.livenessProbe.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.livenessProbe.repository }}:{{ .Values.image.livenessProbe.tag }}" +{{- else }} + image: "{{ .Values.image.livenessProbe.repository }}:{{ .Values.image.livenessProbe.tag }}" +{{- end }} + args: + - --csi-address=/csi/csi.sock + - --probe-timeout=3s +{{- if eq .Values.controller.hostNetwork true }} + - --http-endpoint=localhost:{{ .Values.controller.livenessProbe.healthPort }} +{{- else }} + - --health-port={{ .Values.controller.livenessProbe.healthPort }} +{{- end }} + - --v=2 + imagePullPolicy: {{ .Values.image.livenessProbe.pullPolicy }} + volumeMounts: + - name: socket-dir + mountPath: /csi + resources: {{- toYaml .Values.controller.resources.livenessProbe | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: azurefile +{{- if hasPrefix "/" .Values.image.azurefile.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}" +{{- else }} + image: "{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}" +{{- end }} + args: + - "--v={{ .Values.controller.logLevel }}" + - "--endpoint=$(CSI_ENDPOINT)" + - "--metrics-address=0.0.0.0:{{ .Values.controller.metricsPort }}" + - "--kubeconfig={{ .Values.controller.kubeconfig }}" + - "--drivername={{ .Values.driver.name }}" + - "--cloud-config-secret-name={{ .Values.controller.cloudConfigSecretName }}" + - "--cloud-config-secret-namespace={{ .Values.controller.cloudConfigSecretNamespace }}" + - "--custom-user-agent={{ .Values.driver.customUserAgent }}" + - "--user-agent-suffix={{ .Values.driver.userAgentSuffix }}" + - "--allow-empty-cloud-config={{ .Values.controller.allowEmptyCloudConfig }}" + ports: + - containerPort: {{ .Values.controller.metricsPort }} + name: metrics + protocol: TCP +{{- if ne .Values.controller.hostNetwork true }} + - containerPort: {{ .Values.controller.livenessProbe.healthPort }} + name: healthz + protocol: TCP +{{- end }} + livenessProbe: + failureThreshold: 5 + httpGet: + path: /healthz +{{- if eq .Values.controller.hostNetwork true }} + host: localhost + port: {{ .Values.controller.livenessProbe.healthPort }} +{{- else }} + port: healthz +{{- end }} + initialDelaySeconds: 30 + timeoutSeconds: 10 + periodSeconds: 30 + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: {{ .Values.azureCredentialFileConfigMap }} + key: path + optional: true + - name: CSI_ENDPOINT + value: unix:///csi/csi.sock + {{- if ne .Values.driver.httpsProxy "" }} + - name: HTTPS_PROXY + value: {{ .Values.driver.httpsProxy }} + {{- end }} + {{- if ne .Values.driver.httpProxy "" }} + - name: HTTP_PROXY + value: {{ .Values.driver.httpProxy }} + {{- end }} + - name: AZURE_GO_SDK_LOG_LEVEL + value: {{ .Values.driver.azureGoSDKLogLevel }} + imagePullPolicy: {{ .Values.image.azurefile.pullPolicy }} + volumeMounts: + - mountPath: /csi + name: socket-dir + - mountPath: /etc/kubernetes/ + name: azure-cred + {{- if eq .Values.linux.distro "fedora" }} + - name: ssl + mountPath: /etc/ssl/certs + readOnly: true + - name: ssl-pki + mountPath: /etc/pki/ca-trust/extracted + readOnly: true + {{- end }} + resources: {{- toYaml .Values.controller.resources.azurefile | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + volumes: + - name: socket-dir + emptyDir: {} + - name: azure-cred + hostPath: + path: /etc/kubernetes/ + type: DirectoryOrCreate + {{- if eq .Values.linux.distro "fedora" }} + - name: ssl + hostPath: + path: /etc/ssl/certs + - name: ssl-pki + hostPath: + path: /etc/pki/ca-trust/extracted + {{- end }} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-driver.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-driver.yaml new file mode 100644 index 0000000000..77df01e32d --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-driver.yaml @@ -0,0 +1,19 @@ +--- +apiVersion: storage.k8s.io/v1 +kind: CSIDriver +metadata: + name: {{ .Values.driver.name }} + labels: + {{- include "azurefile.labels" . | nindent 4 }} + annotations: + csiDriver: "{{ .Values.image.azurefile.tag }}" + snapshot: "{{ .Values.snapshot.image.csiSnapshotter.tag }}" +spec: + attachRequired: {{ .Values.controller.attachRequired }} + podInfoOnMount: true + volumeLifecycleModes: + - Persistent + - Ephemeral + fsGroupPolicy: {{ .Values.feature.fsGroupPolicy }} + tokenRequests: + - audience: api://AzureADTokenExchange diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows-hostprocess.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows-hostprocess.yaml new file mode 100644 index 0000000000..4d9bb739da --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows-hostprocess.yaml @@ -0,0 +1,164 @@ +{{- if and .Values.windows.enabled .Values.windows.useHostProcessContainers }} +kind: DaemonSet +apiVersion: apps/v1 +metadata: + name: {{ .Values.windows.dsName }} + namespace: {{ .Release.Namespace }} + labels: + app: {{ .Values.windows.dsName }} + {{- include "azurefile.labels" . | nindent 4 }} +{{- with .Values.windows.labels }} +{{ . | toYaml | indent 4 }} +{{- end }} +{{- with .Values.windows.annotations }} + annotations: +{{ . | toYaml | indent 4 }} +{{- end }} +spec: + updateStrategy: + rollingUpdate: + maxUnavailable: {{ .Values.node.maxUnavailable }} + type: RollingUpdate + selector: + matchLabels: + app: {{ .Values.windows.dsName }} + {{- include "azurefile.selectorLabels" . | nindent 6 }} + template: + metadata: + labels: + app: {{ .Values.windows.dsName }} + {{- include "azurefile.labels" . | nindent 8 }} +{{- with .Values.windows.podLabels }} +{{ toYaml . | indent 8 }} +{{- end }} +{{- with .Values.windows.podAnnotations }} + annotations: +{{ toYaml . | indent 8 }} +{{- end }} + spec: + serviceAccountName: {{ .Values.serviceAccount.node }} +{{- with .Values.windows.tolerations }} + tolerations: +{{ toYaml . | indent 8 }} +{{- end }} + nodeSelector: + kubernetes.io/os: windows +{{- with .Values.windows.nodeSelector }} +{{ toYaml . | indent 8 }} +{{- end }} + affinity: +{{- with .Values.windows.affinity }} +{{ toYaml . | indent 8 }} +{{- end }} + nodeAffinity: +{{ toYaml .Values.windows.nodeAffinity | indent 10 }} + priorityClassName: system-node-critical + {{- if .Values.imagePullSecrets }} + imagePullSecrets: +{{ toYaml .Values.imagePullSecrets | indent 8 }} + {{- end }} + securityContext: + seccompProfile: + type: RuntimeDefault + windowsOptions: + hostProcess: true + runAsUserName: "NT AUTHORITY\\SYSTEM" + hostNetwork: true + initContainers: + - name: init +{{- if hasPrefix "/" .Values.image.azurefile.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}-windows-hp" +{{- else }} + image: "{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}-windows-hp" +{{- end }} + imagePullPolicy: {{ .Values.image.pullPolicy }} + command: + - "powershell.exe" + - "-c" + - "New-Item -ItemType Directory -Path C:\\var\\lib\\kubelet\\plugins\\{{ .Values.driver.name }}\\ -Force" + securityContext: + capabilities: + drop: + - ALL + containers: + - name: node-driver-registrar +{{- if hasPrefix "/" .Values.image.nodeDriverRegistrar.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.nodeDriverRegistrar.repository }}:{{ .Values.image.nodeDriverRegistrar.tag }}" +{{- else }} + image: "{{ .Values.image.nodeDriverRegistrar.repository }}:{{ .Values.image.nodeDriverRegistrar.tag }}" +{{- end }} + command: + - "csi-node-driver-registrar.exe" + args: + - "--csi-address=$(CSI_ENDPOINT)" + - "--kubelet-registration-path=$(DRIVER_REG_SOCK_PATH)" + - "--plugin-registration-path=$(PLUGIN_REG_DIR)" + - "--v=2" + env: + - name: CSI_ENDPOINT + value: unix://{{ .Values.windows.kubelet }}\plugins\{{ .Values.driver.name }}\csi.sock + - name: DRIVER_REG_SOCK_PATH + value: C:\\var\\lib\\kubelet\\plugins\\{{ .Values.driver.name }}\\csi.sock + - name: PLUGIN_REG_DIR + value: C:\\var\\lib\\kubelet\\plugins_registry\\ + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + fieldPath: spec.nodeName + imagePullPolicy: {{ .Values.image.nodeDriverRegistrar.pullPolicy }} + resources: {{- toYaml .Values.windows.resources.nodeDriverRegistrar | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: azurefile +{{- if hasPrefix "/" .Values.image.azurefile.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}-windows-hp" +{{- else }} + image: "{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}-windows-hp" +{{- end }} + command: + - "azurefileplugin.exe" + args: + - "--v={{ .Values.node.logLevel }}" + - "--endpoint=$(CSI_ENDPOINT)" + - "--nodeid=$(KUBE_NODE_NAME)" + - "--kubeconfig={{ .Values.windows.kubeconfig }}" + - "--drivername={{ .Values.driver.name }}" + - "--cloud-config-secret-name={{ .Values.node.cloudConfigSecretName }}" + - "--cloud-config-secret-namespace={{ .Values.node.cloudConfigSecretNamespace }}" + - "--custom-user-agent={{ .Values.driver.customUserAgent }}" + - "--user-agent-suffix={{ .Values.driver.userAgentSuffix }}" + - "--allow-empty-cloud-config={{ .Values.node.allowEmptyCloudConfig }}" + - "--enable-get-volume-stats={{ .Values.feature.enableGetVolumeStats }}" + - "--enable-windows-host-process=true" + - "--metrics-address=0.0.0.0:{{ .Values.node.metricsPort }}" + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: {{ .Values.azureCredentialFileConfigMap }} + key: path-windows + optional: true + - name: CSI_ENDPOINT + value: unix://{{ .Values.windows.kubelet }}\plugins\{{ .Values.driver.name }}\csi.sock + {{- if ne .Values.driver.httpsProxy "" }} + - name: HTTPS_PROXY + value: {{ .Values.driver.httpsProxy }} + {{- end }} + {{- if ne .Values.driver.httpProxy "" }} + - name: HTTP_PROXY + value: {{ .Values.driver.httpProxy }} + {{- end }} + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + apiVersion: v1 + fieldPath: spec.nodeName + imagePullPolicy: {{ .Values.image.pullPolicy }} + resources: {{- toYaml .Values.windows.resources.azurefile | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows.yaml new file mode 100644 index 0000000000..8e0a5c5499 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node-windows.yaml @@ -0,0 +1,239 @@ +{{- if and .Values.windows.enabled (not .Values.windows.useHostProcessContainers) }} +kind: DaemonSet +apiVersion: apps/v1 +metadata: + name: {{ .Values.windows.dsName }} + namespace: {{ .Release.Namespace }} + labels: + app: {{ .Values.windows.dsName }} + {{- include "azurefile.labels" . | nindent 4 }} +{{- with .Values.windows.labels }} +{{ . | toYaml | indent 4 }} +{{- end }} +{{- with .Values.windows.annotations }} + annotations: +{{ . | toYaml | indent 4 }} +{{- end }} +spec: + updateStrategy: + rollingUpdate: + maxUnavailable: {{ .Values.node.maxUnavailable }} + type: RollingUpdate + selector: + matchLabels: + app: {{ .Values.windows.dsName }} + {{- include "azurefile.selectorLabels" . | nindent 6 }} + template: + metadata: + labels: + app: {{ .Values.windows.dsName }} + {{- include "azurefile.labels" . | nindent 8 }} +{{- with .Values.windows.podLabels }} +{{ toYaml . | indent 8 }} +{{- end }} +{{- with .Values.windows.podAnnotations }} + annotations: +{{ toYaml . | indent 8 }} +{{- end }} + spec: + serviceAccountName: {{ .Values.serviceAccount.node }} +{{- with .Values.windows.tolerations }} + tolerations: +{{ toYaml . | indent 8 }} +{{- end }} + nodeSelector: + kubernetes.io/os: windows +{{- with .Values.windows.nodeSelector }} +{{ toYaml . | indent 8 }} +{{- end }} + affinity: +{{- with .Values.windows.affinity }} +{{ toYaml . | indent 8 }} +{{- end }} + nodeAffinity: +{{ toYaml .Values.windows.nodeAffinity | indent 10 }} + priorityClassName: system-node-critical + securityContext: + seccompProfile: + type: RuntimeDefault + {{- if .Values.imagePullSecrets }} + imagePullSecrets: +{{ toYaml .Values.imagePullSecrets | indent 8 }} + {{- end }} + containers: + - name: liveness-probe + volumeMounts: + - mountPath: C:\csi + name: plugin-dir +{{- if hasPrefix "/" .Values.image.livenessProbe.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.livenessProbe.repository }}:{{ .Values.image.livenessProbe.tag }}" +{{- else }} + image: "{{ .Values.image.livenessProbe.repository }}:{{ .Values.image.livenessProbe.tag }}" +{{- end }} + args: + - "--csi-address=$(CSI_ENDPOINT)" + - "--probe-timeout=3s" + - "--health-port={{ .Values.node.livenessProbe.healthPort }}" + - "--v=2" + env: + - name: CSI_ENDPOINT + value: unix://C:\\csi\\csi.sock + imagePullPolicy: {{ .Values.image.livenessProbe.pullPolicy }} + resources: {{- toYaml .Values.windows.resources.livenessProbe | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: node-driver-registrar +{{- if hasPrefix "/" .Values.image.nodeDriverRegistrar.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.nodeDriverRegistrar.repository }}:{{ .Values.image.nodeDriverRegistrar.tag }}" +{{- else }} + image: "{{ .Values.image.nodeDriverRegistrar.repository }}:{{ .Values.image.nodeDriverRegistrar.tag }}" +{{- end }} + args: + - "--csi-address=$(CSI_ENDPOINT)" + - "--kubelet-registration-path=$(DRIVER_REG_SOCK_PATH)" + - "--v=2" +{{- if .Values.windows.enableRegistrationProbe }} + livenessProbe: + exec: + command: + - /csi-node-driver-registrar.exe + - --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH) + - --mode=kubelet-registration-probe + initialDelaySeconds: 60 + timeoutSeconds: 30 +{{- end }} + env: + - name: CSI_ENDPOINT + value: unix://C:\\csi\\csi.sock + - name: DRIVER_REG_SOCK_PATH + value: C:\\var\\lib\\kubelet\\plugins\\{{ .Values.driver.name }}\\csi.sock + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + fieldPath: spec.nodeName + imagePullPolicy: {{ .Values.image.nodeDriverRegistrar.pullPolicy }} + volumeMounts: + - name: kubelet-dir + mountPath: "C:\\var\\lib\\kubelet" + - name: plugin-dir + mountPath: C:\csi + - name: registration-dir + mountPath: C:\registration + resources: {{- toYaml .Values.windows.resources.nodeDriverRegistrar | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: azurefile +{{- if hasPrefix "/" .Values.image.azurefile.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}" +{{- else }} + image: "{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}" +{{- end }} + args: + - "--v={{ .Values.node.logLevel }}" + - "--endpoint=$(CSI_ENDPOINT)" + - "--nodeid=$(KUBE_NODE_NAME)" + - "--kubeconfig={{ .Values.windows.kubeconfig }}" + - "--drivername={{ .Values.driver.name }}" + - "--cloud-config-secret-name={{ .Values.node.cloudConfigSecretName }}" + - "--cloud-config-secret-namespace={{ .Values.node.cloudConfigSecretNamespace }}" + - "--custom-user-agent={{ .Values.driver.customUserAgent }}" + - "--user-agent-suffix={{ .Values.driver.userAgentSuffix }}" + - "--allow-empty-cloud-config={{ .Values.node.allowEmptyCloudConfig }}" + - "--enable-get-volume-stats={{ .Values.feature.enableGetVolumeStats }}" + - "--allow-inline-volume-key-access-with-identity={{ .Values.node.allowInlineVolumeKeyAccessWithIdentity }}" + - "--metrics-address=0.0.0.0:{{ .Values.node.metricsPort }}" + ports: + - containerPort: {{ .Values.node.livenessProbe.healthPort }} + name: healthz + protocol: TCP + livenessProbe: + failureThreshold: 5 + httpGet: + path: /healthz + port: healthz + initialDelaySeconds: 30 + timeoutSeconds: 10 + periodSeconds: 30 + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: {{ .Values.azureCredentialFileConfigMap }} + key: path-windows + optional: true + - name: CSI_ENDPOINT + value: unix://C:\\csi\\csi.sock + {{- if ne .Values.driver.httpsProxy "" }} + - name: HTTPS_PROXY + value: {{ .Values.driver.httpsProxy }} + {{- end }} + {{- if ne .Values.driver.httpProxy "" }} + - name: HTTP_PROXY + value: {{ .Values.driver.httpProxy }} + {{- end }} + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + apiVersion: v1 + fieldPath: spec.nodeName + - name: AZURE_GO_SDK_LOG_LEVEL + value: {{ .Values.driver.azureGoSDKLogLevel }} + imagePullPolicy: {{ .Values.image.pullPolicy }} + volumeMounts: + - name: kubelet-dir + mountPath: "C:\\var\\lib\\kubelet" + - name: plugin-dir + mountPath: C:\csi + - name: azure-config + mountPath: C:\k + - name: csi-proxy-fs-pipe-v1 + mountPath: \\.\pipe\csi-proxy-filesystem-v1 + - name: csi-proxy-smb-pipe-v1 + mountPath: \\.\pipe\csi-proxy-smb-v1 + # these paths are still included for compatibility, they're used + # only if the node has still the beta version of the CSI proxy + - name: csi-proxy-fs-pipe-v1beta1 + mountPath: \\.\pipe\csi-proxy-filesystem-v1beta1 + - name: csi-proxy-smb-pipe-v1beta1 + mountPath: \\.\pipe\csi-proxy-smb-v1beta1 + resources: {{- toYaml .Values.windows.resources.azurefile | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + volumes: + - name: csi-proxy-fs-pipe-v1 + hostPath: + path: \\.\pipe\csi-proxy-filesystem-v1 + - name: csi-proxy-smb-pipe-v1 + hostPath: + path: \\.\pipe\csi-proxy-smb-v1 + # these paths are still included for compatibility, they're used + # only if the node has still the beta version of the CSI proxy + - name: csi-proxy-fs-pipe-v1beta1 + hostPath: + path: \\.\pipe\csi-proxy-filesystem-v1beta1 + - name: csi-proxy-smb-pipe-v1beta1 + hostPath: + path: \\.\pipe\csi-proxy-smb-v1beta1 + - name: registration-dir + hostPath: + path: {{ .Values.windows.kubelet }}\plugins_registry\ + type: Directory + - name: kubelet-dir + hostPath: + path: {{ .Values.windows.kubelet }}\ + type: Directory + - name: plugin-dir + hostPath: + path: {{ .Values.windows.kubelet }}\plugins\{{ .Values.driver.name }}\ + type: DirectoryOrCreate + - name: azure-config + hostPath: + path: C:\k + type: Directory +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node.yaml new file mode 100644 index 0000000000..cc293e7c9c --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/csi-azurefile-node.yaml @@ -0,0 +1,234 @@ +{{- if .Values.linux.enabled}} +kind: DaemonSet +apiVersion: apps/v1 +metadata: + name: {{ .Values.linux.dsName }} + namespace: {{ .Release.Namespace }} + labels: + app: {{ .Values.linux.dsName }} + {{- include "azurefile.labels" . | nindent 4 }} +{{- with .Values.linux.labels }} +{{ . | toYaml | indent 4 }} +{{- end }} +{{- with .Values.linux.annotations }} + annotations: +{{ . | toYaml | indent 4 }} +{{- end }} +spec: + updateStrategy: + rollingUpdate: + maxUnavailable: {{ .Values.node.maxUnavailable }} + type: RollingUpdate + selector: + matchLabels: + app: {{ .Values.linux.dsName }} + {{- include "azurefile.selectorLabels" . | nindent 6 }} + template: + metadata: + labels: + app: {{ .Values.linux.dsName }} + {{- include "azurefile.labels" . | nindent 8 }} + {{- if .Values.workloadIdentity.clientID }} + azure.workload.identity/use: "true" + {{- end }} +{{- with .Values.linux.podLabels }} +{{ toYaml . | indent 8 }} +{{- end }} +{{- with .Values.linux.podAnnotations }} + annotations: +{{ toYaml . | indent 8 }} +{{- end }} + spec: + hostNetwork: true + dnsPolicy: {{ .Values.linux.dnsPolicy }} + serviceAccountName: {{ .Values.serviceAccount.node }} + nodeSelector: + kubernetes.io/os: linux +{{- with .Values.linux.nodeSelector }} +{{ toYaml . | indent 8 }} +{{- end }} + affinity: +{{- with .Values.linux.affinity }} +{{ toYaml . | indent 8 }} +{{- end }} + nodeAffinity: +{{ toYaml .Values.linux.nodeAffinity | indent 10 }} + priorityClassName: system-node-critical + securityContext: + seccompProfile: + type: RuntimeDefault +{{- with .Values.linux.tolerations }} + tolerations: +{{ toYaml . | indent 8 }} +{{- end }} + {{- if .Values.imagePullSecrets }} + imagePullSecrets: +{{ toYaml .Values.imagePullSecrets | indent 8 }} + {{- end }} + containers: + - name: liveness-probe + volumeMounts: + - mountPath: /csi + name: socket-dir +{{- if hasPrefix "/" .Values.image.livenessProbe.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.livenessProbe.repository }}:{{ .Values.image.livenessProbe.tag }}" +{{- else }} + image: "{{ .Values.image.livenessProbe.repository }}:{{ .Values.image.livenessProbe.tag }}" +{{- end }} + args: + - --csi-address=/csi/csi.sock + - --probe-timeout=3s + - --http-endpoint=localhost:{{ .Values.node.livenessProbe.healthPort }} + - --v=2 + imagePullPolicy: {{ .Values.image.livenessProbe.pullPolicy }} + resources: {{- toYaml .Values.linux.resources.livenessProbe | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: node-driver-registrar +{{- if hasPrefix "/" .Values.image.nodeDriverRegistrar.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.nodeDriverRegistrar.repository }}:{{ .Values.image.nodeDriverRegistrar.tag }}" +{{- else }} + image: "{{ .Values.image.nodeDriverRegistrar.repository }}:{{ .Values.image.nodeDriverRegistrar.tag }}" +{{- end }} + args: + - --csi-address=$(ADDRESS) + - --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH) + - --v=2 +{{- if .Values.linux.enableRegistrationProbe }} + livenessProbe: + exec: + command: + - /csi-node-driver-registrar + - --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH) + - --mode=kubelet-registration-probe + initialDelaySeconds: 30 + timeoutSeconds: 15 +{{- end }} + env: + - name: ADDRESS + value: /csi/csi.sock + - name: DRIVER_REG_SOCK_PATH + value: {{ .Values.linux.kubelet }}/plugins/{{ .Values.driver.name }}/csi.sock + imagePullPolicy: {{ .Values.image.nodeDriverRegistrar.pullPolicy }} + volumeMounts: + - name: socket-dir + mountPath: /csi + - name: registration-dir + mountPath: /registration + resources: {{- toYaml .Values.linux.resources.nodeDriverRegistrar | nindent 12 }} + securityContext: + capabilities: + drop: + - ALL + - name: azurefile +{{- if hasPrefix "/" .Values.image.azurefile.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}" +{{- else }} + image: "{{ .Values.image.azurefile.repository }}:{{ .Values.image.azurefile.tag }}" +{{- end }} + args: + - "--v={{ .Values.node.logLevel }}" + - "--endpoint=$(CSI_ENDPOINT)" + - "--nodeid=$(KUBE_NODE_NAME)" + - "--kubeconfig={{ .Values.linux.kubeconfig }}" + - "--drivername={{ .Values.driver.name }}" + - "--cloud-config-secret-name={{ .Values.node.cloudConfigSecretName }}" + - "--cloud-config-secret-namespace={{ .Values.node.cloudConfigSecretNamespace }}" + - "--custom-user-agent={{ .Values.driver.customUserAgent }}" + - "--user-agent-suffix={{ .Values.driver.userAgentSuffix }}" + - "--allow-empty-cloud-config={{ .Values.node.allowEmptyCloudConfig }}" + - "--enable-volume-mount-group={{ .Values.feature.enableVolumeMountGroup }}" + - "--enable-get-volume-stats={{ .Values.feature.enableGetVolumeStats }}" + - "--mount-permissions={{ .Values.linux.mountPermissions }}" + - "--allow-inline-volume-key-access-with-identity={{ .Values.node.allowInlineVolumeKeyAccessWithIdentity }}" + - "--metrics-address=0.0.0.0:{{ .Values.node.metricsPort }}" + livenessProbe: + failureThreshold: 5 + httpGet: + host: localhost + path: /healthz + port: {{ .Values.controller.livenessProbe.healthPort }} + initialDelaySeconds: 30 + timeoutSeconds: 10 + periodSeconds: 30 + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: {{ .Values.azureCredentialFileConfigMap }} + key: path + optional: true + - name: CSI_ENDPOINT + value: unix:///csi/csi.sock + {{- if ne .Values.driver.httpsProxy "" }} + - name: HTTPS_PROXY + value: {{ .Values.driver.httpsProxy }} + {{- end }} + {{- if ne .Values.driver.httpProxy "" }} + - name: HTTP_PROXY + value: {{ .Values.driver.httpProxy }} + {{- end }} + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + apiVersion: v1 + fieldPath: spec.nodeName + - name: AZURE_GO_SDK_LOG_LEVEL + value: {{ .Values.driver.azureGoSDKLogLevel }} + imagePullPolicy: {{ .Values.image.azurefile.pullPolicy }} + securityContext: + privileged: true + capabilities: + drop: + - ALL + volumeMounts: + - mountPath: /csi + name: socket-dir + - mountPath: {{ .Values.linux.kubelet }}/ + mountPropagation: Bidirectional + name: mountpoint-dir + - mountPath: /etc/kubernetes/ + name: azure-cred + - mountPath: /dev + name: device-dir + {{- if eq .Values.linux.distro "fedora" }} + - name: ssl + mountPath: /etc/ssl/certs + readOnly: true + - name: ssl-pki + mountPath: /etc/pki/ca-trust/extracted + readOnly: true + {{- end }} + resources: {{- toYaml .Values.linux.resources.azurefile | nindent 12 }} + volumes: + - hostPath: + path: {{ .Values.linux.kubelet }}/plugins/{{ .Values.driver.name }} + type: DirectoryOrCreate + name: socket-dir + - hostPath: + path: {{ .Values.linux.kubelet }}/ + type: DirectoryOrCreate + name: mountpoint-dir + - hostPath: + path: {{ .Values.linux.kubelet }}/plugins_registry/ + type: DirectoryOrCreate + name: registration-dir + - hostPath: + path: /etc/kubernetes/ + type: DirectoryOrCreate + name: azure-cred + - hostPath: + path: /dev + type: Directory + name: device-dir + {{- if eq .Values.linux.distro "fedora" }} + - name: ssl + hostPath: + path: /etc/ssl/certs + - name: ssl-pki + hostPath: + path: /etc/pki/ca-trust/extracted + {{- end }} +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/csi-snapshot-controller.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/csi-snapshot-controller.yaml new file mode 100644 index 0000000000..d9e8e6f248 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/csi-snapshot-controller.yaml @@ -0,0 +1,78 @@ +{{- if .Values.snapshot.enabled -}} +kind: Deployment +apiVersion: apps/v1 +metadata: + name: {{ .Values.snapshot.snapshotController.name}} + namespace: {{ .Release.Namespace }} + labels: + app: {{ .Values.snapshot.snapshotController.name}} + {{- include "azurefile.labels" . | nindent 4 }} +{{- with .Values.snapshot.snapshotController.labels }} +{{ . | toYaml | indent 4 }} +{{- end }} +{{- with .Values.snapshot.snapshotController.annotations }} + annotations: +{{ . | toYaml | indent 4 }} +{{- end }} +spec: + replicas: {{ .Values.snapshot.snapshotController.replicas }} + selector: + matchLabels: + app: {{ .Values.snapshot.snapshotController.name}} + {{- include "azurefile.selectorLabels" . | nindent 6 }} + # the snapshot controller won't be marked as ready if the v1 CRDs are unavailable + # in #504 the snapshot-controller will exit after around 7.5 seconds if it + # can't find the v1 CRDs so this value should be greater than that + minReadySeconds: 15 + strategy: + rollingUpdate: + maxSurge: 0 + maxUnavailable: 1 + type: RollingUpdate + template: + metadata: + labels: + app: {{ .Values.snapshot.snapshotController.name}} + {{- include "azurefile.labels" . | nindent 8 }} +{{- with .Values.snapshot.snapshotController.podLabels }} +{{ toYaml . | indent 8 }} +{{- end }} +{{- with .Values.snapshot.snapshotController.podAnnotations }} + annotations: +{{ toYaml . | indent 8 }} +{{- end }} + spec: + serviceAccountName: {{ .Values.serviceAccount.snapshotController }} + nodeSelector: + kubernetes.io/os: linux + priorityClassName: system-cluster-critical +{{- with .Values.controller.tolerations }} + tolerations: +{{ toYaml . | indent 8 }} +{{- end }} +{{- with .Values.controller.affinity }} + affinity: +{{ toYaml . | indent 8 }} +{{- end }} + {{- if .Values.imagePullSecrets }} + imagePullSecrets: +{{ toYaml .Values.imagePullSecrets | indent 8 }} + {{- end }} + containers: + - name: {{ .Values.snapshot.snapshotController.name}} +{{- if hasPrefix "/" .Values.snapshot.image.csiSnapshotController.repository }} + image: "{{ .Values.image.baseRepo }}{{ .Values.snapshot.image.csiSnapshotController.repository }}:{{ .Values.snapshot.image.csiSnapshotController.tag }}" +{{- else }} + image: "{{ .Values.snapshot.image.csiSnapshotController.repository }}:{{ .Values.snapshot.image.csiSnapshotController.tag }}" +{{- end }} + args: + - "--v=2" + - "--leader-election=true" + - "--leader-election-namespace={{ .Release.Namespace }}" + resources: {{- toYaml .Values.snapshot.snapshotController.resources | nindent 12 }} + imagePullPolicy: {{ .Values.snapshot.image.csiSnapshotController.pullPolicy }} + securityContext: + capabilities: + drop: + - ALL +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-controller.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-controller.yaml new file mode 100644 index 0000000000..09923c06a5 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-controller.yaml @@ -0,0 +1,207 @@ +{{- if .Values.rbac.create -}} +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-external-provisioner-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch", "create", "delete"] + - apiGroups: [""] + resources: ["persistentvolumeclaims"] + verbs: ["get", "list", "watch", "update"] + - apiGroups: ["storage.k8s.io"] + resources: ["storageclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["events"] + verbs: ["get", "list", "watch", "create", "update", "patch"] + - apiGroups: ["storage.k8s.io"] + resources: ["csinodes"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["nodes"] + verbs: ["get", "list", "watch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshots"] + verbs: ["get", "list"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents"] + verbs: ["get", "list"] + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] +--- + +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-csi-provisioner-binding + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.controller }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: {{ .Values.rbac.name }}-external-provisioner-role + apiGroup: rbac.authorization.k8s.io + +--- + +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-external-attacher-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch", "update"] + - apiGroups: [""] + resources: ["nodes"] + verbs: ["get", "list", "watch"] + - apiGroups: ["csi.storage.k8s.io"] + resources: ["csinodeinfos"] + verbs: ["get", "list", "watch"] + - apiGroups: ["storage.k8s.io"] + resources: ["volumeattachments"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: ["storage.k8s.io"] + resources: ["volumeattachments/status"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] +--- + +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-csi-attacher-binding + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.controller }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: {{ .Values.rbac.name }}-external-attacher-role + apiGroup: rbac.authorization.k8s.io + +--- + +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-external-snapshotter-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: [""] + resources: ["events"] + verbs: ["list", "watch", "create", "update", "patch"] + - apiGroups: [""] + resources: ["secrets"] + verbs: ["get"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents"] + verbs: ["create", "get", "list", "watch", "update", "delete", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents/status"] + verbs: ["update", "patch"] + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] +--- + +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-csi-snapshotter-binding + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.controller }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: {{ .Values.rbac.name }}-external-snapshotter-role + apiGroup: rbac.authorization.k8s.io + +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-external-resizer-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: [""] + resources: ["persistentvolumeclaims"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["persistentvolumeclaims/status"] + verbs: ["update", "patch"] + - apiGroups: [""] + resources: ["events"] + verbs: ["list", "watch", "create", "update", "patch"] + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: {{ .Values.rbac.name }}-csi-resizer-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.controller }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: {{ .Values.rbac.name }}-external-resizer-role + apiGroup: rbac.authorization.k8s.io + +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-{{ .Values.rbac.name }}-controller-secret-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: [""] + resources: ["secrets"] + verbs: ["get", "create"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-{{ .Values.rbac.name }}-controller-secret-binding + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.controller }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: csi-{{ .Values.rbac.name }}-controller-secret-role + apiGroup: rbac.authorization.k8s.io +{{ end }} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-node.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-node.yaml new file mode 100644 index 0000000000..4e1fbcde94 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-azurefile-node.yaml @@ -0,0 +1,29 @@ +{{- if .Values.rbac.create -}} +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-{{ .Values.rbac.name }}-node-secret-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: [""] + resources: ["secrets"] + verbs: ["get"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-{{ .Values.rbac.name }}-node-secret-binding + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.node }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: csi-{{ .Values.rbac.name }}-node-secret-role + apiGroup: rbac.authorization.k8s.io +{{ end }} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-snapshot-controller.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-snapshot-controller.yaml new file mode 100644 index 0000000000..0cff1ff01f --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/rbac-csi-snapshot-controller.yaml @@ -0,0 +1,80 @@ +{{- if and .Values.snapshot.enabled .Values.rbac.create -}} +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["persistentvolumeclaims"] + verbs: ["get", "list", "watch", "update"] + - apiGroups: ["storage.k8s.io"] + resources: ["storageclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["events"] + verbs: ["list", "watch", "create", "update", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents"] + verbs: ["create", "get", "list", "watch", "update", "delete", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents/status"] + verbs: ["patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshots"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshots/status"] + verbs: ["update", "patch"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-binding + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.snapshotController }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: csi-snapshot-controller-role + apiGroup: rbac.authorization.k8s.io + +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-leaderelection-role + labels: + {{- include "azurefile.labels" . | nindent 4 }} +rules: + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-leaderelection-binding + labels: + {{- include "azurefile.labels" . | nindent 4 }} +subjects: + - kind: ServiceAccount + name: {{ .Values.serviceAccount.snapshotController }} + namespace: {{ .Release.Namespace }} +roleRef: + kind: ClusterRole + name: csi-snapshot-controller-leaderelection-role + apiGroup: rbac.authorization.k8s.io +{{ end }} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-controller.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-controller.yaml new file mode 100644 index 0000000000..71442b70dc --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-controller.yaml @@ -0,0 +1,17 @@ +{{- if .Values.serviceAccount.create -}} +apiVersion: v1 +kind: ServiceAccount +metadata: + name: {{ .Values.serviceAccount.controller }} + namespace: {{ .Release.Namespace }} + labels: + {{- include "azurefile.labels" . | nindent 4 }} +{{- if .Values.workloadIdentity.clientID }} + azure.workload.identity/use: "true" + annotations: + azure.workload.identity/client-id: {{ .Values.workloadIdentity.clientID }} +{{- if .Values.workloadIdentity.tenantID }} + azure.workload.identity/tenant-id: {{ .Values.workloadIdentity.tenantID }} +{{- end }} +{{- end }} +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-node.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-node.yaml new file mode 100644 index 0000000000..ab2074429d --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-azurefile-node.yaml @@ -0,0 +1,17 @@ +{{- if .Values.serviceAccount.create -}} +apiVersion: v1 +kind: ServiceAccount +metadata: + name: {{ .Values.serviceAccount.node }} + namespace: {{ .Release.Namespace }} + labels: + {{- include "azurefile.labels" . | nindent 4 }} +{{- if .Values.workloadIdentity.clientID }} + azure.workload.identity/use: "true" + annotations: + azure.workload.identity/client-id: {{ .Values.workloadIdentity.clientID }} +{{- if .Values.workloadIdentity.tenantID }} + azure.workload.identity/tenant-id: {{ .Values.workloadIdentity.tenantID }} +{{- end }} +{{- end }} +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-snapshot-controller.yaml b/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-snapshot-controller.yaml new file mode 100644 index 0000000000..e77ef8f991 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/templates/serviceaccount-csi-snapshot-controller.yaml @@ -0,0 +1,9 @@ +{{- if and .Values.snapshot.enabled .Values.serviceAccount.create -}} +apiVersion: v1 +kind: ServiceAccount +metadata: + name: {{ .Values.serviceAccount.snapshotController }} + namespace: {{ .Release.Namespace }} + labels: + {{- include "azurefile.labels" . | nindent 4 }} +{{- end -}} diff --git a/charts/v1.29.6/azurefile-csi-driver/values.yaml b/charts/v1.29.6/azurefile-csi-driver/values.yaml new file mode 100644 index 0000000000..98d1cf90f1 --- /dev/null +++ b/charts/v1.29.6/azurefile-csi-driver/values.yaml @@ -0,0 +1,263 @@ +image: + baseRepo: mcr.microsoft.com + azurefile: + repository: /oss/kubernetes-csi/azurefile-csi + tag: v1.29.6 + pullPolicy: IfNotPresent + csiProvisioner: + repository: /oss/kubernetes-csi/csi-provisioner + tag: v3.5.0 + pullPolicy: IfNotPresent + csiResizer: + repository: /oss/kubernetes-csi/csi-resizer + tag: v1.8.0 + pullPolicy: IfNotPresent + livenessProbe: + repository: /oss/kubernetes-csi/livenessprobe + tag: v2.10.0 + pullPolicy: IfNotPresent + nodeDriverRegistrar: + repository: /oss/kubernetes-csi/csi-node-driver-registrar + tag: v2.8.0 + pullPolicy: IfNotPresent + +## Reference to one or more secrets to be used when pulling images +## ref: https://kubernetes.io/docs/tasks/configure-pod-container/pull-image-private-registry/ +imagePullSecrets: [] +# - name: myRegistryKeySecretName + +# -- Custom labels to add into metadata +customLabels: {} + # k8s-app: azurefile-csi-driver + +serviceAccount: + create: true # When true, service accounts will be created for you. Set to false if you want to use your own. + controller: csi-azurefile-controller-sa # Name of Service Account to be created or used + node: csi-azurefile-node-sa # Name of Service Account to be created or used + snapshotController: csi-snapshot-controller-sa # Name of Service Account to be created or used + +rbac: + create: true + name: azurefile + +controller: + name: csi-azurefile-controller + cloudConfigSecretName: azure-cloud-provider + cloudConfigSecretNamespace: kube-system + allowEmptyCloudConfig: true + replicas: 2 + hostNetwork: true # this setting could be disabled if controller does not depend on MSI setting + metricsPort: 29614 + livenessProbe: + healthPort: 29612 + runOnMaster: false + runOnControlPlane: false + attachRequired: false + logLevel: 5 + labels: {} + annotations: {} + podLabels: {} + podAnnotations: {} + resources: + csiProvisioner: + limits: + cpu: 1 + memory: 500Mi + requests: + cpu: 10m + memory: 20Mi + csiAttacher: + limits: + cpu: 1 + memory: 500Mi + requests: + cpu: 10m + memory: 20Mi + csiResizer: + limits: + cpu: 1 + memory: 500Mi + requests: + cpu: 10m + memory: 20Mi + csiSnapshotter: + limits: + cpu: 1 + memory: 200Mi + requests: + cpu: 10m + memory: 20Mi + livenessProbe: + limits: + cpu: 1 + memory: 100Mi + requests: + cpu: 10m + memory: 20Mi + azurefile: + limits: + cpu: 1 + memory: 200Mi + requests: + cpu: 10m + memory: 20Mi + kubeconfig: "" + affinity: {} + nodeSelector: {} + tolerations: + - key: "node-role.kubernetes.io/master" + operator: "Exists" + effect: "NoSchedule" + - key: "node-role.kubernetes.io/controlplane" + operator: "Exists" + effect: "NoSchedule" + - key: "node-role.kubernetes.io/control-plane" + operator: "Exists" + effect: "NoSchedule" + +node: + cloudConfigSecretName: azure-cloud-provider + cloudConfigSecretNamespace: kube-system + allowEmptyCloudConfig: true + allowInlineVolumeKeyAccessWithIdentity: false + metricsPort: 29615 + livenessProbe: + healthPort: 29613 + logLevel: 5 + +snapshot: + enabled: false + image: + csiSnapshotter: + repository: /oss/kubernetes-csi/csi-snapshotter + tag: v6.3.1 + pullPolicy: IfNotPresent + csiSnapshotController: + repository: /oss/kubernetes-csi/snapshot-controller + tag: v6.3.1 + pullPolicy: IfNotPresent + snapshotController: + name: csi-snapshot-controller + replicas: 2 + labels: {} + annotations: {} + podLabels: {} + podAnnotations: {} + resources: + limits: + cpu: 1 + memory: 300Mi + requests: + cpu: 10m + memory: 20Mi + +feature: + enableGetVolumeStats: true + enableVolumeMountGroup: true + fsGroupPolicy: ReadWriteOnceWithFSType + +driver: + name: file.csi.azure.com + customUserAgent: "" + userAgentSuffix: "OSS-helm" + azureGoSDKLogLevel: "" # available values: ""(no logs), DEBUG, INFO, WARNING, ERROR + httpsProxy: "" + httpProxy: "" + +linux: + enabled: true + dsName: csi-azurefile-node # daemonset name + dnsPolicy: Default # available values: Default, ClusterFirst, ClusterFirstWithHostNet, None + kubelet: /var/lib/kubelet + kubeconfig: "" + distro: debian # available values: debian, fedora + mountPermissions: 0777 + enableRegistrationProbe: true + labels: {} + annotations: {} + podLabels: {} + podAnnotations: {} + resources: + livenessProbe: + limits: + memory: 100Mi + requests: + cpu: 10m + memory: 20Mi + nodeDriverRegistrar: + limits: + memory: 100Mi + requests: + cpu: 10m + memory: 20Mi + azurefile: + limits: + memory: 400Mi + requests: + cpu: 10m + memory: 20Mi + tolerations: + - operator: "Exists" + nodeSelector: {} + affinity: {} + nodeAffinity: + requiredDuringSchedulingIgnoredDuringExecution: + nodeSelectorTerms: + - matchExpressions: + - key: type + operator: NotIn + values: + - virtual-kubelet + +windows: + enabled: true + useHostProcessContainers: false + dsName: csi-azurefile-node-win # daemonset name + kubelet: 'C:\var\lib\kubelet' + kubeconfig: "" + enableRegistrationProbe: true + labels: {} + annotations: {} + podLabels: {} + podAnnotations: {} + resources: + livenessProbe: + limits: + memory: 150Mi + requests: + cpu: 10m + memory: 40Mi + nodeDriverRegistrar: + limits: + memory: 150Mi + requests: + cpu: 30m + memory: 40Mi + azurefile: + limits: + memory: 200Mi + requests: + cpu: 10m + memory: 40Mi + tolerations: + - key: "node.kubernetes.io/os" + operator: "Exists" + effect: "NoSchedule" + nodeSelector: {} + affinity: {} + nodeAffinity: + requiredDuringSchedulingIgnoredDuringExecution: + nodeSelectorTerms: + - matchExpressions: + - key: type + operator: NotIn + values: + - virtual-kubelet + +workloadIdentity: + clientID: "" + # [optional] If the AAD application or user-assigned managed identity is not in the same tenant as the cluster + # then set tenantID with the application or user-assigned managed identity tenant ID + tenantID: "" + +azureCredentialFileConfigMap: azure-cred-file diff --git a/deploy/csi-azurefile-controller.yaml b/deploy/csi-azurefile-controller.yaml index 0ec35504b3..219d422444 100644 --- a/deploy/csi-azurefile-controller.yaml +++ b/deploy/csi-azurefile-controller.yaml @@ -128,7 +128,7 @@ spec: drop: - ALL - name: azurefile - image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.5 + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6 imagePullPolicy: IfNotPresent args: - "--v=5" diff --git a/deploy/csi-azurefile-node-windows-hostprocess.yaml b/deploy/csi-azurefile-node-windows-hostprocess.yaml index 9716e4b625..ac462ba8dc 100644 --- a/deploy/csi-azurefile-node-windows-hostprocess.yaml +++ b/deploy/csi-azurefile-node-windows-hostprocess.yaml @@ -43,7 +43,7 @@ spec: hostNetwork: true initContainers: - name: init - image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.5-windows-hp + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6-windows-hp imagePullPolicy: IfNotPresent command: - "powershell.exe" @@ -86,7 +86,7 @@ spec: drop: - ALL - name: azurefile - image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.5-windows-hp + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6-windows-hp imagePullPolicy: IfNotPresent command: - "azurefileplugin.exe" diff --git a/deploy/csi-azurefile-node-windows.yaml b/deploy/csi-azurefile-node-windows.yaml index ead981e7a1..fab339ae0b 100644 --- a/deploy/csi-azurefile-node-windows.yaml +++ b/deploy/csi-azurefile-node-windows.yaml @@ -102,7 +102,7 @@ spec: drop: - ALL - name: azurefile - image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.5 + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6 imagePullPolicy: IfNotPresent args: - --v=5 diff --git a/deploy/csi-azurefile-node.yaml b/deploy/csi-azurefile-node.yaml index 1e58c8d7e6..8d25b32f1f 100644 --- a/deploy/csi-azurefile-node.yaml +++ b/deploy/csi-azurefile-node.yaml @@ -93,7 +93,7 @@ spec: drop: - ALL - name: azurefile - image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.5 + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6 imagePullPolicy: IfNotPresent args: - "--v=5" diff --git a/deploy/v1.29.6/crd-csi-snapshot.yaml b/deploy/v1.29.6/crd-csi-snapshot.yaml new file mode 100644 index 0000000000..d4b90b266d --- /dev/null +++ b/deploy/v1.29.6/crd-csi-snapshot.yaml @@ -0,0 +1,838 @@ +--- +apiVersion: apiextensions.k8s.io/v1 +kind: CustomResourceDefinition +metadata: + annotations: + controller-gen.kubebuilder.io/version: v0.8.0 + api-approved.kubernetes.io: "https://github.com/kubernetes-csi/external-snapshotter/pull/665" + creationTimestamp: null + name: volumesnapshots.snapshot.storage.k8s.io +spec: + group: snapshot.storage.k8s.io + names: + kind: VolumeSnapshot + listKind: VolumeSnapshotList + plural: volumesnapshots + shortNames: + - vs + singular: volumesnapshot + scope: Namespaced + versions: + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: If a new snapshot needs to be created, this contains the name of + the source PVC from which this snapshot was (or will be) created. + jsonPath: .spec.source.persistentVolumeClaimName + name: SourcePVC + type: string + - description: If a snapshot already exists, this contains the name of the existing + VolumeSnapshotContent object representing the existing snapshot. + jsonPath: .spec.source.volumeSnapshotContentName + name: SourceSnapshotContent + type: string + - description: Represents the minimum size of volume required to rehydrate from + this snapshot. + jsonPath: .status.restoreSize + name: RestoreSize + type: string + - description: The name of the VolumeSnapshotClass requested by the VolumeSnapshot. + jsonPath: .spec.volumeSnapshotClassName + name: SnapshotClass + type: string + - description: Name of the VolumeSnapshotContent object to which the VolumeSnapshot + object intends to bind to. Please note that verification of binding actually + requires checking both VolumeSnapshot and VolumeSnapshotContent to ensure + both are pointing at each other. Binding MUST be verified prior to usage of + this object. + jsonPath: .status.boundVolumeSnapshotContentName + name: SnapshotContent + type: string + - description: Timestamp when the point-in-time snapshot was taken by the underlying + storage system. + jsonPath: .status.creationTime + name: CreationTime + type: date + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1 + schema: + openAPIV3Schema: + description: VolumeSnapshot is a user's request for either creating a point-in-time + snapshot of a persistent volume, or binding to a pre-existing snapshot. + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation + of an object. Servers should convert recognized schemas to the latest + internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this + object represents. Servers may infer this from the endpoint the client + submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: 'spec defines the desired characteristics of a snapshot requested + by a user. More info: https://kubernetes.io/docs/concepts/storage/volume-snapshots#volumesnapshots + Required.' + properties: + source: + description: source specifies where a snapshot will be created from. + This field is immutable after creation. Required. + properties: + persistentVolumeClaimName: + description: persistentVolumeClaimName specifies the name of the + PersistentVolumeClaim object representing the volume from which + a snapshot should be created. This PVC is assumed to be in the + same namespace as the VolumeSnapshot object. This field should + be set if the snapshot does not exists, and needs to be created. + This field is immutable. + type: string + volumeSnapshotContentName: + description: volumeSnapshotContentName specifies the name of a + pre-existing VolumeSnapshotContent object representing an existing + volume snapshot. This field should be set if the snapshot already + exists and only needs a representation in Kubernetes. This field + is immutable. + type: string + type: object + oneOf: + - required: ["persistentVolumeClaimName"] + - required: ["volumeSnapshotContentName"] + volumeSnapshotClassName: + description: 'VolumeSnapshotClassName is the name of the VolumeSnapshotClass + requested by the VolumeSnapshot. VolumeSnapshotClassName may be + left nil to indicate that the default SnapshotClass should be used. + A given cluster may have multiple default Volume SnapshotClasses: + one default per CSI Driver. If a VolumeSnapshot does not specify + a SnapshotClass, VolumeSnapshotSource will be checked to figure + out what the associated CSI Driver is, and the default VolumeSnapshotClass + associated with that CSI Driver will be used. If more than one VolumeSnapshotClass + exist for a given CSI Driver and more than one have been marked + as default, CreateSnapshot will fail and generate an event. Empty + string is not allowed for this field.' + type: string + required: + - source + type: object + status: + description: status represents the current information of a snapshot. + Consumers must verify binding between VolumeSnapshot and VolumeSnapshotContent + objects is successful (by validating that both VolumeSnapshot and VolumeSnapshotContent + point at each other) before using this object. + properties: + boundVolumeSnapshotContentName: + description: 'boundVolumeSnapshotContentName is the name of the VolumeSnapshotContent + object to which this VolumeSnapshot object intends to bind to. If + not specified, it indicates that the VolumeSnapshot object has not + been successfully bound to a VolumeSnapshotContent object yet. NOTE: + To avoid possible security issues, consumers must verify binding + between VolumeSnapshot and VolumeSnapshotContent objects is successful + (by validating that both VolumeSnapshot and VolumeSnapshotContent + point at each other) before using this object.' + type: string + creationTime: + description: creationTime is the timestamp when the point-in-time + snapshot is taken by the underlying storage system. In dynamic snapshot + creation case, this field will be filled in by the snapshot controller + with the "creation_time" value returned from CSI "CreateSnapshot" + gRPC call. For a pre-existing snapshot, this field will be filled + with the "creation_time" value returned from the CSI "ListSnapshots" + gRPC call if the driver supports it. If not specified, it may indicate + that the creation time of the snapshot is unknown. + format: date-time + type: string + error: + description: error is the last observed error during snapshot creation, + if any. This field could be helpful to upper level controllers(i.e., + application controller) to decide whether they should continue on + waiting for the snapshot to be created based on the type of error + reported. The snapshot controller will keep retrying when an error + occurs during the snapshot creation. Upon success, this error field + will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error + during snapshot creation if specified. NOTE: message may be + logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if the snapshot is ready to be used + to restore a volume. In dynamic snapshot creation case, this field + will be filled in by the snapshot controller with the "ready_to_use" + value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing + snapshot, this field will be filled with the "ready_to_use" value + returned from the CSI "ListSnapshots" gRPC call if the driver supports + it, otherwise, this field will be set to "True". If not specified, + it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + type: string + description: restoreSize represents the minimum size of volume required + to create a volume from this snapshot. In dynamic snapshot creation + case, this field will be filled in by the snapshot controller with + the "size_bytes" value returned from CSI "CreateSnapshot" gRPC call. + For a pre-existing snapshot, this field will be filled with the + "size_bytes" value returned from the CSI "ListSnapshots" gRPC call + if the driver supports it. When restoring a volume from this snapshot, + the size of the volume MUST NOT be smaller than the restoreSize + if it is specified, otherwise the restoration will fail. If not + specified, it indicates that the size is unknown. + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + type: object + required: + - spec + type: object + served: true + storage: true + subresources: + status: {} + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: If a new snapshot needs to be created, this contains the name of the source PVC from which this snapshot was (or will be) created. + jsonPath: .spec.source.persistentVolumeClaimName + name: SourcePVC + type: string + - description: If a snapshot already exists, this contains the name of the existing VolumeSnapshotContent object representing the existing snapshot. + jsonPath: .spec.source.volumeSnapshotContentName + name: SourceSnapshotContent + type: string + - description: Represents the minimum size of volume required to rehydrate from this snapshot. + jsonPath: .status.restoreSize + name: RestoreSize + type: string + - description: The name of the VolumeSnapshotClass requested by the VolumeSnapshot. + jsonPath: .spec.volumeSnapshotClassName + name: SnapshotClass + type: string + - description: Name of the VolumeSnapshotContent object to which the VolumeSnapshot object intends to bind to. Please note that verification of binding actually requires checking both VolumeSnapshot and VolumeSnapshotContent to ensure both are pointing at each other. Binding MUST be verified prior to usage of this object. + jsonPath: .status.boundVolumeSnapshotContentName + name: SnapshotContent + type: string + - description: Timestamp when the point-in-time snapshot was taken by the underlying storage system. + jsonPath: .status.creationTime + name: CreationTime + type: date + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1beta1 + # This indicates the v1beta1 version of the custom resource is deprecated. + # API requests to this version receive a warning in the server response. + deprecated: true + # This overrides the default warning returned to clients making v1beta1 API requests. + deprecationWarning: "snapshot.storage.k8s.io/v1beta1 VolumeSnapshot is deprecated; use snapshot.storage.k8s.io/v1 VolumeSnapshot" + schema: + openAPIV3Schema: + description: VolumeSnapshot is a user's request for either creating a point-in-time snapshot of a persistent volume, or binding to a pre-existing snapshot. + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: 'spec defines the desired characteristics of a snapshot requested by a user. More info: https://kubernetes.io/docs/concepts/storage/volume-snapshots#volumesnapshots Required.' + properties: + source: + description: source specifies where a snapshot will be created from. This field is immutable after creation. Required. + properties: + persistentVolumeClaimName: + description: persistentVolumeClaimName specifies the name of the PersistentVolumeClaim object representing the volume from which a snapshot should be created. This PVC is assumed to be in the same namespace as the VolumeSnapshot object. This field should be set if the snapshot does not exists, and needs to be created. This field is immutable. + type: string + volumeSnapshotContentName: + description: volumeSnapshotContentName specifies the name of a pre-existing VolumeSnapshotContent object representing an existing volume snapshot. This field should be set if the snapshot already exists and only needs a representation in Kubernetes. This field is immutable. + type: string + type: object + volumeSnapshotClassName: + description: 'VolumeSnapshotClassName is the name of the VolumeSnapshotClass requested by the VolumeSnapshot. VolumeSnapshotClassName may be left nil to indicate that the default SnapshotClass should be used. A given cluster may have multiple default Volume SnapshotClasses: one default per CSI Driver. If a VolumeSnapshot does not specify a SnapshotClass, VolumeSnapshotSource will be checked to figure out what the associated CSI Driver is, and the default VolumeSnapshotClass associated with that CSI Driver will be used. If more than one VolumeSnapshotClass exist for a given CSI Driver and more than one have been marked as default, CreateSnapshot will fail and generate an event. Empty string is not allowed for this field.' + type: string + required: + - source + type: object + status: + description: status represents the current information of a snapshot. Consumers must verify binding between VolumeSnapshot and VolumeSnapshotContent objects is successful (by validating that both VolumeSnapshot and VolumeSnapshotContent point at each other) before using this object. + properties: + boundVolumeSnapshotContentName: + description: 'boundVolumeSnapshotContentName is the name of the VolumeSnapshotContent object to which this VolumeSnapshot object intends to bind to. If not specified, it indicates that the VolumeSnapshot object has not been successfully bound to a VolumeSnapshotContent object yet. NOTE: To avoid possible security issues, consumers must verify binding between VolumeSnapshot and VolumeSnapshotContent objects is successful (by validating that both VolumeSnapshot and VolumeSnapshotContent point at each other) before using this object.' + type: string + creationTime: + description: creationTime is the timestamp when the point-in-time snapshot is taken by the underlying storage system. In dynamic snapshot creation case, this field will be filled in by the snapshot controller with the "creation_time" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "creation_time" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. If not specified, it may indicate that the creation time of the snapshot is unknown. + format: date-time + type: string + error: + description: error is the last observed error during snapshot creation, if any. This field could be helpful to upper level controllers(i.e., application controller) to decide whether they should continue on waiting for the snapshot to be created based on the type of error reported. The snapshot controller will keep retrying when an error occurs during the snapshot creation. Upon success, this error field will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error during snapshot creation if specified. NOTE: message may be logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if the snapshot is ready to be used to restore a volume. In dynamic snapshot creation case, this field will be filled in by the snapshot controller with the "ready_to_use" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "ready_to_use" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it, otherwise, this field will be set to "True". If not specified, it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + type: string + description: restoreSize represents the minimum size of volume required to create a volume from this snapshot. In dynamic snapshot creation case, this field will be filled in by the snapshot controller with the "size_bytes" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "size_bytes" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. When restoring a volume from this snapshot, the size of the volume MUST NOT be smaller than the restoreSize if it is specified, otherwise the restoration will fail. If not specified, it indicates that the size is unknown. + pattern: ^(\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))(([KMGTPE]i)|[numkMGTPE]|([eE](\+|-)?(([0-9]+(\.[0-9]*)?)|(\.[0-9]+))))?$ + x-kubernetes-int-or-string: true + type: object + required: + - spec + type: object + served: false + storage: false + subresources: + status: {} +status: + acceptedNames: + kind: "" + plural: "" + conditions: [] + storedVersions: [] +--- +apiVersion: apiextensions.k8s.io/v1 +kind: CustomResourceDefinition +metadata: + annotations: + controller-gen.kubebuilder.io/version: v0.8.0 + api-approved.kubernetes.io: "https://github.com/kubernetes-csi/external-snapshotter/pull/665" + creationTimestamp: null + name: volumesnapshotclasses.snapshot.storage.k8s.io +spec: + group: snapshot.storage.k8s.io + names: + kind: VolumeSnapshotClass + listKind: VolumeSnapshotClassList + plural: volumesnapshotclasses + shortNames: + - vsclass + - vsclasses + singular: volumesnapshotclass + scope: Cluster + versions: + - additionalPrinterColumns: + - jsonPath: .driver + name: Driver + type: string + - description: Determines whether a VolumeSnapshotContent created through the + VolumeSnapshotClass should be deleted when its bound VolumeSnapshot is deleted. + jsonPath: .deletionPolicy + name: DeletionPolicy + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1 + schema: + openAPIV3Schema: + description: VolumeSnapshotClass specifies parameters that a underlying storage + system uses when creating a volume snapshot. A specific VolumeSnapshotClass + is used by specifying its name in a VolumeSnapshot object. VolumeSnapshotClasses + are non-namespaced + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation + of an object. Servers should convert recognized schemas to the latest + internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + deletionPolicy: + description: deletionPolicy determines whether a VolumeSnapshotContent + created through the VolumeSnapshotClass should be deleted when its bound + VolumeSnapshot is deleted. Supported values are "Retain" and "Delete". + "Retain" means that the VolumeSnapshotContent and its physical snapshot + on underlying storage system are kept. "Delete" means that the VolumeSnapshotContent + and its physical snapshot on underlying storage system are deleted. + Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the storage driver that handles this + VolumeSnapshotClass. Required. + type: string + kind: + description: 'Kind is a string value representing the REST resource this + object represents. Servers may infer this from the endpoint the client + submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + parameters: + additionalProperties: + type: string + description: parameters is a key-value map with storage driver specific + parameters for creating snapshots. These values are opaque to Kubernetes. + type: object + required: + - deletionPolicy + - driver + type: object + served: true + storage: true + subresources: {} + - additionalPrinterColumns: + - jsonPath: .driver + name: Driver + type: string + - description: Determines whether a VolumeSnapshotContent created through the VolumeSnapshotClass should be deleted when its bound VolumeSnapshot is deleted. + jsonPath: .deletionPolicy + name: DeletionPolicy + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1beta1 + # This indicates the v1beta1 version of the custom resource is deprecated. + # API requests to this version receive a warning in the server response. + deprecated: true + # This overrides the default warning returned to clients making v1beta1 API requests. + deprecationWarning: "snapshot.storage.k8s.io/v1beta1 VolumeSnapshotClass is deprecated; use snapshot.storage.k8s.io/v1 VolumeSnapshotClass" + schema: + openAPIV3Schema: + description: VolumeSnapshotClass specifies parameters that a underlying storage system uses when creating a volume snapshot. A specific VolumeSnapshotClass is used by specifying its name in a VolumeSnapshot object. VolumeSnapshotClasses are non-namespaced + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + deletionPolicy: + description: deletionPolicy determines whether a VolumeSnapshotContent created through the VolumeSnapshotClass should be deleted when its bound VolumeSnapshot is deleted. Supported values are "Retain" and "Delete". "Retain" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are kept. "Delete" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are deleted. Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the storage driver that handles this VolumeSnapshotClass. Required. + type: string + kind: + description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + parameters: + additionalProperties: + type: string + description: parameters is a key-value map with storage driver specific parameters for creating snapshots. These values are opaque to Kubernetes. + type: object + required: + - deletionPolicy + - driver + type: object + served: false + storage: false + subresources: {} +status: + acceptedNames: + kind: "" + plural: "" + conditions: [] + storedVersions: [] +--- +apiVersion: apiextensions.k8s.io/v1 +kind: CustomResourceDefinition +metadata: + annotations: + controller-gen.kubebuilder.io/version: v0.8.0 + api-approved.kubernetes.io: "https://github.com/kubernetes-csi/external-snapshotter/pull/665" + creationTimestamp: null + name: volumesnapshotcontents.snapshot.storage.k8s.io +spec: + group: snapshot.storage.k8s.io + names: + kind: VolumeSnapshotContent + listKind: VolumeSnapshotContentList + plural: volumesnapshotcontents + shortNames: + - vsc + - vscs + singular: volumesnapshotcontent + scope: Cluster + versions: + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: Represents the complete size of the snapshot in bytes + jsonPath: .status.restoreSize + name: RestoreSize + type: integer + - description: Determines whether this VolumeSnapshotContent and its physical + snapshot on the underlying storage system should be deleted when its bound + VolumeSnapshot is deleted. + jsonPath: .spec.deletionPolicy + name: DeletionPolicy + type: string + - description: Name of the CSI driver used to create the physical snapshot on + the underlying storage system. + jsonPath: .spec.driver + name: Driver + type: string + - description: Name of the VolumeSnapshotClass to which this snapshot belongs. + jsonPath: .spec.volumeSnapshotClassName + name: VolumeSnapshotClass + type: string + - description: Name of the VolumeSnapshot object to which this VolumeSnapshotContent + object is bound. + jsonPath: .spec.volumeSnapshotRef.name + name: VolumeSnapshot + type: string + - description: Namespace of the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. + jsonPath: .spec.volumeSnapshotRef.namespace + name: VolumeSnapshotNamespace + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1 + schema: + openAPIV3Schema: + description: VolumeSnapshotContent represents the actual "on-disk" snapshot + object in the underlying storage system + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation + of an object. Servers should convert recognized schemas to the latest + internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this + object represents. Servers may infer this from the endpoint the client + submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: spec defines properties of a VolumeSnapshotContent created + by the underlying storage system. Required. + properties: + deletionPolicy: + description: deletionPolicy determines whether this VolumeSnapshotContent + and its physical snapshot on the underlying storage system should + be deleted when its bound VolumeSnapshot is deleted. Supported values + are "Retain" and "Delete". "Retain" means that the VolumeSnapshotContent + and its physical snapshot on underlying storage system are kept. + "Delete" means that the VolumeSnapshotContent and its physical snapshot + on underlying storage system are deleted. For dynamically provisioned + snapshots, this field will automatically be filled in by the CSI + snapshotter sidecar with the "DeletionPolicy" field defined in the + corresponding VolumeSnapshotClass. For pre-existing snapshots, users + MUST specify this field when creating the VolumeSnapshotContent + object. Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the CSI driver used to create the + physical snapshot on the underlying storage system. This MUST be + the same as the name returned by the CSI GetPluginName() call for + that driver. Required. + type: string + source: + description: source specifies whether the snapshot is (or should be) + dynamically provisioned or already exists, and just requires a Kubernetes + object representation. This field is immutable after creation. Required. + properties: + snapshotHandle: + description: snapshotHandle specifies the CSI "snapshot_id" of + a pre-existing snapshot on the underlying storage system for + which a Kubernetes object representation was (or should be) + created. This field is immutable. + type: string + volumeHandle: + description: volumeHandle specifies the CSI "volume_id" of the + volume from which a snapshot should be dynamically taken from. + This field is immutable. + type: string + type: object + oneOf: + - required: ["snapshotHandle"] + - required: ["volumeHandle"] + sourceVolumeMode: + description: SourceVolumeMode is the mode of the volume whose snapshot + is taken. Can be either “Filesystem” or “Block”. If not specified, + it indicates the source volume's mode is unknown. This field is + immutable. This field is an alpha field. + type: string + volumeSnapshotClassName: + description: name of the VolumeSnapshotClass from which this snapshot + was (or will be) created. Note that after provisioning, the VolumeSnapshotClass + may be deleted or recreated with different set of values, and as + such, should not be referenced post-snapshot creation. + type: string + volumeSnapshotRef: + description: volumeSnapshotRef specifies the VolumeSnapshot object + to which this VolumeSnapshotContent object is bound. VolumeSnapshot.Spec.VolumeSnapshotContentName + field must reference to this VolumeSnapshotContent's name for the + bidirectional binding to be valid. For a pre-existing VolumeSnapshotContent + object, name and namespace of the VolumeSnapshot object MUST be + provided for binding to happen. This field is immutable after creation. + Required. + properties: + apiVersion: + description: API version of the referent. + type: string + fieldPath: + description: 'If referring to a piece of an object instead of + an entire object, this string should contain a valid JSON/Go + field access statement, such as desiredState.manifest.containers[2]. + For example, if the object reference is to a container within + a pod, this would take on a value like: "spec.containers{name}" + (where "name" refers to the name of the container that triggered + the event) or if no container name is specified "spec.containers[2]" + (container with index 2 in this pod). This syntax is chosen + only to have some well-defined way of referencing a part of + an object. TODO: this design is not final and this field is + subject to change in the future.' + type: string + kind: + description: 'Kind of the referent. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + name: + description: 'Name of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#names' + type: string + namespace: + description: 'Namespace of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/namespaces/' + type: string + resourceVersion: + description: 'Specific resourceVersion to which this reference + is made, if any. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#concurrency-control-and-consistency' + type: string + uid: + description: 'UID of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#uids' + type: string + type: object + required: + - deletionPolicy + - driver + - source + - volumeSnapshotRef + type: object + status: + description: status represents the current information of a snapshot. + properties: + creationTime: + description: creationTime is the timestamp when the point-in-time + snapshot is taken by the underlying storage system. In dynamic snapshot + creation case, this field will be filled in by the CSI snapshotter + sidecar with the "creation_time" value returned from CSI "CreateSnapshot" + gRPC call. For a pre-existing snapshot, this field will be filled + with the "creation_time" value returned from the CSI "ListSnapshots" + gRPC call if the driver supports it. If not specified, it indicates + the creation time is unknown. The format of this field is a Unix + nanoseconds time encoded as an int64. On Unix, the command `date + +%s%N` returns the current time in nanoseconds since 1970-01-01 + 00:00:00 UTC. + format: int64 + type: integer + error: + description: error is the last observed error during snapshot creation, + if any. Upon success after retry, this error field will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error + during snapshot creation if specified. NOTE: message may be + logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if a snapshot is ready to be used + to restore a volume. In dynamic snapshot creation case, this field + will be filled in by the CSI snapshotter sidecar with the "ready_to_use" + value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing + snapshot, this field will be filled with the "ready_to_use" value + returned from the CSI "ListSnapshots" gRPC call if the driver supports + it, otherwise, this field will be set to "True". If not specified, + it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + description: restoreSize represents the complete size of the snapshot + in bytes. In dynamic snapshot creation case, this field will be + filled in by the CSI snapshotter sidecar with the "size_bytes" value + returned from CSI "CreateSnapshot" gRPC call. For a pre-existing + snapshot, this field will be filled with the "size_bytes" value + returned from the CSI "ListSnapshots" gRPC call if the driver supports + it. When restoring a volume from this snapshot, the size of the + volume MUST NOT be smaller than the restoreSize if it is specified, + otherwise the restoration will fail. If not specified, it indicates + that the size is unknown. + format: int64 + minimum: 0 + type: integer + snapshotHandle: + description: snapshotHandle is the CSI "snapshot_id" of a snapshot + on the underlying storage system. If not specified, it indicates + that dynamic snapshot creation has either failed or it is still + in progress. + type: string + type: object + required: + - spec + type: object + served: true + storage: true + subresources: + status: {} + - additionalPrinterColumns: + - description: Indicates if the snapshot is ready to be used to restore a volume. + jsonPath: .status.readyToUse + name: ReadyToUse + type: boolean + - description: Represents the complete size of the snapshot in bytes + jsonPath: .status.restoreSize + name: RestoreSize + type: integer + - description: Determines whether this VolumeSnapshotContent and its physical snapshot on the underlying storage system should be deleted when its bound VolumeSnapshot is deleted. + jsonPath: .spec.deletionPolicy + name: DeletionPolicy + type: string + - description: Name of the CSI driver used to create the physical snapshot on the underlying storage system. + jsonPath: .spec.driver + name: Driver + type: string + - description: Name of the VolumeSnapshotClass to which this snapshot belongs. + jsonPath: .spec.volumeSnapshotClassName + name: VolumeSnapshotClass + type: string + - description: Name of the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. + jsonPath: .spec.volumeSnapshotRef.name + name: VolumeSnapshot + type: string + - description: Namespace of the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. + jsonPath: .spec.volumeSnapshotRef.namespace + name: VolumeSnapshotNamespace + type: string + - jsonPath: .metadata.creationTimestamp + name: Age + type: date + name: v1beta1 + # This indicates the v1beta1 version of the custom resource is deprecated. + # API requests to this version receive a warning in the server response. + deprecated: true + # This overrides the default warning returned to clients making v1beta1 API requests. + deprecationWarning: "snapshot.storage.k8s.io/v1beta1 VolumeSnapshotContent is deprecated; use snapshot.storage.k8s.io/v1 VolumeSnapshotContent" + schema: + openAPIV3Schema: + description: VolumeSnapshotContent represents the actual "on-disk" snapshot object in the underlying storage system + properties: + apiVersion: + description: 'APIVersion defines the versioned schema of this representation of an object. Servers should convert recognized schemas to the latest internal value, and may reject unrecognized values. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources' + type: string + kind: + description: 'Kind is a string value representing the REST resource this object represents. Servers may infer this from the endpoint the client submits requests to. Cannot be updated. In CamelCase. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + spec: + description: spec defines properties of a VolumeSnapshotContent created by the underlying storage system. Required. + properties: + deletionPolicy: + description: deletionPolicy determines whether this VolumeSnapshotContent and its physical snapshot on the underlying storage system should be deleted when its bound VolumeSnapshot is deleted. Supported values are "Retain" and "Delete". "Retain" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are kept. "Delete" means that the VolumeSnapshotContent and its physical snapshot on underlying storage system are deleted. For dynamically provisioned snapshots, this field will automatically be filled in by the CSI snapshotter sidecar with the "DeletionPolicy" field defined in the corresponding VolumeSnapshotClass. For pre-existing snapshots, users MUST specify this field when creating the VolumeSnapshotContent object. Required. + enum: + - Delete + - Retain + type: string + driver: + description: driver is the name of the CSI driver used to create the physical snapshot on the underlying storage system. This MUST be the same as the name returned by the CSI GetPluginName() call for that driver. Required. + type: string + source: + description: source specifies whether the snapshot is (or should be) dynamically provisioned or already exists, and just requires a Kubernetes object representation. This field is immutable after creation. Required. + properties: + snapshotHandle: + description: snapshotHandle specifies the CSI "snapshot_id" of a pre-existing snapshot on the underlying storage system for which a Kubernetes object representation was (or should be) created. This field is immutable. + type: string + volumeHandle: + description: volumeHandle specifies the CSI "volume_id" of the volume from which a snapshot should be dynamically taken from. This field is immutable. + type: string + type: object + volumeSnapshotClassName: + description: name of the VolumeSnapshotClass from which this snapshot was (or will be) created. Note that after provisioning, the VolumeSnapshotClass may be deleted or recreated with different set of values, and as such, should not be referenced post-snapshot creation. + type: string + volumeSnapshotRef: + description: volumeSnapshotRef specifies the VolumeSnapshot object to which this VolumeSnapshotContent object is bound. VolumeSnapshot.Spec.VolumeSnapshotContentName field must reference to this VolumeSnapshotContent's name for the bidirectional binding to be valid. For a pre-existing VolumeSnapshotContent object, name and namespace of the VolumeSnapshot object MUST be provided for binding to happen. This field is immutable after creation. Required. + properties: + apiVersion: + description: API version of the referent. + type: string + fieldPath: + description: 'If referring to a piece of an object instead of an entire object, this string should contain a valid JSON/Go field access statement, such as desiredState.manifest.containers[2]. For example, if the object reference is to a container within a pod, this would take on a value like: "spec.containers{name}" (where "name" refers to the name of the container that triggered the event) or if no container name is specified "spec.containers[2]" (container with index 2 in this pod). This syntax is chosen only to have some well-defined way of referencing a part of an object. TODO: this design is not final and this field is subject to change in the future.' + type: string + kind: + description: 'Kind of the referent. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds' + type: string + name: + description: 'Name of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#names' + type: string + namespace: + description: 'Namespace of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/namespaces/' + type: string + resourceVersion: + description: 'Specific resourceVersion to which this reference is made, if any. More info: https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#concurrency-control-and-consistency' + type: string + uid: + description: 'UID of the referent. More info: https://kubernetes.io/docs/concepts/overview/working-with-objects/names/#uids' + type: string + type: object + required: + - deletionPolicy + - driver + - source + - volumeSnapshotRef + type: object + status: + description: status represents the current information of a snapshot. + properties: + creationTime: + description: creationTime is the timestamp when the point-in-time snapshot is taken by the underlying storage system. In dynamic snapshot creation case, this field will be filled in by the CSI snapshotter sidecar with the "creation_time" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "creation_time" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. If not specified, it indicates the creation time is unknown. The format of this field is a Unix nanoseconds time encoded as an int64. On Unix, the command `date +%s%N` returns the current time in nanoseconds since 1970-01-01 00:00:00 UTC. + format: int64 + type: integer + error: + description: error is the last observed error during snapshot creation, if any. Upon success after retry, this error field will be cleared. + properties: + message: + description: 'message is a string detailing the encountered error during snapshot creation if specified. NOTE: message may be logged, and it should not contain sensitive information.' + type: string + time: + description: time is the timestamp when the error was encountered. + format: date-time + type: string + type: object + readyToUse: + description: readyToUse indicates if a snapshot is ready to be used to restore a volume. In dynamic snapshot creation case, this field will be filled in by the CSI snapshotter sidecar with the "ready_to_use" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "ready_to_use" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it, otherwise, this field will be set to "True". If not specified, it means the readiness of a snapshot is unknown. + type: boolean + restoreSize: + description: restoreSize represents the complete size of the snapshot in bytes. In dynamic snapshot creation case, this field will be filled in by the CSI snapshotter sidecar with the "size_bytes" value returned from CSI "CreateSnapshot" gRPC call. For a pre-existing snapshot, this field will be filled with the "size_bytes" value returned from the CSI "ListSnapshots" gRPC call if the driver supports it. When restoring a volume from this snapshot, the size of the volume MUST NOT be smaller than the restoreSize if it is specified, otherwise the restoration will fail. If not specified, it indicates that the size is unknown. + format: int64 + minimum: 0 + type: integer + snapshotHandle: + description: snapshotHandle is the CSI "snapshot_id" of a snapshot on the underlying storage system. If not specified, it indicates that dynamic snapshot creation has either failed or it is still in progress. + type: string + type: object + required: + - spec + type: object + served: false + storage: false + subresources: + status: {} +status: + acceptedNames: + kind: "" + plural: "" + conditions: [] + storedVersions: [] diff --git a/deploy/v1.29.6/csi-azurefile-controller.yaml b/deploy/v1.29.6/csi-azurefile-controller.yaml new file mode 100644 index 0000000000..219d422444 --- /dev/null +++ b/deploy/v1.29.6/csi-azurefile-controller.yaml @@ -0,0 +1,181 @@ +--- +kind: Deployment +apiVersion: apps/v1 +metadata: + name: csi-azurefile-controller + namespace: kube-system +spec: + replicas: 2 + selector: + matchLabels: + app: csi-azurefile-controller + template: + metadata: + labels: + app: csi-azurefile-controller + spec: + hostNetwork: true # only required for MSI enabled cluster + serviceAccountName: csi-azurefile-controller-sa + nodeSelector: + kubernetes.io/os: linux # add "kubernetes.io/role: master" to run controller on master node + priorityClassName: system-cluster-critical + tolerations: + - key: "node-role.kubernetes.io/master" + operator: "Exists" + effect: "NoSchedule" + - key: "node-role.kubernetes.io/controlplane" + operator: "Exists" + effect: "NoSchedule" + - key: "node-role.kubernetes.io/control-plane" + operator: "Exists" + effect: "NoSchedule" + containers: + - name: csi-provisioner + image: mcr.microsoft.com/oss/kubernetes-csi/csi-provisioner:v3.5.0 + args: + - "-v=2" + - "--csi-address=$(ADDRESS)" + - "--leader-election" + - "--leader-election-namespace=kube-system" + - "--timeout=1200s" + - "--extra-create-metadata=true" + - "--kube-api-qps=50" + - "--kube-api-burst=100" + - "--feature-gates=HonorPVReclaimPolicy=true" + env: + - name: ADDRESS + value: /csi/csi.sock + volumeMounts: + - mountPath: /csi + name: socket-dir + resources: + limits: + memory: 500Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL + - name: csi-snapshotter + image: mcr.microsoft.com/oss/kubernetes-csi/csi-snapshotter:v6.3.1 + args: + - "-v=2" + - "-csi-address=$(ADDRESS)" + - "--leader-election" + - "--leader-election-namespace=kube-system" + env: + - name: ADDRESS + value: /csi/csi.sock + volumeMounts: + - name: socket-dir + mountPath: /csi + resources: + limits: + memory: 200Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL + - name: csi-resizer + image: mcr.microsoft.com/oss/kubernetes-csi/csi-resizer:v1.8.0 + args: + - "-csi-address=$(ADDRESS)" + - "-v=2" + - "--leader-election" + - "--leader-election-namespace=kube-system" + - '-handle-volume-inuse-error=false' + - '-feature-gates=RecoverVolumeExpansionFailure=true' + - '-timeout=120s' + env: + - name: ADDRESS + value: /csi/csi.sock + volumeMounts: + - name: socket-dir + mountPath: /csi + resources: + limits: + memory: 500Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL + - name: liveness-probe + image: mcr.microsoft.com/oss/kubernetes-csi/livenessprobe:v2.10.0 + args: + - --csi-address=/csi/csi.sock + - --probe-timeout=3s + - --http-endpoint=localhost:29612 + - --v=2 + volumeMounts: + - name: socket-dir + mountPath: /csi + resources: + limits: + memory: 100Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL + - name: azurefile + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6 + imagePullPolicy: IfNotPresent + args: + - "--v=5" + - "--endpoint=$(CSI_ENDPOINT)" + - "--metrics-address=0.0.0.0:29614" + - "--user-agent-suffix=OSS-kubectl" + ports: + - containerPort: 29614 + name: metrics + protocol: TCP + livenessProbe: + failureThreshold: 5 + httpGet: + host: localhost + path: /healthz + port: 29612 + initialDelaySeconds: 30 + timeoutSeconds: 10 + periodSeconds: 30 + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: azure-cred-file + key: path + optional: true + - name: CSI_ENDPOINT + value: unix:///csi/csi.sock + volumeMounts: + - mountPath: /csi + name: socket-dir + - mountPath: /etc/kubernetes/ + name: azure-cred + resources: + limits: + memory: 200Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL + volumes: + - name: socket-dir + emptyDir: {} + - name: azure-cred + hostPath: + path: /etc/kubernetes/ + type: DirectoryOrCreate diff --git a/deploy/v1.29.6/csi-azurefile-driver.yaml b/deploy/v1.29.6/csi-azurefile-driver.yaml new file mode 100644 index 0000000000..983a2f5fdf --- /dev/null +++ b/deploy/v1.29.6/csi-azurefile-driver.yaml @@ -0,0 +1,15 @@ +--- +apiVersion: storage.k8s.io/v1 +kind: CSIDriver +metadata: + name: file.csi.azure.com + annotations: + csiDriver: v1.29.0 + snapshot: v6.2.2 +spec: + attachRequired: false + podInfoOnMount: true + volumeLifecycleModes: + - Persistent + - Ephemeral + fsGroupPolicy: ReadWriteOnceWithFSType diff --git a/deploy/v1.29.6/csi-azurefile-node-windows-hostprocess.yaml b/deploy/v1.29.6/csi-azurefile-node-windows-hostprocess.yaml new file mode 100644 index 0000000000..ac462ba8dc --- /dev/null +++ b/deploy/v1.29.6/csi-azurefile-node-windows-hostprocess.yaml @@ -0,0 +1,122 @@ +--- +kind: DaemonSet +apiVersion: apps/v1 +metadata: + name: csi-azurefile-node-win + namespace: kube-system +spec: + updateStrategy: + rollingUpdate: + maxUnavailable: 1 + type: RollingUpdate + selector: + matchLabels: + app: csi-azurefile-node-win + template: + metadata: + labels: + app: csi-azurefile-node-win + spec: + serviceAccountName: csi-azurefile-node-sa + tolerations: + - key: "node.kubernetes.io/os" + operator: "Exists" + effect: "NoSchedule" + nodeSelector: + kubernetes.io/os: windows + affinity: + nodeAffinity: + requiredDuringSchedulingIgnoredDuringExecution: + nodeSelectorTerms: + - matchExpressions: + - key: type + operator: NotIn + values: + - virtual-kubelet + priorityClassName: system-node-critical + securityContext: + seccompProfile: + type: RuntimeDefault + windowsOptions: + hostProcess: true + runAsUserName: "NT AUTHORITY\\SYSTEM" + hostNetwork: true + initContainers: + - name: init + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6-windows-hp + imagePullPolicy: IfNotPresent + command: + - "powershell.exe" + - "-c" + - "New-Item -ItemType Directory -Path C:\\var\\lib\\kubelet\\plugins\\file.csi.azure.com\\ -Force" + securityContext: + capabilities: + drop: + - ALL + containers: + - name: node-driver-registrar + image: mcr.microsoft.com/oss/kubernetes-csi/csi-node-driver-registrar:v2.8.0 + imagePullPolicy: IfNotPresent + command: + - "csi-node-driver-registrar.exe" + args: + - "--v=2" + - "--csi-address=$(CSI_ENDPOINT)" + - "--kubelet-registration-path=$(DRIVER_REG_SOCK_PATH)" + - "--plugin-registration-path=$(PLUGIN_REG_DIR)" + env: + - name: CSI_ENDPOINT + value: unix://C:\\var\\lib\\kubelet\\plugins\\file.csi.azure.com\\csi.sock + - name: DRIVER_REG_SOCK_PATH + value: C:\\var\\lib\\kubelet\\plugins\\file.csi.azure.com\\csi.sock + - name: PLUGIN_REG_DIR + value: C:\\var\\lib\\kubelet\\plugins_registry\\ + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + fieldPath: spec.nodeName + resources: + limits: + memory: 150Mi + requests: + cpu: 30m + memory: 40Mi + securityContext: + capabilities: + drop: + - ALL + - name: azurefile + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6-windows-hp + imagePullPolicy: IfNotPresent + command: + - "azurefileplugin.exe" + args: + - --v=5 + - --endpoint=$(CSI_ENDPOINT) + - --nodeid=$(KUBE_NODE_NAME) + - --enable-windows-host-process=true + - --metrics-address="0.0.0.0:29615" + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: azure-cred-file + key: path-windows + optional: true + - name: CSI_ENDPOINT + value: unix://C:\\var\\lib\\kubelet\\plugins\\file.csi.azure.com\\csi.sock + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + apiVersion: v1 + fieldPath: spec.nodeName + resources: + limits: + memory: 200Mi + requests: + cpu: 10m + memory: 40Mi + securityContext: + capabilities: + drop: + - ALL diff --git a/deploy/v1.29.6/csi-azurefile-node-windows.yaml b/deploy/v1.29.6/csi-azurefile-node-windows.yaml new file mode 100644 index 0000000000..fab339ae0b --- /dev/null +++ b/deploy/v1.29.6/csi-azurefile-node-windows.yaml @@ -0,0 +1,195 @@ +--- +kind: DaemonSet +apiVersion: apps/v1 +metadata: + name: csi-azurefile-node-win + namespace: kube-system +spec: + updateStrategy: + rollingUpdate: + maxUnavailable: 1 + type: RollingUpdate + selector: + matchLabels: + app: csi-azurefile-node-win + template: + metadata: + labels: + app: csi-azurefile-node-win + spec: + serviceAccountName: csi-azurefile-node-sa + tolerations: + - key: "node.kubernetes.io/os" + operator: "Exists" + effect: "NoSchedule" + nodeSelector: + kubernetes.io/os: windows + affinity: + nodeAffinity: + requiredDuringSchedulingIgnoredDuringExecution: + nodeSelectorTerms: + - matchExpressions: + - key: type + operator: NotIn + values: + - virtual-kubelet + priorityClassName: system-node-critical + securityContext: + seccompProfile: + type: RuntimeDefault + containers: + - name: liveness-probe + volumeMounts: + - mountPath: C:\csi + name: plugin-dir + image: mcr.microsoft.com/oss/kubernetes-csi/livenessprobe:v2.10.0 + args: + - --csi-address=$(CSI_ENDPOINT) + - --probe-timeout=3s + - --health-port=29613 + - --v=2 + env: + - name: CSI_ENDPOINT + value: unix://C:\\csi\\csi.sock + resources: + limits: + memory: 150Mi + requests: + cpu: 10m + memory: 40Mi + securityContext: + capabilities: + drop: + - ALL + - name: node-driver-registrar + image: mcr.microsoft.com/oss/kubernetes-csi/csi-node-driver-registrar:v2.8.0 + args: + - --v=2 + - --csi-address=$(CSI_ENDPOINT) + - --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH) + livenessProbe: + exec: + command: + - /csi-node-driver-registrar.exe + - --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH) + - --mode=kubelet-registration-probe + initialDelaySeconds: 60 + timeoutSeconds: 30 + env: + - name: CSI_ENDPOINT + value: unix://C:\\csi\\csi.sock + - name: DRIVER_REG_SOCK_PATH + value: C:\\var\\lib\\kubelet\\plugins\\file.csi.azure.com\\csi.sock + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + fieldPath: spec.nodeName + volumeMounts: + - name: kubelet-dir + mountPath: "C:\\var\\lib\\kubelet" + - name: plugin-dir + mountPath: C:\csi + - name: registration-dir + mountPath: C:\registration + resources: + limits: + memory: 150Mi + requests: + cpu: 30m + memory: 40Mi + securityContext: + capabilities: + drop: + - ALL + - name: azurefile + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6 + imagePullPolicy: IfNotPresent + args: + - --v=5 + - --endpoint=$(CSI_ENDPOINT) + - --nodeid=$(KUBE_NODE_NAME) + - --metrics-address="0.0.0.0:29615" + ports: + - containerPort: 29613 + name: healthz + protocol: TCP + livenessProbe: + failureThreshold: 5 + httpGet: + path: /healthz + port: healthz + initialDelaySeconds: 30 + timeoutSeconds: 10 + periodSeconds: 30 + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: azure-cred-file + key: path-windows + optional: true + - name: CSI_ENDPOINT + value: unix://C:\\csi\\csi.sock + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + apiVersion: v1 + fieldPath: spec.nodeName + volumeMounts: + - name: kubelet-dir + mountPath: "C:\\var\\lib\\kubelet" + - name: plugin-dir + mountPath: C:\csi + - name: azure-config + mountPath: C:\k + - name: csi-proxy-fs-pipe-v1 + mountPath: \\.\pipe\csi-proxy-filesystem-v1 + - name: csi-proxy-smb-pipe-v1 + mountPath: \\.\pipe\csi-proxy-smb-v1 + # these paths are still included for compatibility, they're used + # only if the node has still the beta version of the CSI proxy + - name: csi-proxy-fs-pipe-v1beta1 + mountPath: \\.\pipe\csi-proxy-filesystem-v1beta1 + - name: csi-proxy-smb-pipe-v1beta1 + mountPath: \\.\pipe\csi-proxy-smb-v1beta1 + resources: + limits: + memory: 200Mi + requests: + cpu: 10m + memory: 40Mi + securityContext: + capabilities: + drop: + - ALL + volumes: + - name: csi-proxy-fs-pipe-v1 + hostPath: + path: \\.\pipe\csi-proxy-filesystem-v1 + - name: csi-proxy-smb-pipe-v1 + hostPath: + path: \\.\pipe\csi-proxy-smb-v1 + # these paths are still included for compatibility, they're used + # only if the node has still the beta version of the CSI proxy + - name: csi-proxy-fs-pipe-v1beta1 + hostPath: + path: \\.\pipe\csi-proxy-filesystem-v1beta1 + - name: csi-proxy-smb-pipe-v1beta1 + hostPath: + path: \\.\pipe\csi-proxy-smb-v1beta1 + - name: registration-dir + hostPath: + path: C:\var\lib\kubelet\plugins_registry\ + type: Directory + - name: kubelet-dir + hostPath: + path: C:\var\lib\kubelet\ + type: Directory + - name: plugin-dir + hostPath: + path: C:\var\lib\kubelet\plugins\file.csi.azure.com\ + type: DirectoryOrCreate + - name: azure-config + hostPath: + path: C:\k + type: DirectoryOrCreate diff --git a/deploy/v1.29.6/csi-azurefile-node.yaml b/deploy/v1.29.6/csi-azurefile-node.yaml new file mode 100644 index 0000000000..8d25b32f1f --- /dev/null +++ b/deploy/v1.29.6/csi-azurefile-node.yaml @@ -0,0 +1,168 @@ +--- +kind: DaemonSet +apiVersion: apps/v1 +metadata: + name: csi-azurefile-node + namespace: kube-system +spec: + updateStrategy: + rollingUpdate: + maxUnavailable: 1 + type: RollingUpdate + selector: + matchLabels: + app: csi-azurefile-node + template: + metadata: + labels: + app: csi-azurefile-node + spec: + hostNetwork: true + dnsPolicy: Default + serviceAccountName: csi-azurefile-node-sa + nodeSelector: + kubernetes.io/os: linux + affinity: + nodeAffinity: + requiredDuringSchedulingIgnoredDuringExecution: + nodeSelectorTerms: + - matchExpressions: + - key: type + operator: NotIn + values: + - virtual-kubelet + priorityClassName: system-node-critical + securityContext: + seccompProfile: + type: RuntimeDefault + tolerations: + - operator: "Exists" + containers: + - name: liveness-probe + volumeMounts: + - mountPath: /csi + name: socket-dir + image: mcr.microsoft.com/oss/kubernetes-csi/livenessprobe:v2.10.0 + args: + - --csi-address=/csi/csi.sock + - --probe-timeout=3s + - --health-port=29613 + - --v=2 + resources: + limits: + memory: 100Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL + - name: node-driver-registrar + image: mcr.microsoft.com/oss/kubernetes-csi/csi-node-driver-registrar:v2.8.0 + args: + - --csi-address=$(ADDRESS) + - --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH) + - --v=2 + livenessProbe: + exec: + command: + - /csi-node-driver-registrar + - --kubelet-registration-path=$(DRIVER_REG_SOCK_PATH) + - --mode=kubelet-registration-probe + initialDelaySeconds: 30 + timeoutSeconds: 15 + env: + - name: ADDRESS + value: /csi/csi.sock + - name: DRIVER_REG_SOCK_PATH + value: /var/lib/kubelet/plugins/file.csi.azure.com/csi.sock + volumeMounts: + - name: socket-dir + mountPath: /csi + - name: registration-dir + mountPath: /registration + resources: + limits: + memory: 100Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL + - name: azurefile + image: mcr.microsoft.com/oss/kubernetes-csi/azurefile-csi:v1.29.6 + imagePullPolicy: IfNotPresent + args: + - "--v=5" + - "--endpoint=$(CSI_ENDPOINT)" + - "--nodeid=$(KUBE_NODE_NAME)" + - "--metrics-address=0.0.0.0:29615" + livenessProbe: + failureThreshold: 5 + httpGet: + host: localhost + path: /healthz + port: 29613 + initialDelaySeconds: 30 + timeoutSeconds: 10 + periodSeconds: 30 + env: + - name: AZURE_CREDENTIAL_FILE + valueFrom: + configMapKeyRef: + name: azure-cred-file + key: path + optional: true + - name: CSI_ENDPOINT + value: unix:///csi/csi.sock + - name: KUBE_NODE_NAME + valueFrom: + fieldRef: + apiVersion: v1 + fieldPath: spec.nodeName + securityContext: + privileged: true + capabilities: + drop: + - ALL + volumeMounts: + - mountPath: /csi + name: socket-dir + - mountPath: /var/lib/kubelet/ + mountPropagation: Bidirectional + name: mountpoint-dir + - mountPath: /etc/kubernetes/ + name: azure-cred + - mountPath: /dev + name: device-dir + resources: + limits: + memory: 400Mi + requests: + cpu: 10m + memory: 20Mi + volumes: + - hostPath: + path: /var/lib/kubelet/plugins/file.csi.azure.com + type: DirectoryOrCreate + name: socket-dir + - hostPath: + path: /var/lib/kubelet/ + type: DirectoryOrCreate + name: mountpoint-dir + - hostPath: + path: /var/lib/kubelet/plugins_registry/ + type: DirectoryOrCreate + name: registration-dir + - hostPath: + path: /etc/kubernetes/ + type: DirectoryOrCreate + name: azure-cred + - hostPath: + path: /dev + type: Directory + name: device-dir +--- diff --git a/deploy/v1.29.6/csi-snapshot-controller.yaml b/deploy/v1.29.6/csi-snapshot-controller.yaml new file mode 100644 index 0000000000..023a25a127 --- /dev/null +++ b/deploy/v1.29.6/csi-snapshot-controller.yaml @@ -0,0 +1,59 @@ +--- +kind: Deployment +apiVersion: apps/v1 +metadata: + name: csi-snapshot-controller + namespace: kube-system +spec: + replicas: 2 + selector: + matchLabels: + app: csi-snapshot-controller + # the snapshot controller won't be marked as ready if the v1 CRDs are unavailable + # in #504 the snapshot-controller will exit after around 7.5 seconds if it + # can't find the v1 CRDs so this value should be greater than that + minReadySeconds: 15 + strategy: + rollingUpdate: + maxSurge: 0 + maxUnavailable: 1 + type: RollingUpdate + template: + metadata: + labels: + app: csi-snapshot-controller + spec: + serviceAccountName: csi-snapshot-controller-sa + nodeSelector: + kubernetes.io/os: linux + priorityClassName: system-cluster-critical + tolerations: + - key: "node-role.kubernetes.io/master" + operator: "Equal" + value: "true" + effect: "NoSchedule" + - key: "node-role.kubernetes.io/controlplane" + operator: "Equal" + value: "true" + effect: "NoSchedule" + - key: "node-role.kubernetes.io/control-plane" + operator: "Equal" + value: "true" + effect: "NoSchedule" + containers: + - name: csi-snapshot-controller + image: mcr.microsoft.com/oss/kubernetes-csi/snapshot-controller:v6.3.1 + args: + - "--v=2" + - "--leader-election=true" + - "--leader-election-namespace=kube-system" + resources: + limits: + memory: 300Mi + requests: + cpu: 10m + memory: 20Mi + securityContext: + capabilities: + drop: + - ALL diff --git a/deploy/v1.29.6/rbac-csi-azurefile-controller.yaml b/deploy/v1.29.6/rbac-csi-azurefile-controller.yaml new file mode 100644 index 0000000000..b9348c8cd5 --- /dev/null +++ b/deploy/v1.29.6/rbac-csi-azurefile-controller.yaml @@ -0,0 +1,194 @@ +--- +apiVersion: v1 +kind: ServiceAccount +metadata: + name: csi-azurefile-controller-sa + namespace: kube-system + +--- + +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-external-provisioner-role +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch", "create", "delete"] + - apiGroups: [""] + resources: ["persistentvolumeclaims"] + verbs: ["get", "list", "watch", "update"] + - apiGroups: ["storage.k8s.io"] + resources: ["storageclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["events"] + verbs: ["get", "list", "watch", "create", "update", "patch"] + - apiGroups: ["storage.k8s.io"] + resources: ["csinodes"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["nodes"] + verbs: ["get", "list", "watch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshots"] + verbs: ["get", "list"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents"] + verbs: ["get", "list"] + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] +--- + +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-csi-provisioner-binding +subjects: + - kind: ServiceAccount + name: csi-azurefile-controller-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: azurefile-external-provisioner-role + apiGroup: rbac.authorization.k8s.io + +--- + +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-external-attacher-role +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch", "update"] + - apiGroups: [""] + resources: ["nodes"] + verbs: ["get", "list", "watch"] + - apiGroups: ["csi.storage.k8s.io"] + resources: ["csinodeinfos"] + verbs: ["get", "list", "watch"] + - apiGroups: ["storage.k8s.io"] + resources: ["volumeattachments"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: ["storage.k8s.io"] + resources: ["volumeattachments/status"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] +--- + +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-csi-attacher-binding +subjects: + - kind: ServiceAccount + name: csi-azurefile-controller-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: azurefile-external-attacher-role + apiGroup: rbac.authorization.k8s.io + +--- + +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-external-snapshotter-role +rules: + - apiGroups: [""] + resources: ["events"] + verbs: ["list", "watch", "create", "update", "patch"] + - apiGroups: [""] + resources: ["secrets"] + verbs: ["get"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents"] + verbs: ["create", "get", "list", "watch", "update", "delete", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents/status"] + verbs: ["update", "patch"] + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] + +--- + +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-csi-snapshotter-binding +subjects: + - kind: ServiceAccount + name: csi-azurefile-controller-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: azurefile-external-snapshotter-role + apiGroup: rbac.authorization.k8s.io + +--- + +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-external-resizer-role +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: [""] + resources: ["persistentvolumeclaims"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["persistentvolumeclaims/status"] + verbs: ["update", "patch"] + - apiGroups: [""] + resources: ["events"] + verbs: ["list", "watch", "create", "update", "patch"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: azurefile-csi-resizer-role +subjects: + - kind: ServiceAccount + name: csi-azurefile-controller-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: azurefile-external-resizer-role + apiGroup: rbac.authorization.k8s.io + +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-azurefile-controller-secret-role +rules: + - apiGroups: [""] + resources: ["secrets"] + verbs: ["get", "create"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-azurefile-controller-secret-binding +subjects: + - kind: ServiceAccount + name: csi-azurefile-controller-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: csi-azurefile-controller-secret-role + apiGroup: rbac.authorization.k8s.io diff --git a/deploy/v1.29.6/rbac-csi-azurefile-node.yaml b/deploy/v1.29.6/rbac-csi-azurefile-node.yaml new file mode 100644 index 0000000000..3752f36aa4 --- /dev/null +++ b/deploy/v1.29.6/rbac-csi-azurefile-node.yaml @@ -0,0 +1,30 @@ +--- +apiVersion: v1 +kind: ServiceAccount +metadata: + name: csi-azurefile-node-sa + namespace: kube-system + +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-azurefile-node-secret-role +rules: + - apiGroups: [""] + resources: ["secrets"] + verbs: ["get"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-azurefile-node-secret-binding +subjects: + - kind: ServiceAccount + name: csi-azurefile-node-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: csi-azurefile-node-secret-role + apiGroup: rbac.authorization.k8s.io diff --git a/deploy/v1.29.6/rbac-csi-snapshot-controller.yaml b/deploy/v1.29.6/rbac-csi-snapshot-controller.yaml new file mode 100644 index 0000000000..03af765424 --- /dev/null +++ b/deploy/v1.29.6/rbac-csi-snapshot-controller.yaml @@ -0,0 +1,78 @@ +--- +apiVersion: v1 +kind: ServiceAccount +metadata: + name: csi-snapshot-controller-sa + namespace: kube-system + +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-role +rules: + - apiGroups: [""] + resources: ["persistentvolumes"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["persistentvolumeclaims"] + verbs: ["get", "list", "watch", "update"] + - apiGroups: ["storage.k8s.io"] + resources: ["storageclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: [""] + resources: ["events"] + verbs: ["list", "watch", "create", "update", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotclasses"] + verbs: ["get", "list", "watch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents"] + verbs: ["create", "get", "list", "watch", "update", "delete", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshotcontents/status"] + verbs: ["patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshots"] + verbs: ["get", "list", "watch", "update", "patch"] + - apiGroups: ["snapshot.storage.k8s.io"] + resources: ["volumesnapshots/status"] + verbs: ["update", "patch"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-binding +subjects: + - kind: ServiceAccount + name: csi-snapshot-controller-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: csi-snapshot-controller-role + apiGroup: rbac.authorization.k8s.io + +--- +kind: ClusterRole +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-leaderelection-role +rules: + - apiGroups: ["coordination.k8s.io"] + resources: ["leases"] + verbs: ["get", "watch", "list", "delete", "update", "create", "patch"] + +--- +kind: ClusterRoleBinding +apiVersion: rbac.authorization.k8s.io/v1 +metadata: + name: csi-snapshot-controller-leaderelection-binding +subjects: + - kind: ServiceAccount + name: csi-snapshot-controller-sa + namespace: kube-system +roleRef: + kind: ClusterRole + name: csi-snapshot-controller-leaderelection-role + apiGroup: rbac.authorization.k8s.io diff --git a/docs/install-csi-driver-v1.29.6.md b/docs/install-csi-driver-v1.29.6.md new file mode 100644 index 0000000000..b96255c925 --- /dev/null +++ b/docs/install-csi-driver-v1.29.6.md @@ -0,0 +1,45 @@ +## Install azurefile CSI driver v1.29.6 version on a Kubernetes cluster +If you have already installed Helm, you can also use it to install this driver. Please check [Installation with Helm](../charts/README.md). + +### Install by kubectl + - Option#1. remote install +```console +curl -skSL https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/v1.29.6/deploy/install-driver.sh | bash -s v1.29.6 -- +``` + + - Option#2. local install +```console +git clone https://github.com/kubernetes-sigs/azurefile-csi-driver.git +cd azurefile-csi-driver +git checkout v1.29.6 +./deploy/install-driver.sh v1.29.6 local +``` + + - check pods status: +```console +kubectl -n kube-system get pod -o wide --watch -l app=csi-azurefile-controller +kubectl -n kube-system get pod -o wide --watch -l app=csi-azurefile-node +``` + +example output: + +``` +NAME READY STATUS RESTARTS AGE IP NODE +csi-azurefile-controller-56bfddd689-dh5tk 6/6 Running 0 35s 10.240.0.19 k8s-agentpool-22533604-0 +csi-azurefile-node-cvgbs 3/3 Running 0 7m4s 10.240.0.35 k8s-agentpool-22533604-1 +csi-azurefile-node-dr4s4 3/3 Running 0 7m4s 10.240.0.4 k8s-agentpool-22533604-0 +``` + +### clean up CSI driver + - Option#1. remote uninstall +```console +curl -skSL https://raw.githubusercontent.com/kubernetes-sigs/azurefile-csi-driver/v1.29.6/deploy/uninstall-driver.sh | bash -s -- +``` + + - Option#2. local uninstall +```console +git clone https://github.com/kubernetes-sigs/azurefile-csi-driver.git +cd azurefile-csi-driver +git checkout v1.29.6 +./deploy/install-driver.sh v1.29.6 local +```