第7章 Serving の kube-rbac-proxy の設定
kube-rbac-proxy
コンポーネントは、Knative Serving の内部認証および認可機能を提供します。
7.1. Serving の kube-rbac-proxy リソースの設定
OpenShift Serverless Operator CR を使用して、kube-rbac-proxy
コンテナーのリソース割り当てをグローバルにオーバーライドできます。
You can also override resource allocation for a specific deployment.
You can also override resource allocation for a specific deployment.
次の設定では、Knative Serving kube-rbac-proxy
の最小および最大の CPU およびメモリー割り当てを設定します。
KnativeServing CR の例
apiVersion: operator.knative.dev/v1beta1 kind: KnativeServing metadata: name: knative-serving namespace: knative-serving spec: config: deployment: "kube-rbac-proxy-cpu-request": "10m" "kube-rbac-proxy-memory-request": "20Mi" "kube-rbac-proxy-cpu-limit": "100m" "kube-rbac-proxy-memory-limit": "100Mi"
apiVersion: operator.knative.dev/v1beta1
kind: KnativeServing
metadata:
name: knative-serving
namespace: knative-serving
spec:
config:
deployment:
"kube-rbac-proxy-cpu-request": "10m"
"kube-rbac-proxy-memory-request": "20Mi"
"kube-rbac-proxy-cpu-limit": "100m"
"kube-rbac-proxy-memory-limit": "100Mi"