Skip to content

Conversation

defo89
Copy link

@defo89 defo89 commented Jul 30, 2025

Description

Fixes #2267

With AuthorizeNodeWithSelectors enabled by default starting from 1.32, the call to list all nodes is denied. Instead, we are now watching own node only. /thanks @Nuckal777

Todos

  • Tests
  • Documentation
  • Release note

Release Note

Fixed NodeAuthorization for k8s 1.32: watch only own node

@thomasferrandiz
Copy link
Contributor

Thanks for the PR but flannel needs to watch all the nodes.

Each instance of flannel watches the other nodes so that it can create iptables rules to route traffic towards the pods running on these nodes.

@thomasferrandiz
Copy link
Contributor

not needed: #2267

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

k8s 1.32: cannot read all nodes, only its own Node object

2 participants