chore: disable rp_filter on k8s nodes (#461)

- k8s control/compute are multihomed, must disable rp_filter

Reviewed-on: #461
This commit was merged in pull request #461.
This commit is contained in:
2026-04-11 21:51:42 +10:00
parent 0451894b48
commit 4b9b28ddb7
+7
View File
@@ -126,6 +126,13 @@ frrouting::ospf_exclude_k8s_enable: true
frrouting::k8s_cluster_cidr: '10.42.0.0/16' # RKE2 cluster-cidr (pods)
frrouting::k8s_service_cidr: '10.43.0.0/16' # RKE2 service-cidr
# sysctl recommendations
sysctl::base::values:
net.ipv4.conf.default.rp_filter:
value: '0'
net.ipv4.conf.all.rp_filter:
value: '0'
# add loopback interfaces to ssh list
ssh::server::options:
ListenAddress: