The module deletes the entire kubeadm kube-proxy set (DaemonSet, ConfigMap, RBAC) and installs its own.

For security reasons, for NodePort services, connections are only allowed to the nodes’ InternalIP by default. You can lift this restriction using the node.deckhouse.io/nodeport-bind-internal-ip: "false" annotation.

Here is an example of a NodeGroup annotation:

apiVersion: deckhouse.io/v1
kind: NodeGroup
metadata:
  name: myng
spec:
  nodeTemplate:
    annotations:
      node.deckhouse.io/nodeport-bind-internal-ip: "false"
...

Note that following the addition, deletion, or changing the annotation, you have to restart kube-proxy Pods manually.

Configuration

The module does not have configurable parameters.