apiVersion: apps/v1 kind: DaemonSet metadata: annotations: deprecated.daemonset.template.generation: "1" creationTimestamp: "2025-12-03T22:31:34Z" generation: 1 name: octavia-worker namespace: openstack ownerReferences: - apiVersion: octavia.openstack.org/v1beta1 blockOwnerDeletion: true controller: true kind: OctaviaAmphoraController name: octavia-worker uid: 1c44f3c5-2c4b-4e1f-b846-b31a75579124 resourceVersion: "40436" uid: c397a1b6-1be4-4b80-82e2-dc2c5bec4591 spec: revisionHistoryLimit: 10 selector: matchLabels: service: octavia-worker template: metadata: annotations: k8s.v1.cni.cncf.io/networks: '[{"name":"octavia","namespace":"openstack","interface":"octavia"}]' creationTimestamp: null labels: service: octavia-worker spec: affinity: podAntiAffinity: preferredDuringSchedulingIgnoredDuringExecution: - podAffinityTerm: labelSelector: matchExpressions: - key: service operator: In values: - octavia-worker topologyKey: kubernetes.io/hostname weight: 100 automountServiceAccountToken: false containers: - env: - name: CONFIG_HASH value: n664h695h77h685hb9h5fch7fh69h78h589h696hb6h5dh649h7bh564h5b5h5c6hch666h698h5cdh87h5d4h647h646hfdhd8h674h598h645hb5q - name: KOLLA_CONFIG_STRATEGY value: COPY_ALWAYS - name: MGMT_CIDR value: 172.24.0.0/16 - name: MGMT_GATEWAY value: 172.23.0.150 - name: NODE_NAME valueFrom: fieldRef: apiVersion: v1 fieldPath: spec.nodeName image: quay.io/podified-antelope-centos9/openstack-octavia-worker@sha256:c4652e3a9c4275470c3ef1a2e4d20a420d9c7bdd5157b0bbdaafea3fa038dcab imagePullPolicy: IfNotPresent livenessProbe: exec: command: - /usr/bin/pgrep - -r - DRST - octavia failureThreshold: 3 initialDelaySeconds: 3 periodSeconds: 13 successThreshold: 1 timeoutSeconds: 15 name: octavia-worker readinessProbe: exec: command: - /usr/bin/pgrep - -r - DRST - octavia failureThreshold: 3 initialDelaySeconds: 5 periodSeconds: 15 successThreshold: 1 timeoutSeconds: 15 resources: {} securityContext: runAsGroup: 42437 runAsNonRoot: true runAsUser: 42437 terminationMessagePath: /dev/termination-log terminationMessagePolicy: File volumeMounts: - mountPath: /usr/local/bin/container-scripts name: scripts readOnly: true - mountPath: /var/lib/config-data/merged name: config-data-merged - mountPath: /var/lib/kolla/config_files/config.json name: config-data-merged readOnly: true subPath: octavia-worker-config.json - mountPath: /etc/octavia/certs name: amphora-certs readOnly: true - mountPath: /etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem name: combined-ca-bundle readOnly: true subPath: tls-ca-bundle.pem dnsPolicy: ClusterFirst initContainers: - args: - -c - /usr/local/bin/container-scripts/init.sh octavia-worker command: - /bin/bash env: - name: CONFIG_HASH value: n664h695h77h685hb9h5fch7fh69h78h589h696hb6h5dh649h7bh564h5b5h5c6hch666h698h5cdh87h5d4h647h646hfdhd8h674h598h645hb5q - name: KOLLA_CONFIG_STRATEGY value: COPY_ALWAYS - name: MGMT_CIDR value: 172.24.0.0/16 - name: MGMT_GATEWAY value: 172.23.0.150 - name: NODE_NAME valueFrom: fieldRef: apiVersion: v1 fieldPath: spec.nodeName image: quay.io/podified-antelope-centos9/openstack-octavia-worker@sha256:c4652e3a9c4275470c3ef1a2e4d20a420d9c7bdd5157b0bbdaafea3fa038dcab imagePullPolicy: IfNotPresent name: init resources: {} securityContext: capabilities: add: - NET_ADMIN - SYS_ADMIN - SYS_NICE runAsUser: 0 terminationMessagePath: /dev/termination-log terminationMessagePolicy: File volumeMounts: - mountPath: /usr/local/bin/container-scripts name: scripts readOnly: true - mountPath: /var/lib/config-data/default name: config-data readOnly: true - mountPath: /var/lib/config-data/merged name: config-data-merged - mountPath: /var/lib/hmports name: hm-ports readOnly: true restartPolicy: Always schedulerName: default-scheduler securityContext: fsGroup: 42437 serviceAccount: octavia-octavia serviceAccountName: octavia-octavia terminationGracePeriodSeconds: 600 volumes: - name: scripts secret: defaultMode: 493 secretName: octavia-worker-scripts - name: config-data secret: defaultMode: 416 secretName: octavia-worker-config-data - emptyDir: {} name: config-data-merged - configMap: defaultMode: 416 name: octavia-hmport-map name: hm-ports - name: amphora-certs secret: defaultMode: 420 secretName: octavia-certs-secret - name: combined-ca-bundle secret: defaultMode: 292 secretName: combined-ca-bundle updateStrategy: rollingUpdate: maxSurge: 0 maxUnavailable: 1 type: RollingUpdate status: currentNumberScheduled: 1 desiredNumberScheduled: 1 numberAvailable: 1 numberMisscheduled: 0 numberReady: 1 observedGeneration: 1 updatedNumberScheduled: 1