fix: allow overriding audit-policy-file in kube-apiserver static pod

Otherwise we lock it with our default config.

Signed-off-by: Artem Chernyshev <artem.chernyshev@talos-systems.com>
This commit is contained in:
Artem Chernyshev 2021-10-11 11:26:11 +03:00
parent 8fcd421967
commit 7137166d1d
No known key found for this signature in database
GPG Key ID: 9B9D0328B57B443F

View File

@ -262,7 +262,6 @@ func (ctrl *ControlPlaneStaticPodController) manageAPIServer(ctx context.Context
"proxy-client-cert-file": argsbuilder.MergeDenied,
"proxy-client-key-file": argsbuilder.MergeDenied,
"encryption-provider-config": argsbuilder.MergeDenied,
"audit-policy-file": argsbuilder.MergeDenied,
"etcd-cafile": argsbuilder.MergeDenied,
"etcd-certfile": argsbuilder.MergeDenied,
"etcd-keyfile": argsbuilder.MergeDenied,