Page MenuHomePhabricator

Reserve resources for system daemons on kubernetes nodes
Open, MediumPublic


Currently we allow pods to allocate 100% the resources of a node, which is a bad idea.

We should reserve some CPU, memory maybe storage and PIDs for kubelet (--kube-reserved) as well as for the system itself (--system-reserved). We should also add eviction thresholds.

Event Timeline

JMeybohm triaged this task as Medium priority.Mar 19 2021, 3:37 PM
JMeybohm created this task.

Change 524186 had a related patch set uploaded (by Alexandros Kosiaris; author: Alexandros Kosiaris):
[operations/puppet@production] kubernetes: Switch to using systemd cgroupdriver

Change 524186 abandoned by JMeybohm:

[operations/puppet@production] kubernetes: Switch to using systemd cgroupdriver


Docker will switch automatically to systemd cgroup driver on cgroupv2 systems