diff options
| author | chaosinthecrd <tom@tmlabs.co.uk> | 2026-04-01 13:16:01 +0100 |
|---|---|---|
| committer | chaosinthecrd <tom@tmlabs.co.uk> | 2026-04-01 17:32:30 +0100 |
| commit | 6e407ee2f6423744df46233e90d33760701161e7 (patch) | |
| tree | 520ea40ac9c077fd2606babbbb9cf4724028da7a /docs/sysv | |
| parent | 871c023d8c40ef4192ba952c9f0e996fbcb40f9b (diff) | |
| download | tailscale-authkey-reissue-restructured.tar.xz tailscale-authkey-reissue-restructured.zip | |
cmd/k8s-proxy: add auth key renewal supportauthkey-reissue-restructured
Add auth key reissue handling to k8s-proxy, mirroring containerboot.
When the proxy detects an auth failure (login-state health warning or
NeedsLogin state), it disconnects from control, signals the operator
via the state Secret, waits for a new key, clears stale state, and
exits so Kubernetes restarts the pod with the new key.
A health watcher goroutine runs alongside ts.Up() to short-circuit
the startup timeout on terminal auth failures.
Diffstat (limited to 'docs/sysv')
0 files changed, 0 insertions, 0 deletions
