summaryrefslogtreecommitdiffhomepage
path: root/docs
diff options
context:
space:
mode:
authorchaosinthecrd <tom@tmlabs.co.uk>2026-04-01 13:16:01 +0100
committerchaosinthecrd <tom@tmlabs.co.uk>2026-04-01 17:32:30 +0100
commit6e407ee2f6423744df46233e90d33760701161e7 (patch)
tree520ea40ac9c077fd2606babbbb9cf4724028da7a /docs
parent871c023d8c40ef4192ba952c9f0e996fbcb40f9b (diff)
downloadtailscale-authkey-reissue-restructured.tar.xz
tailscale-authkey-reissue-restructured.zip
cmd/k8s-proxy: add auth key renewal supportauthkey-reissue-restructured
Add auth key reissue handling to k8s-proxy, mirroring containerboot. When the proxy detects an auth failure (login-state health warning or NeedsLogin state), it disconnects from control, signals the operator via the state Secret, waits for a new key, clears stale state, and exits so Kubernetes restarts the pod with the new key. A health watcher goroutine runs alongside ts.Up() to short-circuit the startup timeout on terminal auth failures.
Diffstat (limited to 'docs')
0 files changed, 0 insertions, 0 deletions