-
External cloud providers. Enables support for external cloud providers for clusters on vSphere, AWS, Azure, and GCP. Support for OpenStack is GA. This is an internal feature that most users do not need to interact with. (
ExternalCloudProvider
) -
Swap memory on nodes. Enables swap memory use for OKD workloads on a per-node basis. (
NodeSwap
) -
OpenStack Machine API Provider. This gate has no effect and is planned to be removed from this feature set in a future release. (
MachineAPIProviderOpenStack
) -
Insights Operator. Enables the
InsightsDataGather
CRD, which allows users to configure some Insights data gathering options. The feature set also enables theDataGather
CRD, which allows users to run Insights data gathering on-demand. (InsightsConfigAPI
) -
Dynamic Resource Allocation API. Enables a new API for requesting and sharing resources between pods and containers. This is an internal feature that most users do not need to interact with. (
DynamicResourceAllocation
) -
Pod security admission enforcement. Enables the restricted enforcement mode for pod security admission. Instead of only logging a warning, pods are rejected if they violate pod security standards. (
OpenShiftPodSecurityAdmission
) -
StatefulSet pod availability upgrading limits. Enables users to define the maximum number of statefulset pods unavailable during updates which reduces application downtime. (
MaxUnavailableStatefulSet
) -
Image mode behavior of image streams. Enables a new API for controlling the import mode behavior of image streams. (
imageStreamImportMode
) -
Configuring a local arbiter node. You can configure an OKD cluster with two control plane nodes and one local arbiter node to retain high availability (HA) while reducing infrastructure costs. This configuration is supported only for bare-metal installations.
-
OVNObservability
resource allows you to verify expected network behavior. Supports the following network APIs:NetworkPolicy
,AdminNetworkPolicy
,BaselineNetworkPolicy
,UserDefinesdNetwork
isolation, multicast ACLs, and egress firewalls. When enabled, you can view network events in the terminal. -
gcpLabelsTags
-
vSphereStaticIPs
-
routeExternalCertificate
-
automatedEtcdBackup
-
gcpclusterHostedDNS
-
vSphereControlPlaneMachineset
-
dnsNameResolver
-
machineConfigNodes
-
metricsServer
-
installAlternateInfrastructureAWS
-
mixedCPUsAllocation
-
managedBootImages
-
onclusterBuild
-
signatureStores
-
SigstoreImageVerification
-
DisableKubeletCloudCredentialProviders
-
BareMetalLoadBalancer
-
clusterAPIInstallAWS
-
clusterAPIInstallAzure
-
clusterAPIInstallNutanix
-
clusterAPIInstallOpenStack
-
clusterAPIInstallVSphere
-
HardwareSpeed
-
KMSv1
-
NetworkDiagnosticsConfig
-
VSphereDriverConfiguration
-
ExternalOIDC
-
ChunkSizeMiB
-
clusterAPIInstallGCP
-
clusterAPIInstallPowerVS
-
EtcdBackendQuota
-
InsightsConfig
-
InsightsOnDemandDataGather
-
MetricsCollectionProfiles
-
NewOLM
-
AWSclusterHostedDNS
-
AdditionalRoutingCapabilities
-
AutomatedEtcdBackup
-
BootcNodeManagement
-
CSIDriverSharedResource
-
clusterMonitoringConfig
-
ConsolePluginContentSecurityPolicy
-
DNSNameResolver
-
DynamicResourceAllocation
-
EtcdBackendQuota
-
Example
-
GCPclusterHostedDNS
-
ImageStreamImportMode
-
IngressControllerDynamicConfigurationManager
-
InsightsConfig
-
InsightsConfigAPI
-
InsightsOnDemandDataGather
-
InsightsRuntimeExtractor
-
MachineAPIProviderOpenStack
-
MachineConfigNodes
-
MaxUnavailableStatefulSet
-
MetricsCollectionProfiles
-
MinimumKubeletVersion
-
MixedCPUsAllocation
-
NetworkSegmentation
-
NodeSwap
-
NutanixMultiSubnets
-
OVNObservability
-
OnclusterBuild
-
OpenShiftPodSecurityAdmission
-
PersistentIPsForVirtualization
-
PinnedImages
-
PlatformOperators
-
ProcMountType
-
RouteAdvertisements
-
RouteExternalCertificate
-
ServiceAccountTokenNodeBinding
-
SignatureStores
-
SigstoreImageVerification
-
TranslateStreamCloseWebsocketRequests
-
UpgradeStatus
-
UserNamespacesPodSecurityStandards
-
UserNamespacesSupport
-
VSphereMultiNetworks
-
VolumeAttributesClass
-
VolumeGroupSnapshot
-
ExternalOIDC
-
AWSEFSDriverVolumeMetrics
-
AdminNetworkPolicy
-
AlibabaPlatform
-
AzureWorkloadIdentity
-
BareMetalLoadBalancer
-
BuildCSIVolumes
-
ChunkSizeMiB
-
CloudDualStackNodeIPs
-
DisableKubeletCloudCredentialProviders
-
GCPLabelsTags
-
HardwareSpeed
-
IngressControllerLBSubnetsAWS
-
KMSv1
-
ManagedBootImages
-
ManagedBootImagesAWS
-
MultiArchInstallAWS
-
MultiArchInstallGCP
-
NetworkDiagnosticsConfig
-
NetworkLiveMigration
-
NodeDisruptionPolicy
-
PrivateHostedZoneAWS
-
SetEIPForNLBIngressController
-
VSphereControlPlaneMachineSet
-
VSphereDriverConfiguration
-
VSphereMultiVCenters
-
VSphereStaticIPs
-
ValidatingAdmissionPolicy