kiac v0.3.1
Bugfix release focused on making clusters work reliably on the current apple/container vmnet path.
Fixed
- Fixed
--kernel fullintegrity checks by pinning the published release asset digest (bc0455...). This resolves fresh Cilium/full-kernel creates failing with a sha256 mismatch. Fixes #7. - Fixed large TCP request uploads from another Apple Container VM through NodePort and LoadBalancer Services. kiac now installs a tiny embedded node-local
kiac-edge-proxyby default on every node. It terminates externally-entering TCP, then opens a fresh local connection back through kube-proxy, avoiding the vmnet TSO stall without pulling Envoy or any extra proxy image. Fixes #8. kiac createnow checks host reachability to the API server before printing normalkubectlhints, so vmnet reachability issues are surfaced clearly.kiac doctornow fails correctly for apple/container versions older than 1.0.0.
Improved
- Added
--no-edge-proxyandaddons.edgeProxyas an escape hatch for the new default edge proxy. - k3s run options now carry
--kernelconsistently to server and agent VMs. - Web UI create form supports distro/Cilium choices and has layout fixes.
- Added
examples/observability-lab.md, a copy-paste Grafana/Prometheus lab that pairs with the existing Gateway API example. - Updated docs for networking, troubleshooting, k3s, config files, and the new edge-proxy behavior.
Verification
Validated before release:
go test ./...go vet ./...- GoReleaser snapshot build
- kubeadm NodePort 1 MiB upload from a sibling VM
- kubeadm LoadBalancer 1 MiB upload from a sibling VM
- k3s NodePort 1 MiB upload from a sibling VM
- kubeadm worker-node NodePort 1 MiB upload from a sibling VM
- combined
--observability --gatewaycluster: Grafana health, Prometheus app scrape,kubectl top nodes, Gateway API programmed status, and HTTPRoute curl through Traefik
Full Changelog: v0.3.0...v0.3.1