https://github.com/kubernetes/ingress/tree/master/controller...
https://github.com/kubernetes/ingress/tree/master/controller...
TLS termination at the Ingress Controller and by default unencrypted from there to the service endpoint?
I found this useful: http://blog.wercker.com/troubleshooting-ingress-kubernetes
Interesting discussion here: https://github.com/kubernetes/ingress/issues/257
It seems like a lot of overhead before even starting to process a request!
We are doing TLS termination at the ELB (we're running on AWS).
> Interesting discussion here: https://github.com/kubernetes/ingress/issues/257
Great, thanks!
Regarding ways of updating of the NGINX upstreams without requiring a reload, I was just made aware of modules like ngx_dynamic_upstream[1]. I'm sure there are other ways to address this in a less disruptive way than reloading everything, so this is probably something that could be improved in the future.
[1] https://github.com/kubernetes/kubernetes/blob/master/pkg/clo...