From 7414ecddcd58b51aac54326913104dee5478f706 Mon Sep 17 00:00:00 2001 From: Nell Jerram Date: Thu, 31 Jul 2025 18:28:02 +0100 Subject: [PATCH 1/2] [RS-2690] Doc OpenShift restriction of Gateway API CRDs --- calico-cloud/networking/gateway-api.mdx | 6 ++++++ calico-enterprise/networking/gateway-api.mdx | 6 ++++++ calico/networking/gateway-api.mdx | 6 ++++++ 3 files changed, 18 insertions(+) diff --git a/calico-cloud/networking/gateway-api.mdx b/calico-cloud/networking/gateway-api.mdx index 2873638a05..578e5d0455 100644 --- a/calico-cloud/networking/gateway-api.mdx +++ b/calico-cloud/networking/gateway-api.mdx @@ -31,6 +31,12 @@ The Gateway API is an official Kubernetes API for advanced routing to services i | TLSRoute | v1alpha2 | | UDPRoute | v1alpha2 | +:::note + +Some versions of OpenShift (currently just 4.19) restrict the Gateway API CRDs that may be installed: only `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. In clusters with those OpenShift versions the `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute` APIs will not be available. + +::: + ### Envoy Gateway Several implementations of the Gateway API are available, one of which is the [Envoy Gateway](https://gateway.envoyproxy.io/). $[prodname] integrates the Envoy Gateway implementation in order to provide support for the Gateway API. diff --git a/calico-enterprise/networking/gateway-api.mdx b/calico-enterprise/networking/gateway-api.mdx index 9ee8d305e7..db9de613d1 100644 --- a/calico-enterprise/networking/gateway-api.mdx +++ b/calico-enterprise/networking/gateway-api.mdx @@ -31,6 +31,12 @@ The Gateway API is an official Kubernetes API for advanced routing to services i | TLSRoute | v1alpha2 | | UDPRoute | v1alpha2 | +:::note + +Some versions of OpenShift (currently just 4.19) restrict the Gateway API CRDs that may be installed: only `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. In clusters with those OpenShift versions the `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute` APIs will not be available. + +::: + ### Envoy Gateway Several implementations of the Gateway API are available, one of which is the [Envoy Gateway](https://gateway.envoyproxy.io/). $[prodname] integrates the Envoy Gateway implementation in order to provide support for the Gateway API. diff --git a/calico/networking/gateway-api.mdx b/calico/networking/gateway-api.mdx index c6323da20c..99c7976911 100644 --- a/calico/networking/gateway-api.mdx +++ b/calico/networking/gateway-api.mdx @@ -31,6 +31,12 @@ The Gateway API is an official Kubernetes API for advanced routing to services i | TLSRoute | v1alpha2 | | UDPRoute | v1alpha2 | +:::note + +Some versions of OpenShift (currently just 4.19) restrict the Gateway API CRDs that may be installed: only `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. In clusters with those OpenShift versions the `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute` APIs will not be available. + +::: + ### Envoy Gateway Several implementations of the Gateway API are available, one of which is the [Envoy Gateway](https://gateway.envoyproxy.io/). $[prodname] integrates the Envoy Gateway implementation in order to provide support for the Gateway API. From f67b1065b8d51ae1b01e05b63e09e5dae9a59856 Mon Sep 17 00:00:00 2001 From: Nell Jerram Date: Tue, 19 Aug 2025 12:06:42 +0100 Subject: [PATCH 2/2] Improve presentation --- calico-cloud/networking/gateway-api.mdx | 6 +++++- calico-enterprise/networking/gateway-api.mdx | 6 +++++- calico/networking/gateway-api.mdx | 6 +++++- 3 files changed, 15 insertions(+), 3 deletions(-) diff --git a/calico-cloud/networking/gateway-api.mdx b/calico-cloud/networking/gateway-api.mdx index db9de613d1..15e7369034 100644 --- a/calico-cloud/networking/gateway-api.mdx +++ b/calico-cloud/networking/gateway-api.mdx @@ -33,7 +33,11 @@ The Gateway API is an official Kubernetes API for advanced routing to services i :::note -Some versions of OpenShift (currently just 4.19) restrict the Gateway API CRDs that may be installed: only `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. In clusters with those OpenShift versions the `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute` APIs will not be available. +OpenShift 4.19 introduced [restrictions](https://docs.redhat.com/en/documentation/openshift_container_platform/4.19/html-single/ingress_and_load_balancing/index#nw-ingress-gateway-api-overview_ingress-gateway-api) on which Gateway API CRDs can be installed. + +- The available Gateway API resources in OpenShift 4.19 are: `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. + +- Other Gateway API resources, namely `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute`, are not available in OpenShift 4.19. ::: diff --git a/calico-enterprise/networking/gateway-api.mdx b/calico-enterprise/networking/gateway-api.mdx index db9de613d1..15e7369034 100644 --- a/calico-enterprise/networking/gateway-api.mdx +++ b/calico-enterprise/networking/gateway-api.mdx @@ -33,7 +33,11 @@ The Gateway API is an official Kubernetes API for advanced routing to services i :::note -Some versions of OpenShift (currently just 4.19) restrict the Gateway API CRDs that may be installed: only `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. In clusters with those OpenShift versions the `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute` APIs will not be available. +OpenShift 4.19 introduced [restrictions](https://docs.redhat.com/en/documentation/openshift_container_platform/4.19/html-single/ingress_and_load_balancing/index#nw-ingress-gateway-api-overview_ingress-gateway-api) on which Gateway API CRDs can be installed. + +- The available Gateway API resources in OpenShift 4.19 are: `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. + +- Other Gateway API resources, namely `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute`, are not available in OpenShift 4.19. ::: diff --git a/calico/networking/gateway-api.mdx b/calico/networking/gateway-api.mdx index 353b5a9c2b..0318b3cf23 100644 --- a/calico/networking/gateway-api.mdx +++ b/calico/networking/gateway-api.mdx @@ -33,7 +33,11 @@ The Gateway API is an official Kubernetes API for advanced routing to services i :::note -Some versions of OpenShift (currently just 4.19) restrict the Gateway API CRDs that may be installed: only `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. In clusters with those OpenShift versions the `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute` APIs will not be available. +OpenShift 4.19 introduced [restrictions](https://docs.redhat.com/en/documentation/openshift_container_platform/4.19/html-single/ingress_and_load_balancing/index#nw-ingress-gateway-api-overview_ingress-gateway-api) on which Gateway API CRDs can be installed. + +- The available Gateway API resources in OpenShift 4.19 are: `GatewayClass`, `Gateway`, `GRPCRoute`, `HTTPRoute` and `ReferenceGrant`. + +- Other Gateway API resources, namely `BackendLBPolicy`, `BackendTLSPolicy`, `TCPRoute`, `TLSRoute` and `UDPRoute`, are not available in OpenShift 4.19. :::