Why isn't the noderestriction admission controller implemented on AKS?

Alex Greenwood 6 Reputation points
2022-01-12T11:01:35.3+00:00

Why isn't the noderestriction admission controller implemented on AKS?
https://kubernetes.io/docs/reference/access-authn-authz/admission-controllers/#noderestriction

We can see this is not enabled on AKS in the docs here:
https://learn.microsoft.com/en-us/azure/aks/faq#what-kubernetes-admission-controllers-does-aks-support-can-admission-controllers-be-added-or-removed

And we can see that other managed Kubernetes implementations have it enabled:
https://docs.aws.amazon.com/eks/latest/userguide/platform-versions.html

What is the Microsoft AKS's team rationale for not implementing it? Why does the team believe it is not an issue?

Azure Kubernetes Service (AKS)
Azure Kubernetes Service (AKS)
An Azure service that provides serverless Kubernetes, an integrated continuous integration and continuous delivery experience, and enterprise-grade security and governance.
1,887 questions
{count} vote

1 answer

Sort by: Most helpful
  1. KarishmaTiwari-MSFT 18,627 Reputation points Microsoft Employee
    2022-01-18T12:23:10.357+00:00

    Thanks for your valuable feedback. I have submitted this feedback as a feature request to the Product team. Currently, we do not have a roadmap to share on this feature request. I will track this feedback item and share here as I see an update on it. Thanks.