<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Ops Insights – 컴포넌트별 마이그레이션</title><link>https://docs.makgol.com/eks-upgrade/components/</link><description>Recent content in 컴포넌트별 마이그레이션 on Ops Insights</description><generator>Hugo -- gohugo.io</generator><language>ko-KR</language><copyright>© 2026 Mont</copyright><lastBuildDate>Tue, 21 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://docs.makgol.com/eks-upgrade/components/index.xml" rel="self" type="application/rss+xml"/><item><title>karpenter — 0.36.2 → 1.14.0, v1beta1→v1 CRD</title><link>https://docs.makgol.com/eks-upgrade/components/01-karpenter/</link><pubDate>Tue, 21 Jul 2026 00:00:00 +0000</pubDate><guid>https://docs.makgol.com/eks-upgrade/components/01-karpenter/</guid><description>
&lt;h1&gt;karpenter — 0.36.2 → 1.14.0, v1beta1→v1 CRD&lt;/h1&gt;&lt;div class="hx:overflow-x-auto hx:mt-6 hx:flex hx:rounded-lg hx:border hx:py-2 hx:ltr:pr-4 hx:rtl:pl-4 hx:contrast-more:border-current hx:contrast-more:dark:border-current hx:border-blue-200 hx:bg-blue-100 hx:text-blue-900 hx:dark:border-blue-200/30 hx:dark:bg-blue-900/30 hx:dark:text-blue-200"&gt;
&lt;div class="hx:ltr:pl-3 hx:ltr:pr-2 hx:rtl:pr-3 hx:rtl:pl-2"&gt;&lt;svg height=1.2em class="hx:inline-block hx:align-middle" xmlns="http://www.w3.org/2000/svg" fill="none" viewBox="0 0 24 24" stroke-width="2" stroke="currentColor" aria-hidden="true"&gt;&lt;path stroke-linecap="round" stroke-linejoin="round" d="M13 16h-1v-4h-1m1-4h.01M21 12a9 9 0 11-18 0 9 9 0 0118 0z"/&gt;&lt;/svg&gt;&lt;/div&gt;
&lt;div class="hx:w-full hx:min-w-0 hx:leading-7"&gt;
&lt;div class="hx:mt-6 hx:leading-7 hx:first:mt-0"&gt;&lt;ul&gt;
&lt;li&gt;컨트롤러를 &lt;code&gt;0.36.2&lt;/code&gt;에서 최신 stable &lt;code&gt;1.14.0&lt;/code&gt;(2026-07-11 릴리스)로 올립니다. 목표 k8s 1.35를 지원하는 최소가 1.9이고 1.14는 1.30~1.36을 커버하니 &amp;ldquo;가능한 최신 stable&amp;rdquo; 방침에 맞습니다 — 1.36으로 재검토할 때도 하한이 1.13이라 1.14.0이 그대로 유효합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;넘을 스키마 경계는 &lt;code&gt;v1beta1&lt;/code&gt; → &lt;code&gt;v1&lt;/code&gt; 하나뿐입니다. finance의 0.36.2는 이미 v1beta1(&lt;code&gt;karpenter.sh/v1beta1&lt;/code&gt; NodePool·&lt;code&gt;karpenter.k8s.aws/v1beta1&lt;/code&gt; EC2NodeClass)입니다. v1alpha5의 Provisioner·AWSNodeTemplate은 v0.33에서 졸업해 애초에 없습니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;v1에서 &lt;code&gt;amiSelectorTerms&lt;/code&gt;가 필수가 됩니다. 빠뜨리면 EC2NodeClass와 이를 참조하는 모든 NodePool이 통째로 &lt;code&gt;NotReady&lt;/code&gt;가 됩니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;v1은 drift를 GA로 승격시키면서 끄는 수단을 없앱니다. finance가 명시한 &lt;code&gt;featureGates.drift: false&lt;/code&gt;는 무효가 되고 drift가 강제로 켜집니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;blue-green 신규 클러스터라 conversion 웹훅을 왕복하지 않습니다. 기존 클러스터를 in-place로 올릴 때만 밟아야 하는 &lt;code&gt;0.36 → 0.36.9 → 1.0.x → 1.1+&lt;/code&gt; 순차 경로를 건너뛰고 v1 CRD와 v1 매니페스트로 1.14.0을 처음부터 세웁니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h2&gt;1. 왜 1.14.0인가&lt;span class="hx:absolute hx:-mt-20" id="1-왜-1140인가"&gt;&lt;/span&gt;
&lt;a href="#1-%ec%99%9c-1140%ec%9d%b8%ea%b0%80" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h2&gt;&lt;p&gt;목표 클러스터가 k8s 1.35라서 버전은 거의 정해집니다. karpenter 호환 매트릭스에서 1.35를 받는 최소 버전이 1.9이고 1.14는 1.30~1.36을 커버합니다. &amp;ldquo;가능한 최신 stable&amp;quot;이라는 방침과 하한 조건이 같은 답을 가리킵니다. 나중에 1.36으로 재검토하더라도 그때의 하한이 1.13이라 1.14.0은 그대로 쓸 수 있습니다.&lt;/p&gt;</description></item><item><title>istio — →1.30.3, sidecar 유지·ambient 금지</title><link>https://docs.makgol.com/eks-upgrade/components/02-istio/</link><pubDate>Tue, 21 Jul 2026 00:00:00 +0000</pubDate><guid>https://docs.makgol.com/eks-upgrade/components/02-istio/</guid><description>
&lt;h1&gt;istio — →1.30.3, sidecar 유지·ambient 금지&lt;/h1&gt;&lt;div class="hx:overflow-x-auto hx:mt-6 hx:flex hx:rounded-lg hx:border hx:py-2 hx:ltr:pr-4 hx:rtl:pl-4 hx:contrast-more:border-current hx:contrast-more:dark:border-current hx:border-blue-200 hx:bg-blue-100 hx:text-blue-900 hx:dark:border-blue-200/30 hx:dark:bg-blue-900/30 hx:dark:text-blue-200"&gt;
&lt;div class="hx:ltr:pl-3 hx:ltr:pr-2 hx:rtl:pr-3 hx:rtl:pl-2"&gt;&lt;svg height=1.2em class="hx:inline-block hx:align-middle" xmlns="http://www.w3.org/2000/svg" fill="none" viewBox="0 0 24 24" stroke-width="2" stroke="currentColor" aria-hidden="true"&gt;&lt;path stroke-linecap="round" stroke-linejoin="round" d="M13 16h-1v-4h-1m1-4h.01M21 12a9 9 0 11-18 0 9 9 0 0118 0z"/&gt;&lt;/svg&gt;&lt;/div&gt;
&lt;div class="hx:w-full hx:min-w-0 hx:leading-7"&gt;
&lt;div class="hx:mt-6 hx:leading-7 hx:first:mt-0"&gt;&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;제약(변경 불가)&lt;/strong&gt;: data plane 은 &lt;strong&gt;sidecar 유지&lt;/strong&gt;가 전제입니다. ztunnel/waypoint 기반 ambient mesh 전환은 범위 밖이고 어떤 단계에서도 시도하지 않습니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;경로는 A(1.35 신규 클러스터 직행)로 확정됐다&lt;/strong&gt; — 2026-08-05 의 EKS 1.35 · istio 1.30 결정이 근거입니다. 아래 경로 B 서술은 &amp;ldquo;왜 안 되는가&amp;quot;의 근거로만 남깁니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;라이브 버전은 여전히 미확인&lt;/strong&gt;이지만 경로 A 확정으로 성격이 바뀌었다 — 홉 산정용 blocking 은 아니고 &lt;strong&gt;green↔blue values·EnvoyFilter 설정 parity 확인용&lt;/strong&gt;입니다. 그래도 컷오버 전에 &lt;code&gt;istioctl version&lt;/code&gt; 으로 실측은 남깁니다 &lt;code&gt;?&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;목표 &lt;strong&gt;1.30.3&lt;/strong&gt;(2026-07-16 릴리스)은 istio.io 최신 stable 이고 지원 k8s 가 &lt;strong&gt;1.32~1.36&lt;/strong&gt; 이라 목표 클러스터 &lt;strong&gt;1.35&lt;/strong&gt; 를 포함합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;경로 B(기존 green in-place)로는 1.30.3 에 도달할 수 없다&lt;/strong&gt; — istio 1.30 의 k8s 하한이 &lt;strong&gt;1.32&lt;/strong&gt; 인데 green 은 &lt;strong&gt;1.31&lt;/strong&gt; 입니다. green 이 1.31 인 동안 올릴 수 있는 상한은 &lt;strong&gt;istio 1.29&lt;/strong&gt;(지원 1.31~1.35)이고 그마저 EOL 이 ~2026-08 입니다. 1.30.3 은 &lt;strong&gt;1.35 신규 클러스터 직행(경로 A)에서만&lt;/strong&gt; 성립합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;native sidecar 전환 시점은 istio 버전이 아니라 노드 kubelet 버전이 정한다&lt;/strong&gt; — 기본값은 &lt;code&gt;true&lt;/code&gt; 가 아닌 &lt;code&gt;&amp;quot;auto&amp;quot;&lt;/code&gt; 이고 전 노드 kubelet ≥1.33 일 때만 켜집니다. 목표 1.35 노드에서는 &lt;strong&gt;처음부터 ON&lt;/strong&gt; 이고 green(1.31)에서는 &lt;strong&gt;끝까지 OFF&lt;/strong&gt; 입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;1.29 차트 통합의 리소스 rename 은 우리에게 해당 없을 가능성이 크다&lt;/strong&gt; — 코드 대조 결과 istiod 차트는 1.22.0 부터 이미 신 이름(&lt;code&gt;istiod-clusterrole&lt;/code&gt;)입니다. 대응은 rename 추적 대신 &lt;strong&gt;구 이름 orphan 탐색&lt;/strong&gt;입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;blue-green 신규 클러스터라면 &lt;strong&gt;canary 홉 체인 없이 1.30.3 을 처음부터 직행 설치&lt;/strong&gt;할 수 있습니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h2&gt;1. 왜 1.30.3인가&lt;span class="hx:absolute hx:-mt-20" id="1-왜-1303인가"&gt;&lt;/span&gt;
&lt;a href="#1-%ec%99%9c-1303%ec%9d%b8%ea%b0%80" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h2&gt;&lt;p&gt;목표 버전은 남은 선택지가 좁아서 사실상 정해집니다. istio 1.24 계열이 지원하는 k8s 는 1.28&lt;del&gt;1.31 까지라 목표 &lt;strong&gt;1.35&lt;/strong&gt; 에서는 아예 지원 대상 밖입니다. 1.35 를 지원하는 비-EOL 라인은 &lt;strong&gt;1.29&lt;/strong&gt;(k8s 1.31&lt;/del&gt;1.35)와 &lt;strong&gt;1.30&lt;/strong&gt;(k8s 1.32~1.36) 둘뿐인데 그중 1.29 는 EOL 전망이 ~2026-08 입니다. 남는 건 &lt;strong&gt;1.30.3&lt;/strong&gt; 하나입니다. 2026-07-16 릴리스이자 istio.io 최신 stable 이고, 지원 k8s 범위 안에 목표 클러스터 1.35 가 들어옵니다.&lt;/p&gt;</description></item><item><title>GitOps — argocd·argo-rollouts</title><link>https://docs.makgol.com/eks-upgrade/components/03-gitops-argocd-rollouts/</link><pubDate>Tue, 21 Jul 2026 00:00:00 +0000</pubDate><guid>https://docs.makgol.com/eks-upgrade/components/03-gitops-argocd-rollouts/</guid><description>
&lt;h1&gt;GitOps — argocd·argo-rollouts&lt;/h1&gt;&lt;div class="hx:overflow-x-auto hx:mt-6 hx:flex hx:rounded-lg hx:border hx:py-2 hx:ltr:pr-4 hx:rtl:pl-4 hx:contrast-more:border-current hx:contrast-more:dark:border-current hx:border-blue-200 hx:bg-blue-100 hx:text-blue-900 hx:dark:border-blue-200/30 hx:dark:bg-blue-900/30 hx:dark:text-blue-200"&gt;
&lt;div class="hx:ltr:pl-3 hx:ltr:pr-2 hx:rtl:pr-3 hx:rtl:pl-2"&gt;&lt;svg height=1.2em class="hx:inline-block hx:align-middle" xmlns="http://www.w3.org/2000/svg" fill="none" viewBox="0 0 24 24" stroke-width="2" stroke="currentColor" aria-hidden="true"&gt;&lt;path stroke-linecap="round" stroke-linejoin="round" d="M13 16h-1v-4h-1m1-4h.01M21 12a9 9 0 11-18 0 9 9 0 0118 0z"/&gt;&lt;/svg&gt;&lt;/div&gt;
&lt;div class="hx:w-full hx:min-w-0 hx:leading-7"&gt;
&lt;div class="hx:mt-6 hx:leading-7 hx:first:mt-0"&gt;&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;argocd(워크로드 spoke)&lt;/strong&gt;: chart 7.5.2(앱 v2.12) → &lt;strong&gt;chart 10.1.4(앱 v3.4.5)&lt;/strong&gt;. 현행 2.12는 애초에 목표 k8s &lt;strong&gt;1.35&lt;/strong&gt; tested 목록 밖이고 3.4가 v1.32~1.35를 커버하므로 bump가 사실상 필수입니다 — 최대 breaking 구간은 앱 &lt;strong&gt;2.14→3.0&lt;/strong&gt;(logs RBAC 강제, 리소스 추적 label→annotation)입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;argo-rollouts&lt;/strong&gt;: chart 2.37.2(앱 v1.7.1) → &lt;strong&gt;chart 2.41.1(앱 v1.9.1)&lt;/strong&gt;. k8s 지원 매트릭스가 없는 tolerant 컴포넌트라 하드 블로커는 아니지만 &lt;strong&gt;CVE-2026-35469(HIGH, 원격 DoS)&lt;/strong&gt; 수정판이라 강력 권장입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;argocd와 argo-rollouts는 finance에서 배포 구조가 다릅니다 — &lt;strong&gt;argocd는 독립 upstream 차트&lt;/strong&gt;라 &lt;code&gt;yo-charts&lt;/code&gt; 리워크가 필요 없고 &lt;strong&gt;argo-rollouts는 umbrella 서브차트&lt;/strong&gt;라 &lt;code&gt;cluster-bootstrap-v2&lt;/code&gt; umbrella의 &lt;code&gt;Chart.yaml&lt;/code&gt; dependency를 고쳐야 합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;argo-rollouts는 istio canary 트래픽 라우팅만 씁니다(ALB rollout trafficRouting은 finance 템플릿에 없음) — v1.9.0의 istio DestinationRule/weight 순서 변화가 직접 관련됩니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h2&gt;1. argocd(워크로드 spoke) — 7.5.2 → 10.1.4&lt;span class="hx:absolute hx:-mt-20" id="1-argocd워크로드-spoke--752--1014"&gt;&lt;/span&gt;
&lt;a href="#1-argocd%ec%9b%8c%ed%81%ac%eb%a1%9c%eb%93%9c-spoke--752--1014" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h2&gt;&lt;h3&gt;왜 이 버전인가&lt;span class="hx:absolute hx:-mt-20" id="왜-이-버전인가"&gt;&lt;/span&gt;
&lt;a href="#%ec%99%9c-%ec%9d%b4-%eb%b2%84%ec%a0%84%ec%9d%b8%ea%b0%80" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h3&gt;&lt;p&gt;대상은 staging-finance-green/prod-finance-green의 워크로드 spoke ArgoCD입니다. ring0 허브(관리) ArgoCD는 이 페이지 범위 밖이지만 허브가 spoke를 배포하는 주체이므로 &lt;strong&gt;허브 버전 미확인은 리스크로 남습니다&lt;/strong&gt;.&lt;/p&gt;</description></item><item><title>시크릿·오토스케일링 — external-secrets·keda</title><link>https://docs.makgol.com/eks-upgrade/components/04-secrets-autoscaling/</link><pubDate>Tue, 21 Jul 2026 00:00:00 +0000</pubDate><guid>https://docs.makgol.com/eks-upgrade/components/04-secrets-autoscaling/</guid><description>
&lt;h1&gt;시크릿·오토스케일링 — external-secrets·keda&lt;/h1&gt;&lt;div class="hx:overflow-x-auto hx:mt-6 hx:flex hx:rounded-lg hx:border hx:py-2 hx:ltr:pr-4 hx:rtl:pl-4 hx:contrast-more:border-current hx:contrast-more:dark:border-current hx:border-blue-200 hx:bg-blue-100 hx:text-blue-900 hx:dark:border-blue-200/30 hx:dark:bg-blue-900/30 hx:dark:text-blue-200"&gt;
&lt;div class="hx:ltr:pl-3 hx:ltr:pr-2 hx:rtl:pr-3 hx:rtl:pl-2"&gt;&lt;svg height=1.2em class="hx:inline-block hx:align-middle" xmlns="http://www.w3.org/2000/svg" fill="none" viewBox="0 0 24 24" stroke-width="2" stroke="currentColor" aria-hidden="true"&gt;&lt;path stroke-linecap="round" stroke-linejoin="round" d="M13 16h-1v-4h-1m1-4h.01M21 12a9 9 0 11-18 0 9 9 0 0118 0z"/&gt;&lt;/svg&gt;&lt;/div&gt;
&lt;div class="hx:w-full hx:min-w-0 hx:leading-7"&gt;
&lt;div class="hx:mt-6 hx:leading-7 hx:first:mt-0"&gt;&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;external-secrets&lt;/strong&gt;: 0.9.20 → &lt;strong&gt;2.8.x&lt;/strong&gt;. 원 조사는 k8s 1.33 기준으로 돌았고 그 기준에서는 EOL 판인 0.19.2가 채택안이었습니다. 상위 목표가 1.35로 상향되면서 최종 목표는 2.8.x로 바뀌었습니다 — k8s 1.35를 지원하는 최신 라인이 여기에 걸리기 때문입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;keda&lt;/strong&gt;: 2.10.2 → &lt;strong&gt;2.20.1&lt;/strong&gt;. 2.10의 지원 창은 v1.24–v1.26이라 목표 k8s &lt;strong&gt;1.35&lt;/strong&gt;를 애초에 지원하지 않으니 bump가 사실상 필수입니다. 2.20이 1.35를 상한으로 갖는 라인입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;둘 다 blue-green 신규 클러스터라 마이너 체인 없이 목표 버전으로 직행 설치합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;두 컴포넌트의 리스크 성격은 크게 다릅니다. external-secrets는 CRD &lt;code&gt;v1beta1→v1&lt;/code&gt; 전량 재작성이 필요하고 keda는 CRD apiVersion이 전 구간 불변이라 스키마 이관 부담이 없습니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h2&gt;1. external-secrets — 0.9.20 → 2.8.x&lt;span class="hx:absolute hx:-mt-20" id="1-external-secrets--0920--28x"&gt;&lt;/span&gt;
&lt;a href="#1-external-secrets--0920--28x" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h2&gt;&lt;h3&gt;왜 이 버전인가&lt;span class="hx:absolute hx:-mt-20" id="왜-이-버전인가"&gt;&lt;/span&gt;
&lt;a href="#%ec%99%9c-%ec%9d%b4-%eb%b2%84%ec%a0%84%ec%9d%b8%ea%b0%80" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h3&gt;&lt;p&gt;원 조사는 k8s 1.33을 전제로 돌았습니다. 그 전제에서 ESO 0.9.x는 지원 범위 밖입니다 — 0.9.x가 지원하는 k8s는 1.19~1.30까지입니다. 당시 1.33을 지원하는 라인은 0.17/0.18/0.19 셋뿐이었고 셋 다 이미 EOL 상태였습니다. 그래서 원 조사의 채택안은 &amp;ldquo;1.33 지원 창의 최신&amp;quot;인 0.19.2였습니다. EOL 버전을 운영하는 정책 트레이드오프는 팀 결정 사항으로 남았습니다.&lt;/p&gt;</description></item><item><title>네트워킹·인그레스 — aws-load-balancer-controller</title><link>https://docs.makgol.com/eks-upgrade/components/05-networking-ingress/</link><pubDate>Tue, 21 Jul 2026 00:00:00 +0000</pubDate><guid>https://docs.makgol.com/eks-upgrade/components/05-networking-ingress/</guid><description>
&lt;h1&gt;네트워킹·인그레스 — aws-load-balancer-controller&lt;/h1&gt;&lt;div class="hx:overflow-x-auto hx:mt-6 hx:flex hx:rounded-lg hx:border hx:py-2 hx:ltr:pr-4 hx:rtl:pl-4 hx:contrast-more:border-current hx:contrast-more:dark:border-current hx:border-blue-200 hx:bg-blue-100 hx:text-blue-900 hx:dark:border-blue-200/30 hx:dark:bg-blue-900/30 hx:dark:text-blue-200"&gt;
&lt;div class="hx:ltr:pl-3 hx:ltr:pr-2 hx:rtl:pr-3 hx:rtl:pl-2"&gt;&lt;svg height=1.2em class="hx:inline-block hx:align-middle" xmlns="http://www.w3.org/2000/svg" fill="none" viewBox="0 0 24 24" stroke-width="2" stroke="currentColor" aria-hidden="true"&gt;&lt;path stroke-linecap="round" stroke-linejoin="round" d="M13 16h-1v-4h-1m1-4h.01M21 12a9 9 0 11-18 0 9 9 0 0118 0z"/&gt;&lt;/svg&gt;&lt;/div&gt;
&lt;div class="hx:w-full hx:min-w-0 hx:leading-7"&gt;
&lt;div class="hx:mt-6 hx:leading-7 hx:first:mt-0"&gt;&lt;ul&gt;
&lt;li&gt;chart &lt;strong&gt;1.8.1&lt;/strong&gt;(앱 v2.8.x)에서 &lt;strong&gt;chart 3.4.2&lt;/strong&gt;(앱 v3.4.2)로 갑니다. v3.0.0이 &lt;strong&gt;chartVersion=appVersion 정렬&lt;/strong&gt;로 관례를 바꾼 탓에 차트 라인은 1.x에서 곧바로 3.x로 건너뜁니다 — 2.x 차트는 아예 존재하지 않습니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;목표 k8s &lt;strong&gt;1.35&lt;/strong&gt;에서 v2.8.x도 동작하므로 하드 블로커는 아닙니다. 그럼에도 ~2년 구버전이라 최신 stable로 올리기를 권합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;CRD &lt;code&gt;TargetGroupBinding&lt;/code&gt;·&lt;code&gt;IngressClassParams&lt;/code&gt;는 &lt;strong&gt;storage 버전이 v1beta1로 불변&lt;/strong&gt;이어서 기존 CR을 변환할 일이 없습니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;IAM 정책에 8개 액션이 새로 필요&lt;/strong&gt;합니다. 빠지면 컨트롤러 reconcile 중 AccessDenied로 ALB 갱신이 실패합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;finance는 이 컨트롤러를 &lt;strong&gt;&lt;code&gt;cluster-bootstrap-v2&lt;/code&gt; umbrella의 서브차트&lt;/strong&gt;로 배포하므로 독립 bump가 불가능합니다 — umbrella 리워크와 ECR 재퍼블리시가 선행 조건입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h2&gt;1. 왜 chart 3.4.2인가&lt;span class="hx:absolute hx:-mt-20" id="1-왜-chart-342인가"&gt;&lt;/span&gt;
&lt;a href="#1-%ec%99%9c-chart-342%ec%9d%b8%ea%b0%80" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h2&gt;&lt;p&gt;목표 k8s만 놓고 보면 이 컴포넌트는 급하지 않습니다. 현행 앱 v2.8.x도 1.35에서 동작하므로 하드 블로커가 아닙니다. 그럼에도 손대는 이유는 버전 나입니다 — v2.8.x는 ~2년 구버전입니다. 최신 stable인 chart 3.4.2(앱 v3.4.2)로 올리기를 권합니다.&lt;/p&gt;</description></item><item><title>관측성 — VM-stack·metrics-server</title><link>https://docs.makgol.com/eks-upgrade/components/06-observability/</link><pubDate>Tue, 21 Jul 2026 00:00:00 +0000</pubDate><guid>https://docs.makgol.com/eks-upgrade/components/06-observability/</guid><description>
&lt;h1&gt;관측성 — VM-stack·metrics-server·fluentbit·descheduler&lt;/h1&gt;&lt;div class="hx:overflow-x-auto hx:mt-6 hx:flex hx:rounded-lg hx:border hx:py-2 hx:ltr:pr-4 hx:rtl:pl-4 hx:contrast-more:border-current hx:contrast-more:dark:border-current hx:border-blue-200 hx:bg-blue-100 hx:text-blue-900 hx:dark:border-blue-200/30 hx:dark:bg-blue-900/30 hx:dark:text-blue-200"&gt;
&lt;div class="hx:ltr:pl-3 hx:ltr:pr-2 hx:rtl:pr-3 hx:rtl:pl-2"&gt;&lt;svg height=1.2em class="hx:inline-block hx:align-middle" xmlns="http://www.w3.org/2000/svg" fill="none" viewBox="0 0 24 24" stroke-width="2" stroke="currentColor" aria-hidden="true"&gt;&lt;path stroke-linecap="round" stroke-linejoin="round" d="M13 16h-1v-4h-1m1-4h.01M21 12a9 9 0 11-18 0 9 9 0 0118 0z"/&gt;&lt;/svg&gt;&lt;/div&gt;
&lt;div class="hx:w-full hx:min-w-0 hx:leading-7"&gt;
&lt;div class="hx:mt-6 hx:leading-7 hx:first:mt-0"&gt;&lt;ul&gt;
&lt;li&gt;victoria-metrics-k8s-stack: chart 0.19.4 → 0.87.0, 68마이너 점프. CRD 관리 스키마가 통째로 개편됩니다. 0.85.0부터는 대시보드/룰을 sync-job이 외부에서 fetch해 적용하는 방식으로 바뀌고 VM 컴포넌트 이미지는 태그를 핀하지 않아 차트만 올려도 몇 년치가 자동으로 점프합니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;metrics-server: v0.7.2 → v0.9.0. raw manifest로 배포돼 있어 ArgoCD 앱 스캔·Helm 인벤토리 어디에도 잡히지 않습니다(누락이 아니라 배포 방식이 다릅니다) &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;fluentbit(aws-for-fluent-bit): chart 0.1.34 → 0.2.0. 차트 diff는 사소하지만 이미지 태그를 핀하지 않아 차트 버전 하나 올리는 것이 곧 Fluent Bit 1.9.10→4.2.2·AL2→AL2023 major 점프입니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;descheduler: 0.28.0 → 0.35.x(원 조사는 1.33 기준 0.33.x). values의 &lt;code&gt;strategies&lt;/code&gt; 블록이 v1alpha1 잔재라 지금도 무시되고 있을 가능성이 매우 높습니다 — 그대로 둘지(옵션 A) 원 의도를 복원할지(옵션 B)는 팀이 정해야 합니다 &lt;code&gt;?&lt;/code&gt;&lt;/li&gt;
&lt;li&gt;네 컴포넌트 모두 tier-3(&lt;code&gt;kubernetes.default.svc&lt;/code&gt;) 배포라 blue-green 신규 클러스터에서 endpoint를 다시 잡을 필요가 없습니다 &lt;code&gt;✓&lt;/code&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;h2&gt;1. victoria-metrics-k8s-stack — 0.19.4 → 0.87.0&lt;span class="hx:absolute hx:-mt-20" id="1-victoria-metrics-k8s-stack--0194--0870"&gt;&lt;/span&gt;
&lt;a href="#1-victoria-metrics-k8s-stack--0194--0870" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h2&gt;&lt;h3&gt;왜 이 버전인가&lt;span class="hx:absolute hx:-mt-20" id="왜-이-버전인가"&gt;&lt;/span&gt;
&lt;a href="#%ec%99%9c-%ec%9d%b4-%eb%b2%84%ec%a0%84%ec%9d%b8%ea%b0%80" class="subheading-anchor" aria-label="이 섹션에 대한 고유 링크"&gt;&lt;/a&gt;&lt;/h3&gt;&lt;p&gt;chart를 0.19.4에서 0.87.0으로 올립니다. 68마이너 점프입니다. VM 코어(appVersion)는 v1.99.0에서 v1.148.0으로, operator 서브차트는 0.28.&lt;em&gt;에서 0.66.&lt;/em&gt;(app v0.73.1)로 함께 대점프합니다.&lt;/p&gt;</description></item></channel></rss>