PageSourceSearch

https://archive-ce-3-18.netlify.app/assets/js/9477b2b4.b6dcd010.js

js archive-ce-3-18.netlify.app collected 2026-10-03 10:32:38 UTC 7,221 bytes, 1 lines download raw bytes

1"use strict";(self.webpackChunktigera_docs=self.webpackChunktigera_docs||[]).push([["19711"],{17372:function(e,n,i){i.r(n),i.d(n,{frontMatter:()=>l,default:()=>p,toc:()=>c,metadata:()=>r,assets:()=>a,contentTitle:()=>s});var r=JSON.parse('{"id":"networking/ipam/initial-ippool","title":"Configure default IP pools","description":"Configure the default IP address ranges for operator installation.","source":"@site/calico-enterprise_versioned_docs/version-3.18-2/networking/ipam/initial-ippool.mdx","sourceDirName":"networking/ipam","slug":"/networking/ipam/initial-ippool","permalink":"/calico-enterprise/3.18/networking/ipam/initial-ippool","draft":false,"unlisted":false,"editUrl":"https://github.com/tigera/docs/edit/main/calico-enterprise_versioned_docs/version-3.18-2/networking/ipam/initial-ippool.mdx","tags":[],"version":"3.18-2","frontMatter":{"description":"Configure the default IP address ranges for operator installation."},"sidebar":"calicoEnterpriseSidebar","previous":{"title":"Get started with IP address management","permalink":"/calico-enterprise/3.18/networking/ipam/get-started-ip-addresses"},"next":{"title":"Configure IP autodetection","permalink":"/calico-enterprise/3.18/networking/ipam/ip-autodetection"}}'),o=i(72459),t=i(36870);let l={description:"Configure the default IP address ranges for operator installation."},s="Configure default IP pools",a={},c=[{value:"Big picture",id:"big-picture",level:2},{value:"Value",id:"value",level:2},{value:"Concepts",id:"concepts",level:2},{value:"Kubernetes pod CIDR",id:"kubernetes-pod-cidr",level:3},{value:"Tigera Operator and IP pools",id:"tigera-operator-and-ip-pools",level:3},{value:"Before you begin...",id:"before-you-begin",level:2},{value:"How to",id:"how-to",level:2},{value:"Additional resources",id:"additional-resources",level:2}];function d(e){let n={a:"a",br:"br",code:"code",h1:"h1",h2:"h2",h3:"h3",header:"header",li:"li",ol:"ol",p:"p",pre:"pre",strong:"strong",ul:"ul",...(0,t.a)(),...e.components};return(0,o.jsxs)(o.Fragment,{children:[(0,o.jsx)(n.header,{children:(0,o.jsx)(n.h1,{id:"configure-default-ip-pools",children:"Configure default IP pools"})}),"\n",(0,o.jsx)(n.h2,{id:"big-picture",children:"Big picture"}),"\n",(0,o.jsx)(n.p,{children:"Configure the default IP pool values to use during Tigera Operator installation."}),"\n",(0,o.jsx)(n.h2,{id:"value",children:"Value"}),"\n",(0,o.jsx)(n.p,{children:"During Tigera Operator installation, you must configure the CIDR range to use for pods that reflects your environment."}),"\n",(0,o.jsx)(n.h2,{id:"concepts",children:"Concepts"}),"\n",(0,o.jsx)(n.h3,{id:"kubernetes-pod-cidr",children:"Kubernetes pod CIDR"}),"\n",(0,o.jsxs)(n.p,{children:["The ",(0,o.jsx)(n.strong,{children:"Kubernetes pod CIDR"})," is the expected IP address range for pod IPs. It is defined for the entire cluster, and is used by various Kubernetes components to determine if an IP belongs to a pod. For example, kube-proxy treats traffic differently if an IP is from a pod than if it is not. All pod IPs must be in the CIDR range for Kubernetes to function correctly."]}),"\n",(0,o.jsx)(n.h3,{id:"tigera-operator-and-ip-pools",children:"Tigera Operator and IP pools"}),"\n",(0,o.jsxs)(n.p,{children:[(0,o.jsx)(n.a,{href:"/calico-enterprise/3.18/reference/resources/ippool",children:"Calico IP pools"})," are ranges of IP addresses that Calico uses to assign to pods; the ranges must within the Kubernetes pod CIDR."]}),"\n",(0,o.jsxs)(n.p,{children:["The Tigera Operator reads the ",(0,o.jsx)(n.a,{href:"/calico-enterprise/3.18/reference/installation/api#operator.tigera.io/v1.Installation",children:"Installation"}),"\nresource and configures the default Calico IP pool. Note the following:"]}),"\n",(0,o.jsxs)(n.ul,{children:["\n",(0,o.jsxs)(n.li,{children:["Default fields for any that are omitted:","\n",(0,o.jsxs)(n.ul,{children:["\n",(0,o.jsx)(n.li,{children:"CIDR: 192.168.0.0/16"}),"\n",(0,o.jsx)(n.li,{children:"Encapsulation: IPIP"}),"\n",(0,o.jsx)(n.li,{children:"NodeSelector: all()"}),"\n",(0,o.jsx)(n.li,{children:"NATOutgoing: Enabled"}),"\n"]}),"\n"]}),"\n",(0,o.jsx)(n.li,{children:"IP pools are only used when Calico is used for pod networking, IP pools are not utilized when using other pod networking solutions."}),"\n",(0,o.jsxs)(n.li,{children:["To make changes to the IP pools after Tigera Operator install, you may use ",(0,o.jsx)(n.a,{href:"/calico-enterprise/3.18/reference/clis/calicoctl/",children:"calicoctl"})," or kubectl. If you make the changes to the IP Pool in the Installation resource (Operator IPPool) after installation, the changes are not applied."]}),"\n"]}),"\n",(0,o.jsx)(n.h2,{id:"before-you-begin",children:"Before you begin..."}),"\n",(0,o.jsxs)(n.ul,{children:["\n",(0,o.jsx)(n.li,{children:"Verify that your IP pool is within the Kubernetes pod CIDR"}),"\n",(0,o.jsx)(n.li,{children:"If you are using encapsulation (IP in IP or VXLAN), ensure that the traffic is allowed on your network"}),"\n",(0,o.jsx)(n.li,{children:"You are making these changes for a cluster that has not yet had Calico Enterprise deployed."}),"\n"]}),"\n",(0,o.jsx)(n.h2,{id:"how-to",children:"How to"}),"\n",(0,o.jsxs)(n.ol,{children:["\n",(0,o.jsxs)(n.li,{children:["\n",(0,o.jsx)(n.p,{children:"Download the custom-resource.yaml file."}),"\n"]}),"\n",(0,o.jsxs)(n.li,{children:["\n",(0,o.jsxs)(n.p,{children:["Edit the ",(0,o.jsx)(n.a,{href:"/calico-enterprise/3.18/reference/installation/api#operator.tigera.io/v1.Installation",children:"Installation resource"}),".",(0,o.jsx)(n.br,{}),"\n",(0,o.jsx)(n.strong,{children:"Required values"}),": ",(0,o.jsx)(n.code,{children:"cidr:"}),(0,o.jsx)(n.br,{}),"\n",(0,o.jsx)(n.strong,{children:"Empty values"}),": Defaulted"]}),"\n",(0,o.jsx)(n.pre,{children:(0,o.jsx)(n.code,{className:"language-bash",children:'apiVersion: operator.tigera.io/v1\nkind: Installation\nmetadata:\n  name: default\nspec:\n  calicoNetwork:\n   ipPools:\n      - cidr: "192.168.0.0/16"\n        encapsulation: "IPIP"\n        nodeSelector: "label == \'value\'"\n        natOutgoing: "Enabled"\
1n'})}),"\n"]}),"\n",(0,o.jsxs)(n.li,{children:["\n",(0,o.jsx)(n.p,{children:"Apply the manifest and continue with your installation as normal."}),"\n"]}),"\n"]}),"\n",(0,o.jsx)(n.h2,{id:"additional-resources",children:"Additional resources"}),"\n",(0,o.jsxs)(n.ul,{children:["\n",(0,o.jsx)(n.li,{children:(0,o.jsx)(n.a,{href:"/calico-enterprise/3.18/reference/resources/ippool",children:"IP pool resource"})}),"\n",(0,o.jsxs)(n.li,{children:["Use ",(0,o.jsx)(n.a,{href:"/calico-enterprise/3.18/reference/clis/calicoctl/",children:"calicoctl"})," or ",(0,o.jsx)(n.code,{children:"kubectl"})," to edit the IPPool resource."]}),"\n"]})]})}function p(e={}){let{wrapper:n}={...(0,t.a)(),...e.components};return n?(0,o.jsx)(n,{...e,children:(0,o.jsx)(d,{...e})}):d(e)}},36870:function(e,n,i){i.d(n,{Z:()=>s,a:()=>l});var r=i(84449);let o={},t=r.createContext(o);function l(e){let n=r.useContext(t);return r.useMemo(function(){return"function"==typeof e?e(n):{...n,...e}},[n,e])}function s(e){let n;return n=e.disableParentContext?"function"==typeof e.components?e.components(o):e.components||o:l(e.components),r.createElement(t.Provider,{value:n},e.children)}}}]);

Line numbers count LF bytes from the start of the resource, as the search results do. Vendor segments are library code the classifier recognised; they are stored but not indexed. Bytes are shown as Latin1 characters, one per byte.