Guide
Ingress NGINX
retirement.
SIG Network is retiring Ingress NGINX. This checklist is the method in the Resizes field note: know the lanes, dual-run the replacement, move DNS per hostname, and leave NGINX up until each host is proven.
Checklist from the published cutover
- List Ingress objects, IngressClasses, and hostnames. The field note covered three lanes, about 40 Ingress objects, and about 50 hostnames.
- Treat snippet annotations and oauth2-proxy as exceptions. ingress2gateway does not cover every annotation.
- Run Envoy Gateway beside NGINX. Move one hostname at a time with canary DNS.
- Keep GitOps as the source of the routes. The note used Argo CD and HTTPRoutes in each app.
- Count the DNS window separately from the programme. In the note, three days was the cutover window, and NGINX was scaled down about a week later, after soak.
The full account is the field note. The engagement is the Ingress NGINX cutover.