amazon-vpc-cni-k8s
amazon-vpc-cni-k8s copied to clipboard
Allow setting of EC2 Security group connection tracking configurable idle timeouts in AWS VPC CNI
What would you like to be added: AWS just released EC2 Security group connection tracking adds support for configurable idle timeouts.
Modifying these parameters requires EC2 API calls. It would be great if AWS VPC CNI can automatically implement custom configuration of these idle timeouts for newly provisioned ENI, it manages.
Why is this needed: Avoid conntrack (connection tracking) issues leading to paket loss etc.