All skills
openshift avatar

/install-ho-aws

@cfb745e official
by openshiftopenshift/hypershift543 stars
576

Install HyperShift Operator with private AWS and external-dns settings.

Use this Skill: https://skilld.dev/gh/openshift/hypershift/install-ho-aws

This session only. Nothing lands on disk.

SKILL.md

≈22 tokens always: the name and description. ≈474 when used: this file.

Install HyperShift Operator (HO)

Use this skill to install HyperShift Operator with a custom image, external-dns, and private AWS settings.

When to Use This Skill

Use when:

  • You need to install HO with a custom image
  • You want external-dns configured for AWS
  • You are using private AWS settings for the management cluster
  • Changes to the CRDs generated APIs don't need an image rebuild, just a make api && make build

Prerequisites

Source the environment file before using this skill:

source dev/claude-env.sh

Environment Configuration

Environment variables from dev/claude-env.sh:

Variable Description
HO_IMAGE_REPO Container registry for HO images
AWS_CREDENTIALS Path to AWS credentials file
EXTERNAL_DNS_DOMAIN Domain filter for external-dns
OIDC_BUCKET S3 bucket for OIDC
AWS_REGION AWS region
MGMT_KUBECONFIG Path to management cluster kubeconfig

Parameters

  • HO_IMAGE should point to the image you want to install, for example $HO_IMAGE_REPO:autonode.

Command

Run make build first if needed

KUBECONFIG=$MGMT_KUBECONFIG \
./bin/hypershift install \
  --hypershift-image $HO_IMAGE_REPO:YOUR_TAG \
  --external-dns-provider=aws \
  --external-dns-credentials $AWS_CREDENTIALS \
  --external-dns-domain-filter=$EXTERNAL_DNS_DOMAIN \
  --oidc-storage-provider-s3-bucket-name $OIDC_BUCKET \
  --oidc-storage-provider-s3-credentials $AWS_CREDENTIALS \
  --oidc-storage-provider-s3-region $AWS_REGION \
  --private-platform=AWS \
  --aws-private-creds $AWS_CREDENTIALS \
  --enable-conversion-webhook=false \
  --aws-private-region=$AWS_REGION

Notes

  • Build the CLI first: make hypershift (this produces ./bin/hypershift).
  • Ensure the AWS credentials file exists and is readable.
  • The MGMT_KUBECONFIG must point to your management cluster.

Source: SKILL.md on GitHub

No alerts3mo3 checks · Risk SAFE
  • Gen Agent Trust Hub3mo

    The skill automates the installation of the HyperShift Operator for AWS environments. It follows security best practices by using environment variables to reference local credential files for authentication rather than hardcoding sensitive data.

  • Socket3mo

    No alerts

  • Snyk3mo

    Risk: LOW · No issues

Signed by skilld at cfb745e. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 8 months ago
  • hypershift
  • kubernetes
  • aws
  • external-dns
  • oidc
  • operator
  • installation

README badge

README badge for openshift/hypershift/install-ho-aws

Installs HyperShift Operator on AWS with external-dns and private AWS configuration for a management cluster. Requires sourcing environment variables from dev/claude-env.sh and building the hypershift CLI first via make hypershift.

Generated from the current SKILL.md.

What environment variables do I need to set before using this skill?
Source `dev/claude-env.sh` which provides HO_IMAGE_REPO, AWS_CREDENTIALS, EXTERNAL_DNS_DOMAIN, OIDC_BUCKET, AWS_REGION, and MGMT_KUBECONFIG. These are required for the install command.
Do I need to rebuild the HyperShift CLI before installing?
Yes, run `make hypershift` first to produce the `./bin/hypershift` binary that the install command uses.
Can I use a custom HyperShift Operator image?
Yes, specify your custom image tag via the `--hypershift-image` flag, e.g. `$HO_IMAGE_REPO:autonode`.
Does this skill support external-dns configuration?
Yes, it configures external-dns for AWS using the `--external-dns-provider=aws` flag and credentials from your AWS_CREDENTIALS file.
What AWS permissions are required?
The skill uses credentials for S3 (OIDC bucket), Route53 (external-dns), and private platform access, but does not specify the exact IAM permissions required.

Generated from the current SKILL.md. These answers refresh after source changes.