k3os CoreDNS upstream resolution and CA trust store propagation
In a k3os environment, CoreDNS operates as a system-wide addon managed by the kube-controller. When deploying on edge nodes with specific upstream DNS providers, resolution often fails because the node's resolv.conf conflicts with the CoreDNS configuration in the k3s manifest. Furthermore, because k3os utilizes a read-only root filesystem by default, injecti