This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
система_kubernetes [2025/03/31 13:51] val [Metrics Server] |
система_kubernetes [2025/06/18 12:36] (current) val [Развертывание через kubeadm] |
||
---|---|---|---|
Line 114: | Line 114: | ||
<code> | <code> | ||
gitlab-runner@server:~$ time minikube start --driver=docker --insecure-registry "server.corpX.un:5000" | gitlab-runner@server:~$ time minikube start --driver=docker --insecure-registry "server.corpX.un:5000" | ||
- | real 29m8.320s | + | real 41m8.320s |
... | ... | ||
Line 342: | Line 342: | ||
<code> | <code> | ||
root@node1:~# mkdir -p /etc/containerd/ | root@node1:~# mkdir -p /etc/containerd/ | ||
+ | |||
+ | root@node1:~# ###containerd config default > /etc/containerd/config.toml | ||
root@node1:~# cat /etc/containerd/config.toml | root@node1:~# cat /etc/containerd/config.toml | ||
Line 362: | Line 364: | ||
root@nodeN:~# containerd config dump | less | root@nodeN:~# containerd config dump | less | ||
+ | </code> | ||
+ | |||
+ | == сontainerd v3 == | ||
+ | |||
+ | * [[https://stackoverflow.com/questions/79305194/unable-to-pull-image-from-insecure-registry-http-server-gave-http-response-to/79308521#79308521]] | ||
+ | |||
+ | <code> | ||
+ | # mkdir -p /etc/containerd/certs.d/server.corpX.un:5000/ | ||
+ | |||
+ | # cat /etc/containerd/certs.d/server.corpX.un:5000/hosts.toml | ||
+ | </code><code> | ||
+ | [host."http://server.corpX.un:5000"] | ||
+ | capabilities = ["pull", "resolve", "push"] | ||
+ | skip_verify = true | ||
+ | </code><code> | ||
+ | # systemctl restart containerd.service | ||
</code> | </code> | ||
Line 368: | Line 386: | ||
<code> | <code> | ||
root@nodeN:~# crictl -r unix:///run/containerd/containerd.sock pull server.corpX.un:5000/student/gowebd | root@nodeN:~# crictl -r unix:///run/containerd/containerd.sock pull server.corpX.un:5000/student/gowebd | ||
- | </code> | ||
+ | root@kubeN:~# crictl pull server.corpX.un:5000/student/pywebd2 | ||
+ | </code> | ||
==== Развертывание через Kubespray ==== | ==== Развертывание через Kubespray ==== | ||
Line 559: | Line 578: | ||
$ kubectl delete deployment my-debian | $ kubectl delete deployment my-debian | ||
</code> | </code> | ||
+ | |||
+ | ==== Manifest ==== | ||
+ | |||
* [[https://kubernetes.io/docs/reference/glossary/?all=true#term-manifest|Kubernetes Documentation Reference Glossary/Manifest]] | * [[https://kubernetes.io/docs/reference/glossary/?all=true#term-manifest|Kubernetes Documentation Reference Glossary/Manifest]] | ||
<code> | <code> | ||
Line 646: | Line 668: | ||
# image: server.corpX.un:5000/student/webd:ver1.N | # image: server.corpX.un:5000/student/webd:ver1.N | ||
# image: httpd | # image: httpd | ||
+ | # args: ["gunicorn", "app:app", "--bind", "0.0.0.0:8000", "-k", "uvicorn.workers.UvicornWorker"] | ||
# imagePullPolicy: "Always" | # imagePullPolicy: "Always" | ||
Line 1046: | Line 1069: | ||
<code> | <code> | ||
- | node1# ### kubectl create ingress my-ingress --class=nginx --rule="webd.corpX.un/*=my-webd:80" -n my-ns | + | kube1# ### kubectl create ingress my-ingress --class=nginx --rule="webd.corpX.un/*=my-webd:80" -n my-ns |
- | node1# cat my-ingress.yaml | + | kube1# cat my-ingress.yaml |
</code><code> | </code><code> | ||
apiVersion: networking.k8s.io/v1 | apiVersion: networking.k8s.io/v1 | ||
Line 1085: | Line 1108: | ||
pathType: Prefix | pathType: Prefix | ||
</code><code> | </code><code> | ||
- | node1# kubectl apply -f my-ingress.yaml -n my-ns | + | kube1# kubectl apply -f my-ingress.yaml -n my-ns |
- | node1# kubectl get ingress -n my-ns | + | kube1# kubectl get ingress -n my-ns |
NAME CLASS HOSTS ADDRESS PORTS AGE | NAME CLASS HOSTS ADDRESS PORTS AGE | ||
my-webd nginx webd.corpX.un,gowebd.corpX.un 192.168.X.202,192.168.X.203 80 14m | my-webd nginx webd.corpX.un,gowebd.corpX.un 192.168.X.202,192.168.X.203 80 14m | ||
Line 1102: | Line 1125: | ||
$ kubectl logs -n ingress-nginx -l app.kubernetes.io/name=ingress-nginx -f | $ kubectl logs -n ingress-nginx -l app.kubernetes.io/name=ingress-nginx -f | ||
- | node1# ### kubectl delete ingress my-ingress -n my-ns | + | kube1# ### kubectl delete ingress my-ingress -n my-ns |
</code> | </code> | ||
Line 1400: | Line 1423: | ||
* Делаем снапшот | * Делаем снапшот | ||
* Что-то ломаем (удаляем пользователя) | * Что-то ломаем (удаляем пользователя) | ||
- | * Останавливаем сервис | + | |
+ | == Остановка сервиса == | ||
<code> | <code> | ||
Line 2137: | Line 2161: | ||
* [[https://github.com/prometheus-community/helm-charts/tree/main/charts/kube-state-metrics]] | * [[https://github.com/prometheus-community/helm-charts/tree/main/charts/kube-state-metrics]] | ||
+ | * ... алерты с инфой по упавшим подам ... | ||
<code> | <code> |