1 2 3
| 192.168.172.201 控制节点 192.168.172.202 工作节点 192.168.172.203 工作节点
|
准备工作
关闭防火墙
1 2
| systemctl stop firewalld systemctl disable firewalld
|
关闭selinux
1 2
| sed -i 's/enforcing/disabled/' /etc/selinux/config setenforce 0 #临时关闭
|
关闭swap
1 2
| sed -ri 's/.*swap.*/#&/' /etc/fstab swapoff -a #临时关闭
|
根据规划设置主机名
1 2 3 4 5 6 7 8 9 10
| hostnamectl set-hostname cluster01 #192.168.172.201 hostnamectl set-hostname cluster02 #192.168.172.202 hostnamectl set-hostname cluster03 #192.168.172.203
# 在master添加hosts cat >> /etc/hosts << EOF 192.168.172.201 cluster01 192.168.172.202 cluster02 192.168.172.203 cluster03 EOF
|
将桥接的IPv4流量传递到iptables的链
1 2 3 4 5 6 7
| cat > /etc/sysctl.d/k8s.conf << EOF net.bridge.bridge-nf-call-ip6tables = 1 net.bridge.bridge-nf-call-iptables = 1 EOF
# 生效 sysctl --system
|
安装
添加kubernetes软件源
1 2 3 4 5 6 7 8 9
| cat > /etc/yum.repos.d/kubernetes.repo << EOF [kubernetes] name=Kubernetes baseurl=https://mirrors.aliyun.com/kubernetes/yum/repos/kubernetes-el7-x86_64 enabled=1 gpgcheck=0 repo_gpgcheck=0 gpgkey=https://mirrors.aliyun.com/kubernetes/yum/doc/yum-key.gpg https://mirrors.aliyun.com/kubernetes/yum/doc/rpm-package-key.gpg EOF
|
安装kubeadm kubectl kubelet
1 2
| yum install -y kubelet-1.18.0 kubeadm-1.18.0 kubectl-1.18.0 systemctl enable kubelet
|
部署 master
1 2 3 4 5 6 7
| kubeadm init --apiserver-advertise-address=192.168.172.201 --image-repository registry.aliyuncs.com/google_containers --kubernetes-version v1.18.0 --service-cidr=10.96.0.0/12 --pod-network-cidr=10.244.0.0/16 # 按控制台输出执行 mkdir -p $HOME/.kube sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config sudo chown $(id -u):$(id -g) $HOME/.kube/config # 默认token有效期为24小时,当过期之后,该token就不可用了 kubeadm token create --print-join-command >> kube_join
|
加入工作节点
1
| kubeadm join 192.168.172.201:6443 --token u3iqxs.b4rj1oboeoiwnxx4 --discovery-token-ca-cert-hash sha256:aeec473887aec0f48c9a5023d467febc8a859f3981c8ef04698e4ec2ae32273b
|
安装CNI插件
1 2 3 4 5 6
| wget https://raw.githubusercontent.com/coreos/flannel/master/Documentation/kube-flannel.yml #修改源 sed -i 's/quay.io/quay.mirrors.ustc.edu.cn/' kube-flannel.yml kubectl apply -f ./kube-flannel.yml #查看pods状态 kubectl get pods -n kube-system
|
测试
1 2 3 4 5 6 7 8 9 10 11 12
| kubectl create deployment nginx --image=nginx
# 暴露端口 kubectl expose deployment nginx --port=80 --type=NodePort # 查看一下对外的端口 [root@localhost ~]# kubectl get pod,svc NAME READY STATUS RESTARTS AGE pod/nginx-f89759699-wfmpn 1/1 Running 0 3m37s
NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S) AGE service/kubernetes ClusterIP 10.96.0.1 <none> 443/TCP 51m service/nginx NodePort 10.101.146.235 <none> 80:30067/TCP 10s
|
访问http://192.168.172.20x:30067 可以看到nginx欢迎页面