1. 程式人生 > 其它 >kubeadm輕鬆安裝kubernetes1.18版本

kubeadm輕鬆安裝kubernetes1.18版本

技術標籤:kubernetskubernetescentos運維


安裝k8s是進入kubernetes的第一步,但卻經常出現一些莫名奇妙的問題。我已經安裝了很多遍,今天就把它總結一下

1 部署架構

三臺伺服器一主兩從

10.100.10.10 master (安裝基礎環境 docker master)

10.100.10.11 node01 (安裝基礎環境 docker node)

10.100.10.12 node02 (安裝基礎環境 docker node)

2 基礎環境

  1. 安裝yum源

    我用的是騰訊雲的源,感覺還不錯

   #epel 
   mv /etc/yum.repos.d/epel.repo /etc/yum.repos.d/epel.repo.backup
   wget -O /etc/yum.repos.d/epel.repo http://mirrors.cloud.tencent.com/repo/epel-7.repo
   
   #centos
   mv /etc/yum.repos.d/CentOS-Base.repo /etc/yum.repos.d/CentOS-Base.repo.backup
   wget -O /etc/yum.repos.d/CentOS-Base.repo http://mirrors.cloud.tencent.com/repo/centos7_base.repo
   
   yum clean all
   yum makecache
  1. 關閉selinux和防火牆
   setenforce 0 && sed -i 's#^SELINUX=.*#SELINUX=disabled#' /etc/selinux/config
   systemctl stop firewalld && systemctl disable firewalld
  1. hosts檔案
    修改為自己覺得容易辨認的主機名
   #修改主機名
   hostnamectl set-hostname  tmp-master01
   echo “ tmp-master01” >/etc/hostname
   #修改hosts檔案
   cat >> /etc/hosts << EOF
   10.100.10.10 tmp-master
   10.100.10.11 tmp-node01
   10.100.10.12 tmp-node02
   EOF
  1. 關閉swap
   #臨時關閉swap
   swapoff -a 
   
   #永久關閉swap 
   需要vim /etc/fstab,註釋掉swap相關的內容
   
   #或者可以使用sed註釋swap,每個虛擬機器內容可能不一樣,下面只是舉例
   sed -i 's$/dev/mapper/centos-swap$#/dev/mapper/centos-swap$g' /etc/fstab
  1. ip轉發
   echo 1 >/proc/sys/net/ipv4/ip_forward
   
   cat > /etc/sysctl.d/k8s.conf <<EOF
   net.bridge.bridge-nf-call-ip6tables = 1
   net.bridge.bridge-nf-call-iptables = 1
   net.ipv4.ip_nonlocal_bind = 1
   net.ipv4.ip_forward = 1
   vm.swappiness=0
   EOF
   
   sysctl -p /etc/sysctl.d/k8s.conf
  1. 開啟limit限制
   ulimit -n 65536
   sed -i '$i * hard  nofile   65536' /etc/security/limits.conf
   sed -i '$i * soft  nofile   65536' /etc/security/limits.conf
  1. 載入ipvs模組
    在所有的Kubernetes節點執行以下指令碼(若核心小於4.19替換nf_conntrack為nf_conntrack_ipv4):
   cat > /etc/sysconfig/modules/ipvs.modules <<EOF
   #!/bin/bash
   modprobe -- ip_vs323
   modprobe -- ip_vs_rr
   modprobe -- ip_vs_wrr
   modprobe -- ip_vs_sh
   modprobe -- nf_conntrack
   EOF
   
   chmod 755 /etc/sysconfig/modules/ipvs.modules && bash /etc/sysconfig/modules/ipvs.modules && lsmod | grep -e ip_vs -e nf_conntrack
   
   yum install ipset ipvsadm -y
  1. 基礎軟體

    這是我常用的一些基礎軟體,根據自己的需要決定是否安裝

   yum install iotop tcpdump htop  sysstat telnet -y
  1. 更新核心

    1. 更新yum源
   rpm --import https://www.elrepo.org/RPM-GPG-KEY-elrepo.org
   rpm -Uvh http://www.elrepo.org/elrepo-release-7.0-2.el7.elrepo.noarch.rpm
  1. 檢視可安裝的核心
yum --disablerepo="*" --enablerepo="elrepo-kernel" list available
  1. 下載核心
    長期維護版
  yum --enablerepo=elrepo-kernel install kernel-lt -y
  1. 檢視安裝的核心
cat /boot/grub2/grub.cfg | grep menuentry 
   檢視安裝的核心版本

在這裡插入圖片描述

  1. 切換預設啟動核心
##版本以上面查到的版本為準
grub2-set-default 'CentOS Linux (5.4.93-1.el7.elrepo.x86_64) 7 (Core)' 
grub2-editenv list
  1. 重啟伺服器後檢視
# 重啟伺服器
shutdown -r now
# uname -a
Linux gs-k8s-master01 5.4.93-1.el7.elrepo.x86_64 #1 SMP Tue Jan 26 10:21:47 EST 2021 x86_64 x86_64 x86_64 GNU/Linux

3 安裝docker

  1. 安裝yum源
wget https://mirrors.cloud.tencent.com/docker-ce/linux/centos/docker-ce.repo -P /etc/yum.repos.d
  1. 安裝
# 解除安裝(如果之前沒有安裝docker,則忽略)
yum -y remove docker*
#刪除所有的映象、容器、資料卷、配置檔案等
sudo rm -rf /var/lib/docker

#檢視可安裝版本
yum list docker-ce --showduplicates
# 安裝指定版本
yum install docker-ce-19.03.14-3.el7 -y
  1. 修改配置檔案
mkdir /etc/docker -p
cat > /etc/docker/daemon.json <<EOF
{
   "registry-mirrors": ["[https://registry.docker-cn.com","https://kfp63jaj.mirror.aliyuncs.com"\],](https://registry.docker-cn.com)
   "exec-opts": ["native.cgroupdriver=systemd"],
   "log-driver": "json-file",
   "log-level": "debug",
   "log-opts": {
      "max-size": "800m"
  },
   "insecure-registries" : ["harbor.xxx.com" ] ##選填
}
EOF
  1. 修改資料儲存目錄,並啟動

    預設的儲存目錄是根目錄,因此需要將docker資料儲存在大的磁碟內

   #這裡以/data為大的掛載磁碟為例
   mkdir /data/docker -p
   ln -s /data/docker/ /var/lib
   
   #啟動docker
   systemctl restart docker
   systemctl enable docker
   #檢查docker版本
   docker version
   #檢查docker資料儲存目錄
   docker info | grep "Docker Root Dir"
   

4 安裝kubernetes

1 master安裝

1 安裝軟體

  1. 下載
cat > /etc/yum.repos.d/kubernetes.repo<<EOF
[kubernetes]
name=Kubernetes Repo
baseurl=https://mirrors.aliyun.com/kubernetes/yum/repos/kubernetes-el7-x86_64/
gpgcheck=0
enabled=1
EOF

#可以修改為自己想要的版本
yum install  kubelet-1.18.15-0 -y
yum install  kubectl-1.18.15-0 kubeadm-1.18.15-0 -y
systemctl enable kubelet
  1. 拉取所需映象

使用阿里雲映象拉取

#!/bin/bash
for i in `kubeadm config images list`; do
 imageName=${i#k8s.gcr.io/}
 docker pull registry.aliyuncs.com/google_containers/$imageName
 docker tag registry.aliyuncs.com/google_containers/$imageName  k8s.gcr.io/$imageName
 docker rmi registry.aliyuncs.com/google_containers/$imageName
done;

2 啟動master

  1. 配置檔案
kubeadm config print init-defaults > kubeadm-config.yaml

​ 修改為以下內容

apiVersion: kubeadm.k8s.io/v1beta2
bootstrapTokens:
- groups:
  - system:bootstrappers:kubeadm:default-node-token
  token: abcdef.0123456789abcdef
  ttl: 24h0m0s
  usages:
  - signing
  - authentication
kind: InitConfiguration
localAPIEndpoint:
  advertiseAddress: 10.16.116.46 #修改為本機IP
  bindPort: 6443
nodeRegistration:
  criSocket: /var/run/dockershim.sock
  name: gs-k8s-master01
  taints:
  - effect: NoSchedule
    key: node-role.kubernetes.io/master
---
apiServer:
  timeoutForControlPlane: 4m0s
apiVersion: kubeadm.k8s.io/v1beta2
certificatesDir: /etc/kubernetes/pki
clusterName: kubernetes
controllerManager: {}
dns:
  type: CoreDNS
etcd:
  local:
    dataDir: /var/lib/etcd
imageRepository: k8s.gcr.io
kind: ClusterConfiguration
kubernetesVersion: v1.18.15
networking:
  dnsDomain: cluster.local
  ##增加flannel需要的網段
  podSubnet: "10.244.0.0/16"
  serviceSubnet: 10.96.0.0/12
scheduler: {}
---
## 新增ipvs模組
apiVersion: kubeproxy.config.k8s.io/v1alpha1
kind: KubeProxyConfiguration
featureGates:
  SupportIPVSProxyMode: true
mode: ipvs
  1. 安裝
kubeadm init --config=kubeadm-config.yaml  | tee kubeadm-init.log

執行成功後最後的資訊為

Your Kubernetes control-plane has initialized successfully!

To start using your cluster, you need to run the following as a regular user:

  mkdir -p $HOME/.kube
  sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config
  sudo chown $(id -u):$(id -g) $HOME/.kube/config

You should now deploy a pod network to the cluster.
Run "kubectl apply -f [podnetwork].yaml" with one of the options listed at:
  https://kubernetes.io/docs/concepts/cluster-administration/addons/

Then you can join any number of worker nodes by running the following on each as root:

kubeadm join 10.16.116.46:6443 --token abcdef.0123456789abcdef \
    --discovery-token-ca-cert-hash sha256:8e0bf5f529ad98a9fe7597a91a461a447af8d5593411173e6227a2ee46a674b4

  1. 執行以下命令,以操作叢集
mkdir -p $HOME/.kube
cp -i /etc/kubernetes/admin.conf $HOME/.kube/config
chown $(id -u):$(id -g) $HOME/.kube/config

3 常見問題

  1. 回退叢集

如果初始化失敗,需要重灌,可以通過kubeadm reset --force 重置之前 kubeadm init 命令的執行結果,恢復一個乾淨的環境

kubeadm reset --force
  1. 回退集群后安裝報錯

error: You must be logged in to the server (Unauthorized)

將叢集徹底刪除乾淨

rm -rf /etc/kubernetes
rm -rf /var/lib/etcd
rm -rf /var/lib/kubelet/
rm -rf ~/.kube

3 去除master節點汙點

如果想要master節點也能部署服務,可以去除master的汙點(一般單機k8s才使用)

kubectl taint nodes --all node-role.kubernetes.io/master-

4 部署網路外掛

kubectl apply -f https://raw.githubusercontent.com/coreos/flannel/master/Documentation/kube-flannel.yml

如果訪問不了網站,可以使用下面的檔案直接部署flannel

---
apiVersion: policy/v1beta1
kind: PodSecurityPolicy
metadata:
  name: psp.flannel.unprivileged
  annotations:
    seccomp.security.alpha.kubernetes.io/allowedProfileNames: docker/default
    seccomp.security.alpha.kubernetes.io/defaultProfileName: docker/default
    apparmor.security.beta.kubernetes.io/allowedProfileNames: runtime/default
    apparmor.security.beta.kubernetes.io/defaultProfileName: runtime/default
spec:
  privileged: false
  volumes:
    - configMap
    - secret
    - emptyDir
    - hostPath
  allowedHostPaths:
    - pathPrefix: "/etc/cni/net.d"
    - pathPrefix: "/etc/kube-flannel"
    - pathPrefix: "/run/flannel"
  readOnlyRootFilesystem: false
  # Users and groups
  runAsUser:
    rule: RunAsAny
  supplementalGroups:
    rule: RunAsAny
  fsGroup:
    rule: RunAsAny
  # Privilege Escalation
  allowPrivilegeEscalation: false
  defaultAllowPrivilegeEscalation: false
  # Capabilities
  allowedCapabilities: ['NET_ADMIN']
  defaultAddCapabilities: []
  requiredDropCapabilities: []
  # Host namespaces
  hostPID: false
  hostIPC: false
  hostNetwork: true
  hostPorts:
  - min: 0
    max: 65535
  # SELinux
  seLinux:
    # SELinux is unused in CaaSP
    rule: 'RunAsAny'
---
kind: ClusterRole
apiVersion: rbac.authorization.k8s.io/v1beta1
metadata:
  name: flannel
rules:
  - apiGroups: ['extensions']
    resources: ['podsecuritypolicies']
    verbs: ['use']
    resourceNames: ['psp.flannel.unprivileged']
  - apiGroups:
      - ""
    resources:
      - pods
    verbs:
      - get
  - apiGroups:
      - ""
    resources:
      - nodes
    verbs:
      - list
      - watch
  - apiGroups:
      - ""
    resources:
      - nodes/status
    verbs:
      - patch
---
kind: ClusterRoleBinding
apiVersion: rbac.authorization.k8s.io/v1beta1
metadata:
  name: flannel
roleRef:
  apiGroup: rbac.authorization.k8s.io
  kind: ClusterRole
  name: flannel
subjects:
- kind: ServiceAccount
  name: flannel
  namespace: kube-system
---
apiVersion: v1
kind: ServiceAccount
metadata:
  name: flannel
  namespace: kube-system
---
kind: ConfigMap
apiVersion: v1
metadata:
  name: kube-flannel-cfg
  namespace: kube-system
  labels:
    tier: node
    app: flannel
data:
  cni-conf.json: |
    {
      "name": "cbr0",
      "cniVersion": "0.3.1",
      "plugins": [
        {
          "type": "flannel",
          "delegate": {
            "hairpinMode": true,
            "isDefaultGateway": true
          }
        },
        {
          "type": "portmap",
          "capabilities": {
            "portMappings": true
          }
        }
      ]
    }
  net-conf.json: |
    {
      "Network": "10.244.0.0/16",
      "Backend": {
        "Type": "vxlan"
      }
    }
---
apiVersion: apps/v1
kind: DaemonSet
metadata:
  name: kube-flannel-ds-amd64
  namespace: kube-system
  labels:
    tier: node
    app: flannel
spec:
  selector:
    matchLabels:
      app: flannel
  template:
    metadata:
      labels:
        tier: node
        app: flannel
    spec:
      affinity:
        nodeAffinity:
          requiredDuringSchedulingIgnoredDuringExecution:
            nodeSelectorTerms:
              - matchExpressions:
                  - key: kubernetes.io/os
                    operator: In
                    values:
                      - linux
                  - key: kubernetes.io/arch
                    operator: In
                    values:
                      - amd64
      hostNetwork: true
      tolerations:
      - operator: Exists
        effect: NoSchedule
      serviceAccountName: flannel
      initContainers:
      - name: install-cni
        image: quay.io/coreos/flannel:v0.12.0-amd64
        command:
        - cp
        args:
        - -f
        - /etc/kube-flannel/cni-conf.json
        - /etc/cni/net.d/10-flannel.conflist
        volumeMounts:
        - name: cni
          mountPath: /etc/cni/net.d
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      containers:
      - name: kube-flannel
        image: quay.io/coreos/flannel:v0.12.0-amd64
        command:
        - /opt/bin/flanneld
        args:
        - --ip-masq
        - --kube-subnet-mgr
        resources:
          requests:
            cpu: "100m"
            memory: "50Mi"
          limits:
            cpu: "100m"
            memory: "50Mi"
        securityContext:
          privileged: false
          capabilities:
            add: ["NET_ADMIN"]
        env:
        - name: POD_NAME
          valueFrom:
            fieldRef:
              fieldPath: metadata.name
        - name: POD_NAMESPACE
          valueFrom:
            fieldRef:
              fieldPath: metadata.namespace
        volumeMounts:
        - name: run
          mountPath: /run/flannel
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      volumes:
        - name: run
          hostPath:
            path: /run/flannel
        - name: cni
          hostPath:
            path: /etc/cni/net.d
        - name: flannel-cfg
          configMap:
            name: kube-flannel-cfg
---
apiVersion: apps/v1
kind: DaemonSet
metadata:
  name: kube-flannel-ds-arm64
  namespace: kube-system
  labels:
    tier: node
    app: flannel
spec:
  selector:
    matchLabels:
      app: flannel
  template:
    metadata:
      labels:
        tier: node
        app: flannel
    spec:
      affinity:
        nodeAffinity:
          requiredDuringSchedulingIgnoredDuringExecution:
            nodeSelectorTerms:
              - matchExpressions:
                  - key: kubernetes.io/os
                    operator: In
                    values:
                      - linux
                  - key: kubernetes.io/arch
                    operator: In
                    values:
                      - arm64
      hostNetwork: true
      tolerations:
      - operator: Exists
        effect: NoSchedule
      serviceAccountName: flannel
      initContainers:
      - name: install-cni
        image: quay.io/coreos/flannel:v0.12.0-arm64
        command:
        - cp
        args:
        - -f
        - /etc/kube-flannel/cni-conf.json
        - /etc/cni/net.d/10-flannel.conflist
        volumeMounts:
        - name: cni
          mountPath: /etc/cni/net.d
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      containers:
      - name: kube-flannel
        image: quay.io/coreos/flannel:v0.12.0-arm64
        command:
        - /opt/bin/flanneld
        args:
        - --ip-masq
        - --kube-subnet-mgr
        resources:
          requests:
            cpu: "100m"
            memory: "50Mi"
          limits:
            cpu: "100m"
            memory: "50Mi"
        securityContext:
          privileged: false
          capabilities:
             add: ["NET_ADMIN"]
        env:
        - name: POD_NAME
          valueFrom:
            fieldRef:
              fieldPath: metadata.name
        - name: POD_NAMESPACE
          valueFrom:
            fieldRef:
              fieldPath: metadata.namespace
        volumeMounts:
        - name: run
          mountPath: /run/flannel
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      volumes:
        - name: run
          hostPath:
            path: /run/flannel
        - name: cni
          hostPath:
            path: /etc/cni/net.d
        - name: flannel-cfg
          configMap:
            name: kube-flannel-cfg
---
apiVersion: apps/v1
kind: DaemonSet
metadata:
  name: kube-flannel-ds-arm
  namespace: kube-system
  labels:
    tier: node
    app: flannel
spec:
  selector:
    matchLabels:
      app: flannel
  template:
    metadata:
      labels:
        tier: node
        app: flannel
    spec:
      affinity:
        nodeAffinity:
          requiredDuringSchedulingIgnoredDuringExecution:
            nodeSelectorTerms:
              - matchExpressions:
                  - key: kubernetes.io/os
                    operator: In
                    values:
                      - linux
                  - key: kubernetes.io/arch
                    operator: In
                    values:
                      - arm
      hostNetwork: true
      tolerations:
      - operator: Exists
        effect: NoSchedule
      serviceAccountName: flannel
      initContainers:
      - name: install-cni
        image: quay.io/coreos/flannel:v0.12.0-arm
        command:
        - cp
        args:
        - -f
        - /etc/kube-flannel/cni-conf.json
        - /etc/cni/net.d/10-flannel.conflist
        volumeMounts:
        - name: cni
          mountPath: /etc/cni/net.d
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      containers:
      - name: kube-flannel
        image: quay.io/coreos/flannel:v0.12.0-arm
        command:
        - /opt/bin/flanneld
        args:
        - --ip-masq
        - --kube-subnet-mgr
        resources:
          requests:
            cpu: "100m"
            memory: "50Mi"
          limits:
            cpu: "100m"
            memory: "50Mi"
        securityContext:
          privileged: false
          capabilities:
             add: ["NET_ADMIN"]
        env:
        - name: POD_NAME
          valueFrom:
            fieldRef:
              fieldPath: metadata.name
        - name: POD_NAMESPACE
          valueFrom:
            fieldRef:
              fieldPath: metadata.namespace
        volumeMounts:
        - name: run
          mountPath: /run/flannel
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      volumes:
        - name: run
          hostPath:
            path: /run/flannel
        - name: cni
          hostPath:
            path: /etc/cni/net.d
        - name: flannel-cfg
          configMap:
            name: kube-flannel-cfg
---
apiVersion: apps/v1
kind: DaemonSet
metadata:
  name: kube-flannel-ds-ppc64le
  namespace: kube-system
  labels:
    tier: node
    app: flannel
spec:
  selector:
    matchLabels:
      app: flannel
  template:
    metadata:
      labels:
        tier: node
        app: flannel
    spec:
      affinity:
        nodeAffinity:
          requiredDuringSchedulingIgnoredDuringExecution:
            nodeSelectorTerms:
              - matchExpressions:
                  - key: kubernetes.io/os
                    operator: In
                    values:
                      - linux
                  - key: kubernetes.io/arch
                    operator: In
                    values:
                      - ppc64le
      hostNetwork: true
      tolerations:
      - operator: Exists
        effect: NoSchedule
      serviceAccountName: flannel
      initContainers:
      - name: install-cni
        image: quay.io/coreos/flannel:v0.12.0-ppc64le
        command:
        - cp
        args:
        - -f
        - /etc/kube-flannel/cni-conf.json
        - /etc/cni/net.d/10-flannel.conflist
        volumeMounts:
        - name: cni
          mountPath: /etc/cni/net.d
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      containers:
      - name: kube-flannel
        image: quay.io/coreos/flannel:v0.12.0-ppc64le
        command:
        - /opt/bin/flanneld
        args:
        - --ip-masq
        - --kube-subnet-mgr
        resources:
          requests:
            cpu: "100m"
            memory: "50Mi"
          limits:
            cpu: "100m"
            memory: "50Mi"
        securityContext:
          privileged: false
          capabilities:
             add: ["NET_ADMIN"]
        env:
        - name: POD_NAME
          valueFrom:
            fieldRef:
              fieldPath: metadata.name
        - name: POD_NAMESPACE
          valueFrom:
            fieldRef:
              fieldPath: metadata.namespace
        volumeMounts:
        - name: run
          mountPath: /run/flannel
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      volumes:
        - name: run
          hostPath:
            path: /run/flannel
        - name: cni
          hostPath:
            path: /etc/cni/net.d
        - name: flannel-cfg
          configMap:
            name: kube-flannel-cfg
---
apiVersion: apps/v1
kind: DaemonSet
metadata:
  name: kube-flannel-ds-s390x
  namespace: kube-system
  labels:
    tier: node
    app: flannel
spec:
  selector:
    matchLabels:
      app: flannel
  template:
    metadata:
      labels:
        tier: node
        app: flannel
    spec:
      affinity:
        nodeAffinity:
          requiredDuringSchedulingIgnoredDuringExecution:
            nodeSelectorTerms:
              - matchExpressions:
                  - key: kubernetes.io/os
                    operator: In
                    values:
                      - linux
                  - key: kubernetes.io/arch
                    operator: In
                    values:
                      - s390x
      hostNetwork: true
      tolerations:
      - operator: Exists
        effect: NoSchedule
      serviceAccountName: flannel
      initContainers:
      - name: install-cni
        image: quay.io/coreos/flannel:v0.12.0-s390x
        command:
        - cp
        args:
        - -f
        - /etc/kube-flannel/cni-conf.json
        - /etc/cni/net.d/10-flannel.conflist
        volumeMounts:
        - name: cni
          mountPath: /etc/cni/net.d
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      containers:
      - name: kube-flannel
        image: quay.io/coreos/flannel:v0.12.0-s390x
        command:
        - /opt/bin/flanneld
        args:
        - --ip-masq
        - --kube-subnet-mgr
        resources:
          requests:
            cpu: "100m"
            memory: "50Mi"
          limits:
            cpu: "100m"
            memory: "50Mi"
        securityContext:
          privileged: false
          capabilities:
             add: ["NET_ADMIN"]
        env:
        - name: POD_NAME
          valueFrom:
            fieldRef:
              fieldPath: metadata.name
        - name: POD_NAMESPACE
          valueFrom:
            fieldRef:
              fieldPath: metadata.namespace
        volumeMounts:
        - name: run
          mountPath: /run/flannel
        - name: flannel-cfg
          mountPath: /etc/kube-flannel/
      volumes:
        - name: run
          hostPath:
            path: /run/flannel
        - name: cni
          hostPath:
            path: /etc/cni/net.d
        - name: flannel-cfg
          configMap:
            name: kube-flannel-cfg
kubectl apply  -f flannel.yaml

5 驗證部署是否成功

 # kubectl get node
NAME              STATUS   ROLES    AGE    VERSION
gs-k8s-master01   Ready    master   106m   v1.18.15

# kubectl get pod -A
NAMESPACE     NAME                                      READY   STATUS    RESTARTS   AGE
kube-system   coredns-66bff467f8-5g8g6                  1/1     Running   0          106m
kube-system   coredns-66bff467f8-kjdvp                  1/1     Running   0          106m
kube-system   etcd-gs-k8s-master01                      1/1     Running   0          106m
kube-system   kube-apiserver-gs-k8s-master01            1/1     Running   0          106m
kube-system   kube-controller-manager-gs-k8s-master01   1/1     Running   0          106m
kube-system   kube-flannel-ds-amd64-jz8nl               1/1     Running   0          105m
kube-system   kube-proxy-9wxnn                          1/1     Running   0          106m
kube-system   kube-scheduler-gs-k8s-master01            1/1     Running   0          106m

2 node節點部署

1 安裝軟體

  1. 下載
cat > /etc/yum.repos.d/kubernetes.repo<<EOF
[kubernetes]
name=Kubernetes Repo
baseurl=https://mirrors.aliyun.com/kubernetes/yum/repos/kubernetes-el7-x86_64/
gpgcheck=0
enabled=1
EOF


yum install  kubelet-1.18.15-0 -y
yum install  kubectl-1.18.15-0 kubeadm-1.18.15-0 -y
systemctl enable kubelet
  1. 拉取所需映象

使用阿里雲映象拉取

 imageName=kube-proxy:v1.18.15
 docker pull registry.aliyuncs.com/google_containers/$imageName
 docker tag registry.aliyuncs.com/google_containers/$imageName  k8s.gcr.io/$imageName
 docker rmi registry.aliyuncs.com/google_containers/$imageName
 
 imageName=pause:3.2
 docker pull registry.aliyuncs.com/google_containers/$imageName
 docker tag registry.aliyuncs.com/google_containers/$imageName  k8s.gcr.io/$imageName
 docker rmi registry.aliyuncs.com/google_containers/$imageName
 
 

2 加入master

這是master執行安裝完後留存 的資訊,在node節點直接執行

kubeadm join 10.16.116.46:6443 --token abcdef.0123456789abcdef \
    --discovery-token-ca-cert-hash sha256:8e0bf5f529ad98a9fe7597a91a461a447af8d5593411173e6227a2ee46a674b4

3 驗證

master節點上執行
kubectl get node

3 小技巧

自動補全,直接使用tab鍵就可以補全k8s的相關命令

yum -y install bash-completion
source <(kubectl completion bash) 
echo "source <(kubectl completion bash)" >> ~/.bashrc