三、k8s測試與圖形化(ui)
阿新 • • 發佈:2018-12-26
測試用例
檢視叢集狀態:
[[email protected] ~]# kubectl get cs NAME STATUS MESSAGE ERROR scheduler Healthy ok controller-manager Healthy ok etcd-2 Healthy {"health": "true"} etcd-0 Healthy {"health": "true"} etcd-1 Healthy {"health": "true"}
利用k8s安裝nginx
其中 --image=nginx代表映象為nginx,–replicas=3代表副本數為3
kubectl run nginx --image=nginx --replicas=3
檢視執行的容器狀態
[[email protected] ~]# kubectl get pod NAME READY STATUS RESTARTS AGE nginx-8586cf59-57z8r 1/1 Running 0 8m nginx-8586cf59-95ld2 1/1 Running 0 8m nginx-8586cf59-w9g6q 1/1 Running 0 8m
檢視執行的容器在叢集中的節點資訊:
[[email protected] ~]# kubectl get pod -o wide NAME READY STATUS RESTARTS AGE IP NODE nginx-8586cf59-57z8r 1/1 Running 0 36m 172.17.96.3 192.168.1.8 nginx-8586cf59-95ld2 1/1 Running 0 36m 172.17.41.3 192.168.1.7 nginx-8586cf59-w9g6q 1/1 Running 0 36m 172.17.96.2 192.168.1.8
將容器的埠暴露出來
kubectl expose deployment nginx --port=88 --target-port=80 --type=NodePort
檢視容器的ip與埠
[[email protected] ~]# kubectl get svc nginx
NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S) AGE
nginx NodePort 10.10.10.106 <none> 88:31721/TCP 23m
此時我們可以通過
curl 10.10.10.106:88 來訪問
瀏覽器訪問:192.168.1.7/8:31721 都能訪問
如果不能訪問看看自己的網路是否正常
cd /opt/kubernetes/ssl
[[email protected] ssl]# /opt/kubernetes/bin/etcdctl --ca-file=ca.pem --cert-file=server.pem --key-file=server-key.pem --endpoints="https://192.168.1.6:2379,https://192.168.1.7:2379,https://192.168.1.8:2379" ls /coreos.com/network/subnets
/coreos.com/network/subnets/172.17.98.0-24
/coreos.com/network/subnets/172.17.55.0-24
/coreos.com/network/subnets/172.17.37.0-2
部署Web UI (Dashboard)
建立三個yaml檔案
mkdir /opt/kubernetes/ui
cd /opt/kubernetes/ui
建立許可權模組:
[[email protected] ui]# cat dashboard-rbac.yaml
apiVersion: v1
kind: ServiceAccount
metadata:
labels:
k8s-app: kubernetes-dashboard
addonmanager.kubernetes.io/mode: Reconcile
name: kubernetes-dashboard
namespace: kube-system
---
kind: ClusterRoleBinding
apiVersion: rbac.authorization.k8s.io/v1beta1
metadata:
name: kubernetes-dashboard-minimal
namespace: kube-system
labels:
k8s-app: kubernetes-dashboard
addonmanager.kubernetes.io/mode: Reconcile
roleRef:
apiGroup: rbac.authorization.k8s.io
kind: ClusterRole
name: cluster-admin
subjects:
- kind: ServiceAccount
name: kubernetes-dashboard
namespace: kube-system
建立ui控制器:
注意此處的映象可以通過:https://dev.aliyun.com 獲得,直接搜尋kubernetes-dashboard-amd64 就能得到映象地址了
[[email protected] ui]# cat dashboard-deployment.yaml
apiVersion: apps/v1beta2
kind: Deployment
metadata:
name: kubernetes-dashboard
namespace: kube-system
labels:
k8s-app: kubernetes-dashboard
kubernetes.io/cluster-service: "true"
addonmanager.kubernetes.io/mode: Reconcile
spec:
selector:
matchLabels:
k8s-app: kubernetes-dashboard
template:
metadata:
labels:
k8s-app: kubernetes-dashboard
annotations:
scheduler.alpha.kubernetes.io/critical-pod: ''
spec:
serviceAccountName: kubernetes-dashboard
containers:
- name: kubernetes-dashboard
image: registry.cn-hangzhou.aliyuncs.com/google_containers/kubernetes-dashboard-amd64:v1.10.0
resources:
limits:
cpu: 100m
memory: 300Mi
requests:
cpu: 100m
memory: 100Mi
ports:
- containerPort: 9090
protocol: TCP
livenessProbe:
httpGet:
scheme: HTTP
path: /
port: 9090
initialDelaySeconds: 30
timeoutSeconds: 30
tolerations:
- key: "CriticalAddonsOnly"
operator: "Exists"
建立展示ui的配置:
[[email protected] ui]# cat dashboard-service.yaml
apiVersion: v1
kind: Service
metadata:
name: kubernetes-dashboard
namespace: kube-system
labels:
k8s-app: kubernetes-dashboard
kubernetes.io/cluster-service: "true"
addonmanager.kubernetes.io/mode: Reconcile
spec:
type: NodePort
selector:
k8s-app: kubernetes-dashboard
ports:
- port: 80
targetPort: 9090
啟動執行ui介面:
# kubectl create -f .
或者
# kubectl create -f dashboard-rbac.yaml
# kubectl create -f dashboard-deployment.yaml
# kubectl create -f dashboard-service.yaml
測試:
kubectl get all -n kube-system
通過最後一行我們可以觀察到ip與埠
[[email protected] ui]# kubectl get svc -n kube-system
NAME TYPE CLUSTER-IP EXTERNAL-IP PORT(S) AGE
kubernetes-dashboard NodePort 10.0.0.230 <none> 80:37970/TCP 83s
[[email protected] ui]# kubectl get ns
NAME STATUS AGE
default Active 5d
kube-public Active 5d
kube-system Active 5d
在頁面啟動:
http://192.168.1.7:37970 或者http://192.168.1.8:37970,可以看到類似的介面