基於kubeadm搭建Kubernetes集羣
1 所有節點需要配置的操作
1.1 關閉防火牆
# systemctl stop firewalld
# systemctl disable firewalld
1.2 關閉selinux
# sed -i 's/enforcing/disabled/' /etc/selinux/config
1.3 禁用swap
# swapoff -a
# vim /etc/fstab
# 將與swap有關的配置註釋,重啓系統即可
1.3 修改主機名和/etc/hosts文件
# hostnamectl set-hostname {k8s-m|k8s-node1|k8s-node2}
# vim /etc/hosts
10.120.10.190 k8s-m
10.120.10.191 k8s-node1
10.120.10.192 k8s-node2
10.120.10.193 k8s-node3
1.4 重啓主機
# reboot
1.5 開啓路由轉發
# echo "net.ipv4.ip_forward = 1">>/etc/sysctl.conf
# sysctl -p
1.6 設置倉庫爲阿里雲倉庫
# cd /etc/yum.repos.d/
# mv /etc/yum.repos.d/CentOS-Base.repo /etc/yum.repos.d/CentOS-Base.repo.backup #備份原文件
# wget -O /etc/yum.repos.d/CentOS-Base.repo http://mirrors.aliyun.com/repo/Centos-7.repo
# yum clean all
# yum makecache
# yum install -y epel-release
1.7 配置Docker的阿里雲yum安裝源,並安裝
# cd /etc/yum.repos.d/
# wget https://mirrors.aliyun.com/docker-ce/linux/centos/docker-ce.repo
# yum clean all
# yum makecache
1.8 在每個節點上安裝docker-ce-18.06.0並設置開機自啓動
# yum install docker-ce-18.06.2.ce
# docker -v
# systemctl start docker
# systemctl enable docker
# systemctl status docker
1.9 啓用bridge-nf-call-iptables和bridge-nf-call-ip6tables
# echo 'net.bridge.bridge-nf-call-iptables = 1'>>/etc/sysctl.conf
# echo 'net.bridge.bridge-nf-call-ip6tables = 1'>>/etc/sysctl.conf
# sysctl -p
1.10 配置kubernetes的阿里雲apt安裝源
# vim /etc/yum.repos.d/kubernetes.repo
[kubernetes]
name=Kubernetes
baseurl=https://mirrors.aliyun.com/kubernetes/yum/repos/kubernetes-el7-x86_64
enabled=1
gpgcheck=1
repo_gpgcheck=1
gpgkey=https://mirrors.aliyun.com/kubernetes/yum/doc/yum-key.gpg https://mirrors.aliyun.com/kubernetes/yum/doc/rpm-package-key.gpg
# yum clean all
# yum makecache
1.11 在每個節點上安裝kubeadm,kubelet,kubectl並設置kubelet開機自啓動
# yum install kubelet-1.12.1-0 kubeadm-1.12.1-0 kubectl-1.12.1-0
# kubeadm version
# systemctl enable kubelet
2 Master節點:
2.1 導入kube-apiserver,kube-proxy等kubernetes1.12.1版本的docker鏡像
docker pull registry.aliyuncs.com/google_containers/coredns:1.2.2
docker tag be0e8485fd78 k8s.gcr.io/coredns:1.2.2
docker pull registry.aliyuncs.com/google_containers/etcd:3.2.24
docker tag dcf9f4b0065d k8s.gcr.io/etcd:3.2.24
docker pull registry.aliyuncs.com/google_containers/pause:3.1
docker tag 97bc1dcec76a k8s.gcr.io/pause:3.1
docker pull registry.aliyuncs.com/google_containers/kube-apiserver:v1.12.1
docker tag dcb029b5e3ad k8s.gcr.io/kube-apiserver:v1.12.1
docker pull registry.aliyuncs.com/google_containers/kube-controller-manager:v1.12.1
docker tag aa2dd57c7329 k8s.gcr.io/kube-controller-manager:v1.12.1
docker pull registry.aliyuncs.com/google_containers/kube-proxy:v1.12.1
docker tag 68987659c19a k8s.gcr.io/kube-proxy:v1.12.1
docker pull registry.aliyuncs.com/google_containers/kube-scheduler:v1.12.1
docker tag af194c06e677 k8s.gcr.io/kube-scheduler:v1.12.1
docker pull quay-mirror.qiniu.com/coreos/flannel:v0.10.0-amd64
docker tag f0fad859c909 quay.io/coreos/flannel:v0.10.0-amd64
2.2 初始化master
# kubeadm init --kubernetes-version=1.12.1 --pod-network-cidr=10.244.0.0/16 --apiserver-advertise-address=10.120.10.190
## 上述步驟運行成功後,會輸出以下內容:
Your Kubernetes master has initialized successfully!
To start using your cluster, you need to run the following as a regular user:
mkdir -p $HOME/.kube
sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config
sudo chown $(id -u):$(id -g) $HOME/.kube/config
You should now deploy a pod network to the cluster.
Run "kubectl apply -f [podnetwork].yaml" with one of the options listed at:
https://kubernetes.io/docs/concepts/cluster-administration/addons/
You can now join any number of machines by running the following on each node
as root:
kubeadm join 10.120.10.190:6443 --token d4557c.fh4vjxkiyoj2zt5y --discovery-token-ca-cert-hash sha256:b17d4618ab1149934f69582c727f58e53cd51f89dd9844fd3f7b776a0e3d389a
2.3 Master節點配置root用戶管理集羣:
2.3.1 使用root用戶運行kubernetes
# mkdir -p $HOME/.kube
# sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config
2.3.2 下載flannel文件 下載路徑https://download.csdn.net/download/twjjava/12458299
安裝flannel
kubectl apply -f kube-flannel.yml
2.3.3 查看集羣狀態
# kubectl get nodes
3 Node節點:
3.1 導入kube-proxy,pause和flannel,kubernetes1.12.1版本的docker鏡像
## 鏡像請從共享服務器下載:(\\10.120.1.100\安裝軟件\Kubernetes-1.12.1\kubernetes-1.12.1鏡像\ "安裝集羣所需鏡像")
docker pull registry.aliyuncs.com/google_containers/kube-proxy:v1.12.1
docker pull registry.aliyuncs.com/google_containers/pause:3.1
docker pull quay-mirror.qiniu.com/coreos/flannel:v0.10.0-amd64
kubeadm init --kubernetes-version=1.12.1 --pod-network-cidr=10.244.0.0/16 --apiserver-advertise-address=192.168.192.128
3.1 加入master節點:
kubeadm join 10.120.10.190:6443 --token s5gi75.o950l49ripas5e0y --discovery-token-ca-cert-hash sha256:b17d4618ab1149934f69582c727f58e53cd51f89dd9844fd3f7b776a0e3d389a
3.1 在Master上查看集羣狀態
# kubectl get nodes