關閉防火牆
systemctl stop firewalld
systemctl disable firewalld
關閉 selinux
sed -i 's/enforcing/disabled/' /etc/selinux/config # 永久
setenforce 0 # 臨時
關閉 swap
swapoff -a # 臨時
vim /etc/fstab # 永久
主機名
hostnamectl set-hostname <hostname>
#master 節點執行
cat >> /etc/hosts << EOF
192.168.1.100 k8smaster
192.168.1.101 k8snode1
192.168.1.102 k8snode2
EOF
#網絡
cat > /etc/sysctl.d/k8s.conf << EOF
net.bridge.bridge-nf-call-ip6tables = 1
net.bridge.bridge-nf-call-iptables = 1
EOF
yum install ntpdate -y
ntpdate time.windows.com
安裝docker
wget https://mirrors.aliyun.com/docker-ce/linux/centos/docker-ce.repo -O /etc/yum.repos.d/docker-ce.repo
yum -y install docker-ce-18.06.1.ce-3.el7
開機啓動docker
systemctl enable docker && systemctl start docker
docker --version
配置阿里雲鏡像
cat > /etc/docker/daemon.json << EOF
{
"registry-mirrors": ["https://b9pmyelo.mirror.aliyuncs.com"]
}
EOF
重啓後阿里雲生效
systemctl restart docker
添加阿里雲yum源
cat > /etc/yum.repos.d/kubernetes.repo << EOF
[kubernetes]
name=Kubernetes
baseurl=https://mirrors.aliyun.com/kubernetes/yum/repos/kubernetes-el7-x86_64
enabled=1
gpgcheck=0
repo_gpgcheck=0
gpgkey=https://mirrors.aliyun.com/kubernetes/yum/doc/yum-key.gpg
https://mirrors.aliyun.com/kubernetes/yum/doc/rpm-package-key.gpg
EOF
安裝kubelet kubeadm kubectl 指定的穩定版安裝,不加爲最新版本的
yum install -y kubelet-1.18.0 kubeadm-1.18.0 kubectl-1.18.0
systemctl enable kubelet
在master裏面執行,地址爲master的ip地址
kubeadm init --apiserver-advertise-address=192.168.1.100 --image-repository registry.aliyuncs.com/google_containers --kubernetes-version v1.18.0 --service-cidr=10.96.0.0/12 --pod-network-cidr=10.244.0.0/16
mkdir -p $HOME/.kube
sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config
sudo chown $(id -u):$(id -g) $HOME/.kube/config
然後
kubectl get nodes
會出現
NAME STATUS ROLES AGE VERSION
k8smaster NotReady master 6m10s v1.18.0
然後安裝pod網絡插件
kubectl apply -f https://raw.githubusercontent.com/coreos/flannel/master/Documentation/kube-flannel.yml
安裝fannel
kubectl apply -f https://raw.githubusercontent.com/coreos/flannel/master/Documentation/kube-flannel.yml
報錯:The connection to the server raw.githubusercontent.com was refused - did you specify the right host or port?
原因:外網不可訪問
解決辦法:
# 在https://www.ipaddress.com/查詢raw.githubusercontent.com的真實IP。
sudo vim /etc/hosts
199.232.28.133 raw.githubusercontent.com
向集羣中添加新節點,在node節點執行
kubeadm join 192.168.1.100:6443 --token 39ys82.v727ax2x7n508ac1 --discovery-token-ca-cert-hash sha256:2ac7fe651b929afd0552023eb02e1f8eeba7bd4140164a639a251a01b9de5a9c
kubectl get pods -n kube-system