0
点赞
收藏
分享

微信扫一扫

kubeadm 安装部署k8s v1.25.0版本 master节点

胡桑_b06e 2022-09-02 阅读 115


准备工作:

CentOS Linux release 8.5.2111
uname -a
Linux k8s-master 4.18.0-348.7.1.el8_5.x86_64 #1 SMP Wed Dec 22 13:25:12 UTC 2021 x86_64 x86_64 x86_64 GNU/Linux


hostnamectl set-hostname k8s-master
hostnamectl set-hostname k8s-node1


cat >> /etc/hosts << EOF
192.168.209.128 k8s-master
192.168.209.133 k8s-node1
EOF


yum -y install wget jq psmisc vim net-tools nfs-utils telnet yum-utils device-mapper-persistent-data lvm2 git network-scripts tar curl -y
systemctl stop firewalld && systemctl disable firewalld
systemctl stop iptables && systemctl disable iptables


timedatectl set-timezone Asia/Shanghai
timedatectl set-local-rtc 0
systemctl restart rsyslog
systemctl restart crond

cat > kubernetes.conf<<EOF
#开启网桥模式【重要】
net.bridge.bridge-nf-call-iptables=1
#开启网桥模式【重要】
net.bridge.bridge-nf-call-ip6tables=1
net.ipv4.ip_forward=1
net.ipv4.tcp_tw_recycle=0
#禁止使用swap空间,只有当系统OOM时才允许使用它
vm.swappiness=0
#不检查物理内存是否够用
vm.overcommit_memory=1
#开启OOM
vm.panic_on_oom=0
fs.inotify.max_user_instances=8192
fs.inotify.max_user_watches=1048576
fs.file-max=52706963
fs.nr_open=52706963
#关闭ipv6【重要】
net.ipv6.conf.all.disable_ipv6=1
net.netfilter.nf_conntrack_max=2310720
EOF


cp kubernetes.conf /etc/sysctl.d/kubernetes.conf
modprobe ip_conntrack
sysctl -p /etc/sysctl.d/kubernetes.conf


#日志保存
mkdir /etc/systemd/journal.conf.d
cat >/etc/systemd/journal.conf.d/99-prophet.conf <<EOF
[Journal]
#持久化保存到磁盘
Storage=persistent
#压缩历史日志
Compress=yes
SyncIntervalSec=5m
RateLimitInterval=30s
RateLimitBurst=1000
#最大占用空间10G
SystemMaxUse=10G
#单日志文件最大200M
SystemMaxFileSize=200M
#日志保存时间2周
MaxRetentionSec=2week
#不将日志转发到syslog
ForwardToSyslog=no
EOF

systemctl restart systemd-journald



#kube-proxy开启ipvs的前置条件
yum install -y ipset ipvsadm
modprobe br_netfilter
cat >/etc/sysconfig/modules/ipvs.modules <<EOF
#!/bin/bash
modprobe -- ip_vs
modprobe -- ip_vs_rr
modprobe -- ip_vs_wrr
modprobe -- ip_vs_sh
modprobe -- nf_conntrack_ipv4
EOF
chmod 755 /etc/sysconfig/modules/ipvs.modules
bash /etc/sysconfig/modules/ipvs.modules && lsmod |grep -e ip_vs -e nf_conntrack_ipv4



wget -O /etc/yum.repos.d/docker-ce.repo https://mirrors.aliyun.com/docker-ce/linux/centos/docker-ce.repo
yum install -y containerd.io

cat << EOF > /etc/modules-load.d/containerd.conf
overlay
br_netfilter
EOF

modprobe overlay
modprobe br_netfilter


mkdir -p /etc/containerd
containerd config default > /etc/containerd/config.toml


vim /etc/containerd/config.toml
125 SystemdCgroup = true
61 sandbox_image = "registry.aliyuncs.com/google_containers/pause:3.7"


systemctl restart containerd
systemctl enable containerd



cat > /etc/yum.repos.d/kubernetes.repo << EOF
[kubernetes]
name=Kubernetes
baseurl=https://mirrors.aliyun.com/kubernetes/yum/repos/kubernetes-el7-x86_64
enabled=1
gpgcheck=0
repo_gpgcheck=0
gpgkey=https://mirrors.aliyun.com/kubernetes/yum/doc/yum-key.gpg https://mirrors.aliyun.com/kubernetes/yum/doc/rpm-package-key.gpg
EOF

yum makecache
yum install kubectl kubeadm kubelet -y


cat > /etc/sysconfig/kubelet <<EOF
KUBELET_EXTRA_ARGS="--cgroup-driver=systemd"
EOF
systemctl enable kubelet

部署master

kubeadm init \
--apiserver-advertise-address=192.168.209.128 \
--image-repository registry.aliyuncs.com/google_containers \
--kubernetes-version v1.25.0 \
--service-cidr=10.1.0.0/16 \
--pod-network-cidr=10.244.0.0/16 --v=6

##失败可以执行 kubeadm reset -f
journalctl -u kubelet



mkdir -p $HOME/.kube
sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config
sudo chown $(id -u):$(id -g) $HOME/.kube/config
export KUBECONFIG=/etc/kubernetes/admin.conf

kubeadm join 192.168.209.128:6443 --token 2k9emz.egvunxvhti1avfs3 \
--discovery-token-ca-cert-hash sha256:18d09ae702b558269aa4f0fe901b0cac1a9b78e0dd9d9e5c1b3f3899632a2cd7


kubectl get nodes
kubectl get pods -n kube-system




部署

wget https://docs.projectcalico.org/manifests/calico.yaml --no-check-certificate


vim +4546 calico.yaml
...
- name: CALICO_IPV4POOL_CIDR
value: "10.244.0.0/16"

kubectl apply -f calico.yaml


[root@k8s-master ~]# kubectl get pod -n kube-system
NAME READY STATUS RESTARTS AGE
calico-kube-controllers-58dbc876ff-5p96m 1/1 Running 0 3m28s
calico-node-fr2b5 1/1 Running 0 3m28s
coredns-7f8cbcb969-4svwb 1/1 Running 0 17m
coredns-7f8cbcb969-zpn2n 1/1 Running 0 17m
etcd-k8s-master 1/1 Running 2 (11m ago) 17m
kube-apiserver-k8s-master 1/1 Running 2 (11m ago) 17m
kube-controller-manager-k8s-master 1/1 Running 2 (11m ago) 17m
kube-proxy-tp7ns 1/1 Running 1 (11m ago) 17m
kube-scheduler-k8s-master 1/1 Running 2 (11m ago) 17m
[root@k8s-master ~]# kubectl get node
NAME STATUS ROLES AGE VERSION
k8s-master Ready control-plane 17m v1.25.0


举报

相关推荐

0 条评论