在Debian上实现K8s集群的高可用性是一个复杂的过程,需要仔细规划和配置多个组件。以下是一个基本的步骤指南,帮助你搭建一个高可用的Kubernetes集群。
sudo swapoff -a sudo sed -i '/ swap / s/^\(.*\)$/#\1/g' /etc/fstab
sudo systemctl stop firewalld sudo systemctl disable firewalld
sudo setenforce 0 sudo sed -i 's/^SELINUX=enforcing$/SELINUX=permissive/' /etc/selinux/config
sudo apt update sudo apt install -y containerd sudo modprobe br_netfilter sudo modprobe overlay sudo tee /etc/modules-load.d/containerd.conf <<EOF overlay br_netfilter EOF sudo tee /etc/sysctl.d/99-kubernetes-k8s.conf <<EOF net.bridge.bridge-nf-call-iptables = 1 net.ipv4.ip_forward = 1 net.bridge.bridge-nf-call-ip6tables = 1 EOF sudo sysctl --system
sudo apt-get update sudo apt-get install -y apt-transport-https ca-certificates curl gpg curl -s https://packages.cloud.google.com/apt/doc/apt-key.gpg | sudo apt-key add - echo "deb https://apt.kubernetes.io/ kubernetes-xenial main" | sudo tee /etc/apt/sources.list.d/kubernetes.list
sudo apt-get install -y kubelet kubeadm kubectl sudo apt-mark hold kubelet kubeadm kubectl
在主节点上执行以下命令初始化集群:
sudo kubeadm init --control-plane-endpoint="192.168.1.100:6443" --upload-certs --pod-network-cidr=10.244.0.0/16
初始化完成后,配置kubectl:
mkdir -p $HOME/.kubes sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config sudo chown $(id -u):$(id -g) $HOME/.kube/config
以Calico为例,安装并配置网络插件:
kubectl apply -f https://docs.projectcalico.org/manifests/calico.yaml
如果有防火墙,开放Calico相关端口:
sudo ufw allow 179/tcp sudo ufw allow 4789/udp sudo ufw allow 51820/udp sudo ufw allow 51821/udp sudo ufw reload
在工作节点上执行以下命令加入集群:
sudo kubeadm join 192.168.1.100:6443 --token abcdef.0123456789abcdef --discovery-token-ca-cert-hash sha256:186e7256966f0e2b3485a3b3ab15a0f1357195745e3d2fa6e9f386cfc24ecc5d
验证集群状态:
kubectl get nodes kubectl cluster-info
部署一个测试应用(如Nginx)并验证:
kubectl create deployment nginx-app --image=nginx --replicas=2 kubectl expose deployment nginx-app --name=nginx-web-svc --type=NodePort --port=80 --target-port=80 curl http://<node-ip>:31743
通过以上步骤,你可以在Debian上搭建一个高可用的Kubernetes集群。根据具体需求,你还可以进一步配置etcd集群、集群自动伸缩和基于污点的精细化调度等高级功能。