Debian系统上Kubernetes集群搭建技巧
一 环境与前置检查
swapoff -a并注释/etc/fstab中的swap行,避免kubelet异常。sudo ufw allow 6443,2379:2380,10250,10251,10252,30000:32767/tcp && sudo ufw reload。二 容器运行时与内核参数
sudo apt update && sudo apt install -y containerdsudo containerd config default | sudo tee /etc/containerd/config.tomlsudo systemctl enable --now containerdsudo modprobe overlay && sudo modprobe br_netfilterecho -e "overlay\nbr_netfilter" | sudo tee /etc/modules-load.d/containerd.confecho -e "net.bridge.bridge-nf-call-iptables = 1\nnet.ipv4.ip_forward = 1" | sudo tee /etc/sysctl.d/99-kubernetes-k8s.conf && sudo sysctl --systemsudo systemctl enable --now docker。三 使用 kubeadm 快速初始化
sudo apt update && sudo apt install -y apt-transport-https curlecho "deb https://apt.kubernetes.io/ kubernetes-xenial main" | sudo tee /etc/apt/sources.list.d/kubernetes.listsudo apt update && sudo apt install -y kubelet kubeadm kubectl && sudo apt-mark hold kubelet kubeadm kubectlsudo kubeadm init --apiserver-advertise-address=<MASTER_IP> --pod-network-cidr=10.244.0.0/16 --service-cidr=10.100.0.0/16--image-repository=registry.aliyuncs.com/google_containersmkdir -p $HOME/.kube && sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config && sudo chown $(id -u):$(id -g) $HOME/.kube/configkubectl apply -f https://raw.githubusercontent.com/coreos/flannel/master/Documentation/kube-flannel.ymlkubectl apply -f https://docs.projectcalico.org/manifests/calico.yamlkubeadm init输出中的kubeadm join ...命令在各Worker节点执行。四 高可用与控制平面增强
sudo kubeadm init --control-plane-endpoint <VIP>:6443 --pod-network-cidr=10.244.0.0/16 --service-cidr=10.100.0.0/16/etc/hosts或DNS中写入VIP与**api.五 常见问题与优化建议
registry.aliyuncs.com/google_containers),或在/etc/containerd/config.toml中配置[plugins."io.containerd.grpc.v1.cri".registry.mirrors]加速。kubectl describe node <node>,常见原因为CNI未就绪、kubelet未启动、或容器运行时异常。