Ubuntu 节点加入与管理 Kubernetes 集群实操指南
一 环境准备与系统要求
二 所有节点通用配置
sudo swapoff -aoverlay、br_netfilternet.bridge.bridge-nf-call-iptables = 1net.bridge.bridge-nf-call-ip6tables = 1net.ipv4.ip_forward = 1sudo sysctl --systemsudo apt-get update && sudo apt-get install -y containerd.iosudo mkdir -p /etc/containerdcontainerd config default | sudo tee /etc/containerd/config.toml[plugins."io.containerd.grpc.v1.cri".containerd.runtimes.runc.options] 下设置 SystemdCgroup = truesudo systemctl enable --now containerdsudo apt-get update && sudo apt-get install -y docker.io{ "exec-opts": ["native.cgroupdriver=systemd"], "log-driver": "json-file", "log-opts": { "max-size": "100m" }, "storage-driver": "overlay2" }sudo systemctl enable --now dockercurl -fsSLo /usr/share/keyrings/kubernetes-archive-keyring.gpg https://packages.cloud.google.com/apt/doc/apt-key.gpgecho "deb [signed-by=/usr/share/keyrings/kubernetes-archive-keyring.gpg] https://apt.kubernetes.io/ kubernetes-xenial main" | sudo tee /etc/apt/sources.list.d/kubernetes.listsudo apt-get update && sudo apt-get install -y kubelet=1.28.2-00 kubeadm=1.28.2-00 kubectl=1.28.2-00sudo apt-mark hold kubelet kubeadm kubectlsudo systemctl enable --now kubelet三 控制平面节点初始化
sudo kubeadm init --pod-network-cidr=**10.244.0.0/16**sudo kubeadm init --pod-network-cidr=**10.244.0.0/16** --cri-socket=**unix:///var/run/dockershim.sock**mkdir -p $HOME/.kubesudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/configsudo chown $(id -u):$(id -g) $HOME/.kube/configkubectl apply -f https://raw.githubusercontent.com/coreos/flannel/master/Documentation/kube-flannel.ymlkubectl apply -f https://docs.projectcalico.org/v3.21/manifests/calico.yamlkubectl get nodes 应看到 master 状态为 Ready。四 工作节点加入集群
kubeadm token create --print-join-command,输出形如:
kubeadm join <control-plane-host>:<port> --token <token> --discovery-token-ca-cert-hash sha256:<hash>kubectl get nodes 检查状态。五 常见问题与验证
sudo systemctl status kubelet)、容器运行时是否健康、以及 CNI 网络插件 的 Pod 是否全部 Running。kubeadm config images pull 预先拉取所需镜像(版本需与控制平面一致)。kubectl get nodes:所有节点 Readykubectl get pods -A:核心组件(如 coredns、kube-proxy)与网络插件 Runningkubectl describe node <node-name>:查看 Conditions 与 Allocatable/Allocated 资源信息,排查资源与污点问题。