在Debian系统上配置Kubernetes集群涉及多个步骤,包括系统准备、安装必要的软件包、配置网络、初始化主节点以及添加工作节点等。以下是一个详细的步骤指南:
sudo apt update
sudo apt upgrade -y
sudo apt install apt-transport-https ca-certificates curl
curl -fsSL https://download.docker.com/linux/debian/gpg | sudo apt-key add -
sudo add-apt-repository "deb [archamd64] https://download.docker.com/linux/debian $(lsb_release -cs) stable"
sudo apt update
sudo apt install docker-ce docker-ce-cli containerd.io -y
sudo systemctl start docker
sudo systemctl enable docker
sudo swapoff -a
sudo sed -i '/ swap / s/1/g' /etc/fstab
curl -s https://packages.cloud.google.com/apt/doc/apt-key.gpg | sudo apt-key add -
echo "deb https://apt.kubernetes.io/ kubernetes-xenial main" | sudo tee /etc/apt/sources.list.d/kubernetes.list
sudo apt update
sudo apt install -y kubelet kubeadm kubectl
sudo apt-mark hold kubelet kubeadm kubectl
sudo kubeadm init --apiserver-advertise-address <master-node-ip> --image-repository registry.aliyuncs.com/google_containers --kubernetes-version v1.28.0 --control-plane-endpoint <master-node-ip>:6443 --service-cidr 10.100.0.0/16 --token-ttl 0 --pod-network-cidr 10.244.0.0/16
记下初始化完成后显示的join命令,稍后将用于将工作节点加入集群。
在工作节点上执行join命令:
sudo kubeadm join <master-node-ip>:6443 --token <token> --discovery-token-ca-cert-hash sha256:<hash>
安装Calico网络插件:
wget https://raw.githubusercontent.com/projectcalico/calico/v3.26.1/manifests/calico.yaml
kubectl apply -f calico.yaml
如果防火墙已启用,开放Calico所需的端口:
sudo ufw allow 179/tcp
sudo ufw allow 4789/udp
sudo ufw allow 51820/udp
sudo ufw allow 51821/udp
sudo ufw reload
检查集群状态:
kubectl cluster-info
kubectl get nodes
部署示例应用程序(如Nginx):
kubectl create deployment nginx-app --image nginx --replicas 2
kubectl expose deployment nginx-app --name nginx-web-svc --type NodePort --port 80 --target-port 80
kubectl describe svc nginx-web-svc
使用curl命令测试Nginx服务:
curl http://<node-ip>:31743
以上步骤涵盖了在Debian系统中配置Kubernetes集群的基本流程。请根据实际需求和环境调整细节。