mirror of
https://github.com/rancher/rke.git
synced 2025-09-18 08:06:20 +00:00
Add metrics-server addon deployment
This commit is contained in:
committed by
Alena Prokharchyk
parent
9f7a37845e
commit
8269c3f301
100
cluster/plan.go
100
cluster/plan.go
@@ -107,32 +107,35 @@ func (c *Cluster) BuildKubeAPIProcess(prefixPath string) v3.Process {
|
||||
}
|
||||
|
||||
CommandArgs := map[string]string{
|
||||
"insecure-bind-address": "127.0.0.1",
|
||||
"bind-address": "0.0.0.0",
|
||||
"insecure-port": "0",
|
||||
"secure-port": "6443",
|
||||
"cloud-provider": c.CloudProvider.Name,
|
||||
"allow-privileged": "true",
|
||||
"kubelet-preferred-address-types": "InternalIP,ExternalIP,Hostname",
|
||||
"service-cluster-ip-range": c.Services.KubeAPI.ServiceClusterIPRange,
|
||||
"service-node-port-range": c.Services.KubeAPI.ServiceNodePortRange,
|
||||
"admission-control": "ServiceAccount,NamespaceLifecycle,LimitRanger,PersistentVolumeLabel,DefaultStorageClass,ResourceQuota,DefaultTolerationSeconds",
|
||||
"storage-backend": "etcd3",
|
||||
"client-ca-file": pki.GetCertPath(pki.CACertName),
|
||||
"tls-cert-file": pki.GetCertPath(pki.KubeAPICertName),
|
||||
"tls-private-key-file": pki.GetKeyPath(pki.KubeAPICertName),
|
||||
"kubelet-client-certificate": pki.GetCertPath(pki.KubeAPICertName),
|
||||
"kubelet-client-key": pki.GetKeyPath(pki.KubeAPICertName),
|
||||
"service-account-key-file": pki.GetKeyPath(pki.KubeAPICertName),
|
||||
"etcd-cafile": etcdCAClientCert,
|
||||
"etcd-certfile": etcdClientCert,
|
||||
"etcd-keyfile": etcdClientKey,
|
||||
"etcd-servers": etcdConnectionString,
|
||||
"etcd-prefix": etcdPathPrefix,
|
||||
"requestheader-client-ca-file": pki.GetCertPath(pki.RequestHeaderCACertName),
|
||||
"requestheader-allowed-names": pki.APIProxyClientCertName,
|
||||
"proxy-client-key-file": pki.GetKeyPath(pki.APIProxyClientCertName),
|
||||
"proxy-client-cert-file": pki.GetCertPath(pki.APIProxyClientCertName),
|
||||
"insecure-bind-address": "127.0.0.1",
|
||||
"bind-address": "0.0.0.0",
|
||||
"insecure-port": "0",
|
||||
"secure-port": "6443",
|
||||
"cloud-provider": c.CloudProvider.Name,
|
||||
"allow-privileged": "true",
|
||||
"kubelet-preferred-address-types": "InternalIP,ExternalIP,Hostname",
|
||||
"service-cluster-ip-range": c.Services.KubeAPI.ServiceClusterIPRange,
|
||||
"service-node-port-range": c.Services.KubeAPI.ServiceNodePortRange,
|
||||
"admission-control": "ServiceAccount,NamespaceLifecycle,LimitRanger,PersistentVolumeLabel,DefaultStorageClass,ResourceQuota,DefaultTolerationSeconds",
|
||||
"storage-backend": "etcd3",
|
||||
"client-ca-file": pki.GetCertPath(pki.CACertName),
|
||||
"tls-cert-file": pki.GetCertPath(pki.KubeAPICertName),
|
||||
"tls-private-key-file": pki.GetKeyPath(pki.KubeAPICertName),
|
||||
"kubelet-client-certificate": pki.GetCertPath(pki.KubeAPICertName),
|
||||
"kubelet-client-key": pki.GetKeyPath(pki.KubeAPICertName),
|
||||
"service-account-key-file": pki.GetKeyPath(pki.KubeAPICertName),
|
||||
"etcd-cafile": etcdCAClientCert,
|
||||
"etcd-certfile": etcdClientCert,
|
||||
"etcd-keyfile": etcdClientKey,
|
||||
"etcd-servers": etcdConnectionString,
|
||||
"etcd-prefix": etcdPathPrefix,
|
||||
"requestheader-client-ca-file": pki.GetCertPath(pki.RequestHeaderCACertName),
|
||||
"requestheader-allowed-names": pki.APIProxyClientCertName,
|
||||
"proxy-client-key-file": pki.GetKeyPath(pki.APIProxyClientCertName),
|
||||
"proxy-client-cert-file": pki.GetCertPath(pki.APIProxyClientCertName),
|
||||
"requestheader-extra-headers-prefix": "X-Remote-Extra-",
|
||||
"requestheader-group-headers": "X-Remote-Group",
|
||||
"requestheader-username-headers": "X-Remote-User",
|
||||
}
|
||||
if len(c.CloudProvider.Name) > 0 && c.CloudProvider.Name != aws.AWSCloudProviderName {
|
||||
CommandArgs["cloud-config"] = CloudConfigPath
|
||||
@@ -299,28 +302,29 @@ func (c *Cluster) BuildKubeletProcess(host *hosts.Host, prefixPath string) v3.Pr
|
||||
}
|
||||
|
||||
CommandArgs := map[string]string{
|
||||
"v": "2",
|
||||
"address": "0.0.0.0",
|
||||
"cadvisor-port": "0",
|
||||
"read-only-port": "0",
|
||||
"cluster-domain": c.ClusterDomain,
|
||||
"pod-infra-container-image": c.Services.Kubelet.InfraContainerImage,
|
||||
"cgroups-per-qos": "True",
|
||||
"enforce-node-allocatable": "",
|
||||
"hostname-override": host.HostnameOverride,
|
||||
"cluster-dns": c.ClusterDNSServer,
|
||||
"network-plugin": "cni",
|
||||
"cni-conf-dir": "/etc/cni/net.d",
|
||||
"cni-bin-dir": "/opt/cni/bin",
|
||||
"resolv-conf": "/etc/resolv.conf",
|
||||
"allow-privileged": "true",
|
||||
"cloud-provider": c.CloudProvider.Name,
|
||||
"kubeconfig": pki.GetConfigPath(pki.KubeNodeCertName),
|
||||
"client-ca-file": pki.GetCertPath(pki.CACertName),
|
||||
"anonymous-auth": "false",
|
||||
"volume-plugin-dir": path.Join(prefixPath, "/var/lib/kubelet/volumeplugins"),
|
||||
"fail-swap-on": strconv.FormatBool(c.Services.Kubelet.FailSwapOn),
|
||||
"root-dir": path.Join(prefixPath, "/var/lib/kubelet"),
|
||||
"v": "2",
|
||||
"address": "0.0.0.0",
|
||||
"cadvisor-port": "0",
|
||||
"read-only-port": "0",
|
||||
"cluster-domain": c.ClusterDomain,
|
||||
"pod-infra-container-image": c.Services.Kubelet.InfraContainerImage,
|
||||
"cgroups-per-qos": "True",
|
||||
"enforce-node-allocatable": "",
|
||||
"hostname-override": host.HostnameOverride,
|
||||
"cluster-dns": c.ClusterDNSServer,
|
||||
"network-plugin": "cni",
|
||||
"cni-conf-dir": "/etc/cni/net.d",
|
||||
"cni-bin-dir": "/opt/cni/bin",
|
||||
"resolv-conf": "/etc/resolv.conf",
|
||||
"allow-privileged": "true",
|
||||
"cloud-provider": c.CloudProvider.Name,
|
||||
"kubeconfig": pki.GetConfigPath(pki.KubeNodeCertName),
|
||||
"client-ca-file": pki.GetCertPath(pki.CACertName),
|
||||
"anonymous-auth": "false",
|
||||
"volume-plugin-dir": path.Join(prefixPath, "/var/lib/kubelet/volumeplugins"),
|
||||
"fail-swap-on": strconv.FormatBool(c.Services.Kubelet.FailSwapOn),
|
||||
"root-dir": path.Join(prefixPath, "/var/lib/kubelet"),
|
||||
"authentication-token-webhook": "true",
|
||||
}
|
||||
if host.IsControl && !host.IsWorker {
|
||||
CommandArgs["register-with-taints"] = unschedulableControlTaint
|
||||
|
Reference in New Issue
Block a user