... Rego(也称为policy language)定义策略,常用于在微服务、Kubernetes、CI/CDpipeline、API网关等中实施策略。 外部授权(envoy.ext_authz ...
... 测试。 灰度发布实施方式: 基于负载均衡:nginx、haproxy、lvs 基于kubernetes:Pod的滚动更新回滚等、service、Ingress 基于服务网格 ...
Eclipse创建Maven项目 安装gitlab 安装jenkins 安装Harbor gitlab触发jenkins构建 更新kubernetes镜像脚本 kubernetes下载harbor上的镜像
... --show-labels NAME STATUS AGE LABELS default Active 202d istio-injection=enabled,kubernetes.io/metadata.name=default 卸载Istio: istioctl manifest generate --set profile=demo ...
... 对应匹配 alertmanager: main app.kubernetes.io/component: alert-router app.kubernetes.io/name: alertmanager app.kubernetes.io/part-of: kube-prometheus app.kubernetes.io/version: v0.21 ...
... 官方文档:详细介绍了各个插件是用来干什么的。 https://kubernetes.io/docs/reference/access-authn-authz/admission-controllers/
... server: $SERVER name: kubernetes contexts: - context: cluster: kubernetes user: setimage name: setimage@kubernetes current-context: setimage@kubernetes kind: Config preferences ...
... 查考部署的yaml文件: fluentd-es-ds.yaml https://github.com/kubernetes/kubernetes/blob/master/cluster/addons/fluentd-elasticsearch/fluentd-es-ds.yaml fluent-bit ...
... 目录: --cert-dir=/etc/kubernetes/cert/ 2、kubeconfig: --kubeconfig=/etc/kubernetes/kubeconfig 3、bootstrap-kubeconfig: --bootstrap-kubeconfig=/etc/kubernetes/bootstrap-kubeconfig 4、证书轮 ...
... remote_user: root any_errors_fatal: true # 一个节点失败则全部停止 roles: - role: kubernetes vars_files: - vars.yml vars: - install_type: 'master' 检查task返回结果 ...
... subjectAltName = @alt_names [alt_names] DNS.1 = kubernetes DNS.2 = kubernetes.default DNS.3 = kubernetes.default.svc DNS.4 = kubernetes.default.svc.cluster.local DNS.5 = localhost ...
... 改成 *_namespace_*.log 即可 pos_file /var/log/fluentd-containers.log.pos tag kubernetes.* read_from_head true <parse> @type multi_format <pattern> format json ...
... subjectAltName = @alt_names [alt_names] DNS.1 = kubernetes DNS.2 = kubernetes.default DNS.3 = kubernetes.default.svc DNS.4 = kubernetes.default.svc.cluster.local DNS.5 = k8s ...
... -cnc5l | jq 或者: etcdctl --cacert=/etc/kubernetes/pki/etcd/ca.crt \ --cert=/etc/kubernetes/pki/etcd/server.crt \ --key=/etc/kubernetes/pki/etcd/server.key \ --endpoints=https ...
... ip-masq \\ --etcd-cafile=/etc/kubernetes/pki/etcd/etcd_ca.crt \\ --etcd-certfile=/etc/kubernetes/pki/etcd/etcd_client.crt \\ --etcd-keyfile=/etc/kubernetes/pki/etcd/etcd_client.key ...
... -statefulset.yaml ) for var in ${files[@]} do wget https://raw.githubusercontent.com/kubernetes/kubernetes/release-1.16/cluster/addons/prometheus/$var done