温馨提示×

如何在centos上配置k8s网络

小樊
52
2025-03-13 20:59:15
栏目: 智能运维

在CentOS上配置Kubernetes(k8s)网络通常涉及以下几个步骤:

1. 环境准备

  • 关闭防火墙

    systemctl stop firewalld
    systemctl disable firewalld
    
  • 关闭SELinux

    setenforce 0
    sed -i 's/^SELINUX=.*/SELINUX=disabled/' /etc/selinux/config
    
  • 关闭swap

    swapoff -a
    sed -i '/swap/s///#/g' /etc/fstab
    
  • 设置主机名

    hostnamectl set-hostname k8s-master
    
  • 配置hosts文件(只在master节点执行):

    cat >> /etc/hosts << EOF
    192.168.0.51 k8s-master
    192.168.0.52 k8s-node1
    192.168.0.53 k8s-node2
    EOF
    
  • 配置网络参数

    cat > /etc/sysctl.d/k8s.conf << EOF
    net.bridge.bridge-nf-call-ip6tables = 1
    net.bridge.bridge-nf-call-iptables = 1
    net.ipv4.ip_forward = 1
    EOF
    sysctl --system
    
  • 时间同步

    yum install ntpdate -y
    ntpdate time.windows.com
    

2. 安装Docker

  • 添加镜像源

    curl https://mirrors.aliyun.com/docker-ce/linux/centos/docker-ce.repo -o /etc/yum.repos.d/docker-ce.repo
    
  • 安装Docker

    yum install -y docker-ce
    systemctl start docker
    systemctl enable docker
    

3. 安装kubeadm、kubelet和kubectl

  • 添加镜像源

    cat > /etc/yum.repos.d/kubernetes.repo << EOF
    [kubernetes]
    name=Kubernetes
    baseurl=https://mirrors.aliyun.com/kubernetes/yum/repos/kubernetes-el7-x86_64
    enabled=1
    gpgcheck=0
    repo_gpgcheck=0
    gpgkey=https://mirrors.aliyun.com/kubernetes/yum/doc/yum-key.gpg https://mirrors.aliyun.com/kubernetes/yum/doc/rpm-package-key.gpg
    EOF
    
  • 安装

    yum install -y kubelet kubeadm kubectl
    systemctl enable kubelet
    systemctl start kubelet
    

4. 部署Kubernetes集群

  • 初始化Master节点

    kubeadm init --apiserver-advertise-address 192.168.0.51 --image-repository registry.aliyuncs.com/google_containers --kubernetes-version 1.22.15 --service-cidr 10.96.0.0/12 --pod-network-cidr 10.244.0.0/16
    
  • 拷贝Kubernetes认证文件

    mkdir -p $HOME/.kube
    sudo cp -i /etc/kubernetes/admin.conf $HOME/.kube/config
    sudo chown $(id -u):$(id -g) $HOME/.kube/config
    
  • 添加工作节点: 在Master节点执行kubeadm join命令,输出如下:

    kubeadm join 192.168.0.51:6443 --token abcdef.0123456789abcdef0123456789abcdef012345678 --discovery-token-ca-cert-hash sha256:abcdef123456789abcdef0123456789abcdef0123456789abcdef0123456789abcdef0123456789abcdef
    
  • 安装网络插件(如Calico):

    kubectl apply -f https://docs.projectcalico.org/manifests/calico.yaml
    

5. 验证集群状态

  • 查看节点状态

    kubectl get nodes
    
  • 查看Pod状态

    kubectl get pods --all-namespaces
    

以上步骤是在CentOS上配置Kubernetes网络的基本流程。根据具体需求,可能还需要进行其他配置,如设置静态IP地址、配置网络策略等。

0