2014-06-16 06:29:07 +00:00
|
|
|
/*
|
2016-06-03 00:25:58 +00:00
|
|
|
Copyright 2014 The Kubernetes Authors.
|
2014-06-16 06:29:07 +00:00
|
|
|
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
you may not use this file except in compliance with the License.
|
|
|
|
You may obtain a copy of the License at
|
|
|
|
|
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
See the License for the specific language governing permissions and
|
|
|
|
limitations under the License.
|
|
|
|
*/
|
|
|
|
|
|
|
|
package master
|
|
|
|
|
|
|
|
import (
|
2014-11-02 20:52:31 +00:00
|
|
|
"fmt"
|
2014-09-18 23:03:34 +00:00
|
|
|
"net"
|
2014-10-23 23:55:14 +00:00
|
|
|
"net/http"
|
2014-11-02 20:52:31 +00:00
|
|
|
"net/url"
|
2014-10-28 00:56:33 +00:00
|
|
|
"strconv"
|
2014-10-23 23:55:14 +00:00
|
|
|
"strings"
|
2015-06-04 18:58:38 +00:00
|
|
|
"sync"
|
2014-06-16 06:29:07 +00:00
|
|
|
"time"
|
|
|
|
|
2015-08-05 22:03:47 +00:00
|
|
|
"k8s.io/kubernetes/pkg/api"
|
2016-05-09 21:47:02 +00:00
|
|
|
"k8s.io/kubernetes/pkg/api/meta"
|
2015-08-05 22:03:47 +00:00
|
|
|
"k8s.io/kubernetes/pkg/api/rest"
|
2015-10-09 01:33:33 +00:00
|
|
|
"k8s.io/kubernetes/pkg/api/unversioned"
|
2016-03-22 16:45:23 +00:00
|
|
|
apiv1 "k8s.io/kubernetes/pkg/api/v1"
|
2016-01-13 22:40:56 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apimachinery/registered"
|
2016-04-15 22:30:15 +00:00
|
|
|
appsapi "k8s.io/kubernetes/pkg/apis/apps/v1alpha1"
|
2016-07-19 18:47:53 +00:00
|
|
|
authenticationv1beta1 "k8s.io/kubernetes/pkg/apis/authentication/v1beta1"
|
2016-02-03 18:08:10 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/authorization"
|
|
|
|
authorizationapiv1beta1 "k8s.io/kubernetes/pkg/apis/authorization/v1beta1"
|
2016-02-15 14:00:40 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/autoscaling"
|
2016-03-22 16:45:23 +00:00
|
|
|
autoscalingapiv1 "k8s.io/kubernetes/pkg/apis/autoscaling/v1"
|
2016-02-17 17:11:31 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/batch"
|
2016-03-22 16:45:23 +00:00
|
|
|
batchapiv1 "k8s.io/kubernetes/pkg/apis/batch/v1"
|
2016-04-14 01:45:43 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/certificates"
|
|
|
|
certificatesapiv1alpha1 "k8s.io/kubernetes/pkg/apis/certificates/v1alpha1"
|
2015-12-08 14:21:04 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/extensions"
|
2016-03-22 16:45:23 +00:00
|
|
|
extensionsapiv1beta1 "k8s.io/kubernetes/pkg/apis/extensions/v1beta1"
|
2016-05-07 00:03:43 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/policy"
|
|
|
|
policyapiv1alpha1 "k8s.io/kubernetes/pkg/apis/policy/v1alpha1"
|
2016-05-25 21:20:41 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/rbac"
|
|
|
|
rbacapi "k8s.io/kubernetes/pkg/apis/rbac/v1alpha1"
|
2016-09-01 15:29:26 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apis/storage"
|
|
|
|
storageapiv1beta1 "k8s.io/kubernetes/pkg/apis/storage/v1beta1"
|
2015-08-05 22:03:47 +00:00
|
|
|
"k8s.io/kubernetes/pkg/apiserver"
|
2015-11-16 21:46:00 +00:00
|
|
|
"k8s.io/kubernetes/pkg/genericapiserver"
|
2015-08-05 22:03:47 +00:00
|
|
|
"k8s.io/kubernetes/pkg/healthz"
|
2015-10-27 13:18:45 +00:00
|
|
|
kubeletclient "k8s.io/kubernetes/pkg/kubelet/client"
|
2015-08-05 22:03:47 +00:00
|
|
|
"k8s.io/kubernetes/pkg/master/ports"
|
2016-09-23 19:10:47 +00:00
|
|
|
|
|
|
|
"k8s.io/kubernetes/pkg/registry/generic"
|
|
|
|
"k8s.io/kubernetes/pkg/registry/generic/registry"
|
|
|
|
"k8s.io/kubernetes/pkg/routes"
|
|
|
|
"k8s.io/kubernetes/pkg/runtime"
|
|
|
|
etcdutil "k8s.io/kubernetes/pkg/storage/etcd/util"
|
|
|
|
"k8s.io/kubernetes/pkg/storage/storagebackend"
|
|
|
|
"k8s.io/kubernetes/pkg/util/sets"
|
|
|
|
|
|
|
|
"github.com/golang/glog"
|
|
|
|
"github.com/prometheus/client_golang/prometheus"
|
|
|
|
|
|
|
|
// RESTStorage installers
|
|
|
|
appsrest "k8s.io/kubernetes/pkg/registry/apps/rest"
|
|
|
|
authenticationrest "k8s.io/kubernetes/pkg/registry/authentication/rest"
|
|
|
|
authorizationrest "k8s.io/kubernetes/pkg/registry/authorization/rest"
|
|
|
|
autoscalingrest "k8s.io/kubernetes/pkg/registry/autoscaling/rest"
|
|
|
|
batchrest "k8s.io/kubernetes/pkg/registry/batch/rest"
|
|
|
|
certificatesrest "k8s.io/kubernetes/pkg/registry/certificates/rest"
|
|
|
|
extensionsrest "k8s.io/kubernetes/pkg/registry/extensions/rest"
|
|
|
|
policyrest "k8s.io/kubernetes/pkg/registry/policy/rest"
|
|
|
|
rbacrest "k8s.io/kubernetes/pkg/registry/rbac/rest"
|
|
|
|
storagerest "k8s.io/kubernetes/pkg/registry/storage/rest"
|
|
|
|
|
|
|
|
// direct etcd registry dependencies
|
2016-09-21 13:14:26 +00:00
|
|
|
"k8s.io/kubernetes/pkg/registry/core/componentstatus"
|
|
|
|
configmapetcd "k8s.io/kubernetes/pkg/registry/core/configmap/etcd"
|
2016-09-23 20:24:24 +00:00
|
|
|
controlleretcd "k8s.io/kubernetes/pkg/registry/core/controller/etcd"
|
2016-09-21 13:14:26 +00:00
|
|
|
"k8s.io/kubernetes/pkg/registry/core/endpoint"
|
|
|
|
endpointsetcd "k8s.io/kubernetes/pkg/registry/core/endpoint/etcd"
|
|
|
|
eventetcd "k8s.io/kubernetes/pkg/registry/core/event/etcd"
|
|
|
|
limitrangeetcd "k8s.io/kubernetes/pkg/registry/core/limitrange/etcd"
|
|
|
|
"k8s.io/kubernetes/pkg/registry/core/namespace"
|
|
|
|
namespaceetcd "k8s.io/kubernetes/pkg/registry/core/namespace/etcd"
|
|
|
|
"k8s.io/kubernetes/pkg/registry/core/node"
|
|
|
|
nodeetcd "k8s.io/kubernetes/pkg/registry/core/node/etcd"
|
|
|
|
pvetcd "k8s.io/kubernetes/pkg/registry/core/persistentvolume/etcd"
|
|
|
|
pvcetcd "k8s.io/kubernetes/pkg/registry/core/persistentvolumeclaim/etcd"
|
|
|
|
podetcd "k8s.io/kubernetes/pkg/registry/core/pod/etcd"
|
|
|
|
podtemplateetcd "k8s.io/kubernetes/pkg/registry/core/podtemplate/etcd"
|
|
|
|
"k8s.io/kubernetes/pkg/registry/core/rangeallocation"
|
|
|
|
resourcequotaetcd "k8s.io/kubernetes/pkg/registry/core/resourcequota/etcd"
|
|
|
|
secretetcd "k8s.io/kubernetes/pkg/registry/core/secret/etcd"
|
|
|
|
"k8s.io/kubernetes/pkg/registry/core/service"
|
|
|
|
"k8s.io/kubernetes/pkg/registry/core/service/allocator"
|
|
|
|
etcdallocator "k8s.io/kubernetes/pkg/registry/core/service/allocator/etcd"
|
|
|
|
serviceetcd "k8s.io/kubernetes/pkg/registry/core/service/etcd"
|
|
|
|
ipallocator "k8s.io/kubernetes/pkg/registry/core/service/ipallocator"
|
|
|
|
"k8s.io/kubernetes/pkg/registry/core/service/portallocator"
|
|
|
|
serviceaccountetcd "k8s.io/kubernetes/pkg/registry/core/serviceaccount/etcd"
|
2016-09-21 13:06:56 +00:00
|
|
|
"k8s.io/kubernetes/pkg/registry/extensions/thirdpartyresourcedata"
|
|
|
|
thirdpartyresourcedataetcd "k8s.io/kubernetes/pkg/registry/extensions/thirdpartyresourcedata/etcd"
|
2014-06-16 06:29:07 +00:00
|
|
|
)
|
|
|
|
|
2016-06-24 15:25:46 +00:00
|
|
|
const (
|
|
|
|
// DefaultEndpointReconcilerInterval is the default amount of time for how often the endpoints for
|
|
|
|
// the kubernetes Service are reconciled.
|
|
|
|
DefaultEndpointReconcilerInterval = 10 * time.Second
|
|
|
|
)
|
|
|
|
|
2014-07-27 02:16:39 +00:00
|
|
|
type Config struct {
|
2016-09-28 18:52:28 +00:00
|
|
|
GenericConfig *genericapiserver.Config
|
2015-10-09 05:18:16 +00:00
|
|
|
|
2016-09-19 18:52:41 +00:00
|
|
|
StorageFactory genericapiserver.StorageFactory
|
|
|
|
EnableWatchCache bool
|
2016-06-24 15:25:46 +00:00
|
|
|
EnableCoreControllers bool
|
|
|
|
EndpointReconcilerConfig EndpointReconcilerConfig
|
|
|
|
DeleteCollectionWorkers int
|
|
|
|
EventTTL time.Duration
|
|
|
|
KubeletClient kubeletclient.KubeletClient
|
2016-09-15 17:41:48 +00:00
|
|
|
// genericapiserver.RESTStorageProviders provides RESTStorage building methods keyed by groupName
|
|
|
|
RESTStorageProviders map[string]genericapiserver.RESTStorageProvider
|
2015-10-09 05:18:16 +00:00
|
|
|
// Used to start and monitor tunneling
|
2016-09-06 11:20:36 +00:00
|
|
|
Tunneler genericapiserver.Tunneler
|
|
|
|
EnableUISupport bool
|
|
|
|
EnableLogsSupport bool
|
2016-03-10 04:06:31 +00:00
|
|
|
|
|
|
|
disableThirdPartyControllerForTesting bool
|
2015-10-29 09:51:32 +00:00
|
|
|
}
|
|
|
|
|
2016-06-24 15:25:46 +00:00
|
|
|
// EndpointReconcilerConfig holds the endpoint reconciler and endpoint reconciliation interval to be
|
|
|
|
// used by the master.
|
|
|
|
type EndpointReconcilerConfig struct {
|
|
|
|
Reconciler EndpointReconciler
|
|
|
|
Interval time.Duration
|
|
|
|
}
|
|
|
|
|
2014-06-16 06:29:07 +00:00
|
|
|
// Master contains state for a Kubernetes cluster master/api server.
|
|
|
|
type Master struct {
|
2015-11-16 21:46:00 +00:00
|
|
|
*genericapiserver.GenericAPIServer
|
|
|
|
|
|
|
|
// Map of v1 resources to their REST storages.
|
|
|
|
v1ResourcesStorage map[string]rest.Storage
|
2015-02-12 00:07:54 +00:00
|
|
|
|
2016-02-18 13:50:43 +00:00
|
|
|
enableCoreControllers bool
|
|
|
|
deleteCollectionWorkers int
|
2015-02-12 00:07:54 +00:00
|
|
|
// registries are internal client APIs for accessing the storage layer
|
|
|
|
// TODO: define the internal typed interface in a way that clients can
|
|
|
|
// also be replaced
|
2015-09-09 14:18:17 +00:00
|
|
|
nodeRegistry node.Registry
|
2015-05-23 20:41:11 +00:00
|
|
|
namespaceRegistry namespace.Registry
|
|
|
|
serviceRegistry service.Registry
|
|
|
|
endpointRegistry endpoint.Registry
|
2016-08-09 05:10:48 +00:00
|
|
|
serviceClusterIPAllocator rangeallocation.RangeRegistry
|
|
|
|
serviceNodePortAllocator rangeallocation.RangeRegistry
|
2015-02-12 00:07:54 +00:00
|
|
|
|
2015-08-19 18:02:01 +00:00
|
|
|
// storage for third party objects
|
2016-08-08 22:12:54 +00:00
|
|
|
thirdPartyStorageConfig *storagebackend.Config
|
2015-12-10 00:35:35 +00:00
|
|
|
// map from api path to a tuple of (storage for the objects, APIGroup)
|
2016-07-28 06:18:04 +00:00
|
|
|
thirdPartyResources map[string]*thirdPartyEntry
|
2015-09-09 21:36:19 +00:00
|
|
|
// protects the map
|
2015-11-16 21:46:00 +00:00
|
|
|
thirdPartyResourcesLock sync.RWMutex
|
2016-03-10 04:06:31 +00:00
|
|
|
// Useful for reliable testing. Shouldn't be used otherwise.
|
|
|
|
disableThirdPartyControllerForTesting bool
|
2014-06-16 06:29:07 +00:00
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
// Used to start and monitor tunneling
|
2016-04-22 00:48:35 +00:00
|
|
|
tunneler genericapiserver.Tunneler
|
2016-09-19 18:52:41 +00:00
|
|
|
|
|
|
|
restOptionsFactory restOptionsFactory
|
2014-10-28 00:56:33 +00:00
|
|
|
}
|
|
|
|
|
2015-12-10 00:35:35 +00:00
|
|
|
// thirdPartyEntry combines objects storage and API group into one struct
|
|
|
|
// for easy lookup.
|
|
|
|
type thirdPartyEntry struct {
|
2016-07-28 06:18:04 +00:00
|
|
|
// Map from plural resource name to entry
|
|
|
|
storage map[string]*thirdpartyresourcedataetcd.REST
|
2015-12-10 00:35:35 +00:00
|
|
|
group unversioned.APIGroup
|
|
|
|
}
|
|
|
|
|
2016-06-15 20:21:53 +00:00
|
|
|
type RESTOptionsGetter func(resource unversioned.GroupResource) generic.RESTOptions
|
2016-07-27 14:29:31 +00:00
|
|
|
|
|
|
|
type RESTStorageProvider interface {
|
2016-08-26 15:06:27 +00:00
|
|
|
NewRESTStorage(apiResourceConfigSource genericapiserver.APIResourceConfigSource, restOptionsGetter RESTOptionsGetter) (groupInfo genericapiserver.APIGroupInfo, enabled bool)
|
|
|
|
}
|
|
|
|
|
2016-09-27 15:52:31 +00:00
|
|
|
// Complete fills in any fields not set that are required to have valid data. It's mutating the receiver.
|
|
|
|
func (c *Config) Complete() *Config {
|
|
|
|
c.Config.Complete()
|
|
|
|
|
|
|
|
// enable swagger UI only if general UI support is on
|
|
|
|
c.Config.EnableSwaggerUI = c.Config.EnableSwaggerUI && c.EnableUISupport
|
|
|
|
|
|
|
|
return c
|
|
|
|
}
|
|
|
|
|
2014-10-28 20:02:19 +00:00
|
|
|
// New returns a new instance of Master from the given config.
|
2015-11-16 21:46:00 +00:00
|
|
|
// Certain config fields will be set to a default value if unset.
|
2014-10-28 20:02:19 +00:00
|
|
|
// Certain config fields must be specified, including:
|
|
|
|
// KubeletClient
|
2016-09-27 15:54:45 +00:00
|
|
|
func (c *Config) New() (*Master, error) {
|
2014-11-03 22:50:41 +00:00
|
|
|
if c.KubeletClient == nil {
|
2016-02-03 22:26:11 +00:00
|
|
|
return nil, fmt.Errorf("Master.New() called with config.KubeletClient == nil")
|
2014-11-03 22:50:41 +00:00
|
|
|
}
|
2014-12-15 20:29:55 +00:00
|
|
|
|
2016-09-27 15:52:31 +00:00
|
|
|
s, err := c.Config.New()
|
2016-02-03 22:26:11 +00:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
2015-11-16 21:46:00 +00:00
|
|
|
|
2016-09-06 11:20:36 +00:00
|
|
|
if c.EnableUISupport {
|
|
|
|
routes.UIRedirect{}.Install(s.Mux, s.HandlerContainer)
|
|
|
|
}
|
|
|
|
if c.EnableLogsSupport {
|
|
|
|
routes.Logs{}.Install(s.Mux, s.HandlerContainer)
|
|
|
|
}
|
|
|
|
|
2014-06-16 06:29:07 +00:00
|
|
|
m := &Master{
|
2016-02-18 13:50:43 +00:00
|
|
|
GenericAPIServer: s,
|
|
|
|
enableCoreControllers: c.EnableCoreControllers,
|
|
|
|
deleteCollectionWorkers: c.DeleteCollectionWorkers,
|
|
|
|
tunneler: c.Tunneler,
|
2016-03-10 04:06:31 +00:00
|
|
|
|
|
|
|
disableThirdPartyControllerForTesting: c.disableThirdPartyControllerForTesting,
|
2016-09-19 18:52:41 +00:00
|
|
|
|
|
|
|
restOptionsFactory: restOptionsFactory{
|
|
|
|
deleteCollectionWorkers: c.DeleteCollectionWorkers,
|
2016-09-28 18:52:28 +00:00
|
|
|
enableGarbageCollection: c.GenericConfig.EnableGarbageCollection,
|
2016-09-19 18:52:41 +00:00
|
|
|
storageFactory: c.StorageFactory,
|
|
|
|
},
|
|
|
|
}
|
|
|
|
|
|
|
|
if c.EnableWatchCache {
|
|
|
|
m.restOptionsFactory.storageDecorator = registry.StorageWithCacher
|
|
|
|
} else {
|
|
|
|
m.restOptionsFactory.storageDecorator = generic.UndecoratedStorage
|
2014-06-16 06:29:07 +00:00
|
|
|
}
|
2016-06-15 20:21:53 +00:00
|
|
|
|
|
|
|
// Add some hardcoded storage for now. Append to the map.
|
|
|
|
if c.RESTStorageProviders == nil {
|
2016-09-15 17:41:48 +00:00
|
|
|
c.RESTStorageProviders = map[string]genericapiserver.RESTStorageProvider{}
|
2016-06-15 20:21:53 +00:00
|
|
|
}
|
2016-09-23 19:10:47 +00:00
|
|
|
c.RESTStorageProviders[appsapi.GroupName] = appsrest.RESTStorageProvider{}
|
2016-09-28 18:52:28 +00:00
|
|
|
c.RESTStorageProviders[authenticationv1beta1.GroupName] = authenticationrest.RESTStorageProvider{Authenticator: c.GenericConfig.Authenticator}
|
|
|
|
c.RESTStorageProviders[authorization.GroupName] = authorizationrest.RESTStorageProvider{Authorizer: c.GenericConfig.Authorizer}
|
2016-09-23 19:10:47 +00:00
|
|
|
c.RESTStorageProviders[autoscaling.GroupName] = autoscalingrest.RESTStorageProvider{}
|
|
|
|
c.RESTStorageProviders[batch.GroupName] = batchrest.RESTStorageProvider{}
|
|
|
|
c.RESTStorageProviders[certificates.GroupName] = certificatesrest.RESTStorageProvider{}
|
|
|
|
c.RESTStorageProviders[extensions.GroupName] = extensionsrest.RESTStorageProvider{
|
2016-07-27 14:29:31 +00:00
|
|
|
ResourceInterface: m,
|
|
|
|
DisableThirdPartyControllerForTesting: m.disableThirdPartyControllerForTesting,
|
|
|
|
}
|
2016-09-23 19:10:47 +00:00
|
|
|
c.RESTStorageProviders[policy.GroupName] = policyrest.RESTStorageProvider{}
|
2016-09-28 18:52:28 +00:00
|
|
|
c.RESTStorageProviders[rbac.GroupName] = &rbacrest.RESTStorageProvider{AuthorizerRBACSuperUser: c.GenericConfig.AuthorizerRBACSuperUser}
|
2016-09-23 19:10:47 +00:00
|
|
|
c.RESTStorageProviders[storage.GroupName] = storagerest.RESTStorageProvider{}
|
2015-11-16 21:46:00 +00:00
|
|
|
m.InstallAPIs(c)
|
2014-12-15 20:29:55 +00:00
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
// TODO: Attempt clean shutdown?
|
|
|
|
if m.enableCoreControllers {
|
2016-06-24 15:25:46 +00:00
|
|
|
m.NewBootstrapController(c.EndpointReconcilerConfig).Start()
|
2015-11-16 21:46:00 +00:00
|
|
|
}
|
2015-05-06 21:54:54 +00:00
|
|
|
|
2016-02-03 22:26:11 +00:00
|
|
|
return m, nil
|
2014-06-16 06:29:07 +00:00
|
|
|
}
|
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
func (m *Master) InstallAPIs(c *Config) {
|
2015-12-22 21:22:28 +00:00
|
|
|
apiGroupsInfo := []genericapiserver.APIGroupInfo{}
|
|
|
|
|
|
|
|
// Install v1 unless disabled.
|
2016-09-28 18:52:28 +00:00
|
|
|
if c.GenericConfig.APIResourceConfigSource.AnyResourcesForVersionEnabled(apiv1.SchemeGroupVersion) {
|
2015-12-22 21:22:28 +00:00
|
|
|
// Install v1 API.
|
|
|
|
m.initV1ResourcesStorage(c)
|
|
|
|
apiGroupInfo := genericapiserver.APIGroupInfo{
|
2016-01-13 22:40:56 +00:00
|
|
|
GroupMeta: *registered.GroupOrDie(api.GroupName),
|
2015-12-22 21:22:28 +00:00
|
|
|
VersionedResourcesStorageMap: map[string]map[string]rest.Storage{
|
|
|
|
"v1": m.v1ResourcesStorage,
|
|
|
|
},
|
2016-05-06 20:28:58 +00:00
|
|
|
IsLegacyGroup: true,
|
|
|
|
Scheme: api.Scheme,
|
|
|
|
ParameterCodec: api.ParameterCodec,
|
|
|
|
NegotiatedSerializer: api.Codecs,
|
|
|
|
SubresourceGroupVersionKind: map[string]unversioned.GroupVersionKind{},
|
2015-12-22 21:22:28 +00:00
|
|
|
}
|
2016-02-24 19:22:34 +00:00
|
|
|
if autoscalingGroupVersion := (unversioned.GroupVersion{Group: "autoscaling", Version: "v1"}); registered.IsEnabledVersion(autoscalingGroupVersion) {
|
2016-05-06 20:28:58 +00:00
|
|
|
apiGroupInfo.SubresourceGroupVersionKind["replicationcontrollers/scale"] = autoscalingGroupVersion.WithKind("Scale")
|
|
|
|
}
|
|
|
|
if policyGroupVersion := (unversioned.GroupVersion{Group: "policy", Version: "v1alpha1"}); registered.IsEnabledVersion(policyGroupVersion) {
|
|
|
|
apiGroupInfo.SubresourceGroupVersionKind["pods/eviction"] = policyGroupVersion.WithKind("Eviction")
|
2016-02-24 19:22:34 +00:00
|
|
|
}
|
2015-12-22 21:22:28 +00:00
|
|
|
apiGroupsInfo = append(apiGroupsInfo, apiGroupInfo)
|
|
|
|
}
|
|
|
|
|
2015-12-05 02:01:29 +00:00
|
|
|
// Run the tunneler.
|
|
|
|
healthzChecks := []healthz.HealthzChecker{}
|
|
|
|
if m.tunneler != nil {
|
|
|
|
m.tunneler.Run(m.getNodeAddresses)
|
|
|
|
healthzChecks = append(healthzChecks, healthz.NamedCheck("SSH Tunnel Check", m.IsTunnelSyncHealthy))
|
|
|
|
prometheus.NewGaugeFunc(prometheus.GaugeOpts{
|
|
|
|
Name: "apiserver_proxy_tunnel_sync_latency_secs",
|
|
|
|
Help: "The time since the last successful synchronization of the SSH tunnels for proxy requests.",
|
|
|
|
}, func() float64 { return float64(m.tunneler.SecondsSinceSync()) })
|
|
|
|
}
|
2016-09-06 11:20:36 +00:00
|
|
|
healthz.InstallHandler(m.Mux, healthzChecks...)
|
2016-04-06 21:52:28 +00:00
|
|
|
|
2016-09-28 18:52:28 +00:00
|
|
|
if c.GenericConfig.EnableProfiling {
|
2016-09-06 11:20:36 +00:00
|
|
|
routes.MetricsWithReset{}.Install(m.Mux, m.HandlerContainer)
|
2016-04-06 21:52:28 +00:00
|
|
|
} else {
|
2016-09-06 11:20:36 +00:00
|
|
|
routes.DefaultMetrics{}.Install(m.Mux, m.HandlerContainer)
|
2016-02-03 15:53:19 +00:00
|
|
|
}
|
2015-12-05 02:01:29 +00:00
|
|
|
|
2016-07-27 14:29:31 +00:00
|
|
|
// Install third party resource support if requested
|
|
|
|
// TODO seems like this bit ought to be unconditional and the REST API is controlled by the config
|
2016-09-28 18:52:28 +00:00
|
|
|
if c.GenericConfig.APIResourceConfigSource.ResourceEnabled(extensionsapiv1beta1.SchemeGroupVersion.WithResource("thirdpartyresources")) {
|
2016-03-16 14:17:04 +00:00
|
|
|
var err error
|
2016-08-08 22:12:54 +00:00
|
|
|
m.thirdPartyStorageConfig, err = c.StorageFactory.NewConfig(extensions.Resource("thirdpartyresources"))
|
2016-03-16 14:17:04 +00:00
|
|
|
if err != nil {
|
|
|
|
glog.Fatalf("Error getting third party storage: %v", err)
|
|
|
|
}
|
2016-07-28 06:18:04 +00:00
|
|
|
m.thirdPartyResources = map[string]*thirdPartyEntry{}
|
2015-12-22 21:22:28 +00:00
|
|
|
}
|
2016-02-15 14:00:40 +00:00
|
|
|
|
2016-06-15 20:21:53 +00:00
|
|
|
restOptionsGetter := func(resource unversioned.GroupResource) generic.RESTOptions {
|
2016-09-19 18:52:41 +00:00
|
|
|
return m.restOptionsFactory.NewFor(resource)
|
2016-02-17 17:11:31 +00:00
|
|
|
}
|
|
|
|
|
2016-06-15 20:21:53 +00:00
|
|
|
// stabilize order.
|
|
|
|
// TODO find a better way to configure priority of groups
|
|
|
|
for _, group := range sets.StringKeySet(c.RESTStorageProviders).List() {
|
2016-09-28 18:52:28 +00:00
|
|
|
if !c.GenericConfig.APIResourceConfigSource.AnyResourcesForGroupEnabled(group) {
|
2016-09-07 12:57:54 +00:00
|
|
|
glog.V(1).Infof("Skipping disabled API group %q.", group)
|
2016-06-15 20:21:53 +00:00
|
|
|
continue
|
2016-05-07 00:03:43 +00:00
|
|
|
}
|
2016-06-15 20:21:53 +00:00
|
|
|
restStorageBuilder := c.RESTStorageProviders[group]
|
2016-09-28 18:52:28 +00:00
|
|
|
apiGroupInfo, enabled := restStorageBuilder.NewRESTStorage(c.GenericConfig.APIResourceConfigSource, restOptionsGetter)
|
2016-06-15 20:21:53 +00:00
|
|
|
if !enabled {
|
2016-09-07 12:57:54 +00:00
|
|
|
glog.Warningf("Problem initializing API group %q, skipping.", group)
|
2016-06-15 20:21:53 +00:00
|
|
|
continue
|
2016-04-15 22:30:15 +00:00
|
|
|
}
|
2016-09-07 12:57:54 +00:00
|
|
|
glog.V(1).Infof("Enabling API group %q.", group)
|
2016-04-14 01:45:43 +00:00
|
|
|
|
2016-09-15 17:41:48 +00:00
|
|
|
if postHookProvider, ok := restStorageBuilder.(genericapiserver.PostStartHookProvider); ok {
|
2016-08-26 15:06:27 +00:00
|
|
|
name, hook, err := postHookProvider.PostStartHook()
|
|
|
|
if err != nil {
|
|
|
|
glog.Fatalf("Error building PostStartHook: %v", err)
|
|
|
|
}
|
|
|
|
if err := m.GenericAPIServer.AddPostStartHook(name, hook); err != nil {
|
|
|
|
glog.Fatalf("Error registering PostStartHook %q: %v", name, err)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2016-05-06 20:28:58 +00:00
|
|
|
// This is here so that, if the policy group is present, the eviction
|
|
|
|
// subresource handler wil be able to find poddisruptionbudgets
|
|
|
|
// TODO(lavalamp) find a better way for groups to discover and interact
|
|
|
|
// with each other
|
|
|
|
if group == "policy" {
|
|
|
|
storage := apiGroupsInfo[0].VersionedResourcesStorageMap["v1"]["pods/eviction"]
|
|
|
|
evictionStorage := storage.(*podetcd.EvictionREST)
|
|
|
|
|
|
|
|
storage = apiGroupInfo.VersionedResourcesStorageMap["v1alpha1"]["poddisruptionbudgets"]
|
|
|
|
evictionStorage.PodDisruptionBudgetLister = storage.(rest.Lister)
|
|
|
|
evictionStorage.PodDisruptionBudgetUpdater = storage.(rest.Updater)
|
|
|
|
}
|
|
|
|
|
2016-05-25 21:20:41 +00:00
|
|
|
apiGroupsInfo = append(apiGroupsInfo, apiGroupInfo)
|
|
|
|
}
|
|
|
|
|
2016-09-22 11:02:52 +00:00
|
|
|
for i := range apiGroupsInfo {
|
|
|
|
if err := m.InstallAPIGroup(&apiGroupsInfo[i]); err != nil {
|
|
|
|
glog.Fatalf("Error in registering group versions: %v", err)
|
|
|
|
}
|
2015-10-09 05:18:16 +00:00
|
|
|
}
|
2015-11-16 21:46:00 +00:00
|
|
|
}
|
2015-10-09 05:18:16 +00:00
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
func (m *Master) initV1ResourcesStorage(c *Config) {
|
2016-02-22 09:15:22 +00:00
|
|
|
restOptions := func(resource string) generic.RESTOptions {
|
2016-09-19 18:52:41 +00:00
|
|
|
return m.restOptionsFactory.NewFor(api.Resource(resource))
|
2016-02-22 09:15:22 +00:00
|
|
|
}
|
2015-02-11 23:37:12 +00:00
|
|
|
|
2016-02-22 09:15:22 +00:00
|
|
|
podTemplateStorage := podtemplateetcd.NewREST(restOptions("podTemplates"))
|
2015-03-04 00:54:17 +00:00
|
|
|
|
2016-02-22 09:15:22 +00:00
|
|
|
eventStorage := eventetcd.NewREST(restOptions("events"), uint64(c.EventTTL.Seconds()))
|
|
|
|
limitRangeStorage := limitrangeetcd.NewREST(restOptions("limitRanges"))
|
2015-03-13 19:15:04 +00:00
|
|
|
|
2016-02-22 09:15:22 +00:00
|
|
|
resourceQuotaStorage, resourceQuotaStatusStorage := resourcequotaetcd.NewREST(restOptions("resourceQuotas"))
|
|
|
|
secretStorage := secretetcd.NewREST(restOptions("secrets"))
|
|
|
|
serviceAccountStorage := serviceaccountetcd.NewREST(restOptions("serviceAccounts"))
|
|
|
|
persistentVolumeStorage, persistentVolumeStatusStorage := pvetcd.NewREST(restOptions("persistentVolumes"))
|
|
|
|
persistentVolumeClaimStorage, persistentVolumeClaimStatusStorage := pvcetcd.NewREST(restOptions("persistentVolumeClaims"))
|
|
|
|
configMapStorage := configmapetcd.NewREST(restOptions("configMaps"))
|
2015-03-12 15:08:06 +00:00
|
|
|
|
2016-02-22 09:15:22 +00:00
|
|
|
namespaceStorage, namespaceStatusStorage, namespaceFinalizeStorage := namespaceetcd.NewREST(restOptions("namespaces"))
|
2015-03-12 15:08:06 +00:00
|
|
|
m.namespaceRegistry = namespace.NewRegistry(namespaceStorage)
|
2015-02-12 00:07:54 +00:00
|
|
|
|
2016-02-22 09:15:22 +00:00
|
|
|
endpointsStorage := endpointsetcd.NewREST(restOptions("endpoints"))
|
2015-03-15 06:03:46 +00:00
|
|
|
m.endpointRegistry = endpoint.NewRegistry(endpointsStorage)
|
|
|
|
|
2016-02-22 09:15:22 +00:00
|
|
|
nodeStorage := nodeetcd.NewStorage(restOptions("nodes"), c.KubeletClient, m.ProxyTransport)
|
2015-11-30 11:48:23 +00:00
|
|
|
m.nodeRegistry = node.NewRegistry(nodeStorage.Node)
|
2015-03-13 14:49:38 +00:00
|
|
|
|
2015-10-27 13:18:45 +00:00
|
|
|
podStorage := podetcd.NewStorage(
|
2016-02-22 09:15:22 +00:00
|
|
|
restOptions("pods"),
|
2015-11-30 11:48:23 +00:00
|
|
|
kubeletclient.ConnectionInfoGetter(nodeStorage.Node),
|
2015-11-16 21:46:00 +00:00
|
|
|
m.ProxyTransport,
|
2015-10-27 13:18:45 +00:00
|
|
|
)
|
|
|
|
|
2016-03-16 14:17:04 +00:00
|
|
|
serviceRESTStorage, serviceStatusStorage := serviceetcd.NewREST(restOptions("services"))
|
|
|
|
m.serviceRegistry = service.NewRegistry(serviceRESTStorage)
|
2015-02-11 23:37:12 +00:00
|
|
|
|
2016-08-09 05:10:48 +00:00
|
|
|
var serviceClusterIPRegistry rangeallocation.RangeRegistry
|
2015-11-16 21:46:00 +00:00
|
|
|
serviceClusterIPRange := m.ServiceClusterIPRange
|
|
|
|
if serviceClusterIPRange == nil {
|
|
|
|
glog.Fatalf("service clusterIPRange is nil")
|
|
|
|
return
|
|
|
|
}
|
2016-03-16 14:17:04 +00:00
|
|
|
|
2016-08-08 22:12:54 +00:00
|
|
|
serviceStorageConfig, err := c.StorageFactory.NewConfig(api.Resource("services"))
|
2016-03-16 14:17:04 +00:00
|
|
|
if err != nil {
|
|
|
|
glog.Fatal(err.Error())
|
|
|
|
}
|
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
serviceClusterIPAllocator := ipallocator.NewAllocatorCIDRRange(serviceClusterIPRange, func(max int, rangeSpec string) allocator.Interface {
|
2015-05-22 22:28:48 +00:00
|
|
|
mem := allocator.NewAllocationMap(max, rangeSpec)
|
2016-03-16 14:17:04 +00:00
|
|
|
// TODO etcdallocator package to return a storage interface via the storageFactory
|
2016-08-08 22:12:54 +00:00
|
|
|
etcd := etcdallocator.NewEtcd(mem, "/ranges/serviceips", api.Resource("serviceipallocations"), serviceStorageConfig)
|
2015-05-23 20:41:11 +00:00
|
|
|
serviceClusterIPRegistry = etcd
|
2015-05-22 22:28:48 +00:00
|
|
|
return etcd
|
|
|
|
})
|
2015-05-23 20:41:11 +00:00
|
|
|
m.serviceClusterIPAllocator = serviceClusterIPRegistry
|
2015-05-22 22:28:48 +00:00
|
|
|
|
2016-08-09 05:10:48 +00:00
|
|
|
var serviceNodePortRegistry rangeallocation.RangeRegistry
|
2015-11-16 21:46:00 +00:00
|
|
|
serviceNodePortAllocator := portallocator.NewPortAllocatorCustom(m.ServiceNodePortRange, func(max int, rangeSpec string) allocator.Interface {
|
2015-05-22 22:28:48 +00:00
|
|
|
mem := allocator.NewAllocationMap(max, rangeSpec)
|
2016-03-16 14:17:04 +00:00
|
|
|
// TODO etcdallocator package to return a storage interface via the storageFactory
|
2016-08-08 22:12:54 +00:00
|
|
|
etcd := etcdallocator.NewEtcd(mem, "/ranges/servicenodeports", api.Resource("servicenodeportallocations"), serviceStorageConfig)
|
2015-05-22 22:28:48 +00:00
|
|
|
serviceNodePortRegistry = etcd
|
|
|
|
return etcd
|
|
|
|
})
|
|
|
|
m.serviceNodePortAllocator = serviceNodePortRegistry
|
2015-05-03 22:44:05 +00:00
|
|
|
|
2016-02-24 19:22:34 +00:00
|
|
|
controllerStorage := controlleretcd.NewStorage(restOptions("replicationControllers"))
|
2015-03-16 04:36:26 +00:00
|
|
|
|
2015-11-18 03:42:03 +00:00
|
|
|
serviceRest := service.NewStorage(m.serviceRegistry, m.endpointRegistry, serviceClusterIPAllocator, serviceNodePortAllocator, m.ProxyTransport)
|
|
|
|
|
|
|
|
// TODO: Factor out the core API registration
|
2015-11-16 21:46:00 +00:00
|
|
|
m.v1ResourcesStorage = map[string]rest.Storage{
|
2015-04-14 15:12:27 +00:00
|
|
|
"pods": podStorage.Pod,
|
2015-07-28 22:56:27 +00:00
|
|
|
"pods/attach": podStorage.Attach,
|
2015-04-14 15:12:27 +00:00
|
|
|
"pods/status": podStorage.Status,
|
|
|
|
"pods/log": podStorage.Log,
|
|
|
|
"pods/exec": podStorage.Exec,
|
|
|
|
"pods/portforward": podStorage.PortForward,
|
|
|
|
"pods/proxy": podStorage.Proxy,
|
|
|
|
"pods/binding": podStorage.Binding,
|
|
|
|
"bindings": podStorage.Binding,
|
2015-02-11 23:37:12 +00:00
|
|
|
|
2015-03-04 00:54:17 +00:00
|
|
|
"podTemplates": podTemplateStorage,
|
|
|
|
|
2016-02-24 19:22:34 +00:00
|
|
|
"replicationControllers": controllerStorage.Controller,
|
|
|
|
"replicationControllers/status": controllerStorage.Status,
|
2015-11-18 03:42:03 +00:00
|
|
|
|
|
|
|
"services": serviceRest.Service,
|
|
|
|
"services/proxy": serviceRest.Proxy,
|
|
|
|
"services/status": serviceStatusStorage,
|
|
|
|
|
|
|
|
"endpoints": endpointsStorage,
|
|
|
|
|
|
|
|
"nodes": nodeStorage.Node,
|
|
|
|
"nodes/status": nodeStorage.Status,
|
|
|
|
"nodes/proxy": nodeStorage.Proxy,
|
|
|
|
|
|
|
|
"events": eventStorage,
|
2014-08-15 23:01:33 +00:00
|
|
|
|
2015-08-11 07:05:40 +00:00
|
|
|
"limitRanges": limitRangeStorage,
|
2015-04-06 18:40:45 +00:00
|
|
|
"resourceQuotas": resourceQuotaStorage,
|
|
|
|
"resourceQuotas/status": resourceQuotaStatusStorage,
|
|
|
|
"namespaces": namespaceStorage,
|
|
|
|
"namespaces/status": namespaceStatusStorage,
|
|
|
|
"namespaces/finalize": namespaceFinalizeStorage,
|
2015-04-28 03:50:56 +00:00
|
|
|
"secrets": secretStorage,
|
2015-04-27 22:53:28 +00:00
|
|
|
"serviceAccounts": serviceAccountStorage,
|
2015-04-06 18:40:45 +00:00
|
|
|
"persistentVolumes": persistentVolumeStorage,
|
|
|
|
"persistentVolumes/status": persistentVolumeStatusStorage,
|
|
|
|
"persistentVolumeClaims": persistentVolumeClaimStorage,
|
|
|
|
"persistentVolumeClaims/status": persistentVolumeClaimStatusStorage,
|
2016-01-15 16:48:36 +00:00
|
|
|
"configMaps": configMapStorage,
|
2015-04-15 19:23:02 +00:00
|
|
|
|
2015-05-14 00:29:25 +00:00
|
|
|
"componentStatuses": componentstatus.NewStorage(func() map[string]apiserver.Server { return m.getServersToValidate(c) }),
|
2014-06-16 06:29:07 +00:00
|
|
|
}
|
2016-02-24 19:22:34 +00:00
|
|
|
if registered.IsEnabledVersion(unversioned.GroupVersion{Group: "autoscaling", Version: "v1"}) {
|
|
|
|
m.v1ResourcesStorage["replicationControllers/scale"] = controllerStorage.Scale
|
|
|
|
}
|
2016-05-06 20:28:58 +00:00
|
|
|
if registered.IsEnabledVersion(unversioned.GroupVersion{Group: "policy", Version: "v1alpha1"}) {
|
|
|
|
m.v1ResourcesStorage["pods/eviction"] = podStorage.Eviction
|
|
|
|
}
|
2015-05-04 19:11:19 +00:00
|
|
|
}
|
|
|
|
|
2016-06-24 15:25:46 +00:00
|
|
|
// NewBootstrapController returns a controller for watching the core capabilities of the master. If
|
|
|
|
// endpointReconcilerConfig.Interval is 0, the default value of DefaultEndpointReconcilerInterval
|
|
|
|
// will be used instead. If endpointReconcilerConfig.Reconciler is nil, the default
|
|
|
|
// MasterCountEndpointReconciler will be used.
|
|
|
|
func (m *Master) NewBootstrapController(endpointReconcilerConfig EndpointReconcilerConfig) *Controller {
|
|
|
|
if endpointReconcilerConfig.Interval == 0 {
|
|
|
|
endpointReconcilerConfig.Interval = DefaultEndpointReconcilerInterval
|
|
|
|
}
|
|
|
|
|
|
|
|
if endpointReconcilerConfig.Reconciler == nil {
|
|
|
|
// use a default endpoint reconciler if nothing is set
|
|
|
|
// m.endpointRegistry is set via m.InstallAPIs -> m.initV1ResourcesStorage
|
|
|
|
endpointReconcilerConfig.Reconciler = NewMasterCountEndpointReconciler(m.MasterCount, m.endpointRegistry)
|
|
|
|
}
|
|
|
|
|
2015-05-04 19:11:19 +00:00
|
|
|
return &Controller{
|
|
|
|
NamespaceRegistry: m.namespaceRegistry,
|
|
|
|
ServiceRegistry: m.serviceRegistry,
|
|
|
|
|
2016-06-24 15:25:46 +00:00
|
|
|
EndpointReconciler: endpointReconcilerConfig.Reconciler,
|
|
|
|
EndpointInterval: endpointReconcilerConfig.Interval,
|
2015-05-22 22:28:48 +00:00
|
|
|
|
2016-05-05 19:27:49 +00:00
|
|
|
SystemNamespaces: []string{api.NamespaceSystem},
|
|
|
|
SystemNamespacesInterval: 1 * time.Minute,
|
|
|
|
|
2015-05-23 20:41:11 +00:00
|
|
|
ServiceClusterIPRegistry: m.serviceClusterIPAllocator,
|
2015-11-16 21:46:00 +00:00
|
|
|
ServiceClusterIPRange: m.ServiceClusterIPRange,
|
2015-05-23 20:41:11 +00:00
|
|
|
ServiceClusterIPInterval: 3 * time.Minute,
|
|
|
|
|
|
|
|
ServiceNodePortRegistry: m.serviceNodePortAllocator,
|
2015-11-16 21:46:00 +00:00
|
|
|
ServiceNodePortRange: m.ServiceNodePortRange,
|
2015-05-22 22:28:48 +00:00
|
|
|
ServiceNodePortInterval: 3 * time.Minute,
|
2015-05-04 19:11:19 +00:00
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
PublicIP: m.ClusterIP,
|
2015-05-04 19:11:19 +00:00
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
ServiceIP: m.ServiceReadWriteIP,
|
|
|
|
ServicePort: m.ServiceReadWritePort,
|
|
|
|
ExtraServicePorts: m.ExtraServicePorts,
|
|
|
|
ExtraEndpointPorts: m.ExtraEndpointPorts,
|
|
|
|
PublicServicePort: m.PublicReadWritePort,
|
2015-10-02 02:59:00 +00:00
|
|
|
KubernetesServiceNodePort: m.KubernetesServiceNodePort,
|
2015-05-03 22:44:05 +00:00
|
|
|
}
|
2014-12-15 20:29:55 +00:00
|
|
|
}
|
|
|
|
|
2015-05-14 00:29:25 +00:00
|
|
|
func (m *Master) getServersToValidate(c *Config) map[string]apiserver.Server {
|
2014-11-02 20:52:31 +00:00
|
|
|
serversToValidate := map[string]apiserver.Server{
|
2014-12-16 03:45:27 +00:00
|
|
|
"controller-manager": {Addr: "127.0.0.1", Port: ports.ControllerManagerPort, Path: "/healthz"},
|
|
|
|
"scheduler": {Addr: "127.0.0.1", Port: ports.SchedulerPort, Path: "/healthz"},
|
2014-11-02 20:52:31 +00:00
|
|
|
}
|
2015-09-30 07:56:51 +00:00
|
|
|
|
2016-03-16 14:17:04 +00:00
|
|
|
for ix, machine := range c.StorageFactory.Backends() {
|
2014-11-02 20:52:31 +00:00
|
|
|
etcdUrl, err := url.Parse(machine)
|
|
|
|
if err != nil {
|
|
|
|
glog.Errorf("Failed to parse etcd url for validation: %v", err)
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
var port int
|
|
|
|
var addr string
|
|
|
|
if strings.Contains(etcdUrl.Host, ":") {
|
|
|
|
var portString string
|
|
|
|
addr, portString, err = net.SplitHostPort(etcdUrl.Host)
|
|
|
|
if err != nil {
|
|
|
|
glog.Errorf("Failed to split host/port: %s (%v)", etcdUrl.Host, err)
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
port, _ = strconv.Atoi(portString)
|
|
|
|
} else {
|
|
|
|
addr = etcdUrl.Host
|
2016-08-10 20:39:36 +00:00
|
|
|
port = 2379
|
2014-11-02 20:52:31 +00:00
|
|
|
}
|
2015-12-03 16:09:45 +00:00
|
|
|
// TODO: etcd health checking should be abstracted in the storage tier
|
2016-04-06 03:44:45 +00:00
|
|
|
serversToValidate[fmt.Sprintf("etcd-%d", ix)] = apiserver.Server{
|
|
|
|
Addr: addr,
|
|
|
|
EnableHTTPS: etcdUrl.Scheme == "https",
|
|
|
|
Port: port,
|
|
|
|
Path: "/health",
|
|
|
|
Validate: etcdutil.EtcdHealthCheck,
|
|
|
|
}
|
2014-11-02 20:52:31 +00:00
|
|
|
}
|
|
|
|
return serversToValidate
|
|
|
|
}
|
|
|
|
|
2015-09-09 21:36:19 +00:00
|
|
|
// HasThirdPartyResource returns true if a particular third party resource currently installed.
|
2015-12-08 14:21:04 +00:00
|
|
|
func (m *Master) HasThirdPartyResource(rsrc *extensions.ThirdPartyResource) (bool, error) {
|
2016-07-28 06:18:04 +00:00
|
|
|
kind, group, err := thirdpartyresourcedata.ExtractApiGroupAndKind(rsrc)
|
2015-09-09 21:36:19 +00:00
|
|
|
if err != nil {
|
|
|
|
return false, err
|
|
|
|
}
|
2016-09-23 19:10:47 +00:00
|
|
|
path := extensionsrest.MakeThirdPartyPath(group)
|
2016-07-28 06:18:04 +00:00
|
|
|
m.thirdPartyResourcesLock.Lock()
|
|
|
|
defer m.thirdPartyResourcesLock.Unlock()
|
|
|
|
entry := m.thirdPartyResources[path]
|
|
|
|
if entry == nil {
|
|
|
|
return false, nil
|
2015-09-09 21:36:19 +00:00
|
|
|
}
|
2016-07-28 06:18:04 +00:00
|
|
|
plural, _ := meta.KindToResource(unversioned.GroupVersionKind{
|
|
|
|
Group: group,
|
|
|
|
Version: rsrc.Versions[0].Name,
|
|
|
|
Kind: kind,
|
|
|
|
})
|
|
|
|
_, found := entry.storage[plural.Resource]
|
|
|
|
return found, nil
|
2015-09-09 21:36:19 +00:00
|
|
|
}
|
|
|
|
|
2016-07-28 06:18:04 +00:00
|
|
|
func (m *Master) removeThirdPartyStorage(path, resource string) error {
|
2015-09-09 21:36:19 +00:00
|
|
|
m.thirdPartyResourcesLock.Lock()
|
|
|
|
defer m.thirdPartyResourcesLock.Unlock()
|
2016-07-28 06:18:04 +00:00
|
|
|
entry, found := m.thirdPartyResources[path]
|
|
|
|
if !found {
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
storage, found := entry.storage[resource]
|
|
|
|
if !found {
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
if err := m.removeAllThirdPartyResources(storage); err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
delete(entry.storage, resource)
|
|
|
|
if len(entry.storage) == 0 {
|
2015-09-09 21:36:19 +00:00
|
|
|
delete(m.thirdPartyResources, path)
|
2016-09-23 19:10:47 +00:00
|
|
|
m.RemoveAPIGroupForDiscovery(extensionsrest.GetThirdPartyGroupName(path))
|
2016-07-28 06:18:04 +00:00
|
|
|
} else {
|
|
|
|
m.thirdPartyResources[path] = entry
|
2015-09-09 21:36:19 +00:00
|
|
|
}
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
|
|
|
// RemoveThirdPartyResource removes all resources matching `path`. Also deletes any stored data
|
|
|
|
func (m *Master) RemoveThirdPartyResource(path string) error {
|
2016-07-28 06:18:04 +00:00
|
|
|
ix := strings.LastIndex(path, "/")
|
|
|
|
if ix == -1 {
|
|
|
|
return fmt.Errorf("expected <api-group>/<resource-plural-name>, saw: %s", path)
|
|
|
|
}
|
|
|
|
resource := path[ix+1:]
|
|
|
|
path = path[0:ix]
|
|
|
|
|
|
|
|
if err := m.removeThirdPartyStorage(path, resource); err != nil {
|
2015-09-09 21:36:19 +00:00
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
services := m.HandlerContainer.RegisteredWebServices()
|
2015-09-09 21:36:19 +00:00
|
|
|
for ix := range services {
|
|
|
|
root := services[ix].RootPath()
|
|
|
|
if root == path || strings.HasPrefix(root, path+"/") {
|
2015-11-16 21:46:00 +00:00
|
|
|
m.HandlerContainer.Remove(services[ix])
|
2015-09-09 21:36:19 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
|
|
|
func (m *Master) removeAllThirdPartyResources(registry *thirdpartyresourcedataetcd.REST) error {
|
|
|
|
ctx := api.NewDefaultContext()
|
2015-10-27 13:47:58 +00:00
|
|
|
existingData, err := registry.List(ctx, nil)
|
2015-09-09 21:36:19 +00:00
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2015-12-08 14:21:04 +00:00
|
|
|
list, ok := existingData.(*extensions.ThirdPartyResourceDataList)
|
2015-09-09 21:36:19 +00:00
|
|
|
if !ok {
|
|
|
|
return fmt.Errorf("expected a *ThirdPartyResourceDataList, got %#v", list)
|
|
|
|
}
|
|
|
|
for ix := range list.Items {
|
|
|
|
item := &list.Items[ix]
|
|
|
|
if _, err := registry.Delete(ctx, item.Name, nil); err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
|
|
|
// ListThirdPartyResources lists all currently installed third party resources
|
2016-07-28 06:18:04 +00:00
|
|
|
// The format is <path>/<resource-plural-name>
|
2015-09-09 21:36:19 +00:00
|
|
|
func (m *Master) ListThirdPartyResources() []string {
|
|
|
|
m.thirdPartyResourcesLock.RLock()
|
|
|
|
defer m.thirdPartyResourcesLock.RUnlock()
|
|
|
|
result := []string{}
|
|
|
|
for key := range m.thirdPartyResources {
|
2016-07-28 06:18:04 +00:00
|
|
|
for rsrc := range m.thirdPartyResources[key].storage {
|
|
|
|
result = append(result, key+"/"+rsrc)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return result
|
|
|
|
}
|
|
|
|
|
|
|
|
func (m *Master) getExistingThirdPartyResources(path string) []unversioned.APIResource {
|
|
|
|
result := []unversioned.APIResource{}
|
|
|
|
m.thirdPartyResourcesLock.Lock()
|
|
|
|
defer m.thirdPartyResourcesLock.Unlock()
|
|
|
|
entry := m.thirdPartyResources[path]
|
|
|
|
if entry != nil {
|
|
|
|
for key, obj := range entry.storage {
|
|
|
|
result = append(result, unversioned.APIResource{
|
|
|
|
Name: key,
|
|
|
|
Namespaced: true,
|
|
|
|
Kind: obj.Kind(),
|
|
|
|
})
|
|
|
|
}
|
2015-09-09 21:36:19 +00:00
|
|
|
}
|
|
|
|
return result
|
|
|
|
}
|
|
|
|
|
2016-07-28 06:18:04 +00:00
|
|
|
func (m *Master) hasThirdPartyGroupStorage(path string) bool {
|
2016-07-02 05:42:51 +00:00
|
|
|
m.thirdPartyResourcesLock.Lock()
|
|
|
|
defer m.thirdPartyResourcesLock.Unlock()
|
|
|
|
_, found := m.thirdPartyResources[path]
|
|
|
|
return found
|
|
|
|
}
|
|
|
|
|
2016-07-28 06:18:04 +00:00
|
|
|
func (m *Master) addThirdPartyResourceStorage(path, resource string, storage *thirdpartyresourcedataetcd.REST, apiGroup unversioned.APIGroup) {
|
2015-09-09 21:36:19 +00:00
|
|
|
m.thirdPartyResourcesLock.Lock()
|
|
|
|
defer m.thirdPartyResourcesLock.Unlock()
|
2016-07-28 06:18:04 +00:00
|
|
|
entry, found := m.thirdPartyResources[path]
|
|
|
|
if entry == nil {
|
|
|
|
entry = &thirdPartyEntry{
|
|
|
|
group: apiGroup,
|
|
|
|
storage: map[string]*thirdpartyresourcedataetcd.REST{},
|
|
|
|
}
|
|
|
|
m.thirdPartyResources[path] = entry
|
|
|
|
}
|
|
|
|
entry.storage[resource] = storage
|
|
|
|
if !found {
|
|
|
|
m.AddAPIGroupForDiscovery(apiGroup)
|
|
|
|
}
|
2015-09-09 21:36:19 +00:00
|
|
|
}
|
|
|
|
|
|
|
|
// InstallThirdPartyResource installs a third party resource specified by 'rsrc'. When a resource is
|
|
|
|
// installed a corresponding RESTful resource is added as a valid path in the web service provided by
|
|
|
|
// the master.
|
|
|
|
//
|
|
|
|
// For example, if you install a resource ThirdPartyResource{ Name: "foo.company.com", Versions: {"v1"} }
|
|
|
|
// then the following RESTful resource is created on the server:
|
|
|
|
// http://<host>/apis/company.com/v1/foos/...
|
2015-12-08 14:21:04 +00:00
|
|
|
func (m *Master) InstallThirdPartyResource(rsrc *extensions.ThirdPartyResource) error {
|
2015-08-20 05:08:26 +00:00
|
|
|
kind, group, err := thirdpartyresourcedata.ExtractApiGroupAndKind(rsrc)
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
2016-05-09 21:47:02 +00:00
|
|
|
plural, _ := meta.KindToResource(unversioned.GroupVersionKind{
|
|
|
|
Group: group,
|
|
|
|
Version: rsrc.Versions[0].Name,
|
|
|
|
Kind: kind,
|
|
|
|
})
|
2016-09-23 19:10:47 +00:00
|
|
|
path := extensionsrest.MakeThirdPartyPath(group)
|
2016-05-09 21:47:02 +00:00
|
|
|
|
2016-07-28 06:18:04 +00:00
|
|
|
groupVersion := unversioned.GroupVersionForDiscovery{
|
|
|
|
GroupVersion: group + "/" + rsrc.Versions[0].Name,
|
|
|
|
Version: rsrc.Versions[0].Name,
|
|
|
|
}
|
|
|
|
apiGroup := unversioned.APIGroup{
|
|
|
|
Name: group,
|
|
|
|
Versions: []unversioned.GroupVersionForDiscovery{groupVersion},
|
|
|
|
PreferredVersion: groupVersion,
|
|
|
|
}
|
|
|
|
|
2016-05-09 21:47:02 +00:00
|
|
|
thirdparty := m.thirdpartyapi(group, kind, rsrc.Versions[0].Name, plural.Resource)
|
2016-07-02 05:42:51 +00:00
|
|
|
|
|
|
|
// If storage exists, this group has already been added, just update
|
|
|
|
// the group with the new API
|
2016-07-28 06:18:04 +00:00
|
|
|
if m.hasThirdPartyGroupStorage(path) {
|
|
|
|
m.addThirdPartyResourceStorage(path, plural.Resource, thirdparty.Storage[plural.Resource].(*thirdpartyresourcedataetcd.REST), apiGroup)
|
2016-07-02 05:42:51 +00:00
|
|
|
return thirdparty.UpdateREST(m.HandlerContainer)
|
|
|
|
}
|
|
|
|
|
2015-11-16 21:46:00 +00:00
|
|
|
if err := thirdparty.InstallREST(m.HandlerContainer); err != nil {
|
2016-07-02 05:42:51 +00:00
|
|
|
glog.Errorf("Unable to setup thirdparty api: %v", err)
|
2015-08-19 18:02:01 +00:00
|
|
|
}
|
2016-09-21 09:36:44 +00:00
|
|
|
m.HandlerContainer.Add(apiserver.NewGroupWebService(api.Codecs, path, apiGroup))
|
2016-05-09 21:47:02 +00:00
|
|
|
|
2016-07-28 06:18:04 +00:00
|
|
|
m.addThirdPartyResourceStorage(path, plural.Resource, thirdparty.Storage[plural.Resource].(*thirdpartyresourcedataetcd.REST), apiGroup)
|
2015-08-19 18:02:01 +00:00
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2016-05-09 21:47:02 +00:00
|
|
|
func (m *Master) thirdpartyapi(group, kind, version, pluralResource string) *apiserver.APIGroupVersion {
|
2016-02-18 13:50:43 +00:00
|
|
|
resourceStorage := thirdpartyresourcedataetcd.NewREST(
|
2016-04-23 19:00:28 +00:00
|
|
|
generic.RESTOptions{
|
2016-08-08 22:12:54 +00:00
|
|
|
StorageConfig: m.thirdPartyStorageConfig,
|
2016-04-23 19:00:28 +00:00
|
|
|
Decorator: generic.UndecoratedStorage,
|
|
|
|
DeleteCollectionWorkers: m.deleteCollectionWorkers,
|
|
|
|
},
|
|
|
|
group,
|
|
|
|
kind,
|
|
|
|
)
|
2015-08-19 18:02:01 +00:00
|
|
|
|
|
|
|
storage := map[string]rest.Storage{
|
2016-05-09 21:47:02 +00:00
|
|
|
pluralResource: resourceStorage,
|
2015-08-19 18:02:01 +00:00
|
|
|
}
|
|
|
|
|
2016-01-13 22:40:56 +00:00
|
|
|
optionsExternalVersion := registered.GroupOrDie(api.GroupName).GroupVersion
|
2015-12-21 05:27:49 +00:00
|
|
|
internalVersion := unversioned.GroupVersion{Group: group, Version: runtime.APIVersionInternal}
|
|
|
|
externalVersion := unversioned.GroupVersion{Group: group, Version: version}
|
2015-11-12 20:20:20 +00:00
|
|
|
|
2016-09-23 19:10:47 +00:00
|
|
|
apiRoot := extensionsrest.MakeThirdPartyPath("")
|
2015-08-19 18:02:01 +00:00
|
|
|
return &apiserver.APIGroupVersion{
|
2015-10-20 17:34:26 +00:00
|
|
|
Root: apiRoot,
|
2015-12-21 05:27:49 +00:00
|
|
|
GroupVersion: externalVersion,
|
2015-11-16 21:46:00 +00:00
|
|
|
RequestInfoResolver: m.NewRequestInfoResolver(),
|
2015-08-19 18:02:01 +00:00
|
|
|
|
2015-09-29 21:36:47 +00:00
|
|
|
Creater: thirdpartyresourcedata.NewObjectCreator(group, version, api.Scheme),
|
2015-08-19 18:02:01 +00:00
|
|
|
Convertor: api.Scheme,
|
2016-04-29 01:21:35 +00:00
|
|
|
Copier: api.Scheme,
|
2015-08-19 18:02:01 +00:00
|
|
|
Typer: api.Scheme,
|
|
|
|
|
2016-01-13 22:40:56 +00:00
|
|
|
Mapper: thirdpartyresourcedata.NewMapper(registered.GroupOrDie(extensions.GroupName).RESTMapper, kind, version, group),
|
|
|
|
Linker: registered.GroupOrDie(extensions.GroupName).SelfLinker,
|
2015-12-08 19:40:23 +00:00
|
|
|
Storage: storage,
|
|
|
|
OptionsExternalVersion: &optionsExternalVersion,
|
2015-08-19 18:02:01 +00:00
|
|
|
|
2016-04-20 17:35:09 +00:00
|
|
|
Serializer: thirdpartyresourcedata.NewNegotiatedSerializer(api.Codecs, kind, externalVersion, internalVersion),
|
|
|
|
ParameterCodec: thirdpartyresourcedata.NewThirdPartyParameterCodec(api.ParameterCodec),
|
2015-12-21 05:27:49 +00:00
|
|
|
|
2016-08-23 13:26:35 +00:00
|
|
|
Context: m.RequestContextMapper(),
|
2015-08-19 18:02:01 +00:00
|
|
|
|
2016-08-23 13:26:35 +00:00
|
|
|
MinRequestTimeout: m.MinRequestTimeout(),
|
2016-07-28 06:18:04 +00:00
|
|
|
|
2016-09-23 19:10:47 +00:00
|
|
|
ResourceLister: dynamicLister{m, extensionsrest.MakeThirdPartyPath(group)},
|
2015-08-19 18:02:01 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2016-09-19 18:52:41 +00:00
|
|
|
type restOptionsFactory struct {
|
|
|
|
deleteCollectionWorkers int
|
|
|
|
enableGarbageCollection bool
|
|
|
|
storageFactory genericapiserver.StorageFactory
|
|
|
|
storageDecorator generic.StorageDecorator
|
|
|
|
}
|
|
|
|
|
|
|
|
func (f restOptionsFactory) NewFor(resource unversioned.GroupResource) generic.RESTOptions {
|
|
|
|
storageConfig, err := f.storageFactory.NewConfig(resource)
|
2016-03-16 14:17:04 +00:00
|
|
|
if err != nil {
|
|
|
|
glog.Fatalf("Unable to find storage destination for %v, due to %v", resource, err.Error())
|
|
|
|
}
|
|
|
|
|
|
|
|
return generic.RESTOptions{
|
2016-08-08 22:12:54 +00:00
|
|
|
StorageConfig: storageConfig,
|
2016-09-19 18:52:41 +00:00
|
|
|
Decorator: f.storageDecorator,
|
|
|
|
DeleteCollectionWorkers: f.deleteCollectionWorkers,
|
|
|
|
EnableGarbageCollection: f.enableGarbageCollection,
|
|
|
|
ResourcePrefix: f.storageFactory.ResourcePrefix(resource),
|
2016-03-16 14:17:04 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2015-07-28 08:10:48 +00:00
|
|
|
// findExternalAddress returns ExternalIP of provided node with fallback to LegacyHostIP.
|
2015-05-28 04:38:21 +00:00
|
|
|
func findExternalAddress(node *api.Node) (string, error) {
|
2015-07-28 08:10:48 +00:00
|
|
|
var fallback string
|
2015-05-28 04:38:21 +00:00
|
|
|
for ix := range node.Status.Addresses {
|
|
|
|
addr := &node.Status.Addresses[ix]
|
|
|
|
if addr.Type == api.NodeExternalIP {
|
|
|
|
return addr.Address, nil
|
|
|
|
}
|
2015-07-28 08:10:48 +00:00
|
|
|
if fallback == "" && addr.Type == api.NodeLegacyHostIP {
|
|
|
|
fallback = addr.Address
|
|
|
|
}
|
|
|
|
}
|
|
|
|
if fallback != "" {
|
|
|
|
return fallback, nil
|
2015-05-28 04:38:21 +00:00
|
|
|
}
|
|
|
|
return "", fmt.Errorf("Couldn't find external address: %v", node)
|
|
|
|
}
|
|
|
|
|
2015-06-02 16:52:35 +00:00
|
|
|
func (m *Master) getNodeAddresses() ([]string, error) {
|
2015-10-27 13:47:58 +00:00
|
|
|
nodes, err := m.nodeRegistry.ListNodes(api.NewDefaultContext(), nil)
|
2015-05-28 04:38:21 +00:00
|
|
|
if err != nil {
|
2015-06-02 16:52:35 +00:00
|
|
|
return nil, err
|
2015-05-28 04:38:21 +00:00
|
|
|
}
|
2015-06-02 16:52:35 +00:00
|
|
|
addrs := []string{}
|
2015-05-28 04:38:21 +00:00
|
|
|
for ix := range nodes.Items {
|
|
|
|
node := &nodes.Items[ix]
|
|
|
|
addr, err := findExternalAddress(node)
|
|
|
|
if err != nil {
|
2015-06-02 16:52:35 +00:00
|
|
|
return nil, err
|
2015-05-28 04:38:21 +00:00
|
|
|
}
|
2015-06-02 16:52:35 +00:00
|
|
|
addrs = append(addrs, addr)
|
2015-05-28 04:38:21 +00:00
|
|
|
}
|
2015-06-02 16:52:35 +00:00
|
|
|
return addrs, nil
|
|
|
|
}
|
2015-05-28 04:38:21 +00:00
|
|
|
|
2015-07-14 19:30:43 +00:00
|
|
|
func (m *Master) IsTunnelSyncHealthy(req *http.Request) error {
|
2015-10-09 05:18:16 +00:00
|
|
|
if m.tunneler == nil {
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
lag := m.tunneler.SecondsSinceSync()
|
2015-07-14 19:30:43 +00:00
|
|
|
if lag > 600 {
|
|
|
|
return fmt.Errorf("Tunnel sync is taking to long: %d", lag)
|
|
|
|
}
|
2016-03-18 00:57:04 +00:00
|
|
|
sshKeyLag := m.tunneler.SecondsSinceSSHKeySync()
|
|
|
|
if sshKeyLag > 600 {
|
|
|
|
return fmt.Errorf("SSHKey sync is taking to long: %d", sshKeyLag)
|
|
|
|
}
|
2015-07-14 19:30:43 +00:00
|
|
|
return nil
|
|
|
|
}
|
2016-03-22 16:45:23 +00:00
|
|
|
|
|
|
|
func DefaultAPIResourceConfigSource() *genericapiserver.ResourceConfig {
|
|
|
|
ret := genericapiserver.NewResourceConfig()
|
2016-06-15 20:21:53 +00:00
|
|
|
ret.EnableVersions(
|
|
|
|
apiv1.SchemeGroupVersion,
|
|
|
|
extensionsapiv1beta1.SchemeGroupVersion,
|
|
|
|
batchapiv1.SchemeGroupVersion,
|
2016-07-19 18:47:53 +00:00
|
|
|
authenticationv1beta1.SchemeGroupVersion,
|
2016-06-15 20:21:53 +00:00
|
|
|
autoscalingapiv1.SchemeGroupVersion,
|
|
|
|
appsapi.SchemeGroupVersion,
|
|
|
|
policyapiv1alpha1.SchemeGroupVersion,
|
|
|
|
rbacapi.SchemeGroupVersion,
|
2016-09-01 15:29:26 +00:00
|
|
|
storageapiv1beta1.SchemeGroupVersion,
|
2016-06-15 20:21:53 +00:00
|
|
|
certificatesapiv1alpha1.SchemeGroupVersion,
|
2016-02-03 18:08:10 +00:00
|
|
|
authorizationapiv1beta1.SchemeGroupVersion,
|
2016-06-15 20:21:53 +00:00
|
|
|
)
|
2016-03-22 16:45:23 +00:00
|
|
|
|
|
|
|
// all extensions resources except these are disabled by default
|
|
|
|
ret.EnableResources(
|
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("daemonsets"),
|
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("deployments"),
|
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("horizontalpodautoscalers"),
|
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("ingresses"),
|
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("jobs"),
|
2016-07-06 20:30:48 +00:00
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("networkpolicies"),
|
2016-03-22 16:45:23 +00:00
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("replicasets"),
|
|
|
|
extensionsapiv1beta1.SchemeGroupVersion.WithResource("thirdpartyresources"),
|
|
|
|
)
|
|
|
|
|
|
|
|
return ret
|
|
|
|
}
|