2017-02-16 10:18:16 +00:00
|
|
|
/*
|
|
|
|
Copyright 2017 The Kubernetes Authors.
|
|
|
|
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
you may not use this file except in compliance with the License.
|
|
|
|
You may obtain a copy of the License at
|
|
|
|
|
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
See the License for the specific language governing permissions and
|
|
|
|
limitations under the License.
|
|
|
|
*/
|
|
|
|
|
|
|
|
package util
|
|
|
|
|
|
|
|
import (
|
|
|
|
"fmt"
|
|
|
|
|
2017-06-22 18:24:23 +00:00
|
|
|
"k8s.io/api/core/v1"
|
|
|
|
extensions "k8s.io/api/extensions/v1beta1"
|
2017-02-16 10:18:16 +00:00
|
|
|
metav1 "k8s.io/apimachinery/pkg/apis/meta/v1"
|
2017-08-05 06:49:10 +00:00
|
|
|
utilfeature "k8s.io/apiserver/pkg/util/feature"
|
2017-04-17 17:56:40 +00:00
|
|
|
podutil "k8s.io/kubernetes/pkg/api/v1/pod"
|
2017-11-08 22:34:54 +00:00
|
|
|
v1helper "k8s.io/kubernetes/pkg/apis/core/v1/helper"
|
2017-08-05 06:49:10 +00:00
|
|
|
"k8s.io/kubernetes/pkg/features"
|
|
|
|
kubelettypes "k8s.io/kubernetes/pkg/kubelet/types"
|
2018-01-04 02:12:18 +00:00
|
|
|
"k8s.io/kubernetes/pkg/scheduler/algorithm"
|
2017-02-16 10:18:16 +00:00
|
|
|
labelsutil "k8s.io/kubernetes/pkg/util/labels"
|
|
|
|
)
|
|
|
|
|
2017-05-17 23:53:46 +00:00
|
|
|
// CreatePodTemplate returns copy of provided template with additional
|
|
|
|
// label which contains templateGeneration (for backward compatibility),
|
|
|
|
// hash of provided template and sets default daemon tolerations.
|
|
|
|
func CreatePodTemplate(template v1.PodTemplateSpec, generation int64, hash string) v1.PodTemplateSpec {
|
2017-08-15 12:14:21 +00:00
|
|
|
newTemplate := *template.DeepCopy()
|
2017-05-04 13:19:08 +00:00
|
|
|
// DaemonSet pods shouldn't be deleted by NodeController in case of node problems.
|
|
|
|
// Add infinite toleration for taint notReady:NoExecute here
|
|
|
|
// to survive taint-based eviction enforced by NodeController
|
|
|
|
// when node turns not ready.
|
|
|
|
v1helper.AddOrUpdateTolerationInPodSpec(&newTemplate.Spec, &v1.Toleration{
|
2017-05-30 14:46:00 +00:00
|
|
|
Key: algorithm.TaintNodeNotReady,
|
2017-05-04 13:19:08 +00:00
|
|
|
Operator: v1.TolerationOpExists,
|
|
|
|
Effect: v1.TaintEffectNoExecute,
|
|
|
|
})
|
|
|
|
|
|
|
|
// DaemonSet pods shouldn't be deleted by NodeController in case of node problems.
|
|
|
|
// Add infinite toleration for taint unreachable:NoExecute here
|
|
|
|
// to survive taint-based eviction enforced by NodeController
|
|
|
|
// when node turns unreachable.
|
|
|
|
v1helper.AddOrUpdateTolerationInPodSpec(&newTemplate.Spec, &v1.Toleration{
|
2017-05-30 14:46:00 +00:00
|
|
|
Key: algorithm.TaintNodeUnreachable,
|
2017-05-04 13:19:08 +00:00
|
|
|
Operator: v1.TolerationOpExists,
|
|
|
|
Effect: v1.TaintEffectNoExecute,
|
|
|
|
})
|
|
|
|
|
2017-08-05 06:49:10 +00:00
|
|
|
// According to TaintNodesByCondition feature, all DaemonSet pods should tolerate
|
|
|
|
// MemoryPressure and DisPressure taints, and the critical pods should tolerate
|
|
|
|
// OutOfDisk taint.
|
|
|
|
v1helper.AddOrUpdateTolerationInPodSpec(&newTemplate.Spec, &v1.Toleration{
|
|
|
|
Key: algorithm.TaintNodeDiskPressure,
|
|
|
|
Operator: v1.TolerationOpExists,
|
|
|
|
Effect: v1.TaintEffectNoSchedule,
|
|
|
|
})
|
|
|
|
|
|
|
|
v1helper.AddOrUpdateTolerationInPodSpec(&newTemplate.Spec, &v1.Toleration{
|
|
|
|
Key: algorithm.TaintNodeMemoryPressure,
|
|
|
|
Operator: v1.TolerationOpExists,
|
|
|
|
Effect: v1.TaintEffectNoSchedule,
|
|
|
|
})
|
|
|
|
|
2017-08-28 18:17:38 +00:00
|
|
|
// TODO(#48843) OutOfDisk taints will be removed in 1.10
|
2017-08-05 06:49:10 +00:00
|
|
|
if utilfeature.DefaultFeatureGate.Enabled(features.ExperimentalCriticalPodAnnotation) &&
|
|
|
|
kubelettypes.IsCritical(newTemplate.Namespace, newTemplate.Annotations) {
|
|
|
|
v1helper.AddOrUpdateTolerationInPodSpec(&newTemplate.Spec, &v1.Toleration{
|
|
|
|
Key: algorithm.TaintNodeOutOfDisk,
|
|
|
|
Operator: v1.TolerationOpExists,
|
|
|
|
Effect: v1.TaintEffectNoExecute,
|
|
|
|
})
|
|
|
|
}
|
|
|
|
|
2017-02-16 10:18:16 +00:00
|
|
|
templateGenerationStr := fmt.Sprint(generation)
|
|
|
|
newTemplate.ObjectMeta.Labels = labelsutil.CloneAndAddLabel(
|
|
|
|
template.ObjectMeta.Labels,
|
|
|
|
extensions.DaemonSetTemplateGenerationKey,
|
|
|
|
templateGenerationStr,
|
|
|
|
)
|
2017-05-17 23:53:46 +00:00
|
|
|
// TODO: do we need to validate if the DaemonSet is RollingUpdate or not?
|
|
|
|
if len(hash) > 0 {
|
|
|
|
newTemplate.ObjectMeta.Labels[extensions.DefaultDaemonSetUniqueLabelKey] = hash
|
|
|
|
}
|
2017-02-16 10:18:16 +00:00
|
|
|
return newTemplate
|
|
|
|
}
|
|
|
|
|
2018-02-05 09:11:09 +00:00
|
|
|
// IsPodUpdated checks if pod contains label value that either matches templateGeneration or hash
|
2017-05-17 23:53:46 +00:00
|
|
|
func IsPodUpdated(dsTemplateGeneration int64, pod *v1.Pod, hash string) bool {
|
|
|
|
// Compare with hash to see if the pod is updated, need to maintain backward compatibility of templateGeneration
|
|
|
|
templateMatches := pod.Labels[extensions.DaemonSetTemplateGenerationKey] == fmt.Sprint(dsTemplateGeneration)
|
|
|
|
hashMatches := len(hash) > 0 && pod.Labels[extensions.DefaultDaemonSetUniqueLabelKey] == hash
|
|
|
|
return hashMatches || templateMatches
|
2017-02-16 10:18:16 +00:00
|
|
|
}
|
|
|
|
|
2018-02-09 06:53:53 +00:00
|
|
|
// SplitByAvailablePods splits provided daemon set pods by availability
|
2017-02-16 10:18:16 +00:00
|
|
|
func SplitByAvailablePods(minReadySeconds int32, pods []*v1.Pod) ([]*v1.Pod, []*v1.Pod) {
|
|
|
|
unavailablePods := []*v1.Pod{}
|
|
|
|
availablePods := []*v1.Pod{}
|
|
|
|
for _, pod := range pods {
|
2017-04-17 17:56:40 +00:00
|
|
|
if podutil.IsPodAvailable(pod, minReadySeconds, metav1.Now()) {
|
2017-02-16 10:18:16 +00:00
|
|
|
availablePods = append(availablePods, pod)
|
|
|
|
} else {
|
|
|
|
unavailablePods = append(unavailablePods, pod)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return availablePods, unavailablePods
|
|
|
|
}
|