mirror of https://github.com/k3s-io/k3s
Make usage of real proxier in hollow-proxy optional (default=true)
parent
008fcfeddf
commit
804a4f558c
|
@ -79,6 +79,7 @@ if [ -n "${STORAGE_MEDIA_TYPE:-}" ]; then
|
||||||
fi
|
fi
|
||||||
|
|
||||||
ENABLE_GARBAGE_COLLECTOR=${ENABLE_GARBAGE_COLLECTOR:-true}
|
ENABLE_GARBAGE_COLLECTOR=${ENABLE_GARBAGE_COLLECTOR:-true}
|
||||||
|
USE_REAL_PROXIER=${USE_REAL_PROXIER:-true} # for hollow-proxy
|
||||||
|
|
||||||
KUBELET_TEST_ARGS="--max-pods=100 $TEST_CLUSTER_LOG_LEVEL ${TEST_CLUSTER_API_CONTENT_TYPE}"
|
KUBELET_TEST_ARGS="--max-pods=100 $TEST_CLUSTER_LOG_LEVEL ${TEST_CLUSTER_API_CONTENT_TYPE}"
|
||||||
APISERVER_TEST_ARGS="--runtime-config=extensions/v1beta1 ${API_SERVER_TEST_LOG_LEVEL} ${TEST_CLUSTER_STORAGE_MEDIA_TYPE} ${TEST_CLUSTER_MAX_REQUESTS_INFLIGHT} ${TEST_CLUSTER_DELETE_COLLECTION_WORKERS} --enable-garbage-collector=${ENABLE_GARBAGE_COLLECTOR}"
|
APISERVER_TEST_ARGS="--runtime-config=extensions/v1beta1 ${API_SERVER_TEST_LOG_LEVEL} ${TEST_CLUSTER_STORAGE_MEDIA_TYPE} ${TEST_CLUSTER_MAX_REQUESTS_INFLIGHT} ${TEST_CLUSTER_DELETE_COLLECTION_WORKERS} --enable-garbage-collector=${ENABLE_GARBAGE_COLLECTOR}"
|
||||||
|
|
|
@ -52,6 +52,7 @@ type HollowNodeConfig struct {
|
||||||
NodeName string
|
NodeName string
|
||||||
ServerPort int
|
ServerPort int
|
||||||
ContentType string
|
ContentType string
|
||||||
|
UseRealProxier bool
|
||||||
}
|
}
|
||||||
|
|
||||||
const (
|
const (
|
||||||
|
@ -70,6 +71,7 @@ func (c *HollowNodeConfig) addFlags(fs *pflag.FlagSet) {
|
||||||
fs.IntVar(&c.ServerPort, "api-server-port", 443, "Port on which API server is listening.")
|
fs.IntVar(&c.ServerPort, "api-server-port", 443, "Port on which API server is listening.")
|
||||||
fs.StringVar(&c.Morph, "morph", "", fmt.Sprintf("Specifies into which Hollow component this binary should morph. Allowed values: %v", knownMorphs.List()))
|
fs.StringVar(&c.Morph, "morph", "", fmt.Sprintf("Specifies into which Hollow component this binary should morph. Allowed values: %v", knownMorphs.List()))
|
||||||
fs.StringVar(&c.ContentType, "kube-api-content-type", "application/vnd.kubernetes.protobuf", "ContentType of requests sent to apiserver.")
|
fs.StringVar(&c.ContentType, "kube-api-content-type", "application/vnd.kubernetes.protobuf", "ContentType of requests sent to apiserver.")
|
||||||
|
fs.BoolVar(&c.UseRealProxier, "use-real-proxier", true, "Set to true if you want to use real proxier inside hollow-proxy.")
|
||||||
}
|
}
|
||||||
|
|
||||||
func (c *HollowNodeConfig) createClientConfigFromFile() (*restclient.Config, error) {
|
func (c *HollowNodeConfig) createClientConfigFromFile() (*restclient.Config, error) {
|
||||||
|
@ -151,6 +153,7 @@ func main() {
|
||||||
execer,
|
execer,
|
||||||
eventBroadcaster,
|
eventBroadcaster,
|
||||||
recorder,
|
recorder,
|
||||||
|
config.UseRealProxier,
|
||||||
)
|
)
|
||||||
if err != nil {
|
if err != nil {
|
||||||
glog.Fatalf("Failed to create hollowProxy instance: %v", err)
|
glog.Fatalf("Failed to create hollowProxy instance: %v", err)
|
||||||
|
|
|
@ -703,6 +703,7 @@ upgrade-target
|
||||||
use-kubernetes-cluster-service
|
use-kubernetes-cluster-service
|
||||||
use-kubernetes-version
|
use-kubernetes-version
|
||||||
use-legacy-policy-config
|
use-legacy-policy-config
|
||||||
|
use-real-proxier
|
||||||
use-service-account-credentials
|
use-service-account-credentials
|
||||||
user-whitelist
|
user-whitelist
|
||||||
use-service-account-credentials
|
use-service-account-credentials
|
||||||
|
|
|
@ -29,6 +29,8 @@ go_library(
|
||||||
"//pkg/kubelet/container/testing:go_default_library",
|
"//pkg/kubelet/container/testing:go_default_library",
|
||||||
"//pkg/kubelet/dockershim/libdocker:go_default_library",
|
"//pkg/kubelet/dockershim/libdocker:go_default_library",
|
||||||
"//pkg/kubelet/types:go_default_library",
|
"//pkg/kubelet/types:go_default_library",
|
||||||
|
"//pkg/proxy:go_default_library",
|
||||||
|
"//pkg/proxy/config:go_default_library",
|
||||||
"//pkg/proxy/iptables:go_default_library",
|
"//pkg/proxy/iptables:go_default_library",
|
||||||
"//pkg/util:go_default_library",
|
"//pkg/util:go_default_library",
|
||||||
"//pkg/util/exec:go_default_library",
|
"//pkg/util/exec:go_default_library",
|
||||||
|
|
|
@ -27,7 +27,10 @@ import (
|
||||||
clientv1 "k8s.io/client-go/pkg/api/v1"
|
clientv1 "k8s.io/client-go/pkg/api/v1"
|
||||||
"k8s.io/client-go/tools/record"
|
"k8s.io/client-go/tools/record"
|
||||||
proxyapp "k8s.io/kubernetes/cmd/kube-proxy/app"
|
proxyapp "k8s.io/kubernetes/cmd/kube-proxy/app"
|
||||||
|
"k8s.io/kubernetes/pkg/api"
|
||||||
clientset "k8s.io/kubernetes/pkg/client/clientset_generated/internalclientset"
|
clientset "k8s.io/kubernetes/pkg/client/clientset_generated/internalclientset"
|
||||||
|
"k8s.io/kubernetes/pkg/proxy"
|
||||||
|
proxyconfig "k8s.io/kubernetes/pkg/proxy/config"
|
||||||
"k8s.io/kubernetes/pkg/proxy/iptables"
|
"k8s.io/kubernetes/pkg/proxy/iptables"
|
||||||
"k8s.io/kubernetes/pkg/util"
|
"k8s.io/kubernetes/pkg/util"
|
||||||
utilexec "k8s.io/kubernetes/pkg/util/exec"
|
utilexec "k8s.io/kubernetes/pkg/util/exec"
|
||||||
|
@ -42,6 +45,21 @@ type HollowProxy struct {
|
||||||
ProxyServer *proxyapp.ProxyServer
|
ProxyServer *proxyapp.ProxyServer
|
||||||
}
|
}
|
||||||
|
|
||||||
|
type FakeProxier struct{}
|
||||||
|
|
||||||
|
func (*FakeProxier) Sync() {}
|
||||||
|
func (*FakeProxier) SyncLoop() {
|
||||||
|
select {}
|
||||||
|
}
|
||||||
|
func (*FakeProxier) OnServiceAdd(service *api.Service) {}
|
||||||
|
func (*FakeProxier) OnServiceUpdate(oldService, service *api.Service) {}
|
||||||
|
func (*FakeProxier) OnServiceDelete(service *api.Service) {}
|
||||||
|
func (*FakeProxier) OnServiceSynced() {}
|
||||||
|
func (*FakeProxier) OnEndpointsAdd(endpoints *api.Endpoints) {}
|
||||||
|
func (*FakeProxier) OnEndpointsUpdate(oldEndpoints, endpoints *api.Endpoints) {}
|
||||||
|
func (*FakeProxier) OnEndpointsDelete(endpoints *api.Endpoints) {}
|
||||||
|
func (*FakeProxier) OnEndpointsSynced() {}
|
||||||
|
|
||||||
func NewHollowProxyOrDie(
|
func NewHollowProxyOrDie(
|
||||||
nodeName string,
|
nodeName string,
|
||||||
client clientset.Interface,
|
client clientset.Interface,
|
||||||
|
@ -51,34 +69,49 @@ func NewHollowProxyOrDie(
|
||||||
execer utilexec.Interface,
|
execer utilexec.Interface,
|
||||||
broadcaster record.EventBroadcaster,
|
broadcaster record.EventBroadcaster,
|
||||||
recorder record.EventRecorder,
|
recorder record.EventRecorder,
|
||||||
|
useRealProxier bool,
|
||||||
) (*HollowProxy, error) {
|
) (*HollowProxy, error) {
|
||||||
// Create a proxier with fake iptables underneath it.
|
// Create proxier and service/endpoint handlers.
|
||||||
proxier, err := iptables.NewProxier(
|
var proxier proxy.ProxyProvider
|
||||||
iptInterface,
|
var serviceHandler proxyconfig.ServiceHandler
|
||||||
sysctl,
|
var endpointsHandler proxyconfig.EndpointsHandler
|
||||||
execer,
|
|
||||||
30*time.Second,
|
if useRealProxier {
|
||||||
5*time.Second,
|
// Real proxier with fake iptables, sysctl, etc underneath it.
|
||||||
false,
|
//var err error
|
||||||
0,
|
proxierIPTables, err := iptables.NewProxier(
|
||||||
"10.0.0.0/8",
|
iptInterface,
|
||||||
nodeName,
|
sysctl,
|
||||||
getNodeIP(client, nodeName),
|
execer,
|
||||||
recorder,
|
30*time.Second,
|
||||||
nil,
|
5*time.Second,
|
||||||
)
|
false,
|
||||||
if err != nil {
|
0,
|
||||||
return nil, fmt.Errorf("unable to create proxier: %v", err)
|
"10.0.0.0/8",
|
||||||
|
nodeName,
|
||||||
|
getNodeIP(client, nodeName),
|
||||||
|
recorder,
|
||||||
|
nil,
|
||||||
|
)
|
||||||
|
if err != nil {
|
||||||
|
return nil, fmt.Errorf("unable to create proxier: %v", err)
|
||||||
|
}
|
||||||
|
proxier = proxierIPTables
|
||||||
|
serviceHandler = proxierIPTables
|
||||||
|
endpointsHandler = proxierIPTables
|
||||||
|
} else {
|
||||||
|
proxier = &FakeProxier{}
|
||||||
|
serviceHandler = &FakeProxier{}
|
||||||
|
endpointsHandler = &FakeProxier{}
|
||||||
}
|
}
|
||||||
|
|
||||||
// Create and start Hollow Proxy
|
// Create a Hollow Proxy instance.
|
||||||
nodeRef := &clientv1.ObjectReference{
|
nodeRef := &clientv1.ObjectReference{
|
||||||
Kind: "Node",
|
Kind: "Node",
|
||||||
Name: nodeName,
|
Name: nodeName,
|
||||||
UID: types.UID(nodeName),
|
UID: types.UID(nodeName),
|
||||||
Namespace: "",
|
Namespace: "",
|
||||||
}
|
}
|
||||||
|
|
||||||
return &HollowProxy{
|
return &HollowProxy{
|
||||||
ProxyServer: &proxyapp.ProxyServer{
|
ProxyServer: &proxyapp.ProxyServer{
|
||||||
Client: client,
|
Client: client,
|
||||||
|
@ -92,8 +125,8 @@ func NewHollowProxyOrDie(
|
||||||
OOMScoreAdj: util.Int32Ptr(0),
|
OOMScoreAdj: util.Int32Ptr(0),
|
||||||
ResourceContainer: "",
|
ResourceContainer: "",
|
||||||
ConfigSyncPeriod: 30 * time.Second,
|
ConfigSyncPeriod: 30 * time.Second,
|
||||||
ServiceEventHandler: proxier,
|
ServiceEventHandler: serviceHandler,
|
||||||
EndpointsEventHandler: proxier,
|
EndpointsEventHandler: endpointsHandler,
|
||||||
},
|
},
|
||||||
}, nil
|
}, nil
|
||||||
}
|
}
|
||||||
|
|
|
@ -79,7 +79,7 @@ spec:
|
||||||
command:
|
command:
|
||||||
- /bin/sh
|
- /bin/sh
|
||||||
- -c
|
- -c
|
||||||
- /kubemark --morph=proxy --name=$(NODE_NAME) --kubeconfig=/kubeconfig/kubeproxy.kubeconfig $(CONTENT_TYPE) --alsologtostderr {{kubeproxy_verbosity_level}} 1>>/var/log/kubeproxy-$(NODE_NAME).log 2>&1
|
- /kubemark --morph=proxy --name=$(NODE_NAME) --use-real-proxier={{use_real_proxier}} --kubeconfig=/kubeconfig/kubeproxy.kubeconfig $(CONTENT_TYPE) --alsologtostderr {{kubeproxy_verbosity_level}} 1>>/var/log/kubeproxy-$(NODE_NAME).log 2>&1
|
||||||
volumeMounts:
|
volumeMounts:
|
||||||
- name: kubeconfig-volume
|
- name: kubeconfig-volume
|
||||||
mountPath: /kubeconfig
|
mountPath: /kubeconfig
|
||||||
|
|
|
@ -322,6 +322,7 @@ current-context: kubemark-context")
|
||||||
sed -i'' -e "s/{{master_ip}}/${MASTER_IP}/g" "${RESOURCE_DIRECTORY}/hollow-node.yaml"
|
sed -i'' -e "s/{{master_ip}}/${MASTER_IP}/g" "${RESOURCE_DIRECTORY}/hollow-node.yaml"
|
||||||
sed -i'' -e "s/{{kubelet_verbosity_level}}/${KUBELET_TEST_LOG_LEVEL}/g" "${RESOURCE_DIRECTORY}/hollow-node.yaml"
|
sed -i'' -e "s/{{kubelet_verbosity_level}}/${KUBELET_TEST_LOG_LEVEL}/g" "${RESOURCE_DIRECTORY}/hollow-node.yaml"
|
||||||
sed -i'' -e "s/{{kubeproxy_verbosity_level}}/${KUBEPROXY_TEST_LOG_LEVEL}/g" "${RESOURCE_DIRECTORY}/hollow-node.yaml"
|
sed -i'' -e "s/{{kubeproxy_verbosity_level}}/${KUBEPROXY_TEST_LOG_LEVEL}/g" "${RESOURCE_DIRECTORY}/hollow-node.yaml"
|
||||||
|
sed -i'' -e "s/{{use_real_proxier}}/${USE_REAL_PROXIER}/g" "${RESOURCE_DIRECTORY}/hollow-node.yaml"
|
||||||
"${KUBECTL}" create -f "${RESOURCE_DIRECTORY}/hollow-node.yaml" --namespace="kubemark"
|
"${KUBECTL}" create -f "${RESOURCE_DIRECTORY}/hollow-node.yaml" --namespace="kubemark"
|
||||||
|
|
||||||
echo "Created secrets, configMaps, replication-controllers required for hollow-nodes."
|
echo "Created secrets, configMaps, replication-controllers required for hollow-nodes."
|
||||||
|
|
Loading…
Reference in New Issue