2019-03-03 10:01:22 +08:00
|
|
|
|
- name: 在deploy 节点创建cilium 相关目录
|
|
|
|
|
file: name=/opt/kube/kube-system/cilium state=directory
|
2018-09-21 17:23:42 +08:00
|
|
|
|
delegate_to: "{{ groups.deploy[0] }}"
|
|
|
|
|
run_once: true
|
2018-10-14 10:17:20 +08:00
|
|
|
|
|
2019-03-03 10:01:22 +08:00
|
|
|
|
- name: 配置 cilium DaemonSet yaml文件
|
|
|
|
|
template: src=cilium.yaml.j2 dest=/opt/kube/kube-system/cilium/cilium.yaml
|
|
|
|
|
tags: reconf
|
|
|
|
|
delegate_to: "{{ groups.deploy[0] }}"
|
|
|
|
|
run_once: true
|
|
|
|
|
|
2019-03-06 22:58:10 +08:00
|
|
|
|
- name: 转换内核版本为浮点数
|
|
|
|
|
set_fact:
|
|
|
|
|
KERNEL_VER: "{{ ansible_kernel.split('-')[0].split('.')[0]|int + ansible_kernel.split('-')[0].split('.')[1]|int/100 }}"
|
|
|
|
|
|
2019-03-03 10:01:22 +08:00
|
|
|
|
- name: 检查内核版本>4.9
|
|
|
|
|
fail: msg="kernel {{ ansible_kernel }} is too old for cilium installing"
|
2019-04-04 09:08:27 +08:00
|
|
|
|
when: "KERNEL_VER|float <= 4.09"
|
2019-03-03 10:01:22 +08:00
|
|
|
|
|
2018-09-21 17:23:42 +08:00
|
|
|
|
- name: node 节点创建cilium 相关目录
|
2018-08-05 16:12:32 +08:00
|
|
|
|
file: name={{ item }} state=directory
|
|
|
|
|
with_items:
|
|
|
|
|
- /etc/cni/net.d
|
|
|
|
|
- /var/run/cilium
|
|
|
|
|
- /opt/kube/images
|
|
|
|
|
|
|
|
|
|
- name: Optional-Mount BPF FS
|
|
|
|
|
mount:
|
|
|
|
|
fstype: "bpf"
|
|
|
|
|
src: "bpffs"
|
|
|
|
|
path: "/sys/fs/bpf"
|
|
|
|
|
state: "mounted"
|
|
|
|
|
|
|
|
|
|
# 【可选】推送离线docker 镜像,可以忽略执行错误
|
2019-05-18 18:07:34 +08:00
|
|
|
|
- block:
|
|
|
|
|
- name: 检查是否已下载离线cilium镜像
|
|
|
|
|
command: "ls {{ base_dir }}/down"
|
|
|
|
|
register: download_info
|
|
|
|
|
connection: local
|
|
|
|
|
run_once: true
|
|
|
|
|
|
|
|
|
|
- name: 尝试推送离线docker 镜像(若执行失败,可忽略)
|
|
|
|
|
copy: src={{ base_dir }}/down/{{ item }} dest=/opt/kube/images/{{ item }}
|
|
|
|
|
when: 'item in download_info.stdout'
|
|
|
|
|
with_items:
|
|
|
|
|
- "pause_3.1.tar"
|
|
|
|
|
- "{{ cilium_offline }}"
|
|
|
|
|
ignore_errors: true
|
|
|
|
|
|
|
|
|
|
- name: 获取cilium离线镜像推送情况
|
|
|
|
|
command: "ls /opt/kube/images"
|
|
|
|
|
register: image_info
|
|
|
|
|
|
|
|
|
|
# 如果目录下有离线镜像,就把它导入到node节点上
|
|
|
|
|
- name: 导入 cilium的离线镜像(若执行失败,可忽略)
|
|
|
|
|
shell: "{{ bin_dir }}/docker load -i /opt/kube/images/{{ item }}"
|
|
|
|
|
with_items:
|
|
|
|
|
- "pause_3.1.tar"
|
|
|
|
|
- "{{ cilium_offline }}"
|
|
|
|
|
ignore_errors: true
|
2019-05-21 23:47:49 +08:00
|
|
|
|
when: "item in image_info.stdout and CONTAINER_RUNTIME == 'docker'"
|
|
|
|
|
|
|
|
|
|
- name: 导入 cilium的离线镜像(若执行失败,可忽略)
|
|
|
|
|
shell: "{{ bin_dir }}/ctr -n=k8s.io images import /opt/kube/images/{{ item }}"
|
|
|
|
|
with_items:
|
|
|
|
|
- "pause_3.1.tar"
|
|
|
|
|
- "{{ cilium_offline }}"
|
|
|
|
|
ignore_errors: true
|
|
|
|
|
when: "item in image_info.stdout and CONTAINER_RUNTIME == 'containerd'"
|
2018-08-05 16:12:32 +08:00
|
|
|
|
|
|
|
|
|
# 只需单节点执行一次
|
|
|
|
|
- name: 运行 cilium网络
|
|
|
|
|
shell: "{{ bin_dir }}/kubectl apply -f /opt/kube/kube-system/cilium/ && sleep 5"
|
2018-09-21 17:23:42 +08:00
|
|
|
|
delegate_to: "{{ groups.deploy[0] }}"
|
2018-08-05 16:12:32 +08:00
|
|
|
|
run_once: true
|
|
|
|
|
|
|
|
|
|
# 删除原有cni配置
|
|
|
|
|
- name: 删除默认cni配置
|
|
|
|
|
file: path=/etc/cni/net.d/10-default.conf state=absent
|
|
|
|
|
|
|
|
|
|
# 等待网络插件部署成功,视下载镜像速度而定
|
|
|
|
|
- name: 轮询等待cilium-node 运行,视下载镜像速度而定
|
|
|
|
|
shell: "{{ bin_dir }}/kubectl get pod -n kube-system -o wide|grep 'cilium'|grep ' {{ inventory_hostname }} '|awk '{print $3}'"
|
|
|
|
|
register: pod_status
|
|
|
|
|
until: pod_status.stdout == "Running"
|
2018-09-21 17:23:42 +08:00
|
|
|
|
delegate_to: "{{ groups.deploy[0] }}"
|
2018-08-30 20:17:05 +08:00
|
|
|
|
retries: 15
|
2018-08-05 16:12:32 +08:00
|
|
|
|
delay: 8
|
2019-02-25 23:11:08 +08:00
|
|
|
|
ignore_errors: true
|