From c5b1ff8a50841341a612623f0c7cd032b5358150 Mon Sep 17 00:00:00 2001 From: j4ckzh0u <38179297+j4ckzh0u@users.noreply.github.com> Date: Mon, 14 Jan 2019 18:03:52 +0800 Subject: [PATCH] Update helm.md MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit 修改main.yml的路径 --- docs/guide/helm.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/guide/helm.md b/docs/guide/helm.md index 3f430fd..b323622 100644 --- a/docs/guide/helm.md +++ b/docs/guide/helm.md @@ -33,7 +33,7 @@ Error: cannot connect to Tiller 上述安装的tiller服务器默认允许匿名访问,那么k8s集群中的任何pod都能访问tiller,风险较大,因此需要在helm客户端和tiller服务器间建立安全的SSL/TLS认证机制;tiller服务器和helm客户端都是使用同一CA签发的`client cert`,然后互相识别对方身份。建议通过本项目提供的`ansible role`安装,符合官网上介绍的安全加固措施,在delpoy节点运行: ``` bash # 1.如果已安装非安全模式,使用 helm reset 清理 -# 2.配置默认helm参数 vi /etc/ansible/roles/helm/vars/main.yml +# 2.配置默认helm参数 vi /etc/ansible/roles/helm/defaults/main.yml # 3.执行安装 $ ansible-playbook /etc/ansible/roles/helm/helm.yml ```