Commit 41b99120 by tingweiwang

fix

1 parent 3140f434
#!/bin/bash
#wangtingwei
IMAGE_NAME=`cat image_list.txt`
################################
kubectl get ns |grep volcano-system
if [ $? -eq 0 ]; then
echo "volcano-system 命名空间存在,可以继续执行"
else
echo "命名空间不存在" && exit 177
fi
#############################################
sed_image_name () {
echo "##修改镜像名字##"
sleep 2
sed -i s@IMAGE_NAME@$IMAGE_NAME@g k8s_yaml/kpl-launcher/deployment.yaml
}
recover_image_name () {
echo "##恢复镜像名字##"
sleep 2
sed -i s@$IMAGE_NAME@IMAGE_NAME@g k8s_yaml/kpl-launcher/deployment.yaml
}
delete_server () {
kubectl delete -f k8s_yaml/kpl-ssl-configmap.yaml
kubectl delete -f k8s_yaml/volcano/ && sleep 2
kubectl delete -f k8s_yaml/kpl-launcher/ && sleep 2
kubectl delete secrets -n volcano-system volcano-admission-secret
}
create_server () {
kubectl apply -f k8s_yaml/kpl-ssl-configmap.yaml
kubectl apply -f k8s_yaml/volcano/ && sleep 3
kubectl apply -f k8s_yaml/kpl-launcher/ && sleep 3
}
redeploy_all () {
delete_server
sed_image_name
create_server
recover_image_name
}
case $1 in
redeploy_all)
redeploy_all
;;
update)
update
;;
*)
echo "please input (redeploy_all or update)"
esac
hub.kce.ksyun.com/aivc-kpl/kpl-launcher:launcher-f2d3958
kind: Deployment
apiVersion: apps/v1
metadata:
name: kpl-launcher
namespace: kpl
labels:
app: kpl-launcher
spec:
replicas: 1
selector:
matchLabels:
app: kpl-launcher
template:
metadata:
labels:
app: kpl-launcher
spec:
serviceAccount: kpl-launcher
containers:
- name: launcher
image: IMAGE_NAME #镜像仓库以及名字变量模板
command:
- /bin/bash
- -c
- kpl_launcher --incluster --private-key /etc/kpl/ssl/server.key --cert-chain /etc/kpl/ssl/server.crt --port 8000 2>&1
ports:
- containerPort: 8000
name: launcher-port
imagePullPolicy: "IfNotPresent"
resources:
requests: #新增加request。降低资源调度要求
cpu: 1
memory: 100Mi
limits:
cpu: 8
memory: 100Mi
env:
- name: KPL_IMAGE_SECRET_NAME
value: kpl-regcred
volumeMounts:
- name: kpl-ssl
mountPath: /etc/kpl/ssl
readOnly: true
volumes:
- name: kpl-ssl
configMap:
name: kpl-ssl
imagePullSecrets:
- name: kpl-regcred
---
apiVersion: v1
kind: Service
metadata:
labels:
app: kpl-launcher
name: kpl-launcher-service
namespace: kpl
spec:
ports:
- port: 8000
protocol: TCP
targetPort: 8000
# type: NodePort
selector:
app: kpl-launcher
apiVersion: v1
kind: ServiceAccount
metadata:
name: kpl-launcher
namespace: kpl
---
kind: ClusterRole
apiVersion: rbac.authorization.k8s.io/v1
metadata:
name: kpl-launcher
rules:
- apiGroups: ["apiextensions.k8s.io"]
resources: ["customresourcedefinitions"]
verbs: ["get", "list", "watch"]
- apiGroups: ["batch.volcano.sh"]
resources: ["jobs"]
verbs: ["get", "create", "list", "watch", "update", "delete"]
- apiGroups: [""]
resources: ["pods", "pods/status"]
verbs: ["create", "get", "list", "watch", "update", "bind", "updateStatus", "delete"]
- apiGroups: [""]
resources: ["persistentvolumeclaims"]
verbs: ["list", "watch"]
- apiGroups: [""]
resources: ["persistentvolumes"]
verbs: ["list", "watch"]
- apiGroups: [""]
resources: ["services"]
verbs: ["list", "watch"]
- apiGroups: ["apps"]
resources: ["deployments"]
verbs: ["list", "watch"]
- apiGroups: [""]
resources: ["namespaces"]
verbs: ["list", "watch"]
- apiGroups: ["storage.k8s.io"]
resources: ["storageclasses"]
verbs: ["list", "watch"]
- apiGroups: [""]
resources: ["nodes"]
verbs: ["list", "watch"]
---
kind: ClusterRoleBinding
apiVersion: rbac.authorization.k8s.io/v1
metadata:
name: kpl-launcher
subjects:
- kind: ServiceAccount
name: kpl-launcher
namespace: kpl
roleRef:
kind: ClusterRole
name: kpl-launcher
apiGroup: rbac.authorization.k8s.io
apiVersion: v1
data:
server.crt: |
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
server.key: |
-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----
kind: ConfigMap
metadata:
creationTimestamp: "2020-05-26T07:08:41Z"
name: kpl-ssl
namespace: kpl
resourceVersion: "60214464"
selfLink: /api/v1/namespaces/kpl/configmaps/kpl-ssl
uid: 84ec63bc-c722-4e2e-aa50-78e18ba3796c
Markdown is supported
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!