mirror of
https://github.com/clearlinux/cloud-native-setup.git
synced 2026-08-18 21:16:16 +00:00
Compare commits
8 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| 39a3f46ec8 | |||
| 0e27cf06a3 | |||
| 41e9b05cc0 | |||
| 7106afcd9f | |||
| 859da50c94 | |||
| 0ffacbd904 | |||
| bbeb447a8a | |||
| 8ab98c53db |
@@ -159,6 +159,8 @@ spec:
|
||||
value: "info"
|
||||
- name: FELIX_HEALTHENABLED
|
||||
value: "true"
|
||||
- name: FELIX_IGNORELOOSERPF
|
||||
value: "true"
|
||||
securityContext:
|
||||
privileged: true
|
||||
resources:
|
||||
|
||||
Vendored
+14
-1
@@ -20,6 +20,10 @@ $hosts = {}
|
||||
$proxy_ip_list = ""
|
||||
$driveletters = ('a'..'z').to_a
|
||||
$setup_fc = true ? (['true', '1'].include? ENV['SETUP_FC'].to_s) : false
|
||||
$runner = ENV.has_key?('RUNNER') ? ENV['RUNNER'].to_s : "containerd".to_s
|
||||
if !(["crio","containerd"].include? $runner)
|
||||
abort("it's either crio or containerd. Cannot do anything else")
|
||||
end
|
||||
|
||||
if not File.exists?($loader)
|
||||
system('curl -O https://download.clearlinux.org/image/OVMF.fd')
|
||||
@@ -43,6 +47,7 @@ Vagrant.configure("2") do |config|
|
||||
# Every Vagrant development environment requires a box. You can search for
|
||||
# boxes at https://vagrantcloud.com/search.
|
||||
config.vm.box = $box
|
||||
config.vm.box_version = "30260"
|
||||
|
||||
# Mount the current dir at home folder instead of default
|
||||
config.vm.synced_folder './', '/vagrant', disabled: true
|
||||
@@ -79,9 +84,17 @@ Vagrant.configure("2") do |config|
|
||||
c.proxy.no_proxy = (ENV['no_proxy']+"#{proxy_ip_list}" || ENV['NO_PROXY']+"#{proxy_ip_list}" || "localhost,127.0.0.1,172.16.10.10#{proxy_ip_list}")
|
||||
end
|
||||
end
|
||||
c.vm.provision "shell", privileged: false, path: "setup_system.sh"
|
||||
c.vm.provision "shell", privileged: false, path: "setup_system.sh", env: {"RUNNER" => $runner}
|
||||
if $setup_fc
|
||||
if $runner == "crio".to_s
|
||||
c.vm.provision "shell", privileged: false, path: "setup_kata_firecracker.sh"
|
||||
else
|
||||
# Wish we could use device mapper snapshotter with containerd, but it
|
||||
# does not exist on any released containerd version. Failing for now
|
||||
# when we use FC with containerd
|
||||
abort("Cannot use containerd with FC for now.")
|
||||
#c.vm.provision "shell", privileged: false, path: "containerd_devmapper_setup.sh"
|
||||
end
|
||||
end
|
||||
# Include shells bundle to get bash completion and add kubectl's commands to vagrant's shell
|
||||
c.vm.provision "shell", privileged: false, inline: 'sudo -E swupd bundle-add shells; echo "source <(kubectl completion bash)" >> $HOME/.bashrc'
|
||||
|
||||
+62
@@ -0,0 +1,62 @@
|
||||
#!/bin/bash
|
||||
|
||||
set -o errexit
|
||||
set -o nounset
|
||||
set -o pipefail
|
||||
|
||||
sudo rm -rf /var/lib/containerd/devmapper/data-disk.img
|
||||
sudo rm -rf /var/lib/containerd/devmapper/meta-disk.img
|
||||
sudo mkdir -p /var/lib/containerd/devmapper
|
||||
sudo truncate --size 10G /var/lib/containerd/devmapper/data-disk.img
|
||||
sudo truncate --size 10G /var/lib/containerd/devmapper/meta-disk.img
|
||||
|
||||
sudo mkdir -p /etc/systemd/system
|
||||
|
||||
cat<<EOT | sudo tee /etc/systemd/system/containerd-devmapper.service
|
||||
[Unit]
|
||||
Description=Setup containerd devmapper device
|
||||
DefaultDependencies=no
|
||||
After=systemd-udev-settle.service
|
||||
Before=lvm2-activation-early.service
|
||||
Wants=systemd-udev-settle.service
|
||||
|
||||
[Service]
|
||||
Type=oneshot
|
||||
RemainAfterExit=true
|
||||
ExecStart=-/sbin/losetup /dev/loop20 /var/lib/containerd/devmapper/data-disk.img
|
||||
ExecStart=-/sbin/losetup /dev/loop21 /var/lib/containerd/devmapper/meta-disk.img
|
||||
|
||||
[Install]
|
||||
WantedBy=local-fs.target
|
||||
EOT
|
||||
|
||||
sudo systemctl daemon-reload
|
||||
sudo systemctl enable --now containerd-devmapper
|
||||
|
||||
# Time to setup the thin pool for consumption.
|
||||
# The table arguments are such.
|
||||
# start block in the virtual device
|
||||
# length of the segment (block device size in bytes / Sector size (512)
|
||||
# metadata device
|
||||
# block data device
|
||||
# data_block_size Currently set it 512 (128KB)
|
||||
# low_water_mark. Copied this from containerd snapshotter test setup
|
||||
# no. of feature arguments
|
||||
# Skip zeroing blocks for new volumes.
|
||||
sudo dmsetup create contd-thin-pool \
|
||||
--table "0 2097152 thin-pool /dev/loop21 /dev/loop20 512 32768 1 skip_block_zeroing"
|
||||
|
||||
sudo mkdir -p /etc/containerd/
|
||||
if [ -f /etc/containerd/config.toml ]
|
||||
then
|
||||
sudo sed -i 's|^\(\[plugins\]\).*|\1\n \[plugins.devmapper\]\n pool_name = \"contd-thin-pool\"\n base_image_size = \"512MB\"|' /etc/containerd/config.toml
|
||||
else
|
||||
cat<<EOT | sudo tee /etc/containerd/config.toml
|
||||
[plugins]
|
||||
[plugins.devmapper]
|
||||
pool_name = "contd-thin-pool"
|
||||
base_image_size = "512MB"
|
||||
EOT
|
||||
fi
|
||||
|
||||
sudo systemctl restart containerd
|
||||
@@ -5,9 +5,10 @@ set -o nounset
|
||||
|
||||
ADD_NO_PROXY="10.244.0.0/16,10.96.0.0/12"
|
||||
ADD_NO_PROXY+=",$(hostname -I | sed 's/[[:space:]]/,/g')"
|
||||
: ${RUNNER:="containerd"}
|
||||
|
||||
#Install kubernetes and crio
|
||||
sudo -E swupd update
|
||||
sudo swupd update
|
||||
sudo -E swupd bundle-add cloud-native-basic storage-utils
|
||||
|
||||
#Permanently disable swap
|
||||
@@ -22,8 +23,6 @@ fi
|
||||
sudo mkdir -p /etc/sysctl.d/
|
||||
cat <<EOT | sudo bash -c "cat > /etc/sysctl.d/60-k8s.conf"
|
||||
net.ipv4.ip_forward=1
|
||||
net.ipv4.conf.default.rp_filter=1
|
||||
net.ipv4.conf.all.rp_filter=1
|
||||
EOT
|
||||
sudo systemctl restart systemd-sysctl
|
||||
|
||||
@@ -50,7 +49,7 @@ sudo systemctl daemon-reload
|
||||
# This will fail at this point, but puts it into a retry loop that
|
||||
# will therefore startup later once we have configured with kubeadm.
|
||||
echo "The following kubelet command may complain... it is not an error"
|
||||
sudo systemctl enable --now kubelet crio || true
|
||||
sudo systemctl enable --now kubelet $RUNNER || true
|
||||
|
||||
#Ensure that the system is ready without requiring a reboot
|
||||
sudo swapoff -a
|
||||
@@ -68,7 +67,7 @@ if [[ ${http_proxy} ]] || [[ ${HTTP_PROXY} ]]; then
|
||||
echo "Warning, failed to find /etc/profile.d/proxy.sh to edit no_proxy line"
|
||||
fi
|
||||
|
||||
services=('crio' 'kubelet')
|
||||
services=($RUNNER 'kubelet')
|
||||
for s in "${services[@]}"; do
|
||||
sudo mkdir -p "/etc/systemd/system/${s}.service.d/"
|
||||
cat <<EOF | sudo bash -c "cat > /etc/systemd/system/${s}.service.d/proxy.conf"
|
||||
@@ -84,5 +83,5 @@ set -o nounset
|
||||
|
||||
# We have potentially modified their env files, we need to restart the services.
|
||||
sudo systemctl daemon-reload
|
||||
sudo systemctl restart crio || true
|
||||
sudo systemctl restart $RUNNER || true
|
||||
sudo systemctl restart kubelet || true
|
||||
|
||||
Executable
+65
@@ -0,0 +1,65 @@
|
||||
#!/usr/bin/env bash
|
||||
|
||||
# Runs upstream k8s e2e tests against existing cloud native basic cluster
|
||||
# Requires cluster to already be up
|
||||
# To specify a parameter for --ginkgo.focus as described below, provide a focus as the first argument to this script
|
||||
# https://github.com/kubernetes/community/blob/master/contributors/devel/sig-testing/e2e-tests.md#building-kubernetes-and-running-the-tests
|
||||
# One example would be Feature:Performance. The script will add square brackets for you
|
||||
# For other examples of values, see
|
||||
# https://github.com/kubernetes/community/blob/master/contributors/devel/sig-testing/e2e-tests.md#kinds-of-tests
|
||||
|
||||
set -o errexit
|
||||
set -o pipefail
|
||||
|
||||
if [ ! -z $1 ]
|
||||
then
|
||||
FOCUS=$1
|
||||
echo Running e2e tests where spec matches $1
|
||||
else
|
||||
echo Running all e2e tests, this will take a long time
|
||||
fi
|
||||
|
||||
GO_INSTALLED=$(sudo swupd bundle-list | grep go-basic)
|
||||
if [ -z $GO_INSTALLED ]
|
||||
then
|
||||
echo Installing go-basic bundle
|
||||
sudo swupd bundle-add go-basic
|
||||
else
|
||||
echo Skipping go-basic bundle installation
|
||||
fi
|
||||
|
||||
if [ -z $GOPATH ] ; then GOPATH=$HOME/go; fi
|
||||
if [ -z $GOBIN ] ; then GOBIN=$HOME/go/bin; fi
|
||||
|
||||
echo Getting kubetest
|
||||
go get -u k8s.io/test-infra/kubetest
|
||||
|
||||
cd $GOPATH/src/k8s.io
|
||||
|
||||
if [ -d kubernetes ]
|
||||
then
|
||||
cd kubernetes
|
||||
echo Checking status of existing k8s repo clone
|
||||
git status kubernetes
|
||||
else
|
||||
echo Cloning upstream k8s repo
|
||||
git clone https://github.com/kubernetes/kubernetes.git
|
||||
cd kubernetes
|
||||
fi
|
||||
|
||||
PATH=$PATH:$GOBIN
|
||||
|
||||
API_SERVER=$(kubectl config view -o jsonpath="{.clusters[?(@.name==\"kubernetes\")].cluster.server}")
|
||||
CLIENT_VERSION=$(kubectl version --short | grep -E 'Client' | sed 's/Client Version: //')
|
||||
|
||||
echo Running kubetest
|
||||
|
||||
if [ -z $FOCUS ]
|
||||
then
|
||||
echo sudo -E kubetest --test --test_args="--kubeconfig=${HOME}/.kube/config --host=$API_SERVER" --extract=$CLIENT_VERSION --provider=local
|
||||
sudo -E kubetest --test --test_args="--kubeconfig=${HOME}/.kube/config --host=$API_SERVER" --extract=$CLIENT_VERSION --provider=local
|
||||
else
|
||||
echo sudo -E kubetest --test --test_args="--kubeconfig=${HOME}/.kube/config --host=$API_SERVER --ginkgo.focus=\[$FOCUS\]" --extract=$CLIENT_VERSION --provider=local
|
||||
sudo -E kubetest --test --test_args="--kubeconfig=${HOME}/.kube/config --host=$API_SERVER --ginkgo.focus=\[$FOCUS\]" --extract=$CLIENT_VERSION --provider=local
|
||||
fi
|
||||
|
||||
Reference in New Issue
Block a user