87c0662652 | ||
---|---|---|
deployments | ||
docs | ||
services | ||
LICENSE | ||
README.md |
README.md
Kubernetes The Hard Way
This tutorial will walk you through setting up Kubernetes the hard way. This guide is not for people looking for a fully automated command to bring up a Kubernetes cluster. If that's you then check out Google Container Engine, or the Getting Started Guides.
This tutorial is optimized for learning, which means taking the long route to help people understand each task required to bootstrap a Kubernetes cluster. This tutorial requires access to Google Compute Engine.
The results of this tutorial should not be viewed as production ready, and may receive limited support from the community, but don't let that prevent you from learning!
Target Audience
The target audience for this tutorial is someone planning to support a production Kubernetes cluster and wants to understand how everything fits together. After completing this tutorial I encourage you to automate away the manual steps presented in this guide.
Cluster Details
- Kubernetes 1.6.1
- Docker 1.12.6
- etcd 3.1.4
- CNI Based Networking
- Secure communication between all components (etcd, control plane, workers)
- Default Service Account and Secrets
- RBAC authorization enabled
- TLS client certificate bootstrapping for kubelets
- DNS add-on
What's Missing
The resulting cluster will be missing the following features:
- Cloud Provider Integration
- Logging
- Cluster add-ons
Labs
This tutorial assumes you have access to Google Cloud Platform and the Google Cloud SDK(148.0.0+). While GCP is used for basic infrastructure needs the things learned in this tutorial can be applied to every platform.
- Cloud Infrastructure Provisioning
- Setting up a CA and TLS Cert Generation
- Setting up TLS Client Bootstrap and RBAC Authentication
- Bootstrapping a H/A etcd cluster
- Bootstrapping a H/A Kubernetes Control Plane
- Bootstrapping Kubernetes Workers
- Configuring the Kubernetes Client - Remote Access
- Managing the Container Network Routes
- Deploying the Cluster DNS Add-on
- Smoke Test
- Cleaning Up