local-up-cluster.sh 18 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534
  1. #!/bin/bash
  2. # Copyright 2014 The Kubernetes Authors.
  3. #
  4. # Licensed under the Apache License, Version 2.0 (the "License");
  5. # you may not use this file except in compliance with the License.
  6. # You may obtain a copy of the License at
  7. #
  8. # http://www.apache.org/licenses/LICENSE-2.0
  9. #
  10. # Unless required by applicable law or agreed to in writing, software
  11. # distributed under the License is distributed on an "AS IS" BASIS,
  12. # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. # See the License for the specific language governing permissions and
  14. # limitations under the License.
  15. # This command builds and runs a local kubernetes cluster. It's just like
  16. # local-up.sh, but this one launches the three separate binaries.
  17. # You may need to run this as root to allow kubelet to open docker's socket.
  18. DOCKER_OPTS=${DOCKER_OPTS:-""}
  19. DOCKER_NATIVE=${DOCKER_NATIVE:-""}
  20. DOCKER=(docker ${DOCKER_OPTS})
  21. DOCKERIZE_KUBELET=${DOCKERIZE_KUBELET:-""}
  22. ALLOW_PRIVILEGED=${ALLOW_PRIVILEGED:-""}
  23. ALLOW_SECURITY_CONTEXT=${ALLOW_SECURITY_CONTEXT:-""}
  24. RUNTIME_CONFIG=${RUNTIME_CONFIG:-""}
  25. NET_PLUGIN=${NET_PLUGIN:-""}
  26. NET_PLUGIN_DIR=${NET_PLUGIN_DIR:-""}
  27. KUBE_ROOT=$(dirname "${BASH_SOURCE}")/..
  28. # We disable cluster DNS by default because this script uses docker0 (or whatever
  29. # container bridge docker is currently using) and we don't know the IP of the
  30. # DNS pod to pass in as --cluster-dns. To set this up by hand, set this flag
  31. # and change DNS_SERVER_IP to the appropriate IP.
  32. ENABLE_CLUSTER_DNS=${KUBE_ENABLE_CLUSTER_DNS:-false}
  33. DNS_SERVER_IP=${KUBE_DNS_SERVER_IP:-10.0.0.10}
  34. DNS_DOMAIN=${KUBE_DNS_NAME:-"cluster.local"}
  35. DNS_REPLICAS=${KUBE_DNS_REPLICAS:-1}
  36. KUBECTL=${KUBECTL:-cluster/kubectl.sh}
  37. WAIT_FOR_URL_API_SERVER=${WAIT_FOR_URL_API_SERVER:-10}
  38. ENABLE_DAEMON=${ENABLE_DAEMON:-false}
  39. HOSTNAME_OVERRIDE=${HOSTNAME_OVERRIDE:-"127.0.0.1"}
  40. CLOUD_PROVIDER=${CLOUD_PROVIDER:-""}
  41. CLOUD_CONFIG=${CLOUD_CONFIG:-""}
  42. # sanity check for OpenStack provider
  43. if [ "${CLOUD_PROVIDER}" == "openstack" ]; then
  44. if [ "${CLOUD_CONFIG}" == "" ]; then
  45. echo "Missing CLOUD_CONFIG env for OpenStack provider!"
  46. exit 1
  47. fi
  48. if [ ! -f "${CLOUD_CONFIG}" ]; then
  49. echo "Cloud config ${CLOUD_CONFIG} doesn't exit"
  50. exit 1
  51. fi
  52. fi
  53. if [ "$(id -u)" != "0" ]; then
  54. echo "WARNING : This script MAY be run as root for docker socket / iptables functionality; if failures occur, retry as root." 2>&1
  55. fi
  56. # Stop right away if the build fails
  57. set -e
  58. source "${KUBE_ROOT}/hack/lib/init.sh"
  59. function usage {
  60. echo "This script starts a local kube cluster. "
  61. echo "Example 1: hack/local-up-cluster.sh -o _output/dockerized/bin/linux/amd64/ (run from docker output)"
  62. echo "Example 2: hack/local-up-cluster.sh (build a local copy of the source)"
  63. }
  64. ### Allow user to supply the source directory.
  65. GO_OUT=""
  66. while getopts "o:" OPTION
  67. do
  68. case $OPTION in
  69. o)
  70. echo "skipping build"
  71. echo "using source $OPTARG"
  72. GO_OUT="$OPTARG"
  73. if [ $GO_OUT == "" ]; then
  74. echo "You provided an invalid value for the build output directory."
  75. exit
  76. fi
  77. ;;
  78. ?)
  79. usage
  80. exit
  81. ;;
  82. esac
  83. done
  84. if [ "x$GO_OUT" == "x" ]; then
  85. make -C "${KUBE_ROOT}" WHAT="cmd/kubectl cmd/hyperkube"
  86. else
  87. echo "skipped the build."
  88. fi
  89. function test_docker {
  90. ${DOCKER[@]} ps 2> /dev/null 1> /dev/null
  91. if [ "$?" != "0" ]; then
  92. echo "Failed to successfully run 'docker ps', please verify that docker is installed and \$DOCKER_HOST is set correctly."
  93. exit 1
  94. fi
  95. }
  96. function test_openssl_installed {
  97. openssl version >& /dev/null
  98. if [ "$?" != "0" ]; then
  99. echo "Failed to run openssl. Please ensure openssl is installed"
  100. exit 1
  101. fi
  102. }
  103. # Shut down anyway if there's an error.
  104. set +e
  105. API_PORT=${API_PORT:-8080}
  106. API_HOST=${API_HOST:-127.0.0.1}
  107. API_HOST_IP=${API_HOST_IP:-${API_HOST}}
  108. API_BIND_ADDR=${API_HOST_IP:-"0.0.0.0"}
  109. KUBELET_HOST=${KUBELET_HOST:-"127.0.0.1"}
  110. # By default only allow CORS for requests on localhost
  111. API_CORS_ALLOWED_ORIGINS=${API_CORS_ALLOWED_ORIGINS:-"/127.0.0.1(:[0-9]+)?$,/localhost(:[0-9]+)?$"}
  112. KUBELET_PORT=${KUBELET_PORT:-10250}
  113. LOG_LEVEL=${LOG_LEVEL:-3}
  114. CONTAINER_RUNTIME=${CONTAINER_RUNTIME:-"docker"}
  115. RKT_PATH=${RKT_PATH:-""}
  116. RKT_STAGE1_IMAGE=${RKT_STAGE1_IMAGE:-""}
  117. CHAOS_CHANCE=${CHAOS_CHANCE:-0.0}
  118. CPU_CFS_QUOTA=${CPU_CFS_QUOTA:-false}
  119. ENABLE_HOSTPATH_PROVISIONER=${ENABLE_HOSTPATH_PROVISIONER:-"false"}
  120. CLAIM_BINDER_SYNC_PERIOD=${CLAIM_BINDER_SYNC_PERIOD:-"15s"} # current k8s default
  121. function test_apiserver_off {
  122. # For the common local scenario, fail fast if server is already running.
  123. # this can happen if you run local-up-cluster.sh twice and kill etcd in between.
  124. curl --silent -g $API_HOST:$API_PORT
  125. if [ ! $? -eq 0 ]; then
  126. echo "API SERVER port is free, proceeding..."
  127. else
  128. echo "ERROR starting API SERVER, exiting. Some host on $API_HOST is serving already on $API_PORT"
  129. exit 1
  130. fi
  131. }
  132. function detect_binary {
  133. # Detect the OS name/arch so that we can find our binary
  134. case "$(uname -s)" in
  135. Darwin)
  136. host_os=darwin
  137. ;;
  138. Linux)
  139. host_os=linux
  140. ;;
  141. *)
  142. echo "Unsupported host OS. Must be Linux or Mac OS X." >&2
  143. exit 1
  144. ;;
  145. esac
  146. case "$(uname -m)" in
  147. x86_64*)
  148. host_arch=amd64
  149. ;;
  150. i?86_64*)
  151. host_arch=amd64
  152. ;;
  153. amd64*)
  154. host_arch=amd64
  155. ;;
  156. aarch64*)
  157. host_arch=arm64
  158. ;;
  159. arm64*)
  160. host_arch=arm64
  161. ;;
  162. arm*)
  163. host_arch=arm
  164. ;;
  165. i?86*)
  166. host_arch=x86
  167. ;;
  168. s390x*)
  169. host_arch=s390x
  170. ;;
  171. ppc64le*)
  172. host_arch=ppc64le
  173. ;;
  174. *)
  175. echo "Unsupported host arch. Must be x86_64, 386, arm, arm64, s390x or ppc64le." >&2
  176. exit 1
  177. ;;
  178. esac
  179. GO_OUT="${KUBE_ROOT}/_output/local/bin/${host_os}/${host_arch}"
  180. }
  181. cleanup_dockerized_kubelet()
  182. {
  183. if [[ -e $KUBELET_CIDFILE ]]; then
  184. docker kill $(<$KUBELET_CIDFILE) > /dev/null
  185. rm -f $KUBELET_CIDFILE
  186. fi
  187. }
  188. cleanup()
  189. {
  190. echo "Cleaning up..."
  191. # delete running images
  192. # if [[ "${ENABLE_CLUSTER_DNS}" = true ]]; then
  193. # Still need to figure why this commands throw an error: Error from server: client: etcd cluster is unavailable or misconfigured
  194. # ${KUBECTL} --namespace=kube-system delete service kube-dns
  195. # And this one hang forever:
  196. # ${KUBECTL} --namespace=kube-system delete rc kube-dns-v10
  197. # fi
  198. # Check if the API server is still running
  199. [[ -n "${APISERVER_PID-}" ]] && APISERVER_PIDS=$(pgrep -P ${APISERVER_PID} ; ps -o pid= -p ${APISERVER_PID})
  200. [[ -n "${APISERVER_PIDS-}" ]] && sudo kill ${APISERVER_PIDS}
  201. # Check if the controller-manager is still running
  202. [[ -n "${CTLRMGR_PID-}" ]] && CTLRMGR_PIDS=$(pgrep -P ${CTLRMGR_PID} ; ps -o pid= -p ${CTLRMGR_PID})
  203. [[ -n "${CTLRMGR_PIDS-}" ]] && sudo kill ${CTLRMGR_PIDS}
  204. if [[ -n "$DOCKERIZE_KUBELET" ]]; then
  205. cleanup_dockerized_kubelet
  206. else
  207. # Check if the kubelet is still running
  208. [[ -n "${KUBELET_PID-}" ]] && KUBELET_PIDS=$(pgrep -P ${KUBELET_PID} ; ps -o pid= -p ${KUBELET_PID})
  209. [[ -n "${KUBELET_PIDS-}" ]] && sudo kill ${KUBELET_PIDS}
  210. fi
  211. # Check if the proxy is still running
  212. [[ -n "${PROXY_PID-}" ]] && PROXY_PIDS=$(pgrep -P ${PROXY_PID} ; ps -o pid= -p ${PROXY_PID})
  213. [[ -n "${PROXY_PIDS-}" ]] && sudo kill ${PROXY_PIDS}
  214. # Check if the scheduler is still running
  215. [[ -n "${SCHEDULER_PID-}" ]] && SCHEDULER_PIDS=$(pgrep -P ${SCHEDULER_PID} ; ps -o pid= -p ${SCHEDULER_PID})
  216. [[ -n "${SCHEDULER_PIDS-}" ]] && sudo kill ${SCHEDULER_PIDS}
  217. # Check if the etcd is still running
  218. [[ -n "${ETCD_PID-}" ]] && kube::etcd::stop
  219. [[ -n "${ETCD_DIR-}" ]] && kube::etcd::clean_etcd_dir
  220. exit 0
  221. }
  222. function startETCD {
  223. echo "Starting etcd"
  224. kube::etcd::start
  225. }
  226. function set_service_accounts {
  227. SERVICE_ACCOUNT_LOOKUP=${SERVICE_ACCOUNT_LOOKUP:-false}
  228. SERVICE_ACCOUNT_KEY=${SERVICE_ACCOUNT_KEY:-"/tmp/kube-serviceaccount.key"}
  229. # Generate ServiceAccount key if needed
  230. if [[ ! -f "${SERVICE_ACCOUNT_KEY}" ]]; then
  231. mkdir -p "$(dirname ${SERVICE_ACCOUNT_KEY})"
  232. openssl genrsa -out "${SERVICE_ACCOUNT_KEY}" 2048 2>/dev/null
  233. fi
  234. }
  235. function start_apiserver {
  236. # Admission Controllers to invoke prior to persisting objects in cluster
  237. if [[ -z "${ALLOW_SECURITY_CONTEXT}" ]]; then
  238. ADMISSION_CONTROL=NamespaceLifecycle,LimitRanger,SecurityContextDeny,ServiceAccount,ResourceQuota,DefaultStorageClass
  239. else
  240. ADMISSION_CONTROL=NamespaceLifecycle,LimitRanger,ServiceAccount,ResourceQuota,DefaultStorageClass
  241. fi
  242. # This is the default dir and filename where the apiserver will generate a self-signed cert
  243. # which should be able to be used as the CA to verify itself
  244. CERT_DIR=/var/run/kubernetes
  245. ROOT_CA_FILE=$CERT_DIR/apiserver.crt
  246. priv_arg=""
  247. if [[ -n "${ALLOW_PRIVILEGED}" ]]; then
  248. priv_arg="--allow-privileged "
  249. fi
  250. runtime_config=""
  251. if [[ -n "${RUNTIME_CONFIG}" ]]; then
  252. runtime_config="--runtime-config=${RUNTIME_CONFIG}"
  253. fi
  254. # Let the API server pick a default address when API_HOST
  255. # is set to 127.0.0.1
  256. advertise_address=""
  257. if [[ "${API_HOST}" != "127.0.0.1" ]]; then
  258. advertise_address="--advertise_address=${API_HOST}"
  259. fi
  260. APISERVER_LOG=/tmp/kube-apiserver.log
  261. sudo -E "${GO_OUT}/hyperkube" apiserver ${priv_arg} ${runtime_config}\
  262. ${advertise_address} \
  263. --v=${LOG_LEVEL} \
  264. --cert-dir="${CERT_DIR}" \
  265. --service-account-key-file="${SERVICE_ACCOUNT_KEY}" \
  266. --service-account-lookup="${SERVICE_ACCOUNT_LOOKUP}" \
  267. --admission-control="${ADMISSION_CONTROL}" \
  268. --bind-address="${API_BIND_ADDR}" \
  269. --insecure-bind-address="${API_HOST_IP}" \
  270. --insecure-port="${API_PORT}" \
  271. --etcd-servers="http://${ETCD_HOST}:${ETCD_PORT}" \
  272. --service-cluster-ip-range="10.0.0.0/24" \
  273. --cloud-provider="${CLOUD_PROVIDER}" \
  274. --cloud-config="${CLOUD_CONFIG}" \
  275. --cors-allowed-origins="${API_CORS_ALLOWED_ORIGINS}" >"${APISERVER_LOG}" 2>&1 &
  276. APISERVER_PID=$!
  277. # Wait for kube-apiserver to come up before launching the rest of the components.
  278. echo "Waiting for apiserver to come up"
  279. kube::util::wait_for_url "http://${API_HOST}:${API_PORT}/api/v1/pods" "apiserver: " 1 ${WAIT_FOR_URL_API_SERVER} || exit 1
  280. }
  281. function start_controller_manager {
  282. node_cidr_args=""
  283. if [[ "${NET_PLUGIN}" == "kubenet" ]]; then
  284. node_cidr_args="--allocate-node-cidrs=true --cluster-cidr=10.1.0.0/16 "
  285. fi
  286. CTLRMGR_LOG=/tmp/kube-controller-manager.log
  287. sudo -E "${GO_OUT}/hyperkube" controller-manager \
  288. --v=${LOG_LEVEL} \
  289. --service-account-private-key-file="${SERVICE_ACCOUNT_KEY}" \
  290. --root-ca-file="${ROOT_CA_FILE}" \
  291. --enable-hostpath-provisioner="${ENABLE_HOSTPATH_PROVISIONER}" \
  292. ${node_cidr_args} \
  293. --pvclaimbinder-sync-period="${CLAIM_BINDER_SYNC_PERIOD}" \
  294. --cloud-provider="${CLOUD_PROVIDER}" \
  295. --cloud-config="${CLOUD_CONFIG}" \
  296. --master="${API_HOST}:${API_PORT}" >"${CTLRMGR_LOG}" 2>&1 &
  297. CTLRMGR_PID=$!
  298. }
  299. function start_kubelet {
  300. KUBELET_LOG=/tmp/kubelet.log
  301. mkdir -p /var/lib/kubelet
  302. if [[ -z "${DOCKERIZE_KUBELET}" ]]; then
  303. # On selinux enabled systems, it might
  304. # require to relabel /var/lib/kubelet
  305. if which selinuxenabled &> /dev/null && \
  306. selinuxenabled && \
  307. which chcon > /dev/null ; then
  308. if [[ ! $(ls -Zd /var/lib/kubelet) =~ system_u:object_r:svirt_sandbox_file_t:s0 ]] ; then
  309. echo "Applying SELinux label to /var/lib/kubelet directory."
  310. if ! sudo chcon -Rt svirt_sandbox_file_t /var/lib/kubelet; then
  311. echo "Failed to apply selinux label to /var/lib/kubelet."
  312. fi
  313. fi
  314. fi
  315. # Enable dns
  316. if [[ "${ENABLE_CLUSTER_DNS}" = true ]]; then
  317. dns_args="--cluster-dns=${DNS_SERVER_IP} --cluster-domain=${DNS_DOMAIN}"
  318. else
  319. # To start a private DNS server set ENABLE_CLUSTER_DNS and
  320. # DNS_SERVER_IP/DOMAIN. This will at least provide a working
  321. # DNS server for real world hostnames.
  322. dns_args="--cluster-dns=8.8.8.8"
  323. fi
  324. net_plugin_args=""
  325. if [[ -n "${NET_PLUGIN}" ]]; then
  326. net_plugin_args="--network-plugin=${NET_PLUGIN}"
  327. fi
  328. net_plugin_dir_args=""
  329. if [[ -n "${NET_PLUGIN_DIR}" ]]; then
  330. net_plugin_dir_args="--network-plugin-dir=${NET_PLUGIN_DIR}"
  331. fi
  332. kubenet_plugin_args=""
  333. if [[ "${NET_PLUGIN}" == "kubenet" ]]; then
  334. kubenet_plugin_args="--reconcile-cidr=true "
  335. fi
  336. sudo -E "${GO_OUT}/hyperkube" kubelet ${priv_arg}\
  337. --v=${LOG_LEVEL} \
  338. --chaos-chance="${CHAOS_CHANCE}" \
  339. --container-runtime="${CONTAINER_RUNTIME}" \
  340. --rkt-path="${RKT_PATH}" \
  341. --rkt-stage1-image="${RKT_STAGE1_IMAGE}" \
  342. --hostname-override="${HOSTNAME_OVERRIDE}" \
  343. --cloud-provider="${CLOUD_PROVIDER}" \
  344. --cloud-config="${CLOUD_CONFIG}" \
  345. --address="${KUBELET_HOST}" \
  346. --api-servers="${API_HOST}:${API_PORT}" \
  347. --cpu-cfs-quota=${CPU_CFS_QUOTA} \
  348. ${dns_args} \
  349. ${net_plugin_dir_args} \
  350. ${net_plugin_args} \
  351. ${kubenet_plugin_args} \
  352. --port="$KUBELET_PORT" >"${KUBELET_LOG}" 2>&1 &
  353. KUBELET_PID=$!
  354. else
  355. # Docker won't run a container with a cidfile (container id file)
  356. # unless that file does not already exist; clean up an existing
  357. # dockerized kubelet that might be running.
  358. cleanup_dockerized_kubelet
  359. cred_bind=""
  360. # path to cloud credentails.
  361. cloud_cred=""
  362. if [ "${CLOUD_PROVIDER}" == "aws" ]; then
  363. cloud_cred="${HOME}/.aws/credentials"
  364. fi
  365. if [ "${CLOUD_PROVIDER}" == "gce" ]; then
  366. cloud_cred="${HOME}/.config/gcloud"
  367. fi
  368. if [ "${CLOUD_PROVIDER}" == "openstack" ]; then
  369. cloud_cred="${CLOUD_CONFIG}"
  370. fi
  371. if [[ -n "${cloud_cred}" ]]; then
  372. cred_bind="--volume=${cloud_cred}:${cloud_cred}:ro"
  373. fi
  374. docker run \
  375. --volume=/:/rootfs:ro \
  376. --volume=/var/run:/var/run:rw \
  377. --volume=/sys:/sys:ro \
  378. --volume=/var/lib/docker/:/var/lib/docker:ro \
  379. --volume=/var/lib/kubelet/:/var/lib/kubelet:rw,z \
  380. --volume=/dev:/dev \
  381. ${cred_bind} \
  382. --net=host \
  383. --privileged=true \
  384. -i \
  385. --cidfile=$KUBELET_CIDFILE \
  386. gcr.io/google_containers/kubelet \
  387. /kubelet --v=${LOG_LEVEL} --containerized ${priv_arg}--chaos-chance="${CHAOS_CHANCE}" --hostname-override="${HOSTNAME_OVERRIDE}" --cloud-provider="${CLOUD_PROVIDER}" --cloud-config="${CLOUD_CONFIG}" \ --address="127.0.0.1" --api-servers="${API_HOST}:${API_PORT}" --port="$KUBELET_PORT" &> $KUBELET_LOG &
  388. fi
  389. }
  390. function start_kubeproxy {
  391. PROXY_LOG=/tmp/kube-proxy.log
  392. sudo -E "${GO_OUT}/hyperkube" proxy \
  393. --v=${LOG_LEVEL} \
  394. --hostname-override="${HOSTNAME_OVERRIDE}" \
  395. --master="http://${API_HOST}:${API_PORT}" >"${PROXY_LOG}" 2>&1 &
  396. PROXY_PID=$!
  397. SCHEDULER_LOG=/tmp/kube-scheduler.log
  398. sudo -E "${GO_OUT}/hyperkube" scheduler \
  399. --v=${LOG_LEVEL} \
  400. --master="http://${API_HOST}:${API_PORT}" >"${SCHEDULER_LOG}" 2>&1 &
  401. SCHEDULER_PID=$!
  402. }
  403. function start_kubedns {
  404. if [[ "${ENABLE_CLUSTER_DNS}" = true ]]; then
  405. echo "Creating kube-system namespace"
  406. sed -e "s/{{ pillar\['dns_replicas'\] }}/${DNS_REPLICAS}/g;s/{{ pillar\['dns_domain'\] }}/${DNS_DOMAIN}/g;" "${KUBE_ROOT}/cluster/addons/dns/skydns-rc.yaml.in" >| skydns-rc.yaml
  407. if [[ "${FEDERATION:-}" == "true" ]]; then
  408. FEDERATIONS_DOMAIN_MAP="${FEDERATIONS_DOMAIN_MAP:-}"
  409. if [[ -z "${FEDERATIONS_DOMAIN_MAP}" && -n "${FEDERATION_NAME:-}" && -n "${DNS_ZONE_NAME:-}" ]]; then
  410. FEDERATIONS_DOMAIN_MAP="${FEDERATION_NAME}=${DNS_ZONE_NAME}"
  411. fi
  412. if [[ -n "${FEDERATIONS_DOMAIN_MAP}" ]]; then
  413. sed -i -e "s/{{ pillar\['federations_domain_map'\] }}/- --federations=${FEDERATIONS_DOMAIN_MAP}/g" skydns-rc.yaml
  414. else
  415. sed -i -e "/{{ pillar\['federations_domain_map'\] }}/d" skydns-rc.yaml
  416. fi
  417. else
  418. sed -i -e "/{{ pillar\['federations_domain_map'\] }}/d" skydns-rc.yaml
  419. fi
  420. sed -e "s/{{ pillar\['dns_server'\] }}/${DNS_SERVER_IP}/g" "${KUBE_ROOT}/cluster/addons/dns/skydns-svc.yaml.in" >| skydns-svc.yaml
  421. cat <<EOF >namespace.yaml
  422. apiVersion: v1
  423. kind: Namespace
  424. metadata:
  425. name: kube-system
  426. EOF
  427. ${KUBECTL} config set-cluster local --server=http://${API_HOST}:${API_PORT} --insecure-skip-tls-verify=true
  428. ${KUBECTL} config set-context local --cluster=local
  429. ${KUBECTL} config use-context local
  430. ${KUBECTL} create -f namespace.yaml
  431. # use kubectl to create skydns rc and service
  432. ${KUBECTL} --namespace=kube-system create -f skydns-rc.yaml
  433. ${KUBECTL} --namespace=kube-system create -f skydns-svc.yaml
  434. echo "Kube-dns rc and service successfully deployed."
  435. fi
  436. }
  437. function print_success {
  438. cat <<EOF
  439. Local Kubernetes cluster is running. Press Ctrl-C to shut it down.
  440. Logs:
  441. ${APISERVER_LOG}
  442. ${CTLRMGR_LOG}
  443. ${PROXY_LOG}
  444. ${SCHEDULER_LOG}
  445. ${KUBELET_LOG}
  446. To start using your cluster, open up another terminal/tab and run:
  447. export KUBERNETES_PROVIDER=local
  448. cluster/kubectl.sh config set-cluster local --server=http://${API_HOST}:${API_PORT} --insecure-skip-tls-verify=true
  449. cluster/kubectl.sh config set-context local --cluster=local
  450. cluster/kubectl.sh config use-context local
  451. cluster/kubectl.sh
  452. EOF
  453. }
  454. test_docker
  455. test_apiserver_off
  456. test_openssl_installed
  457. ### IF the user didn't supply an output/ for the build... Then we detect.
  458. if [ "$GO_OUT" == "" ]; then
  459. detect_binary
  460. fi
  461. echo "Detected host and ready to start services. Doing some housekeeping first..."
  462. echo "Using GO_OUT $GO_OUT"
  463. KUBELET_CIDFILE=/tmp/kubelet.cid
  464. if [[ "${ENABLE_DAEMON}" = false ]]; then
  465. trap cleanup EXIT
  466. fi
  467. echo "Starting services now!"
  468. startETCD
  469. set_service_accounts
  470. start_apiserver
  471. start_controller_manager
  472. start_kubelet
  473. start_kubeproxy
  474. start_kubedns
  475. print_success
  476. if [[ "${ENABLE_DAEMON}" = false ]]; then
  477. while true; do sleep 1; done
  478. fi