zoukankan      html  css  js  c++  java
  • aws eks上部署 ingress-nginx 加NLB

    转载自https://kubernetes.github.io/ingress-nginx/deploy/#aws
    In AWS we use a Network load balancer (NLB) to expose the NGINX Ingress controller behind a Service of Type=LoadBalancer.

    NETWORK LOAD BALANCER (NLB)
    kubectl apply -f https://raw.githubusercontent.com/kubernetes/ingress-nginx/controller-v0.43.0/deploy/static/provider/aws/deploy.yaml
    TLS TERMINATION IN AWS LOAD BALANCER (ELB)¶
    In some scenarios is required to terminate TLS in the Load Balancer and not in the ingress controller.
    For this purpose we provide a template:

    • Download deploy-tls-termination.yaml
      wget https://raw.githubusercontent.com/kubernetes/ingress-nginx/controller-v0.43.0/deploy/static/provider/aws/deploy-tls-termination.yaml
    • Edit the file and change:
    • VPC CIDR in use for the Kubernetes cluster:
      proxy-real-ip-cidr: XXX.XXX.XXX/XX
    • AWS Certificate Manager (ACM) ID
      arn:aws:acm:us-west-2:XXXXXXXX:certificate/XXXXXX-XXXXXXX-XXXXXXX-XXXXXXXX
    • Deploy the manifest:
      kubectl apply -f deploy-tls-termination.yaml
      NLB IDLE TIMEOUTS¶
      Idle timeout value for TCP flows is 350 seconds and cannot be modified.
      For this reason, you need to ensure the keepalive_timeout value is configured less than 350 seconds to work as expected.
      By default NGINX keepalive_timeout is set to 75s.
      More information with regards to timeouts can be found in the official AWS documentation
    本人水平有限,还在不断学习中 难免有很多错误或者遗漏,望见谅
  • 相关阅读:
    CentOS 7 rpm包部署kubernetes 1.20
    基于ipset对大量IP进行封禁(Iptables)
    RPM打包指南
    MySQL主从一致性检查
    基于Docker+Jenkins+Git的发布环境
    MySQL管理工具集MySQL Utilities | 利用frm和ibd文件恢复表数据
    MySQL日志解析工具资料汇总
    MySQL之—分库分表的技巧
    MySQL之查询重复记录、删除重复记录方法大全
    一个爬虫
  • 原文地址:https://www.cnblogs.com/faberbeta/p/14268513.html
Copyright © 2011-2022 走看看