{"id":20,"date":"2026-01-13T17:35:46","date_gmt":"2026-01-13T09:35:46","guid":{"rendered":"https:\/\/www.quzery.com\/?p=20"},"modified":"2026-01-14T11:23:33","modified_gmt":"2026-01-14T03:23:33","slug":"windows%e4%bd%bf%e7%94%a8vmware%e6%90%ad%e5%bb%bakubernetes-v1-34%e9%9b%86%e7%be%a4","status":"publish","type":"post","link":"https:\/\/www.quzery.com\/?p=20","title":{"rendered":"windows\u4f7f\u7528VMware\u642d\u5efaKubernetes v1.34\u96c6\u7fa4"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">\u4e00. \u51c6\u5907\u5de5\u4f5c<\/h2>\n\n\n\n<ul class=\"wp-block-list\">\n<li>VMware Pro 17  \u514d\u8d39\uff0c \u5b98\u7f51\u53ef\u4e0b\u8f7d<\/li>\n\n\n\n<li>Ubuntu 24.04.3 LTS  server\u7248\uff0c\u5b98\u7f51\u53ef\u4e0b\u8f7d<\/li>\n\n\n\n<li>Windows\u5bbf\u4e3b\u673a\u79d1\u5b66\u4e0a\u7f51(\u68af\u5b50)\uff0c \u968f\u4fbf\u4ec0\u4e48\uff0c\u63a8\u8350clash\u7cfb\u5217<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"> \u4e8c\u3001\u73af\u5883\u62d3\u6251<\/h2>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td>hostname<\/td><td>ip<\/td><td>mac\u5730\u5740<\/td><\/tr><tr><td>ci<\/td><td>192.168.2.108<\/td><td>00:0C:29:39:6B:54<\/td><\/tr><tr><td>db<\/td><td>192.168.2.109<\/td><td>00:0C:29:8E:CF:4F<\/td><\/tr><tr><td>mater<\/td><td>192.168.2.101<\/td><td>00:0C:29:01:F7:E7<\/td><\/tr><tr><td>register<\/td><td>192.168.2.102<\/td><td>00-0C-29-F4-D3-62<\/td><\/tr><tr><td>worker1<\/td><td>192.168.2.104<\/td><td>00-0C-29-0F-F7-92<\/td><\/tr><tr><td>worker2<\/td><td>192.168.2.106<\/td><td>00-0C-29-1F-6E-99<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p>\u521b\u5efa6\u53f0\u865a\u62df\u673a\uff0c \u56fa\u5b9amac\u5730\u5740\uff0c \u7f51\u7edc\u8bbe\u7f6e\u4e3a\u6865\u63a5\u6a21\u5f0f\uff0c \u8def\u7531\u5668\u7f51\u5173\u53ef\u4ee5\u8bbe\u7f6e\u4e3a192.168.2.1\uff0c\u7ed9mac\u5730\u5740\u8bbe\u7f6eip\uff0c \u6216\u8005\u4f7f\u7528\u81ea\u52a8\u751f\u6210ip\uff0c \u540e\u9762\u5168\u90e8\u6620\u5c04\u66ff\u6362\u4e3a\u81ea\u52a8\u751f\u6210\u7684ip<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">\u4e09\u3001\u6240\u6709\u8282\u70b9\u7684\u57fa\u7840\u521d\u59cb\u5316\uff08\u5148\u505a\u8fd9\u4e2a\uff09<\/h2>\n\n\n\n<p>1. <strong>\u66f4\u65b0\u7cfb\u7edf<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo apt update -y &amp;&amp; sudo apt upgrade -y<\/code><\/pre>\n\n\n\n<p>2.<strong>\u5173\u95ed swap<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo swapoff -a\nsudo sed -i '\/swap\/d' \/etc\/fstab<\/code><\/pre>\n\n\n\n<p>3.<strong>\u8bbe\u7f6e\u4e3b\u673a\u540d\uff08\u793a\u4f8b\uff09<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo hostnamectl set-hostname master   # \u5176\u4ed6\u8282\u70b9\u6539\u6210\u5404\u81ea\u7684\u540d\u5b57<\/code><\/pre>\n\n\n\n<p>4.<strong>\u7f16\u8f91 hosts \u6587\u4ef6<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo tee \/etc\/hosts &lt;&lt;EOF\n192.168.2.101 master\n192.168.2.104 worker1\n192.168.2.106 worker2\n192.168.2.108 ci\n192.168.2.102 register\n192.168.2.109 db\nEOF<\/code><\/pre>\n\n\n\n<p>5.<strong>\u542f\u52a8\u7f51\u6865 \u548cIPv4 \u6570\u636e\u5305\u8f6c\u53d1<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># \u8bbe\u7f6e\u5f00\u673a\u81ea\u52a8\u52a0\u8f7d\u5185\u6838\u6a21\u5757 (\u6301\u4e45\u5316)\ncat &lt;&lt;EOF | sudo tee \/etc\/modules-load.d\/k8s.conf\noverlay\nbr_netfilter\nEOF\nsudo modprobe overlay\nsudo modprobe br_netfilter\n# \u8bbe\u7f6e Sysctl \u53c2\u6570 (\u6301\u4e45\u5316\uff0c\u7cfb\u7edf\u5f00\u673a\u4f1a\u81ea\u52a8\u8bfb\u53d6\u8fd9\u4e2a\u6587\u4ef6)\ncat &lt;&lt;EOF | sudo tee \/etc\/sysctl.d\/k8s.conf\nnet.bridge.bridge-nf-call-iptables = 1\nnet.bridge.bridge-nf-call-ip6tables = 1\nnet.ipv4.ip_forward = 1\nEOF\nsudo sysctl --system<\/code><\/pre>\n\n\n\n<p><strong>6. \u4fee\u6539\u6700\u5927\u6587\u4ef6\u63cf\u8ff0\u7b26<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo tee -a \/etc\/security\/limits.conf &lt;&lt;'EOF'\n* soft nofile 65535\n* hard nofile 65535\nEOF\nsudo sed -i 's\/^#\\?DefaultLimitNOFILE=.*\/DefaultLimitNOFILE=65535\/' \/etc\/systemd\/system.conf || echo 'DefaultLimitNOFILE=65535' | sudo tee -a \/etc\/systemd\/system.conf &amp;&amp; sudo systemctl daemon-reexec<\/code><\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">\u56db\u3001<strong>\u4ee3\u7406<\/strong>\u914d\u7f6e<\/h2>\n\n\n\n<p>1.<strong> \u7ec8\u7aef\u8bbe\u7f6e\u4ee3\u7406<\/strong>(\u5b89\u88c5\u4e4b\u524d\u5fc5\u987b\u6267\u884c)\uff0c192.168.2.107\u66ff\u6362\u4e3a\u5bbf\u4e3b\u673aip\uff0c \u5bbf\u4e3b\u673a\u9700\u5f00\u542f\u79d1\u5b66\u4e0a\u7f51\u4ee3\u7406\u3002\u5176\u4ed6\u8282\u70b9ip\u82e5\u6709\u6539\u53d8\u4e5f\u9700\u8981\u66ff\u6362<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>export http_proxy=http:\/\/192.168.2.107:7897\nexport https_proxy=http:\/\/192.168.2.107:7897\nexport HTTP_PROXY=http:\/\/192.168.2.107:7897\nexport HTTPS_PROXY=http:\/\/192.168.2.107:7897\nexport no_proxy=127.0.0.1,localhost,192.168.2.101,192.168.2.102,192.168.2.104,192.168.2.106,192.168.2.108,192.168.2.109<\/code><\/pre>\n\n\n\n<p>2.\u865a\u62df\u673a\u6269\u5c55\u78c1\u76d8\uff0cvmware \u4e0a\u589e\u52a0\u865a\u62df\u673a\u78c1\u76d8\u540e\uff0c\u6267\u884c\u4ee5\u4e0b\u547d\u4ee4\u662f\u6269\u5c55\u78c1\u76d8\u5728\u865a\u62df\u673a\u91cc\u751f\u6548<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>## \u865a\u62df\u673a\u6269\u5c55\u78c1\u76d8\u540e\n# 1\ufe0f\u20e3 \u6253\u5370\u5f53\u524d\u5206\u533a\u8868\uff0c\u786e\u8ba4 sda3 \u8d77\u59cb\u6247\u533a\nsudo fdisk -l \/dev\/sda\n\n# 2\ufe0f\u20e3 \u5220\u9664\u5e76\u91cd\u65b0\u521b\u5efa sda3 \u5206\u533a\uff0c\u5360\u6ee1\u5269\u4f59\u7a7a\u95f4\nsudo bash -c '\n(\necho d   # \u5220\u9664\u5206\u533a\necho 3   # \u9009\u62e9\u5206\u533a3\necho n   # \u65b0\u5efa\u5206\u533a\necho p   # \u4e3b\u5206\u533a\necho 3   # \u5206\u533a\u53f73\necho   # \u8d77\u59cb\u6247\u533a \u9ed8\u8ba4\u4fdd\u6301\u539f\u4f4d\uff08\u975e\u5e38\u5173\u952e\uff01\uff09\necho   # \u7ed3\u675f\u6247\u533a \u9ed8\u8ba4\u5360\u6ee1\necho t   # \u8bbe\u7f6e\u7c7b\u578b\necho 3   # \u5206\u533a3\necho 8e  # Linux LVM\necho w   # \u5199\u5165\u5e76\u9000\u51fa\n) | fdisk \/dev\/sda\n'\n\n# 3\ufe0f\u20e3 \u626b\u63cf\u5185\u6838\u5206\u533a\u53d8\u5316\uff08\u4e0d\u91cd\u542f\uff09\nsudo partprobe \/dev\/sda\n\n# 4\ufe0f\u20e3 \u6269\u5c55\u7269\u7406\u5377 PV\nsudo pvresize \/dev\/sda3\n\n# 5\ufe0f\u20e3 \u6269\u5c55\u903b\u8f91\u5377 LV \u5360\u6ee1 PV\nsudo lvextend -l +100%FREE \/dev\/ubuntu-vg\/ubuntu-lv\n\n# 6\ufe0f\u20e3 \u6269\u5c55\u6587\u4ef6\u7cfb\u7edf\nsudo resize2fs \/dev\/mapper\/ubuntu--vg-ubuntu--lv\n\n# 7\ufe0f\u20e3 \u9a8c\u8bc1\nlsblk\ndf -h \/<\/code><\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">\u4e94\u3001\u5b89\u88c5docker(\u9700\u7ec8\u7aef\u8bbe\u7f6e\u4ee3\u7406)<\/h2>\n\n\n\n<p>1.\u8fd0\u884c\u4ee5\u4e0b\u547d\u4ee4\u5378\u8f7d\u6240\u6709\u51b2\u7a81\u7684\u8f6f\u4ef6\u5305<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo apt remove $(dpkg --get-selections docker.io docker-compose docker-compose-v2 docker-doc podman-docker containerd runc | cut -f1) -y<\/code><\/pre>\n\n\n\n<p>2.\u4f7f\u7528apt\u5b58\u50a8\u5e93\u8fdb\u884c\u5b89\u88c5\uff0c\u5728\u65b0\u4e3b\u673a\u4e0a\u9996\u6b21\u5b89\u88c5 Docker Engine \u4e4b\u524d\uff0c\u9700\u8981\u5148\u8bbe\u7f6e Dockerapt\u4ed3\u5e93\u3002\u4e4b\u540e\uff0c\u5c31\u53ef\u4ee5\u4ece\u8be5\u4ed3\u5e93\u5b89\u88c5\u548c\u66f4\u65b0 Docker \u4e86\u3002<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># Add Docker's official GPG key:\nsudo apt update\nsudo apt install ca-certificates curl\nsudo install -m 0755 -d \/etc\/apt\/keyrings\nsudo curl -fsSL https:\/\/download.docker.com\/linux\/ubuntu\/gpg -o \/etc\/apt\/keyrings\/docker.asc\nsudo chmod a+r \/etc\/apt\/keyrings\/docker.asc\n\n# Add the repository to Apt sources:\nsudo tee \/etc\/apt\/sources.list.d\/docker.sources &lt;&lt;EOF\nTypes: deb\nURIs: https:\/\/download.docker.com\/linux\/ubuntu\nSuites: $(. \/etc\/os-release &amp;&amp; echo \"${UBUNTU_CODENAME:-$VERSION_CODENAME}\")\nComponents: stable\nSigned-By: \/etc\/apt\/keyrings\/docker.asc\nEOF\n\nsudo apt update<\/code><\/pre>\n\n\n\n<p>3.\u5b89\u88c5 Docker \u8f6f\u4ef6\u5305\uff0c\u8981\u5b89\u88c5\u6700\u65b0\u7248\u672c\uff0c\u8bf7\u8fd0\u884c\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo apt install docker-ce docker-ce-cli containerd.io docker-buildx-plugin docker-compose-plugin -y<\/code><\/pre>\n\n\n\n<p>4.\u914d\u7f6e containerd \u4f7f\u7528\u4ee3\u7406\uff0c192.168.2.107\u66ff\u6362\u4e3a\u5bbf\u4e3b\u673aip\uff0c \u5bbf\u4e3b\u673a\u9700\u5f00\u542f\u79d1\u5b66\u4e0a\u7f51\u4ee3\u7406\u3002\u5176\u4ed6\u8282\u70b9ip\u82e5\u6709\u6539\u53d8\u4e5f\u9700\u8981\u66ff\u6362<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># \u521b\u5efa systemd \u8986\u76d6\u914d\u7f6e\uff1a\nsudo mkdir -p \/etc\/systemd\/system\/containerd.service.d\nsudo tee \/etc\/systemd\/system\/containerd.service.d\/http-proxy.conf &lt;&lt;EOF\n&#91;Service]\nEnvironment=\"HTTP_PROXY=http:\/\/192.168.2.107:7897\"\nEnvironment=\"HTTPS_PROXY=http:\/\/192.168.2.107:7897\"\nEnvironment=\"NO_PROXY=127.0.0.1,localhost,192.168.2.101,192.168.2.102,192.168.2.104,192.168.2.106,192.168.2.108,192.168.2.109\"\nEOF\n# \u91cd\u65b0\u52a0\u8f7d systemd \u5e76\u91cd\u542f containerd\uff1a\nsudo systemctl daemon-reexec\nsudo systemctl restart containerd<\/code><\/pre>\n\n\n\n<p>5.\u914d\u7f6e containerd\u4f7f\u7528 <strong>systemd cgroup \u9a71\u52a8<\/strong>\uff0c \u5b89\u88c5k8s\u9700\u8981\uff0c \u4ee5\u4e0b\u6587\u4ef6\u9700\u8981\u4f7f\u7528vi \u7f16\u8f91\u5668\u66ff\u6362\uff0c\u4e0d\u80fd\u547d\u4ee4\u6267\u884c<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># \u751f\u6210\u9ed8\u8ba4\u914d\u7f6e\ncontainerd config default &gt; ~\/config.toml\nsudo mv ~\/config.toml \/etc\/containerd\/config.toml\n# \u7136\u540e\u6839\u636e\u9700\u8981\u4fee\u6539\uff0c\u786e\u4fdd\uff1a\n&#91;plugins.\"io.containerd.grpc.v1.cri\".containerd.runtimes.runc.options]\n  # \u786e\u4fdd\u4f7f\u7528 systemd cgroup \u9a71\u52a8\n  SystemdCgroup = true\n\n# \u8986\u76d6\u6c99\u76d2\uff08\u6682\u505c\uff09\u56fe\u50cf \u60a8\u53ef\u4ee5\u5728containerd \u914d\u7f6e\u4e2d\u901a\u8fc7\u8bbe\u7f6e\u4ee5\u4e0b\u914d\u7f6e\u6765\u8986\u76d6\u6c99\u7bb1\u955c\u50cf\uff1a\n&#91;plugins.\"io.containerd.grpc.v1.cri\"]\n  sandbox_image = \"registry.k8s.io\/pause:3.10\"\n\n# \u7136\u540e\u91cd\u542f containerd\uff1a\nsudo systemctl restart containerd\n# \u68c0\u67e5 containerd \u662f\u5426\u6b63\u5e38\u8fd0\u884c\uff1a\nsudo systemctl status containerd<\/code><\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">\u516d\u3001\u5b89\u88c5Kubernetes v1.34<\/h2>\n\n\n\n<p>1.\u5b89\u88c5kubeadm \u53ca\u76f8\u5173\u5de5\u5177\uff0c\u8fd9\u4e9b\u8bf4\u660e\u9002\u7528\u4e8e Kubernetes v1.34\uff0c\u66f4\u65b0apt\u8f6f\u4ef6\u5305\u7d22\u5f15\u5e76\u5b89\u88c5\u4f7f\u7528 Kubernetesapt\u5b58\u50a8\u5e93\u6240\u9700\u7684\u8f6f\u4ef6\u5305\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo apt-get update -y\n# apt-transport-https may be a dummy package; if so, you can skip that package\nsudo apt-get install -y apt-transport-https ca-certificates curl gpg\n# \u4e0b\u8f7d Kubernetes \u8f6f\u4ef6\u5305\u4ed3\u5e93\u7684\u516c\u94a5\u3002\u6240\u6709\u4ed3\u5e93\u90fd\u4f7f\u7528\u540c\u4e00\u4e2a\u7b7e\u540d\u5bc6\u94a5\uff0c\u56e0\u6b64\u60a8\u53ef\u4ee5\u5ffd\u7565 URL \u4e2d\u7684\u7248\u672c\u53f7\uff1a\n\n# If the directory `\/etc\/apt\/keyrings` does not exist, it should be created before the curl command, read the note below.\n# sudo mkdir -p -m 755 \/etc\/apt\/keyrings\ncurl -fsSL https:\/\/pkgs.k8s.io\/core:\/stable:\/v1.34\/deb\/Release.key | sudo gpg --dearmor -o \/etc\/apt\/keyrings\/kubernetes-apt-keyring.gpg\n\n# \u6dfb\u52a0\u76f8\u5e94\u7684 Kubernetesapt\u4ed3\u5e93\u3002\u8bf7\u6ce8\u610f\uff0c\u6b64\u4ed3\u5e93\u4ec5\u5305\u542b Kubernetes 1.34 \u7684\u8f6f\u4ef6\u5305\uff1b\u5bf9\u4e8e\u5176\u4ed6 Kubernetes \u6b21\u8981\u7248\u672c\uff0c\u60a8\u9700\u8981\u5c06 URL \u4e2d\u7684 Kubernetes \u6b21\u8981\u7248\u672c\u66f4\u6539\u4e3a\u60a8\u6240\u9700\u7684\u6b21\u8981\u7248\u672c\uff08\u60a8\u8fd8\u5e94\u8be5\u68c0\u67e5\u60a8\u662f\u5426\u6b63\u5728\u9605\u8bfb\u8ba1\u5212\u5b89\u88c5\u7684 Kubernetes \u7248\u672c\u7684\u6587\u6863\uff09\u3002\n\n# This overwrites any existing configuration in \/etc\/apt\/sources.list.d\/kubernetes.list\necho 'deb &#91;signed-by=\/etc\/apt\/keyrings\/kubernetes-apt-keyring.gpg] https:\/\/pkgs.k8s.io\/core:\/stable:\/v1.34\/deb\/ \/' | sudo tee \/etc\/apt\/sources.list.d\/kubernetes.list\n\n# \u66f4\u65b0apt\u8f6f\u4ef6\u5305\u7d22\u5f15\uff0c\u5b89\u88c5 kubelet\u3001kubeadm \u548c kubectl\uff0c\u5e76\u9501\u5b9a\u5b83\u4eec\u7684\u7248\u672c\uff1a\nsudo apt-get update\nsudo apt-get install -y kubelet kubeadm kubectl\nsudo apt-mark hold kubelet kubeadm kubectl\n\n# \u53ef\u9009\uff09\u5728\u8fd0\u884c kubeadm \u4e4b\u524d\u542f\u7528 kubelet \u670d\u52a1\uff1a\nsudo systemctl enable --now kubelet<\/code><\/pre>\n\n\n\n<p>2.\u4f7f\u7528kubeadm\u5b89\u88c5\u521d\u59cb\u5316\u63a7\u5236\u5e73\u9762\u8282\u70b9\uff0capiserver-advertise-address\u4e3a\u63a7\u5236\u8282\u70b9ip(\u4ec5\u63a7\u5236\u8282\u70b9\u6267\u884c)<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo kubeadm init \\\n--kubernetes-version=v1.34.2 \\\n--pod-network-cidr=10.244.0.0\/16 \\\n--apiserver-advertise-address=192.168.2.101 \\\n--cri-socket=unix:\/\/\/var\/run\/containerd\/containerd.sock \\\n--ignore-preflight-errors=all<\/code><\/pre>\n\n\n\n<p>3.\u8981\u8ba9 kubectl \u4ee5\u975e root \u7528\u6237\u8eab\u4efd\u8fd0\u884c\uff0c\u8bf7\u8fd0\u884c\u4ee5\u4e0b\u547d\u4ee4\uff08\u8fd9\u4e9b\u547d\u4ee4\u4e5f\u5305\u542b\u5728kubeadm init\u8f93\u51fa\u4e2d\uff09\uff0c \u5176\u4ed6\u8282\u70b9\u4f7f\u7528kubectl \uff0c \u53ef\u4ee5\u4f7f\u7528scp\u628aadmin.conf copy\u5230\u672c\u5730\u8282\u70b9<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>mkdir -p $HOME\/.kube\nsudo cp -i \/etc\/kubernetes\/admin.conf $HOME\/.kube\/config\nsudo chown $(id -u):$(id -g) $HOME\/.kube\/config\n\u6216\u8005\uff0c\u5982\u679c\u60a8\u662froot\u7528\u6237\uff0c\u60a8\u53ef\u4ee5\u8fd0\u884c\uff1a\n\nexport KUBECONFIG=\/etc\/kubernetes\/admin.conf<\/code><\/pre>\n\n\n\n<p>4. \u90e8\u7f72 CNI \u7f51\u7edc\u63d2\u4ef6(\u4ec5\u63a7\u5236\u8282\u70b9\u6267\u884c)<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>kubectl apply -f https:\/\/raw.githubusercontent.com\/flannel-io\/flannel\/master\/Documentation\/kube-flannel.yml<\/code><\/pre>\n\n\n\n<p>5. \u53ef\u9009\u914d\u7f6e<\/p>\n\n\n\n<p>5.1\u63a7\u5236\u5e73\u9762\u8282\u70b9\u9694\u79bb\uff0c\u9ed8\u8ba4\u60c5\u51b5\u4e0b\uff0c\u51fa\u4e8e\u5b89\u5168\u8003\u8651\uff0c\u60a8\u7684\u96c6\u7fa4\u4e0d\u4f1a\u5c06 Pod \u8c03\u5ea6\u5230\u63a7\u5236\u5e73\u9762\u8282\u70b9\u4e0a\u3002\u5982\u679c\u60a8\u5e0c\u671b\u80fd\u591f\u5c06 Pod \u8c03\u5ea6\u5230\u63a7\u5236\u5e73\u9762\u8282\u70b9\u4e0a\uff08\u4f8b\u5982\uff0c\u5bf9\u4e8e\u5355\u673a Kubernetes \u96c6\u7fa4\uff09\uff0c\u8bf7\u8fd0\u884c\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>kubectl taint nodes --all node-role.kubernetes.io\/control-plane-<\/code><\/pre>\n\n\n\n<p>5.2\u63d0\u9ad8\u5355\u8282\u70b9 Pod \u4e0a\u9650\uff08\u63a8\u8350\uff09\u9ed8\u8ba4110<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># \u4fee\u6539 kubelet \u914d\u7f6e\nsudo vi \/var\/lib\/kubelet\/config.yaml\n\u627e\u5230\u6216\u6dfb\u52a0\uff1a\nmaxPods: 250\n# \u91cd\u542f kubelet\nsudo systemctl daemon-reexec\nsudo systemctl restart kubelet\n# \u9a8c\u8bc1\nkubectl describe node | grep -i pod\n\u4f60\u5e94\u8be5\u770b\u5230\uff1a\npods: 250<\/code><\/pre>\n\n\n\n<h2 class=\"wp-block-heading\">\u4e03\u3001\u6dfb\u52a0\u5de5\u4f5c\u8282\u70b9<\/h2>\n\n\n\n<p>\u8981\u5411\u96c6\u7fa4\u6dfb\u52a0\u65b0\u7684 Linux \u5de5\u4f5c\u8282\u70b9\uff0c\u8bf7\u5bf9\u6bcf\u53f0\u673a\u5668\u6267\u884c\u4ee5\u4e0b\u64cd\u4f5c\uff1a\u4f7f\u7528 SSH \u6216\u5176\u4ed6\u65b9\u6cd5\u8fde\u63a5\u5230\u673a\u5668\u3002\u8fd0\u884c\u8f93\u51fa\u7684\u547d\u4ee4kubeadm init\u3002\u4f8b\u5982\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo kubeadm join --token &lt;token&gt; &lt;control-plane-host&gt;:&lt;control-plane-port&gt; --discovery-token-ca-cert-hash sha256:&lt;hash&gt;<\/code><\/pre>\n\n\n\n<p>\u6709\u5173 kubeadm join \u7684\u9644\u52a0\u4fe1\u606f\uff0c\u5982\u679c\u60a8\u6ca1\u6709\u4ee4\u724c\uff0c\u53ef\u4ee5\u901a\u8fc7\u5728\u63a7\u5236\u5e73\u9762\u8282\u70b9\u4e0a\u8fd0\u884c\u4ee5\u4e0b\u547d\u4ee4\u6765\u83b7\u53d6\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># Run this on a control plane node\n\nsudo kubeadm token list<\/code><\/pre>\n\n\n\n<p>\u9ed8\u8ba4\u60c5\u51b5\u4e0b\uff0c\u8282\u70b9\u52a0\u5165\u4ee4\u724c\u4f1a\u5728 24 \u5c0f\u65f6\u540e\u8fc7\u671f\u3002\u5982\u679c\u5f53\u524d\u4ee4\u724c\u5df2\u8fc7\u671f\uff0c\u5219\u9700\u8981\u5c06\u8282\u70b9\u52a0\u5165\u96c6\u7fa4\uff0c\u60a8\u53ef\u4ee5\u5728\u63a7\u5236\u5e73\u9762\u8282\u70b9\u4e0a\u8fd0\u884c\u4ee5\u4e0b\u547d\u4ee4\u6765\u521b\u5efa\u65b0\u4ee4\u724c\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code># Run this on a control plane node\n\nsudo kubeadm token create<\/code><\/pre>\n\n\n\n<p>\u8f93\u51fa\u7ed3\u679c\u7c7b\u4f3c\u4e8e\u8fd9\u6837\uff1a<\/p>\n\n\n\n<p>5didvk.d09sbcov8ph2amjw<\/p>\n\n\n\n<p>\u8981\u6253\u5370 kubeadm join \u547d\u4ee4\u5e76\u540c\u65f6\u751f\u6210\u65b0\u4ee4\u724c\uff0c\u53ef\u4ee5\u4f7f\u7528\u4ee5\u4e0b\u547d\u4ee4\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo kubeadm token create --print-join-command<\/code><\/pre>\n\n\n\n<p>\u5982\u679c\u60a8\u6ca1\u6709\u8be5\u503c&#8211;discovery-token-ca-cert-hash\uff0c\u53ef\u4ee5\u901a\u8fc7\u5728\u63a7\u5236\u5e73\u9762\u8282\u70b9\u4e0a\u8fd0\u884c\u4ee5\u4e0b\u547d\u4ee4\u6765\u83b7\u53d6\u5b83\uff1a<\/p>\n\n\n\n<p><strong># Run this on a control plane node<\/strong><\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>sudo cat \/etc\/kubernetes\/pki\/ca.crt | openssl x509 -pubkey &nbsp;| openssl rsa -pubin -outform der 2&gt;\/dev\/null | \\\n\n&nbsp; &nbsp;openssl dgst -sha256 -hex | sed 's\/^.* \/\/'<\/code><\/pre>\n\n\n\n<p>\u8f93\u51fa\u7ed3\u679c\u7c7b\u4f3c\u4e8e\uff1a<\/p>\n\n\n\n<p>8cb2de97839780a412b93877f8507ad6c94f73add17d5d7058e91741c9d5ec78<\/p>\n\n\n\n<p>\u8be5\u547d\u4ee4\u7684\u8f93\u51fa\u7ed3\u679ckubeadm join\u5e94\u8be5\u7c7b\u4f3c\u4e8e\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>&#91;preflight] Running pre-flight checks\n\n... (log output of join workflow) ...\n\nNode join complete:\n\n* Certificate signing request sent to control-plane and response\n\n&nbsp; received.\n\n* Kubelet informed of new secure connection details.\n\nRun 'kubectl get nodes' on control-plane to see this machine join.<\/code><\/pre>\n\n\n\n<p>\u51e0\u79d2\u949f\u540e\uff0c\u60a8\u5e94\u8be5\u4f1a\u5728\u8f93\u51fa\u4e2d\u770b\u5230\u8fd9\u4e2a\u8282\u70b9kubectl get nodes\u3002\uff08\u4f8b\u5982\uff0ckubectl\u5728\u63a7\u5236\u5e73\u9762\u8282\u70b9\u4e0a\u8fd0\u884c\uff09\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u4e00. \u51c6\u5907\u5de5\u4f5c \u4e8c\u3001\u73af\u5883\u62d3\u6251 &#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-20","post","type-post","status-publish","format-standard","hentry","category-4"],"_links":{"self":[{"href":"https:\/\/www.quzery.com\/index.php?rest_route=\/wp\/v2\/posts\/20","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.quzery.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.quzery.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.quzery.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.quzery.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=20"}],"version-history":[{"count":8,"href":"https:\/\/www.quzery.com\/index.php?rest_route=\/wp\/v2\/posts\/20\/revisions"}],"predecessor-version":[{"id":35,"href":"https:\/\/www.quzery.com\/index.php?rest_route=\/wp\/v2\/posts\/20\/revisions\/35"}],"wp:attachment":[{"href":"https:\/\/www.quzery.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=20"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.quzery.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=20"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.quzery.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=20"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}