You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

241 lines
9.4 KiB

Added file and container image caching (#4828) * File and container image downloads are now cached localy, so that repeated vagrant up/down runs do not trigger downloading of those files. This is especially useful on laptops with kubernetes runnig locally on vm's. The total size of the cache, after an ansible run, is currently around 800MB, so bandwidth (=time) savings can be quite significant. * When download_run_once is false, the default is still not to cache, but setting download_force_cache will still enable caching. * The local cache location can be set with download_cache_dir and defaults to /tmp/kubernetes_cache * A local docker instance is no longer required to cache docker images; Images are cached to file. A local docker instance is still required, though, if you wish to download images on localhost. * Fixed a FIXME, wher the argument was that delegate_to doesn't play nice with omit. That is a correct observation and the fix is to use default(inventory_host) instead of default(omit). See ansible/ansible#26009 * Removed "Register docker images info" task from download_container and set_docker_image_facts because it was faulty and unused. * Removed redundant when:download.{container,enabled,run_once} conditions from {sync,download}_container.yml * All features of commit d6fd0d2acaec9f53e75d82db30411f96a5bf2cc9 by Timoses <timosesu@gmail.com>, merged May 1st 2019, are included in this patch. Not all code was included verbatim, but each feature of that commit was checked to be working in this patch. One notable change: The actual downloading of the kubeadm images was moved to {download,sync)_container, to enable caching. Note 1: I considered splitting this patch, but most changes that are not directly related to caching, are a pleasant by-product of implementing the caching code, so splitting would be impractical. Note 2: I have my doubts about the usefulness of the upload, download and upgrade tags in the download role. Must they remain or can they be removed? If anybody knows, then please speak up.
5 years ago
Added file and container image caching (#4828) * File and container image downloads are now cached localy, so that repeated vagrant up/down runs do not trigger downloading of those files. This is especially useful on laptops with kubernetes runnig locally on vm's. The total size of the cache, after an ansible run, is currently around 800MB, so bandwidth (=time) savings can be quite significant. * When download_run_once is false, the default is still not to cache, but setting download_force_cache will still enable caching. * The local cache location can be set with download_cache_dir and defaults to /tmp/kubernetes_cache * A local docker instance is no longer required to cache docker images; Images are cached to file. A local docker instance is still required, though, if you wish to download images on localhost. * Fixed a FIXME, wher the argument was that delegate_to doesn't play nice with omit. That is a correct observation and the fix is to use default(inventory_host) instead of default(omit). See ansible/ansible#26009 * Removed "Register docker images info" task from download_container and set_docker_image_facts because it was faulty and unused. * Removed redundant when:download.{container,enabled,run_once} conditions from {sync,download}_container.yml * All features of commit d6fd0d2acaec9f53e75d82db30411f96a5bf2cc9 by Timoses <timosesu@gmail.com>, merged May 1st 2019, are included in this patch. Not all code was included verbatim, but each feature of that commit was checked to be working in this patch. One notable change: The actual downloading of the kubeadm images was moved to {download,sync)_container, to enable caching. Note 1: I considered splitting this patch, but most changes that are not directly related to caching, are a pleasant by-product of implementing the caching code, so splitting would be impractical. Note 2: I have my doubts about the usefulness of the upload, download and upgrade tags in the download role. Must they remain or can they be removed? If anybody knows, then please speak up.
5 years ago
Added file and container image caching (#4828) * File and container image downloads are now cached localy, so that repeated vagrant up/down runs do not trigger downloading of those files. This is especially useful on laptops with kubernetes runnig locally on vm's. The total size of the cache, after an ansible run, is currently around 800MB, so bandwidth (=time) savings can be quite significant. * When download_run_once is false, the default is still not to cache, but setting download_force_cache will still enable caching. * The local cache location can be set with download_cache_dir and defaults to /tmp/kubernetes_cache * A local docker instance is no longer required to cache docker images; Images are cached to file. A local docker instance is still required, though, if you wish to download images on localhost. * Fixed a FIXME, wher the argument was that delegate_to doesn't play nice with omit. That is a correct observation and the fix is to use default(inventory_host) instead of default(omit). See ansible/ansible#26009 * Removed "Register docker images info" task from download_container and set_docker_image_facts because it was faulty and unused. * Removed redundant when:download.{container,enabled,run_once} conditions from {sync,download}_container.yml * All features of commit d6fd0d2acaec9f53e75d82db30411f96a5bf2cc9 by Timoses <timosesu@gmail.com>, merged May 1st 2019, are included in this patch. Not all code was included verbatim, but each feature of that commit was checked to be working in this patch. One notable change: The actual downloading of the kubeadm images was moved to {download,sync)_container, to enable caching. Note 1: I considered splitting this patch, but most changes that are not directly related to caching, are a pleasant by-product of implementing the caching code, so splitting would be impractical. Note 2: I have my doubts about the usefulness of the upload, download and upgrade tags in the download role. Must they remain or can they be removed? If anybody knows, then please speak up.
5 years ago
  1. # -*- mode: ruby -*-
  2. # # vi: set ft=ruby :
  3. # For help on using kubespray with vagrant, check out docs/vagrant.md
  4. require 'fileutils'
  5. Vagrant.require_version ">= 2.0.0"
  6. CONFIG = File.join(File.dirname(__FILE__), ENV['KUBESPRAY_VAGRANT_CONFIG'] || 'vagrant/config.rb')
  7. FLATCAR_URL_TEMPLATE = "https://%s.release.flatcar-linux.net/amd64-usr/current/flatcar_production_vagrant.json"
  8. # Uniq disk UUID for libvirt
  9. DISK_UUID = Time.now.utc.to_i
  10. SUPPORTED_OS = {
  11. "flatcar-stable" => {box: "flatcar-stable", user: "core", box_url: FLATCAR_URL_TEMPLATE % ["stable"]},
  12. "flatcar-beta" => {box: "flatcar-beta", user: "core", box_url: FLATCAR_URL_TEMPLATE % ["beta"]},
  13. "flatcar-alpha" => {box: "flatcar-alpha", user: "core", box_url: FLATCAR_URL_TEMPLATE % ["alpha"]},
  14. "flatcar-edge" => {box: "flatcar-edge", user: "core", box_url: FLATCAR_URL_TEMPLATE % ["edge"]},
  15. "ubuntu1604" => {box: "generic/ubuntu1604", user: "vagrant"},
  16. "ubuntu1804" => {box: "generic/ubuntu1804", user: "vagrant"},
  17. "ubuntu2004" => {box: "generic/ubuntu2004", user: "vagrant"},
  18. "centos" => {box: "centos/7", user: "vagrant"},
  19. "centos-bento" => {box: "bento/centos-7.6", user: "vagrant"},
  20. "centos8" => {box: "centos/8", user: "vagrant"},
  21. "centos8-bento" => {box: "bento/centos-8", user: "vagrant"},
  22. "fedora31" => {box: "fedora/31-cloud-base", user: "vagrant"},
  23. "fedora32" => {box: "fedora/32-cloud-base", user: "vagrant"},
  24. "opensuse" => {box: "bento/opensuse-leap-15.1", user: "vagrant"},
  25. "opensuse-tumbleweed" => {box: "opensuse/Tumbleweed.x86_64", user: "vagrant"},
  26. "oraclelinux" => {box: "generic/oracle7", user: "vagrant"},
  27. "oraclelinux8" => {box: "generic/oracle8", user: "vagrant"},
  28. }
  29. if File.exist?(CONFIG)
  30. require CONFIG
  31. end
  32. # Defaults for config options defined in CONFIG
  33. $num_instances ||= 3
  34. $instance_name_prefix ||= "k8s"
  35. $vm_gui ||= false
  36. $vm_memory ||= 2048
  37. $vm_cpus ||= 2
  38. $shared_folders ||= {}
  39. $forwarded_ports ||= {}
  40. $subnet ||= "172.18.8"
  41. $os ||= "ubuntu1804"
  42. $network_plugin ||= "flannel"
  43. # Setting multi_networking to true will install Multus: https://github.com/intel/multus-cni
  44. $multi_networking ||= false
  45. $download_run_once ||= "True"
  46. $download_force_cache ||= "True"
  47. # The first three nodes are etcd servers
  48. $etcd_instances ||= $num_instances
  49. # The first two nodes are kube masters
  50. $kube_master_instances ||= $num_instances == 1 ? $num_instances : ($num_instances - 1)
  51. # All nodes are kube nodes
  52. $kube_node_instances ||= $num_instances
  53. # The following only works when using the libvirt provider
  54. $kube_node_instances_with_disks ||= false
  55. $kube_node_instances_with_disks_size ||= "20G"
  56. $kube_node_instances_with_disks_number ||= 2
  57. $override_disk_size ||= false
  58. $disk_size ||= "20GB"
  59. $local_path_provisioner_enabled ||= false
  60. $local_path_provisioner_claim_root ||= "/opt/local-path-provisioner/"
  61. $libvirt_nested ||= false
  62. $playbook ||= "cluster.yml"
  63. host_vars = {}
  64. $box = SUPPORTED_OS[$os][:box]
  65. # if $inventory is not set, try to use example
  66. $inventory = "inventory/sample" if ! $inventory
  67. $inventory = File.absolute_path($inventory, File.dirname(__FILE__))
  68. # if $inventory has a hosts.ini file use it, otherwise copy over
  69. # vars etc to where vagrant expects dynamic inventory to be
  70. if ! File.exist?(File.join(File.dirname($inventory), "hosts.ini"))
  71. $vagrant_ansible = File.join(File.dirname(__FILE__), ".vagrant", "provisioners", "ansible")
  72. FileUtils.mkdir_p($vagrant_ansible) if ! File.exist?($vagrant_ansible)
  73. if ! File.exist?(File.join($vagrant_ansible,"inventory"))
  74. FileUtils.ln_s($inventory, File.join($vagrant_ansible,"inventory"))
  75. end
  76. end
  77. if Vagrant.has_plugin?("vagrant-proxyconf")
  78. $no_proxy = ENV['NO_PROXY'] || ENV['no_proxy'] || "127.0.0.1,localhost"
  79. (1..$num_instances).each do |i|
  80. $no_proxy += ",#{$subnet}.#{i+100}"
  81. end
  82. end
  83. Vagrant.configure("2") do |config|
  84. config.vm.box = $box
  85. if SUPPORTED_OS[$os].has_key? :box_url
  86. config.vm.box_url = SUPPORTED_OS[$os][:box_url]
  87. end
  88. config.ssh.username = SUPPORTED_OS[$os][:user]
  89. # plugin conflict
  90. if Vagrant.has_plugin?("vagrant-vbguest") then
  91. config.vbguest.auto_update = false
  92. end
  93. # always use Vagrants insecure key
  94. config.ssh.insert_key = false
  95. if ($override_disk_size)
  96. unless Vagrant.has_plugin?("vagrant-disksize")
  97. system "vagrant plugin install vagrant-disksize"
  98. end
  99. config.disksize.size = $disk_size
  100. end
  101. (1..$num_instances).each do |i|
  102. config.vm.define vm_name = "%s-%01d" % [$instance_name_prefix, i] do |node|
  103. node.vm.hostname = vm_name
  104. if Vagrant.has_plugin?("vagrant-proxyconf")
  105. node.proxy.http = ENV['HTTP_PROXY'] || ENV['http_proxy'] || ""
  106. node.proxy.https = ENV['HTTPS_PROXY'] || ENV['https_proxy'] || ""
  107. node.proxy.no_proxy = $no_proxy
  108. end
  109. ["vmware_fusion", "vmware_workstation"].each do |vmware|
  110. node.vm.provider vmware do |v|
  111. v.vmx['memsize'] = $vm_memory
  112. v.vmx['numvcpus'] = $vm_cpus
  113. end
  114. end
  115. node.vm.provider :virtualbox do |vb|
  116. vb.memory = $vm_memory
  117. vb.cpus = $vm_cpus
  118. vb.gui = $vm_gui
  119. vb.linked_clone = true
  120. vb.customize ["modifyvm", :id, "--vram", "8"] # ubuntu defaults to 256 MB which is a waste of precious RAM
  121. end
  122. node.vm.provider :libvirt do |lv|
  123. lv.nested = $libvirt_nested
  124. lv.cpu_mode = "host-model"
  125. lv.memory = $vm_memory
  126. lv.cpus = $vm_cpus
  127. lv.default_prefix = 'kubespray'
  128. # Fix kernel panic on fedora 28
  129. if $os == "fedora"
  130. lv.cpu_mode = "host-passthrough"
  131. end
  132. end
  133. if $kube_node_instances_with_disks
  134. # Libvirt
  135. driverletters = ('a'..'z').to_a
  136. node.vm.provider :libvirt do |lv|
  137. # always make /dev/sd{a/b/c} so that CI can ensure that
  138. # virtualbox and libvirt will have the same devices to use for OSDs
  139. (1..$kube_node_instances_with_disks_number).each do |d|
  140. lv.storage :file, :device => "hd#{driverletters[d]}", :path => "disk-#{i}-#{d}-#{DISK_UUID}.disk", :size => $kube_node_instances_with_disks_size, :bus => "ide"
  141. end
  142. end
  143. end
  144. if $expose_docker_tcp
  145. node.vm.network "forwarded_port", guest: 2375, host: ($expose_docker_tcp + i - 1), auto_correct: true
  146. end
  147. $forwarded_ports.each do |guest, host|
  148. node.vm.network "forwarded_port", guest: guest, host: host, auto_correct: true
  149. end
  150. node.vm.synced_folder ".", "/vagrant", disabled: false, type: "rsync", rsync__args: ['--verbose', '--archive', '--delete', '-z'] , rsync__exclude: ['.git','venv']
  151. $shared_folders.each do |src, dst|
  152. node.vm.synced_folder src, dst, type: "rsync", rsync__args: ['--verbose', '--archive', '--delete', '-z']
  153. end
  154. ip = "#{$subnet}.#{i+100}"
  155. node.vm.network :private_network, ip: ip
  156. # Disable swap for each vm
  157. node.vm.provision "shell", inline: "swapoff -a"
  158. # Disable firewalld on oraclelinux vms
  159. if ["oraclelinux","oraclelinux8"].include? $os
  160. node.vm.provision "shell", inline: "systemctl stop firewalld; systemctl disable firewalld"
  161. end
  162. host_vars[vm_name] = {
  163. "ip": ip,
  164. "flannel_interface": "eth1",
  165. "kube_network_plugin": $network_plugin,
  166. "kube_network_plugin_multus": $multi_networking,
  167. "download_run_once": $download_run_once,
  168. "download_localhost": "False",
  169. "download_cache_dir": ENV['HOME'] + "/kubespray_cache",
  170. # Make kubespray cache even when download_run_once is false
  171. "download_force_cache": $download_force_cache,
  172. # Keeping the cache on the nodes can improve provisioning speed while debugging kubespray
  173. "download_keep_remote_cache": "False",
  174. "docker_rpm_keepcache": "1",
  175. # These two settings will put kubectl and admin.config in $inventory/artifacts
  176. "kubeconfig_localhost": "True",
  177. "kubectl_localhost": "True",
  178. "local_path_provisioner_enabled": "#{$local_path_provisioner_enabled}",
  179. "local_path_provisioner_claim_root": "#{$local_path_provisioner_claim_root}",
  180. "ansible_ssh_user": SUPPORTED_OS[$os][:user]
  181. }
  182. # Only execute the Ansible provisioner once, when all the machines are up and ready.
  183. if i == $num_instances
  184. node.vm.provision "ansible" do |ansible|
  185. ansible.playbook = $playbook
  186. $ansible_inventory_path = File.join( $inventory, "hosts.ini")
  187. if File.exist?($ansible_inventory_path)
  188. ansible.inventory_path = $ansible_inventory_path
  189. end
  190. ansible.become = true
  191. ansible.limit = "all,localhost"
  192. ansible.host_key_checking = false
  193. ansible.raw_arguments = ["--forks=#{$num_instances}", "--flush-cache", "-e ansible_become_pass=vagrant"]
  194. ansible.host_vars = host_vars
  195. #ansible.tags = ['download']
  196. ansible.groups = {
  197. "etcd" => ["#{$instance_name_prefix}-[1:#{$etcd_instances}]"],
  198. "kube-master" => ["#{$instance_name_prefix}-[1:#{$kube_master_instances}]"],
  199. "kube-node" => ["#{$instance_name_prefix}-[1:#{$kube_node_instances}]"],
  200. "k8s-cluster:children" => ["kube-master", "kube-node"],
  201. }
  202. end
  203. end
  204. end
  205. end
  206. end