【云原生 | Kubernetes 实战】03、手把手教你基于YAML文件运行pod应用
admin
2024-02-19 22:32:49
0

目录

一、通过资源清单文件创建第一个Pod

二、Pod 资源清单字段解读

常见字段详情可参考官网帮助命令文档:

三、Pod 常用命令

3.1 通过 kubectl run 命令行创建pod(不使用yaml文件)

四、Pod资源清单编写技巧 

4.1 通过 kubectl explain 查看定义Pod资源包含哪些字段。

4.2 查看 pod.metadata 字段如何定义

4.3 查看pod.spec字段如何定义

4.4 查看 pod.spec.containers 字段如何定义

4.5 查看 pod.spec.container.ports 字段如何定义


一、通过资源清单文件创建第一个Pod

[root@k8s-master01 pod-yaml]# vi pod-first.yaml 
apiVersion: v1
kind: Pod
metadata:name: tomcat-testnamespace: defaultlabels:app:  tomcat
spec:containers:- name:  tomcat-javaimage: tomcat:latestimagePullPolicy: IfNotPresentports:- containerPort: 8080

二、Pod 资源清单字段解读

#1. 创建pod 的资源清单参数详细帮助命令
[root@k8s-master01 ~]# kubectl explain pod#2. pod 文件解读
# 注意:每个英文冒号后面必须有一个空格
[root@k8s-master01 pod-yaml]# vim pod-tomcat.yaml
apiVersion: v1  # api版本为V1。通过 kubectl explain pod 命令查看
kind: Pod       # 创建的资源类型。第一个 P 必须大写
metadata:       # 创建对象。通过 kubectl explain pod.metadata 查看包含有哪些字段name: tomcat-test    # Pod的名字namespace: default   # Pod所在的名称空间(default 是默认名称空间)labels:        app: tomcat     # Pod具有的标签
spec:               # 通过 kubectl explain pod.spec 查看包含的字段containers:       # 通过 kubectl explain pod.spec.containers 查看包含的字段;containers	<[]Object> -required- 是对象列表,下面包含的第一个字段需要加 '-'- name:  tomcat-java   # Pod里容器的名字    image: tomcat:latest  # 容器使用的镜像名称imagePullPolicy: IfNotPresent    # 镜像拉取策略(使用本地的镜像)ports:      # ports	<[]Object> 对象列表中的第一个字段要加 '-'- containerPort: 8080  # 容器暴露的端口#3. 创建 pod
[root@k8s-master01 pod-yaml]# kubectl apply -f pod-first.yaml 
pod/tomcat-test created
[root@k8s-master01 pod-yaml]# kubectl get pods
NAME                         READY   STATUS    RESTARTS        AGE
nginx-test-7767bdd4d-d5pqv   1/1     Running   1 (6h19m ago)   2d19h
nginx-test-7767bdd4d-rqrm5   1/1     Running   1 (6h19m ago)   2d19h
tomcat-test                  1/1     Running   0               2s

常见字段详情可参考官网帮助命令文档:

  • metadata.annotations:Annotations | Kubernetes
  • metadata.labels:Labels and Selectors | Kubernetes
  • metadata.name:Object Names and IDs | Kubernetes
  • metadata.namespace:Namespaces | Kubernetes
  • spec.containers.image:Images | Kubernetes
  • spec.containers.imagePullPolicy:Images | Kubernetes

三、Pod 常用命令

# 更新资源清单文件
[root@k8s-master01 pod-yaml]# kubectl apply -f pod-first.yaml# 查看pod是否创建成功
[root@k8s-master01 pod-yaml]# kubectl get pods -l app=tomcat
或者
[root@k8s-master01 pod-yaml]# kubectl get pods -A# 查看pod的ip和pod调度到哪个节点上
[root@k8s-master01 pod-yaml]# kubectl get pods -owide# 查看pod日志
[root@k8s-master01 pod-yaml]# kubectl logs tomcat-test# 进入到创建的pod
[root@k8s-master01 pod-yaml]# kubectl exec -it tomcat-test -- /bin/bash# 假如pod里有多个容器,进入到pod里的指定容器,-c 指定容器
[root@k8s-master01 pod-yaml]# kubectl exec -it tomcat-test -c tomcat-java -- /bin/bash# 查看k8s集群中的名称空间
[root@k8s-master01 pod-yaml]# kubectl get namespaces# 查看指定名称空间下的pod
[root@k8s-master01 pod-yaml]# kubectl get pods -n default# 查看pod详细信息
[root@k8s-master01 pod-yaml]# kubectl describe pods tomcat-test# 查看pod具有哪些标签:
[root@k8s-master01 pod-yaml]# kubectl get pods --show-labels# 删除pod
[root@k8s-master01 pod-yaml]# kubectl delete pods tomcat-test
或者
[root@k8s-master01 pod-yaml]# kubectl delete -f pod-first.yaml

3.1 通过 kubectl run 命令行创建pod(不使用yaml文件)

[root@k8s-master01 pod-yaml]# kubectl run tomcat --image=tomcat:latest --image-pull-policy='IfNotPresent' --port=8080
pod/tomcat created
您在 /var/spool/mail/root 中有新邮件
[root@k8s-master01 pod-yaml]# kubectl get pods -owide
NAME     READY   STATUS    RESTARTS   AGE   IP               NODE        NOMINATED NODE   READINESS GATES
tomcat   1/1     Running   0          15s   10.244.169.136   k8s-node2              

四、Pod资源清单编写技巧 

通过 kubectl explain 帮助指令查看每一个字段的含义,一步一步慢慢摸索下去。

4.1 通过 kubectl explain 查看定义Pod资源包含哪些字段。

[root@k8s-master01 pod-yaml]# kubectl explain pod
KIND:     Pod
VERSION:  v1# Pod是可以在主机上运行的容器的集合。这个资源是由客户端创建并调度到主机上。
DESCRIPTION:Pod is a collection of containers that can run on a host. This resource iscreated by clients and scheduled onto hosts.FIELDS:# APIVersion定义了对象,代表了一个版本为V1。apiVersion	APIVersion defines the versioned schema of this representation of anobject. Servers should convert recognized schemas to the latest internalvalue, and may reject unrecognized values. More info:https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#resources# Kind是字符串类型的值,代表了要创建的资源。服务器可以从客户端提交的请求推断出这个资源kind	Kind is a string value representing the REST resource this objectrepresents. Servers may infer this from the endpoint the client submitsrequests to. Cannot be updated. In CamelCase. More info:https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#types-kinds# metadata是对象,定义元数据属性信息的metadata	Standard object's metadata. More info:https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#metadata# spec制定了定义Pod的规格,里面包含容器的信息spec	Specification of the desired behavior of the pod. More info:https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#spec-and-status# status表示状态,这个不可以修改,定义pod的时候也不需要定义这个字段status	Most recently observed status of the pod. This data may not be up to date.Populated by the system. Read-only. More info:https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#spec-and-status 

4.2 查看 pod.metadata 字段如何定义

[root@k8s-master01 pod-yaml]# kubectl explain pod.metadata
KIND:     Pod
VERSION:  v1# metadata是对象,下面可以有多个字段
RESOURCE: metadata DESCRIPTION:Standard object's metadata. More info:https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#metadataObjectMeta is metadata that all persisted resources must have, whichincludes all objects users must create.FIELDS:# annotations是注解,map类型表示对应的值是key-value键值对,表示 key 和value都是String类型的annotations	Annotations is an unstructured key value map stored with a resource thatmay be set by external tools to store and retrieve arbitrary metadata. Theyare not queryable and should be preserved when modifying objects. Moreinfo: http://kubernetes.io/docs/user-guide/annotations······# 创建的资源具有的标签。labels是标签,labels是map类型,map类型表示对应的值是key-value键值对,表示 key和value都是String类型的labels	Map of string keys and values that can be used to organize and categorize(scope and select) objects. May match selectors of replication controllersand services. More info: http://kubernetes.io/docs/user-guide/labelsmanagedFields	<[]Object>name	    # 创建pod资源的名字# 创建的资源所属的名称空间。namespaces划分了一个空间,在同一个namesace下的资源名字是唯一的,默认的名称空间是default。namespace	Namespace defines the space within which each name must be unique. An emptynamespace is equivalent to the "default" namespace, but "default" is thecanonical representation. Not all objects are required to be scoped to anamespace - the value of this field for those objects will be empty.Must be a DNS_LABEL. Cannot be updated. More info:http://kubernetes.io/docs/user-guide/namespaces······ 

4.3 查看pod.spec字段如何定义

[root@k8s-master01 pod-yaml]# kubectl explain pod.spec
KIND:     Pod
VERSION:  v1RESOURCE: spec # Pod的spec字段是用来描述Pod的
DESCRIPTION:Specification of the desired behavior of the pod. More info:https://git.k8s.io/community/contributors/devel/sig-architecture/api-conventions.md#spec-and-statusPodSpec is a description of a pod.FIELDS:# 表示Pod可以运行的最长时间,达到设置的值后,Pod会自动停止。activeDeadlineSeconds	Optional duration in seconds the pod may be active on the node relative toStartTime before the system will actively try to mark it failed and killassociated containers. Value must be a positive integer.affinity	# 定义亲和性的automountServiceAccountToken	AutomountServiceAccountToken indicates whether a service account tokenshould be automatically mounted.# containers是对象列表,用来定义容器的,是必须字段。对象列表,表示下面有很多对象,对象列表下面的内容用 - 连接。containers	<[]Object> -required-List of containers belonging to the pod. Containers cannot currently beadded or removed. There must be at least one container in a Pod. Cannot beupdated.······ 

4.4 查看 pod.spec.containers 字段如何定义

[root@k8s-master01 pod-yaml]# kubectl explain pod.spec.containers
KIND:     Pod
VERSION:  v1RESOURCE: containers <[]Object># container是定义在pod里面的,一个pod至少要有一个容器。
DESCRIPTION:List of containers belonging to the pod. Containers cannot currently beadded or removed. There must be at least one container in a Pod. Cannot beupdated.A single application container that you want to run within a pod.FIELDS:
······   # image是用来指定容器需要的镜像的 image	Container image name. More info:https://kubernetes.io/docs/concepts/containers/images This field isoptional to allow higher level config management to default or overridecontainer images in workload controllers like Deployments and StatefulSets.# 镜像拉取策略,pod是要调度到node节点的,那pod启动需要镜像,可以根据这个字段设置镜像拉取策略,支持如下三种:
Always:不管本地是否存在镜像,都要重新拉取镜像
Never: 从不拉取镜像
IfNotPresent:如果本地存在,使用本地的镜像,本地不存在,从官方拉取镜像imagePullPolicy	Image pull policy. One of Always, Never, IfNotPresent. Defaults to Alwaysif :latest tag is specified, or IfNotPresent otherwise. Cannot be updated.More info:https://kubernetes.io/docs/concepts/containers/images#updating-imagesPossible enum values:- `"Always"` means that kubelet always attempts to pull the latest image.Container will fail If the pull fails.- `"IfNotPresent"` means that kubelet pulls if the image isn't present ondisk. Container will fail if the image isn't present and the pull fails.- `"Never"` means that kubelet never pulls an image, but only uses a localimage. Container will fail if the image isn't present······# name是必须字段,用来指定容器名字的name	 -required-Name of the container specified as a DNS_LABEL. Each container in a podmust have a unique name (DNS_LABEL). Cannot be updated.# port是端口,属于对象列表ports	<[]Object>List of ports to expose from the container. Not specifying a port here DOESNOT prevent that port from being exposed. Any port which is listening onthe default "0.0.0.0" address inside a container will be accessible fromthe network. Modifying this array with strategic merge patch may corruptthe data. For more information Seehttps://github.com/kubernetes/kubernetes/issues/108255. Cannot be updated.······

4.5 查看 pod.spec.container.ports 字段如何定义

[root@k8s-master01 pod-yaml]# kubectl explain pod.spec.containers.ports
KIND:     Pod
VERSION:  v1RESOURCE: ports <[]Object>DESCRIPTION:List of ports to expose from the container. Not specifying a port here DOESNOT prevent that port from being exposed. Any port which is listening onthe default "0.0.0.0" address inside a container will be accessible fromthe network. Modifying this array with strategic merge patch may corruptthe data. For more information Seehttps://github.com/kubernetes/kubernetes/issues/108255. Cannot be updated.ContainerPort represents a network port in a single container.FIELDS:# containerPort是必须字段, pod中的容器需要暴露的端口。containerPort	 -required-Number of port to expose on the pod's IP address. This must be a valid portnumber, 0 < x < 65536.# 将容器中的服务暴露到宿主机的端口上时,可以指定绑定的宿主机 IP。hostIP	What host IP to bind the external port to.# 容器中的服务在宿主机上映射的端口hostPort	Number of port to expose on the host. If specified, this must be a validport number, 0 < x < 65536. If HostNetwork is specified, this must matchContainerPort. Most containers do not need this.# 端口的名字name	If specified, this must be an IANA_SVC_NAME and unique within the pod. Eachnamed port in a pod must have a unique name. Name for the port that can bereferred to by services.
······

 上一篇文章:【云原生 | Kubernetes 实战】02、k8s 核心资源 Pod 介绍_Stars.Sky的博客-CSDN博客

相关内容

热门资讯

特斯拉“断腕”高端车型:真正的... 1月29日,特斯拉正式发布2025年财报。财报显示,其营收、利润均出现下滑,销量面临连续两年的增长压...
星巴克将为会员忠诚度计划重新引... 来源:环球市场播报 核心要点 星巴克会员忠诚度计划将恢复等级制度,此举是公司为鼓励顾客提高到店消...
黄金白银,巨震!微软大跌近10... 把“浙江之声”,更容易找到我们 来源:中国证券报 版权归原作者所有,如有侵权请及时联系 当地时间1月...
【立方早知道】美联储下任主席提... 第 809 期 2026-01-30 焦点事件 特朗普:下周将公布美联储下任主席提名 当地时...
加快培育服务消费新增长点!国办... 临近春节,各地年味渐浓,不仅年货等商品消费走俏,家政保洁、文旅出行等服务消费也在同步升温。 为优化和...
中国银行:代理个人上金所白银延... 中国银行1月29日发布公告称,为保护投资者权益,防范市场风险,根据上海黄金交易所发布的《关于调整白银...
嘉实京东仓储物流封闭式基础 设... 一、公募REITs基本信息 二、解除限售份额基本情况 嘉实京东仓储物流封闭式基础设施证券投资基金(以...
昨夜,黄金、白银巨震! 金价、银价高位巨震。 当地时间1月29日,美股三大指数涨跌不一,纳斯达克指数跌0.72%,标普500...
原创 S... 马斯克,正在把 AI 送上太空, ——SpaceX 吞并 xAI,不是一笔交易,而是一场脱离地球的权...
券商融资火热开局:1月发债规模... 2026年,券商债券融资开局火热。 1月28日,首创证券、国联民生证券同日公告获批发债,额度各不超过...
大超预期!苹果季度营收创纪录 ... 财联社1月30日讯(编辑 刘蕊)美东时间周四盘后,苹果公司公布了其第一财季的财务业绩。 该业绩超出预...
提振消费,如何增强供需适配性(... 云南大理白族自治州,游客(左)与摄影师一起挑选照片。 北京朝阳区,一名智能柜补货员在卸货。 以上图...
亚商投顾熊舞:今日市场三大指数... 亚商投顾熊舞老师提醒大家:股市有风险,投资需要多加小心,避免不必要的风险。 一、大盘 1.盘面 上证...
马斯克整合旗下企业版图?Spa... IT之家 1 月 30 日消息,据路透社、彭博社等美媒今日报道,部分投资者正在推动 SpaceX 与...
“反内卷”叠加供应预期收窄 光... 1月29日,光伏设备板块冲高回落,截止收盘,成分股国晟科技(603778.SH)跌逾9%,正泰电源(...
基金市场科技赛道愈发清晰 来源:经济日报 深圳证券交易所建筑外景。(视觉中国) 2025年是基金投资者收获感满满的一年,随着...
原创 7... 这篇文章分析市场信号已现,你的房子还要急着卖吗?最近不少业主感到困惑:明明几个月前中介还不停劝说降价...
美股第二大单日市值损失!微软盘... 微软在最新财报中披露该公司数据中心支出大幅飙升,该股在随后一个交易日大跌超过12%,市值一度蒸发了4...
今起,重估阜阳! 提到阜阳,你曾经的印象是什么? 也许是沃野千里的平原之城,也许是“百亿粮仓”的农业大市,也许是外出务...
金饰零售价破1700元/克10... 1月28日、29日,国内黄金零售市场部分头部品牌金饰价格连续上涨,28日突破1600元/克,29日突...