-
Notifications
You must be signed in to change notification settings - Fork 3
/
Copy pathREADME.md.v3.9
82 lines (60 loc) · 4.26 KB
/
README.md.v3.9
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
# OpenShift Proof of Concept
## Table of Content
* [Introduction](#Introduction)
* [Platform Details](#platform-details)
* [Link Collection](#link-collection)
* [High Availability Architecture](#high-availability-architecture)
* [Bill of Materials](#bill-of-materials)
* [Example Inventory](#example-inventory)
* [DNS](#dns)
* [DNS Example](#dns-example)
* [Storage](#storage)
* [Sidenotes](#idenotes)
## Introduction
This repository aims to host information needed to install Red Hat OpenShift
Container Platform. Focus is on a High Availability reference installation.
## Platform Details
* Red Hat Enterprise Linux **7.5**
* Red Hat OpenShift Container Platform **3.9**
## Link Collection
* [Logical Architecture and Bill of Materials](http://redhat.slides.com/sspreitz/openshift-poc?token=b1Yx77VW), page 5 & 6
* [Prerequisites](https://access.redhat.com/documentation/en-us/openshift_container_platform/3.9/single/installation_and_configuration/index#install-config-install-prerequisites)
* [Host Preparation](https://access.redhat.com/documentation/en-us/openshift_container_platform/3.9/single/installation_and_configuration/index#install-config-install-host-preparation)
* [Advanced Installation](https://access.redhat.com/documentation/en-us/openshift_container_platform/3.9/single/installation_and_configuration/index#install-config-install-advanced-install)
## High Availability Architecture
![HA Architecture](assets/openshift-poc-ha-architecture.png?raw=true)
## Bill of Materials
![BOM](assets/openshift-poc-bom.png?raw=true)
The mentioned node sizes (not masters or loadbalancer) are the minimum prerequisites as of the documentation.
Based on my experience it is a good rule of thumb to double the node size for a normal user experience, quadruple for a very good user experience.
<b style="color:red">Very important: The resources you apply to an OpenShift cluster should be fully reserved. There should not be any resource stealing from other VMs or memory, cpu, storage, network over-commitment. Otherwise the Kubernetes resource quotas will have no effect and application developers can not rely on the performance of the platform.</b>
## Example inventory
* [hosts](/hosts.v3.9)
## DNS
All hosts listed in the inventory file must be resolvable to the interface where OpenShift traffic is intended.
Additionally to the hosts in the inventory there must be defined three DNS aliases;
1. The internal api endpoint DNS, eg. *internal-ocp.example.com*, resolving to the loadbalancer nodes LAN address, which forwards the traffic to the masters
2. The external api endpoint DNS, eg. *ocp.example.com*, resolving to an external/internet facing loadbalancer, which forwards traffic also to the masters
3. A wildcard DNS, eg *\*.apps.example.com*, that will be forwarded to the OpenShift routers
*Entries could also be added via the host preparation to /etc/hosts.*
### DNS example
|FQDN|IP|
|---:|---:|
|ocp-lb-1.ocp.example.com|192.168.0.2|
|ocp-master-1.ocp.example.com|192.168.0.3|
|ocp-master-2.ocp.example.com|192.168.0.4|
|ocp-master-3.ocp.example.com|192.168.0.5|
|ocp-node-1.ocp.example.com|192.168.0.6|
|ocp-node-2.ocp.example.com|192.168.0.7|
|ocp-node-3.ocp.example.com|192.168.0.8|
|ocp-node-4.ocp.example.com|192.168.0.9|
|ocp-node-5.ocp.example.com|192.168.0.10|
|internal-ocp.example.com|192.168.0.2|
|ocp.example.com|192.168.0.2|
|*.apps.example.com|192.168.0.2|
## Storage
This PoC makes use of Container Native Storage (CNS), which is GlusterFS and Heketi deployed inside OpenShift. **Please make sure there is an additional disk available with at least 200GB space on the first three nodes.** See the glusterfs group in the inventory file. Check and change the device name if needed, eg. ```/dev/sdb```.
## Sidenotes
OpenShift deploys software loadbalancers (HAProxy) on *infra* nodes to route traffic to applications, however a company enterprise grade loadbalancer cluster is assumed to forward traffic to these OpenShift software loadbalancers and API of the master nodes.
*The OpenShift provided "lb" node is not meant to be used in production environments as it lacks high availability features.*
*The OpenShift provided "lb" node is only intended to serve API traffic to the "master" nodes, but can also be used to route traffic to the OpenShift hosted router aka software loadbalancer HAProxy.*