4.3 KiB
| title | description | weight | keywords | aliases | icon | ||||
|---|---|---|---|---|---|---|---|---|---|
| Installation with Helm | Install Istio with the included Helm chart. | 30 |
|
|
/img/helm.svg |
Quick start instructions for the setup and configuration of Istio using Helm. This is the recommended install method for installing Istio to your production environment as it offers rich customization to the Istio control plane and the sidecars for the Istio data plane.
Prerequisites
- Minikube
- Google Container Engine (GKE)
- IBM Cloud Kubernetes Service (IKS)
- OpenShift Origin
- Amazon Web Services (AWS) with Kops
- Azure
- Docker For Desktop
-
Check the Requirements for Pods and Services on Pods and Services.
-
Istio by default uses
LoadBalancerservice object types. Some platforms do not supportLoadBalancerservice objects. For platforms lackingLoadBalancersupport, install Istio withNodePortsupport instead with the flags--set gateways.istio-ingressgateway.type=NodePort --set gateways.istio-egressgateway.type=NodePortappended to the end of the Helm operation.
Installation steps
-
If using a Helm version prior to 2.10.0, install Istio's Custom Resource Definitions via
kubectl apply, and wait a few seconds for the CRDs to be committed in the kube-apiserver:{{< text bash >}} $ kubectl apply -f install/kubernetes/helm/istio/templates/crds.yaml {{< /text >}}
If you are enabling
certmanager, you also need to install its CRDs as well and wait a few seconds for the CRDs to be committed in the kube-apiserver:{{< text bash >}} $ kubectl apply -f install/kubernetes/helm/istio/charts/certmanager/templates/crds.yaml {{< /text >}}
-
Choose one of the following two mutually exclusive options described below.
Option 1: Install with Helm via helm template
-
Render Istio's core components to a Kubernetes manifest called
istio.yaml:{{< text bash >}} $ helm template install/kubernetes/helm/istio --name istio --namespace istio-system > $HOME/istio.yaml {{< /text >}}
-
Install the components via the manifest:
{{< text bash >}} $ kubectl create namespace istio-system $ kubectl apply -f $HOME/istio.yaml {{< /text >}}
Option 2: Install with Helm and Tiller via helm install
This option allows Helm and Tiller to manage the lifecycle of Istio.
-
If a service account has not already been installed for Tiller, install one:
{{< text bash >}} $ kubectl apply -f install/kubernetes/helm/helm-service-account.yaml {{< /text >}}
-
Install Tiller on your cluster with the service account:
{{< text bash >}} $ helm init --service-account tiller {{< /text >}}
-
Install Istio:
{{< text bash >}} $ helm install install/kubernetes/helm/istio --name istio --namespace istio-system {{< /text >}}
Uninstall
-
For option 1, uninstall using
kubectl:{{< text bash >}} $ kubectl delete -f $HOME/istio.yaml {{< /text >}}
-
For option 2, uninstall using Helm:
{{< text bash >}} $ helm delete --purge istio {{< /text >}}
If your Helm version is less than 2.9.0, then you need to manually cleanup extra job resource before redeploy new version of Istio chart:
{{< text bash >}} $ kubectl -n istio-system delete job --all {{< /text >}}
-
If desired, delete the CRDs:
{{< text bash >}} $ kubectl delete -f install/kubernetes/helm/istio/templates/crds.yaml {{< /text >}}