mirror of https://github.com/kubernetes/kops.git
45 lines
1.8 KiB
Markdown
45 lines
1.8 KiB
Markdown
# Network Topologies in Kops
|
|
|
|
Kops supports a number of pre defined network topologies. They are separated into commonly used scenarios, or topologies.
|
|
|
|
Each of the supported topologies are listed below, with an example on how to deploy them.
|
|
|
|
# AWS
|
|
|
|
Kops supports the following topologies on AWS
|
|
|
|
| Topology | Value | Description |
|
|
| ----------------- |----------- | ----------------------------------------------------------------------------------------------------------- |
|
|
| Public Cluster | public | All masters/nodes will be launched in a **public subnet** in the VPC |
|
|
| Private Cluster | private | All masters/nodes will be launched in a **private subnet** in the VPC |
|
|
|
|
|
|
[More information](http://docs.aws.amazon.com/AmazonVPC/latest/UserGuide/VPC_Subnets.html) on Public and Private subnets in AWS
|
|
|
|
Notes on subnets
|
|
|
|
##### Public Subnet
|
|
If a subnet's traffic is routed to an Internet gateway, the subnet is known as a public subnet.
|
|
|
|
##### Private Subnet
|
|
If a subnet doesn't have a route to the Internet gateway, the subnet is known as a private subnet.
|
|
|
|
Private topologies *will* have public access via the Kubernetes API and an (optional) SSH bastion instance.
|
|
|
|
# Defining a topology on create
|
|
|
|
To specify a topology use the `--topology` or `-t` flag as in :
|
|
|
|
```
|
|
kops create cluster ... --topology public|private
|
|
```
|
|
|
|
# Troubleshooting
|
|
|
|
- Right now we require `-networking cni` for all private topologies.
|
|
- Right now a manual install of weave is required for private topologies.
|
|
- Right now upgrading from a public cluster to a private cluster is considered very **experimental**
|
|
|
|
```
|
|
kubectl create -f https://git.io/weave-kube
|
|
``` |