kubernetes使用etcd數據庫實時存儲集群中的數據,安全起見,一定要備份
需要指定使用etcdctl的版本
etcd數據庫備份是使用數控快照的方式進行備份的,備份后的新數據不會保留,后面創建的pod也會被清除掉
kubeadm方式
kubeadm部署方備份:
首先需要安裝etcdctl 命令行命令
yum install -y etcd
備份
ETCDCTL_API=3 etcdctl \ snapshot save snap.db \ #注意是當前路徑,可以指定路徑 --endpoints=https://127.0.0.1:2379 \ --cacert=/etc/kubernetes/pki/etcd/ca.crt \ --cert=/etc/kubernetes/pki/etcd/peer.crt \ --key=/etc/kubernetes/pki/etcd/peer.key
ETCDCTL_API=3 etcdctl snapshot status snap.db #查看文件存儲的信息
kubeadm 部署恢復etcd數據庫
1、先暫停kube-apiserver和etcd容器 mv /etc/kubernetes/manifests /etc/kubernetes/manifests.bak mv /var/lib/etcd/ /var/lib/etcd.bak 2、恢復 ETCDCTL_API=3 etcdctl \ snapshot restore snap.db \ --data-dir=/var/lib/etcd 3、啟動kube-apiserver和etcd容器 mv /etc/kubernetes/manifests.bak /etc/kubernetes/manifests mv /var/lib/etcd.bak /var/lib/etcd/
二進制方式:
kubernetes使用etcd數據庫實時存儲集群中的數據,安全起見,一定要備份
二進制部署方式備份:
首先需要安裝etcdctl 命令行命令
yum install -y etcd
備份
ETCDCTL_API=3 etcdctl \ snapshot save snap.db \ --endpoints=https://192.168.10.160:2379 \ --cacert=/opt/etcd/ssl/ca.pem \ --cert=/opt/etcd/ssl/server.pem \ --key=/opt/etcd/ssl/server-key.pem
恢復
1、先暫停kube-apiserver和etcd
systemctl stop kube-apiserver systemctl stop etcd etcd mv /var/lib/etcd/default.etcd /var/lib/etcd/default.etcd.bak
2、在每個節點上恢復
節點一恢復
ETCDCTL_API=3 etcdctl snapshot restore snap.db \
--name etcd-1 \
--initial-cluster= "etcd-1=https://192.168.10.160:2380,etcd-2=https://192.168.10.161:2380,etcd-3=https:192.168.10.162:2380" \
--initial-advertise-peer-url=https://192.168.10.160:2380 \
--data-dir=/var/lib/etcd/default.etcd
節點二恢復
ETCDCTL_API=3 etcdctl snapshot restore snap.db \
--name etcd-2 \
--initial-cluster= "etcd-1=https://192.168.10.160:2380,etcd-2=https://192.168.10.161:2380,etcd-3=https:192.168.10.162:2380" \
--initial-advertise-peer-url=https://192.168.10.162:2380 \
--data-dir=/var/lib/etcd/default.etcd
節點三恢復
ETCDCTL_API=3 etcdctl snapshot restore snap.db \
--name etcd-3 \
--initial-cluster= "etcd-1=https://192.168.10.160:2380,etcd-2=https://192.168.10.161:2380,etcd-3=https:192.168.10.162:2380" \
--initial-advertise-peer-url=https://192.168.10.162:2380 \
--data-dir=/var/lib/etcd/default.etcd
3、啟動kube-apiserver和etcd
mv /var/lib/etcd/default.etcd.bak /var/lib/etcd/default.etcd systemctl start kube-apiserver systemctl start etcd.service