Documentation ¶
Index ¶
- Constants
- func CanUseIPVSProxier(handle KernelHandler, ipsetver IPSetVersioner, scheduler string) (bool, error)
- func CleanupLeftovers(ipvs utilipvs.Interface, ipt utiliptables.Interface, ipset utilipset.Interface) (encounteredError bool)
- func GetUniqueRSName(vs *utilipvs.VirtualServer, rs *utilipvs.RealServer) string
- func NewDualStackProxier(ipt [2]utiliptables.Interface, ipvs utilipvs.Interface, ...) (proxy.Provider, error)
- type GracefulTerminationManager
- func (m *GracefulTerminationManager) GracefulDeleteRS(vs *utilipvs.VirtualServer, rs *utilipvs.RealServer) error
- func (m *GracefulTerminationManager) InTerminationList(uniqueRS string) bool
- func (m *GracefulTerminationManager) MoveRSOutofGracefulDeleteList(uniqueRS string) error
- func (m *GracefulTerminationManager) Run()
- type IPGetter
- type IPSet
- type IPSetVersioner
- type KernelHandler
- type LinuxKernelHandler
- type NetLinkHandle
- type Proxier
- func (proxier *Proxier) OnEndpointSliceAdd(endpointSlice *discovery.EndpointSlice)
- func (proxier *Proxier) OnEndpointSliceDelete(endpointSlice *discovery.EndpointSlice)
- func (proxier *Proxier) OnEndpointSliceUpdate(_, endpointSlice *discovery.EndpointSlice)
- func (proxier *Proxier) OnEndpointSlicesSynced()
- func (proxier *Proxier) OnNodeAdd(node *v1.Node)
- func (proxier *Proxier) OnNodeDelete(node *v1.Node)
- func (proxier *Proxier) OnNodeSynced()
- func (proxier *Proxier) OnNodeUpdate(oldNode, node *v1.Node)
- func (proxier *Proxier) OnServiceAdd(service *v1.Service)
- func (proxier *Proxier) OnServiceDelete(service *v1.Service)
- func (proxier *Proxier) OnServiceSynced()
- func (proxier *Proxier) OnServiceUpdate(oldService, service *v1.Service)
- func (proxier *Proxier) Sync()
- func (proxier *Proxier) SyncLoop()
Constants ¶
const ( // KubeFireWallChain is the kubernetes firewall chain. KubeFireWallChain utiliptables.Chain = "KUBE-FIREWALL" // KubeMarkMasqChain is the mark-for-masquerade chain KubeMarkMasqChain utiliptables.Chain = "KUBE-MARK-MASQ" // KubeNodePortChain is the kubernetes node port chain KubeNodePortChain utiliptables.Chain = "KUBE-NODE-PORT" // KubeMarkDropChain is the mark-for-drop chain KubeMarkDropChain utiliptables.Chain = "KUBE-MARK-DROP" // KubeForwardChain is the kubernetes forward chain KubeForwardChain utiliptables.Chain = "KUBE-FORWARD" // KubeLoadBalancerChain is the kubernetes chain for loadbalancer type service KubeLoadBalancerChain utiliptables.Chain = "KUBE-LOAD-BALANCER" // DefaultScheduler is the default ipvs scheduler algorithm - round robin. DefaultScheduler = "rr" // DefaultDummyDevice is the default dummy interface which ipvs service address will bind to it. DefaultDummyDevice = "kube-ipvs0" )
const (
// MinIPSetCheckVersion is the min ipset version we need. IPv6 is supported in ipset 6.x
MinIPSetCheckVersion = "6.0"
)
Variables ¶
This section is empty.
Functions ¶
func CanUseIPVSProxier ¶
func CanUseIPVSProxier(handle KernelHandler, ipsetver IPSetVersioner, scheduler string) (bool, error)
CanUseIPVSProxier returns true if we can use the ipvs Proxier. This is determined by checking if all the required kernel modules can be loaded. It may return an error if it fails to get the kernel modules information without error, in which case it will also return false.
func CleanupLeftovers ¶
func CleanupLeftovers(ipvs utilipvs.Interface, ipt utiliptables.Interface, ipset utilipset.Interface) (encounteredError bool)
CleanupLeftovers clean up all ipvs and iptables rules created by ipvs Proxier.
func GetUniqueRSName ¶ added in v1.11.5
func GetUniqueRSName(vs *utilipvs.VirtualServer, rs *utilipvs.RealServer) string
GetUniqueRSName return a string type unique rs name with vs information
func NewDualStackProxier ¶ added in v1.16.0
func NewDualStackProxier( ipt [2]utiliptables.Interface, ipvs utilipvs.Interface, ipset utilipset.Interface, sysctl utilsysctl.Interface, exec utilexec.Interface, syncPeriod time.Duration, minSyncPeriod time.Duration, excludeCIDRs []string, strictARP bool, tcpTimeout time.Duration, tcpFinTimeout time.Duration, udpTimeout time.Duration, masqueradeAll bool, masqueradeBit int, localDetectors [2]proxyutiliptables.LocalTrafficDetector, hostname string, nodeIP [2]net.IP, recorder events.EventRecorder, healthzServer healthcheck.ProxierHealthUpdater, scheduler string, nodePortAddresses []string, kernelHandler KernelHandler, ) (proxy.Provider, error)
NewDualStackProxier returns a new Proxier for dual-stack operation
Types ¶
type GracefulTerminationManager ¶ added in v1.11.5
type GracefulTerminationManager struct {
// contains filtered or unexported fields
}
GracefulTerminationManager manage rs graceful termination information and do graceful termination work rsList is the rs list to graceful termination, ipvs is the ipvsinterface to do ipvs delete/update work
func NewGracefulTerminationManager ¶ added in v1.11.5
func NewGracefulTerminationManager(ipvs utilipvs.Interface) *GracefulTerminationManager
NewGracefulTerminationManager create a gracefulTerminationManager to manage ipvs rs graceful termination work
func (*GracefulTerminationManager) GracefulDeleteRS ¶ added in v1.11.5
func (m *GracefulTerminationManager) GracefulDeleteRS(vs *utilipvs.VirtualServer, rs *utilipvs.RealServer) error
GracefulDeleteRS to update rs weight to 0, and add rs to graceful terminate list
func (*GracefulTerminationManager) InTerminationList ¶ added in v1.11.5
func (m *GracefulTerminationManager) InTerminationList(uniqueRS string) bool
InTerminationList to check whether specified unique rs name is in graceful termination list
func (*GracefulTerminationManager) MoveRSOutofGracefulDeleteList ¶ added in v1.11.5
func (m *GracefulTerminationManager) MoveRSOutofGracefulDeleteList(uniqueRS string) error
MoveRSOutofGracefulDeleteList to delete an rs and remove it from the rsList immediately
func (*GracefulTerminationManager) Run ¶ added in v1.11.5
func (m *GracefulTerminationManager) Run()
Run start a goroutine to try to delete rs in the graceful delete rsList with an interval 1 minute
type IPGetter ¶
IPGetter helps get node network interface IP and IPs binded to the IPVS dummy interface
type IPSetVersioner ¶ added in v1.9.0
IPSetVersioner can query the current ipset version.
type KernelHandler ¶ added in v1.10.0
KernelHandler can handle the current installed kernel modules.
type LinuxKernelHandler ¶ added in v1.10.0
type LinuxKernelHandler struct {
// contains filtered or unexported fields
}
LinuxKernelHandler implements KernelHandler interface.
func NewLinuxKernelHandler ¶ added in v1.10.0
func NewLinuxKernelHandler() *LinuxKernelHandler
NewLinuxKernelHandler initializes LinuxKernelHandler with exec.
func (*LinuxKernelHandler) GetKernelVersion ¶ added in v1.16.0
func (handle *LinuxKernelHandler) GetKernelVersion() (string, error)
GetKernelVersion returns currently running kernel version.
func (*LinuxKernelHandler) GetModules ¶ added in v1.10.0
func (handle *LinuxKernelHandler) GetModules() ([]string, error)
GetModules returns all installed kernel modules.
type NetLinkHandle ¶ added in v1.9.0
type NetLinkHandle interface { // EnsureAddressBind checks if address is bound to the interface and, if not, binds it. If the address is already bound, return true. EnsureAddressBind(address, devName string) (exist bool, err error) // UnbindAddress unbind address from the interface UnbindAddress(address, devName string) error // EnsureDummyDevice checks if dummy device is exist and, if not, create one. If the dummy device is already exist, return true. EnsureDummyDevice(devName string) (exist bool, err error) // DeleteDummyDevice deletes the given dummy device by name. DeleteDummyDevice(devName string) error // ListBindAddress will list all IP addresses which are bound in a given interface ListBindAddress(devName string) ([]string, error) // GetAllLocalAddresses return all local addresses on the node. // Only the addresses of the current family are returned. // IPv6 link-local and loopback addresses are excluded. GetAllLocalAddresses() (sets.String, error) // GetLocalAddresses return all local addresses for an interface. // Only the addresses of the current family are returned. // IPv6 link-local and loopback addresses are excluded. GetLocalAddresses(dev string) (sets.String, error) }
NetLinkHandle for revoke netlink interface
func NewNetLinkHandle ¶ added in v1.9.0
func NewNetLinkHandle(isIPv6 bool) NetLinkHandle
NewNetLinkHandle will create a new NetLinkHandle
type Proxier ¶
type Proxier struct {
// contains filtered or unexported fields
}
Proxier is an ipvs based proxy for connections between a localhost:lport and services that provide the actual backends.
func NewProxier ¶
func NewProxier(ipt utiliptables.Interface, ipvs utilipvs.Interface, ipset utilipset.Interface, sysctl utilsysctl.Interface, exec utilexec.Interface, syncPeriod time.Duration, minSyncPeriod time.Duration, excludeCIDRs []string, strictARP bool, tcpTimeout time.Duration, tcpFinTimeout time.Duration, udpTimeout time.Duration, masqueradeAll bool, masqueradeBit int, localDetector proxyutiliptables.LocalTrafficDetector, hostname string, nodeIP net.IP, recorder events.EventRecorder, healthzServer healthcheck.ProxierHealthUpdater, scheduler string, nodePortAddresses []string, kernelHandler KernelHandler, ) (*Proxier, error)
NewProxier returns a new Proxier given an iptables and ipvs Interface instance. Because of the iptables and ipvs logic, it is assumed that there is only a single Proxier active on a machine. An error will be returned if it fails to update or acquire the initial lock. Once a proxier is created, it will keep iptables and ipvs rules up to date in the background and will not terminate if a particular iptables or ipvs call fails.
func (*Proxier) OnEndpointSliceAdd ¶ added in v1.16.0
func (proxier *Proxier) OnEndpointSliceAdd(endpointSlice *discovery.EndpointSlice)
OnEndpointSliceAdd is called whenever creation of a new endpoint slice object is observed.
func (*Proxier) OnEndpointSliceDelete ¶ added in v1.16.0
func (proxier *Proxier) OnEndpointSliceDelete(endpointSlice *discovery.EndpointSlice)
OnEndpointSliceDelete is called whenever deletion of an existing endpoint slice object is observed.
func (*Proxier) OnEndpointSliceUpdate ¶ added in v1.16.0
func (proxier *Proxier) OnEndpointSliceUpdate(_, endpointSlice *discovery.EndpointSlice)
OnEndpointSliceUpdate is called whenever modification of an existing endpoint slice object is observed.
func (*Proxier) OnEndpointSlicesSynced ¶ added in v1.16.0
func (proxier *Proxier) OnEndpointSlicesSynced()
OnEndpointSlicesSynced is called once all the initial event handlers were called and the state is fully propagated to local cache.
func (*Proxier) OnNodeAdd ¶ added in v1.17.0
OnNodeAdd is called whenever creation of new node object is observed.
func (*Proxier) OnNodeDelete ¶ added in v1.17.0
OnNodeDelete is called whenever deletion of an existing node object is observed.
func (*Proxier) OnNodeSynced ¶ added in v1.17.0
func (proxier *Proxier) OnNodeSynced()
OnNodeSynced is called once all the initial event handlers were called and the state is fully propagated to local cache.
func (*Proxier) OnNodeUpdate ¶ added in v1.17.0
OnNodeUpdate is called whenever modification of an existing node object is observed.
func (*Proxier) OnServiceAdd ¶
OnServiceAdd is called whenever creation of new service object is observed.
func (*Proxier) OnServiceDelete ¶
OnServiceDelete is called whenever deletion of an existing service object is observed.
func (*Proxier) OnServiceSynced ¶
func (proxier *Proxier) OnServiceSynced()
OnServiceSynced is called once all the initial event handlers were called and the state is fully propagated to local cache.
func (*Proxier) OnServiceUpdate ¶
OnServiceUpdate is called whenever modification of an existing service object is observed.