Skip to content

Commit 9ca61aa

Browse files
committed
feat: platform-manager新增tls配置
1 parent ba34438 commit 9ca61aa

6 files changed

Lines changed: 33 additions & 15 deletions

File tree

bcs-services/bcs-platform-manager/pkg/constants/constant.go

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,7 @@ const (
1717
// ClusterManagerServiceName cluster manager service name
1818
ClusterManagerServiceName = "clustermanager.bkbcs.tencent.com"
1919
// ProjectManagerServiceName project manager service name
20-
ProjectManagerServiceName = "projectmanager.bkbcs.tencent.com"
20+
ProjectManagerServiceName = "project.bkbcs.tencent.com"
2121
// ServiceDomain domain name for service
2222
ServiceDomain = "platformmanager.bkbcs.tencent.com"
2323
)

bcs-services/bcs-platform-manager/pkg/cron/client/client.go

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -45,7 +45,6 @@ func NewScheduler() (*asynq.Scheduler, error) {
4545

4646
// NewCronTasks create cron tasks
4747
func NewCronTasks() ([]*task.CronTask, error) {
48-
blog.Info("create schedule task: cron job")
4948
cronTasks := []*task.CronTask{}
5049
var err error
5150
var cronTask *task.CronTask

install/helm/bcs-platform-manager/Chart.yaml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -2,8 +2,8 @@ apiVersion: v2
22
name: bcs-platform-manager
33
description: 蓝鲸容器服务 bcs-services/bcs-platform-manager 模块
44
type: application
5-
version: v1.29.12
6-
appVersion: v1.29.12
5+
version: v1.29.13
6+
appVersion: v1.29.13
77
dependencies:
88
- name: common
99
repository: https://charts.bitnami.com/bitnami

install/helm/bcs-platform-manager/README.md

Lines changed: 11 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -54,7 +54,8 @@ image:
5454
```yaml
5555
svcConf:
5656
redis:
57-
address: "127.0.0.1:6379"
57+
host: "bcs-redis-master"
58+
port: 6379
5859
db: 0
5960
## 为空则从环境变量获取
6061
password: "your_redis_password"
@@ -150,6 +151,15 @@ svcConf:
150151
enabled: false
151152
endpoint: ""
152153
token: ""
154+
155+
## tls 配置
156+
tls_conf:
157+
server_cert: "/data/bcs/cert/bcs/bcs-server.crt"
158+
server_key: "/data/bcs/cert/bcs/bcs-server.key"
159+
server_ca: "/data/bcs/cert/bcs/bcs-ca.crt"
160+
client_cert: "/data/bcs/cert/bcs/bcs-client.crt"
161+
client_key: "/data/bcs/cert/bcs/bcs-client.key"
162+
client_ca: "/data/bcs/cert/bcs/bcs-ca.crt"
153163
```
154164

155165
### 部署 Chart

install/helm/bcs-platform-manager/templates/deployment.yaml

Lines changed: 2 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -45,13 +45,9 @@ spec:
4545
env:
4646
{{- include "bcs-platform-manager.envs" . | trim | nindent 12 }}
4747
livenessProbe:
48-
httpGet:
49-
path: /-/healthy
50-
port: http
48+
{{- toYaml .Values.probe.liveness | nindent 12 }}
5149
readinessProbe:
52-
httpGet:
53-
path: /-/ready
54-
port: http
50+
{{- toYaml .Values.probe.readiness | nindent 12 }}
5551
resources:
5652
{{- toYaml .Values.resources | nindent 12 }}
5753
volumeMounts:

install/helm/bcs-platform-manager/values.yaml

Lines changed: 17 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -61,6 +61,11 @@ resources:
6161
cpu: 2
6262
memory: 1Gi
6363

64+
## 健康检查
65+
probe:
66+
liveness:
67+
readiness:
68+
6469
## 环境变量
6570
envs: {}
6671

@@ -77,7 +82,7 @@ svcConf:
7782

7883
## 基础相关配置
7984
base_conf:
80-
http_port: 8099
85+
http_port: 8080
8186
bind_address: ""
8287
app_code: ""
8388
app_secret: ""
@@ -102,7 +107,8 @@ svcConf:
102107

103108
## Redis 配置信息
104109
redis:
105-
address: "bcs-redis-master:6379"
110+
host: "bcs-redis-master"
111+
port: 6379
106112
db: 2
107113
password: ""
108114
## 以下项非必须可不启用
@@ -128,6 +134,13 @@ svcConf:
128134
endpoint: ""
129135
token: ""
130136

137+
tls_conf:
138+
server_cert: "/data/bcs/cert/bcs/bcs-server.crt"
139+
server_key: "/data/bcs/cert/bcs/bcs-server.key"
140+
server_ca: "/data/bcs/cert/bcs/bcs-ca.crt"
141+
client_cert: "/data/bcs/cert/bcs/bcs-client.crt"
142+
client_key: "/data/bcs/cert/bcs/bcs-client.key"
143+
client_ca: "/data/bcs/cert/bcs/bcs-ca.crt"
131144
## 挂载的 server. etcd cert 和 jwt key 对应的 secret 名称
132145
secret:
133146
bcsServerCerts: bcs-server-certs
@@ -179,8 +192,8 @@ service:
179192
type: ClusterIP
180193
ports:
181194
- name: http
182-
port: 8099
183-
targetPort: 8099
195+
port: 8080
196+
targetPort: 8080
184197
protocol: TCP
185198

186199
## 权限控制类

0 commit comments

Comments
 (0)