disposab1e / okd-lab

Controlled Environment for OKD4 experiments
Apache License 2.0
30 stars 11 forks source link
ansible argo argocd artifactory centos8 coreos gitlab gitops k9s kvm kyverno okd-4 packer quay rook-ceph sealed-secrets shipwright-io tekton terraform

CentOS Terraform Packer Ansible

OKD Fedore CoreOS

GitLab Artifactory Project Quay

OKD-LAB: Controlled Environment for OKD4 experiments

You plan a dedicated machine to install and experiment with the Community Distribution of Kubernetes, maybe even on an rented root server in the wild wild world?

You want to manage your OKD cluster and applications the GitOps way?

It is probably worth the time to read a little further....

Naturally when we do some experiments we can destroy our cluster and bring it in a state we can't fix or recover. From this point of view we should try to keep complex things simple and repeatable. This is what this lab wants to address to.

You can expect a fully virtualized small IT center with everything you need to install a User Provisioned Infrastructure (UPI) of OKD4 based on KVM.

Additionally you get mostly all you need for a development environment including git, artifact management, private container registry, centralized user registry..... everything pre-configured and tightly integrated.


OKD-LAB: Overview

OKD-LAB Overview


Prerequisites

This project is being developed on a Hetzner machine with the following specs:

You can do it with less but than you have to tweak some settings and/or strip off some optional services.

*Please Note! NO proxy support in this version! Following soon.


Installation

95% of the installation process is copy&paste. No deep Linux or OKD4/Kubernetes skills needed!*

*The missing 5% is a guided CentOS 8.4 Linux installation and using a Firefox to create some tokens.


What's in the box?

Watch a animated gif at dropbox and open pandorra's box.

Operatiing system and virtualization:

Automation and provisioning:

Bastion (KVM):

Load Balancer (KVM):

OKD4 (KVMs):

Rook Argo CD Argo WorkflowsCD Argo Events Argo Rollouts Tekton Pipelines Tekton Triggers Tekton Dashboard Kyverno Shipwright Sealed Secrets

What do you get from the OKD / Kubernetes world?

Terraform/Ansible managed:

Argo CD (GitOps) managed:

Security

Especially with servers available in the wild wild world some kind of security makes sense!

For this reason:

If you go the Hetzner path additional security is possible and recommended.


A few words

This guide is not about installing and maintaining Linux at the highest possible levels. It's not about being the best of class automation expert and it's a controlled environment with intentionally 99% static settings. But if you know what you do, you can change and expand everything with ease and apply it to your needs. Have fun!

Thanks to all in the Open Source Community and especially to @cgruver for inspiration and help!


License

OKD-LAB is released under the Apache 2.0 license. See the LICENSE file for details. Some components may be licensed differently - consult individual vendors and repositories for more.