kkumtree

GnuPG ํ‚ค ๋ฐฑ์—…ํ•˜๊ธฐ

  • kkumtree

2023-05-27T18:29:18+09:00

23/05/30 GPG ํ‚ค ๋ณต์›๋ฐฉ๋ฒ• ๋ฐ ์ถœ์ฒ˜ ์ถ”๊ฐ€ ๋ง๊ฐ€์ง„ PC ๋ฉ”์ธ๋ณด๋“œ๋ฅผ ๊ต์ฒดํ•˜๊ณ , ์„œ๋‘˜๋Ÿฌ GPG key๋ฅผ ๋ฐฑ์—…ํ•˜์˜€์Šต๋‹ˆ๋‹ค. ์šฉ๋Ÿ‰์ด ๊ทธ๋ฆฌ ํฐํŽธ์€ ์•„๋‹ˆ๋‹ˆ, ์™ ๋งŒํ•œ USB ๋ฉ”๋ชจ๋ฆฌ์—๋„ ์ถฉ๋ถ„ํžˆ ๋ฐฑ์—…์ด ๊ฐ€๋Šฅํ•ฉ๋‹ˆ๋‹ค. (์–ด์งธ์„œ ์•ˆํ–ˆ์—ˆ์„๊ผฌ…) ์ถœ์ฒ˜๋Š” ๋งˆ์ง€๋ง‰ referenece๋ฅผ ์ฐธ์กฐํ•ด์ฃผ์‹œ๊ธฐ ๋ฐ”๋ž๋‹ˆ๋‹ค. 1. Backup # tree๋กœ ~/.gnupg ํ™•์ธ tree ~/.gnupg # ํ˜„์žฌ ์‚ฌ์šฉ์ค‘์ธ ํ‚ค ํ™•์ธ gpg --list-secret-keys --keyid-format LONG # ํ‚ค ๋ฐฑ์—… ## public ํ‚ค ๋ฐฑ์—… gpg --export --export-options backup --output ~/public_mscho.gpg ## private ํ‚ค ๋ฐฑ์—… (์•”ํ˜ธ ์ž…๋ ฅ ํ•„์š”) gpg --export-secret-keys --export-options backup --output ~/private_mscho.

AWS EKS ์Šคํ„ฐ๋”” 5์ฃผ์ฐจ - Autoscaling

  • kkumtree

2023-05-22T19:23:37+09:00

์ด๋ฒˆ ์ฃผ์ฐจ๋Š” ์˜คํ† ์Šค์ผ€์ผ๋ง์„ ๋ฉ”์ธ์œผ๋กœ ํ•˜์—ฌ, ์ˆ˜ํ‰/์ˆ˜์ง ํ”„๋กœ๋น„์ €๋‹์„ ํ•™์Šตํ•ด๋ณด์•˜์Šต๋‹ˆ๋‹ค. ๋งˆ์ง€๋ง‰์—๋Š” ๊ณ ์„ฑ๋Šฅ ์˜คํ† ์Šค์ผ€์ผ๋Ÿฌ์ธ Karpenter๋ฅผ ๋ณ„๋„๋กœ ์‹ค์Šตํ•ด๋ณด์•˜์Šต๋‹ˆ๋‹ค. ํŠนํžˆ.. HPA custom metrics(์‚ฌ์šฉ์ž ์ •์˜ ๋ฉ”ํŠธ๋ฆญ) ์ ์šฉ YAML ์„ค์ •๊ฐ’์„ CPU๋กœ ๋งž์ถ˜ ๊ฒƒ์„ ์žŠ๊ณ , ํ”„๋กœ๋น„์ €๋‹์„ ์ž˜๋ชป ์˜ˆ์ธกํ•œ ๊ฒƒ๋„ ํ•จ๊ป˜ ๊ณต์œ ํ•ฉ๋‹ˆ๋‹ค. AutoScaling HPA: Horizontal Pod Autoscaler VPA: Vertical Pod Autoscaler CA: Cluster Autoscaler ๊ฐ CSP ์˜์กด์ , ์›Œ์ปค ๋…ธ๋“œ ๋ ˆ๋ฒจ์—์„œ์˜ ์˜คํ† ์Šค์ผ€์ผ๋ง 1. ์‹ค์Šต ํ™˜๊ฒฝ ๋ฐฐํฌ 4์ฃผ์ฐจ์˜ ์ดˆ๊ธฐ ๋ฐฐํฌ ๋‚ด์šฉ์— p8s ๋ฐ Grafana๋ฅผ ์ถ”๊ฐ€ํ•˜์—ฌ ๋ฐฐํฌ verticalPodAutoscaler ํ™œ์„ฑํ™” ์ถ”์ฒœ ๋Œ€์‹œ๋ณด๋“œ: 15757, 17900, 15172 curl -O https://s3.

AWS EKS ์Šคํ„ฐ๋”” 4์ฃผ์ฐจ - Observability

  • kkumtree

2023-05-21T06:13:52+09:00

์ด๋ฒˆ ์ฃผ์ฐจ์—๋Š” Observability์— ๋Œ€ํ•ด ์Šคํ„ฐ๋””๊ฐ€ ์ง„ํ–‰๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ์ž์› ๋ชจ๋‹ˆํ„ฐ๋ง ํˆด๋“ค์˜ ์ ์šฉ ๋ฐ ์‚ฌ์šฉ์ด ์ค‘์‹ฌ์ž…๋‹ˆ๋‹ค. ๊ทธ๋‚˜์ €๋‚˜ k8s 1.26์—์„œ metrics์˜ ์ผ๋ถ€ ๋ช…์นญ์ด ๋ฐ”๋€Œ๋Š” ๊ฑธ ๋ณด๊ณ  ์‹๊ฒํ–ˆ์Šต๋‹ˆ๋‹ค. (etcd_db_total_size_bytes ๋Œ€์‹ , apiserver_storage_db_total_size_in_bytes ์œผ๋กœ ๋ณ€๊ฒฝ) ๋˜ํ•œ kubecost์˜ ๊ฒฝ์šฐ, cloudformation ์Šคํƒ ์ œ๊ฑฐ ํ›„์—๋„ ๋ณผ๋ฅจ ๋ฐ์ดํ„ฐ๊ฐ€ ๋‚จ์•„์žˆ์–ด์„œ ๋ณ„๋„๋กœ ์‚ญ์ œํ•ด์•ผ ํ–ˆ์Šต๋‹ˆ๋‹ค. 1. ์‹ค์Šตํ™˜๊ฒฝ ๋ฐฐํฌ NAT๊ฒŒ์ดํŠธ์›จ์ด, EBS addon, IAM role, ISRA for LB/EFS, PreCommand ํฌํ•จ ๋…ธ๋“œ: t3.xlarge t3a.xlarge(AMD)๋Š” ์„œ์šธ ๋ฆฌ์ „ b AZ(ap-northeast-2b)์—์„œ ๋ฏธ์ง€์› ๋” ๋งŽ์€ ๊ฐ’๋“ค์ด ์ž…๋ ฅ๋˜์–ด์„œ, ์ƒ์„ฑ ์™„๋ฃŒ๊นŒ์ง€ ๋” ๋งŽ์€ ์‹œ๊ฐ„์ด ์†Œ์š” (์•ฝ 20์—ฌ๋ถ„ ์ด๋‚ด) curl -O https://s3.

aws-cli๋ฅผ ์ด์šฉํ•œ bastion CIDR ๋ณ€๊ฒฝ

  • kkumtree

2023-05-18T21:36:19+09:00

0. ์š”์•ฝ Docs 1 Docs 2 aws ec2 describe-security-groups aws ec2 modify-security-group-rules 1. ๋ฐฐ๊ฒฝ 2์ฃผ ์ „์— ๋ฌธ๋“ ์ด๋Ÿฐ ์งˆ๋ฌธ์„ ์˜ฌ๋ ธ๋˜ ์ ์ด ์žˆ์—ˆ๋‹ค. ๋ฌผ๋ก  ๋ฐ”๊พธ๋ฉด ์•ˆ๋  ์ผ์€ ์—†์—ˆ๋Š”๋ฐ ์ด๋ ‡๊ฒŒ ํ•˜๋Š”๊ฒŒ ๋งž๋‚˜ ํ™•์‹ ์ด ๋ชจ์ž๋ผ์„œ ์˜๊ฒฌ์„ ์—ฌ์ญค๋ดค์—ˆ๊ณ , ์ด๊ฒŒ ๋งž๋‹ค๋Š” ํ™•์‹ ์„ ๋ฐ›์•˜๋‹ค. ๊ทธ๋ฆฌ๊ณ  ์˜ค๋Š˜… ์นดํŽ˜๋ฅผ ๋‘ ๊ณณ์ด๋‚˜ ๋“ค๋ฆฌ๋ฉด์„œ ํ•˜๋Š๋ผ ์•ฝ๊ฐ„์˜ ๋ฒˆ๊ฑฐ๋กœ์›€๋„ ์žˆ๊ณ  AWS ์›น ์ฝ˜์†”์—์„œ ํ•˜๋ ค ํ–ˆ๋‹ค. ๊ทธ๋Ÿฐ๋ฐ, ์œ ๋… SG์—์„œ๋งŒ ํŽ˜์ด์ง€ ๋กœ๋”ฉ์ด timeout ๊ฑธ๋ ค์„œ, ๋„์ €ํžˆ ์ˆ˜์ •์€ ์ปค๋…• ํ•ด๋‹น ID๋„ ํŒŒ์•…์„ ํ•˜๊ธฐ ํž˜๋“  ์ƒํ™ฉ์ด ๋˜์—ˆ๋‹ค.

AWS EKS ์Šคํ„ฐ๋”” 3์ฃผ์ฐจ - Storage

  • kkumtree

2023-05-12T05:36:38+09:00

์ด๋ฒˆ ์ฃผ์ฐจ์—๋Š” ์Šคํ† ๋ฆฌ์ง€์— ๋Œ€ํ•ด ์‹ค์Šต์„ ์ง„ํ–‰ํ•ด๋ณด์•˜์Šต๋‹ˆ๋‹ค. ์ง€๋‚œ๋ฒˆ kOps ์Šคํ„ฐ๋””์—์„œ ๋‹ค๋ฃจ์—ˆ๋˜ ๋‚ด์šฉ์ด์ง€๋งŒ, ๋ถ€์กฑํ–ˆ๋˜ ๋‚ด์šฉ์„ ๋ณด์ถฉํ•˜๋ฉด์„œ ์ž‘์„ฑ์„ ํ•ด๋ณด์•˜์Šต๋‹ˆ๋‹ค. ์ฃผ์š”ํ•œ ๋‚ด์šฉ์€… NodeAffinity๋ฅผ ์ด์šฉํ•œ ๋ผ๋ฒจ๋ง AWS EBS controller์˜ ๊ฒฝ์šฐ, AWS managed policy๋ฅผ ํ™œ์šฉ AWS Volume SnapShots Controller๋ฅผ ํ†ตํ•œ ๋ณผ๋ฅจ ๋ฐฑ์—… AWS EFS controller์—์„œ์˜ ๋™์  ํ”„๋กœ๋น„์ €๋‹ AWS EKS ์‹ ๊ทœ ๋…ธ๋“œ๊ทธ๋ฃน ์ƒ์„ฑ ๋ณ„๋„๋กœ kube-ops-view์˜ ๊ฒฝ์šฐ, ์›น์œผ๋กœ ํ™•์ธํ•  ์ˆ˜ ์žˆ์„ ๋•Œ๊นŒ์ง€ ์‹œ๊ฐ„์ด ์†Œ์š”๋œ๋‹ค๋Š” ์ ์ด ์žˆ์Šต๋‹ˆ๋‹ค. 1. ์‹ค์Šต ํ™˜๊ฒฝ ๋ฐฐํฌ 2์ฃผ์ฐจ์— ์‹ค์Šตํ–ˆ๋˜ ๋‚ด์šฉ๋“ค์„ ๋ฏธ๋ฆฌ ๋ฐฐํฌ AWS LB ExternalDNS kube-ops-view context ์ด๋ฆ„ ๋ณ€๊ฒฝ ์ง€๋‚œ ๋ฒˆ๊นŒ์ง€ pkos๊ฐ€ ๋œจ๋Š” ํ˜„์ƒ์ด ์žˆ์—ˆ๋Š”๋ฐ, ๋‹‰๋„ค์ž„์„ ๋ณ„๋„ ์ง€์ •ํ•  ์ˆ˜ ์žˆ์Œ EFS ์ƒ์„ฑ ๊ด€๋ จ cloudformation์ด ์ถ”๊ฐ€๋˜์—ˆ์Œ EFS FS ID ์กฐํšŒ๋ฅผ ํ•˜๊ธฐ ์œ„ํ•ด aws-cli ํ•„ํ„ฐ ํ™œ์šฉ (์ถœ์ฒ˜: AWS Docs) # ์‹ค์Šต YAML ํŒŒ์ผ curl -O https://s3.

  1. First page
  2. Previous page
  3. 1
  4. 2
  5. 3
  6. 4
  7. 5
  8. 6
  9. Next page
  10. Last page