๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜ ๊ตฌ์„ฑ ํŒŒ์ผ

์ด ํŽ˜์ด์ง€์—์„œ๋Š” Google Distributed Cloud์šฉ ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜ ๊ตฌ์„ฑ ํŒŒ์ผ์˜ ํ•„๋“œ๋ฅผ ์„ค๋ช…ํ•ฉ๋‹ˆ๋‹ค.

๊ตฌ์„ฑ ํŒŒ์ผ ํ…œํ”Œ๋ฆฟ ์ƒ์„ฑ

gkeadm ๋ช…๋ น์ค„ ๋„๊ตฌ๋ฅผ ๋‹ค์šด๋กœ๋“œํ•ฉ๋‹ˆ๋‹ค.

ํ…œํ”Œ๋ฆฟ์„ ์ƒ์„ฑํ•˜๋Š” ๋ฐฉ๋ฒ•์€ ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

./gkeadm create config --config=OUTPUT_FILENAME

OUTPUT_FILENAME์„ ์ƒ์„ฑ๋œ ํ…œํ”Œ๋ฆฟ์— ๋Œ€ํ•ด ์„ ํƒํ•œ ๊ฒฝ๋กœ๋กœ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค. ์ด ํ”Œ๋ž˜๊ทธ๋ฅผ ์ƒ๋žตํ•˜๋ฉด gkeadm์€ ํŒŒ์ผ ์ด๋ฆ„์„ admin-ws-config.yaml๋กœ ์ง€์ •ํ•˜๊ณ  ํ˜„์žฌ ๋””๋ ‰ํ„ฐ๋ฆฌ์— ๋„ฃ์Šต๋‹ˆ๋‹ค.

ํ…œํ”Œ๋ฆฟ

๊ตฌ์„ฑ ํŒŒ์ผ ์ž‘์„ฑ

๊ตฌ์„ฑ ํŒŒ์ผ์— ๋‹ค์Œ ์„น์…˜์— ์„ค๋ช…๋œ ๋Œ€๋กœ ํ•„๋“œ ๊ฐ’์„ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค.

gcp

์ด ์„น์…˜์—๋Š” ๊ตฌ์„ฑ์š”์†Œ ์•ก์„ธ์Šค ์„œ๋น„์Šค ๊ณ„์ •์— ๋Œ€ํ•œ ์ •๋ณด๊ฐ€ ํฌํ•จ๋˜์–ด ์žˆ์Šต๋‹ˆ๋‹ค.

gcp.componentAccessServiceAccountKeyPath

๋ฌธ์ž์—ด. ๊ตฌ์„ฑ์š”์†Œ ์•ก์„ธ์Šค ์„œ๋น„์Šค ๊ณ„์ •์˜ JSON ํ‚ค ํŒŒ์ผ ๊ฒฝ๋กœ์ž…๋‹ˆ๋‹ค. JSON ํ‚ค ํŒŒ์ผ ๋งŒ๋“ค๊ธฐ์— ๋Œ€ํ•œ ์ž์„ธํ•œ ๋‚ด์šฉ์€ ๊ตฌ์„ฑ์š”์†Œ ์•ก์„ธ์Šค ์„œ๋น„์Šค ๊ณ„์ •์„ ์ฐธ์กฐํ•˜์„ธ์š”.

์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

gcp:
  componentAccessServiceAccountKeyPath: "my-key-folder/component-access-key.json"

vCenter

์ด ์„น์…˜์—์„œ๋Š” ์‚ฌ์šฉ์ž์˜ vSphere ํ™˜๊ฒฝ์— ๋Œ€ํ•œ ์ •๋ณด๋ฅผ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.

vCenter.credentials.address

๋ฌธ์ž์—ด. vCenter Server์˜ IP ์ฃผ์†Œ ๋˜๋Š” ํ˜ธ์ŠคํŠธ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค.

address ํ•„๋“œ๋ฅผ ์ž…๋ ฅํ•˜๊ธฐ ์ „์— vCenter Server์˜ ์‚ฌ์šฉ ์ค‘์ธ ์ธ์ฆ์„œ๋ฅผ ๋‹ค์šด๋กœ๋“œํ•˜์—ฌ ๊ฒ€์‚ฌํ•ฉ๋‹ˆ๋‹ค. ๋‹ค์Œ ๋ช…๋ น์–ด๋ฅผ ์ž…๋ ฅํ•˜์—ฌ ์ธ์ฆ์„œ๋ฅผ ๋‹ค์šด๋กœ๋“œํ•˜๊ณ  vcenter.pem์ด๋ผ๋Š” ํŒŒ์ผ๋กœ ์ €์žฅํ•ฉ๋‹ˆ๋‹ค.

true | openssl s_client -connect VCENTER_IP:443 -showcerts 2>/dev/null | sed -ne '/-BEGIN/,/-END/p' > vcenter.pem

VCENTER_IP๋ฅผ vCenter Server์˜ IP ์ฃผ์†Œ๋กœ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค.

์ธ์ฆ์„œ ํŒŒ์ผ์„ ์—ด์–ด์„œ ์ œ๋ชฉ ์ผ๋ฐ˜ ์ด๋ฆ„ ๋ฐ ์ œ๋ชฉ ๋Œ€์ฒด ์ด๋ฆ„์„ ํ™•์ธํ•ฉ๋‹ˆ๋‹ค.

openssl x509 -in vcenter.pem -text -noout

๊ฒฐ๊ณผ์— Subject ์ผ๋ฐ˜ ์ด๋ฆ„(CN)์ด ํ‘œ์‹œ๋ฉ๋‹ˆ๋‹ค. ์ด ์ด๋ฆ„์€ IP ์ฃผ์†Œ์ด๊ฑฐ๋‚˜ ํ˜ธ์ŠคํŠธ ์ด๋ฆ„์ผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

Subject: ... CN = 203.0.113.100
Subject: ... CN = my-host.my-domain.example

๊ฒฐ๊ณผ์˜ Subject Alternative Name ์•„๋ž˜์—๋Š” DNS ์ด๋ฆ„์ด 1๊ฐœ ์ด์ƒ ํฌํ•จ๋  ์ˆ˜๋„ ์žˆ์Šต๋‹ˆ๋‹ค.

X509v3 Subject Alternative Name:
    DNS:vcenter.my-domain.example

Subject ์ผ๋ฐ˜ ์ด๋ฆ„์„ ์„ ํƒํ•˜๊ฑฐ๋‚˜ Subject Alternative Name ์•„๋ž˜์—์„œ ๊ตฌ์„ฑ ํŒŒ์ผ์˜ vcenter.credentials.address ๊ฐ’์œผ๋กœ ์‚ฌ์šฉํ•  DNS ์ด๋ฆ„ ์ค‘ ํ•˜๋‚˜๋ฅผ ์„ ํƒํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  credentials:
    address: "203.0.113.1"
    ...
vCenter:
  credentials:
    address: "my-host.my-domain.example"
    ...

vCenter.credentials.fileRef.path

๋ฌธ์ž์—ด. vCenter ์‚ฌ์šฉ์ž ๊ณ„์ •์˜ ์‚ฌ์šฉ์ž ์ด๋ฆ„๊ณผ ๋น„๋ฐ€๋ฒˆํ˜ธ๊ฐ€ ํฌํ•จ๋œ ์‚ฌ์šฉ์ž ์ธ์ฆ ์ •๋ณด ๊ตฌ์„ฑ ํŒŒ์ผ์˜ ๊ฒฝ๋กœ์ž…๋‹ˆ๋‹ค. ์‚ฌ์šฉ์ž ๊ณ„์ •์— ๊ด€๋ฆฌ์ž ์—ญํ•  ๋˜๋Š” ์ด์— ์ƒ์‘ํ•˜๋Š” ๊ถŒํ•œ์ด ์žˆ์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค. vSphere ์š”๊ตฌ์‚ฌํ•ญ์„ ์ฐธ์กฐํ•˜์„ธ์š”.

gkeadm create config๋ฅผ ์‹คํ–‰ํ•˜๋ฉด admin-ws-config.yaml์ด๋ผ๋Š” ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜ ๊ตฌ์„ฑ ํŒŒ์ผ ํ…œํ”Œ๋ฆฟ์ด ์ƒ์„ฑ๋ฉ๋‹ˆ๋‹ค. credential.yaml์ด๋ผ๋Š” ์‚ฌ์šฉ์ž ์ธ์ฆ ์ •๋ณด ๊ตฌ์„ฑ ํŒŒ์ผ์˜ ํ…œํ”Œ๋ฆฟ๋„ ๋งŒ๋“ญ๋‹ˆ๋‹ค.

์˜ˆ:

vCenter:
  credentials:
    fileRef:
      path: "credential.yaml"

vCenter.credentials.fileRef.entry

๋ฌธ์ž์—ด. vCenter ์‚ฌ์šฉ์ž ๊ณ„์ •์˜ ์‚ฌ์šฉ์ž ์ด๋ฆ„๊ณผ ๋น„๋ฐ€๋ฒˆํ˜ธ๊ฐ€ ํฌํ•จ๋œ ์‚ฌ์šฉ์ž ์ธ์ฆ ์ •๋ณด ๊ตฌ์„ฑ ํŒŒ์ผ์˜ ์‚ฌ์šฉ์ž ์ธ์ฆ ์ •๋ณด ๋ธ”๋ก์˜ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค.

credential.yaml์—์„œ gkeadm์€ vCenter๋ผ๋Š” ์‚ฌ์šฉ์ž ์ธ์ฆ ์ •๋ณด ๋ธ”๋ก์„ ์ž๋™์œผ๋กœ ๋งŒ๋“ญ๋‹ˆ๋‹ค.

์˜ˆ:

vCenter:
  credentials:
    fileRef:
      entry: "vCenter"

vCenter.datacenter

๋ฌธ์ž์—ด. vCenter ๋ฐ์ดํ„ฐ ์„ผํ„ฐ์˜ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  datacenter: "MY-DATACENTER"

vCenter.datastore

๋ฌธ์ž์—ด. vCenter Datastore์˜ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  datastore: "MY-DATASTORE"

vCenter.cluster

๋ฌธ์ž์—ด. vCenter ํด๋Ÿฌ์Šคํ„ฐ์˜ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  cluster: "MY-CLUSTER"

vCenter.network

๋ฌธ์ž์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์„ ๋งŒ๋“ค๋ ค๋Š” vCenter ๋„คํŠธ์›Œํฌ์˜ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  network: "MY-VM-NETWORK"

vCenter.folder

๋ฌธ์ž์—ด. ํด๋Ÿฌ์Šคํ„ฐ VM์ด ์œ„์น˜ํ•  ๋ฐ์ดํ„ฐ ์„ผํ„ฐ์˜ ํด๋”์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  folder: "MY-FOLDER"

vCenter.resourcePool

๋ฌธ์ž์—ด. ๊ธฐ๋ณธ์ด ์•„๋‹Œ ๋ฆฌ์†Œ์Šค ํ’€์„ ์‚ฌ์šฉํ•˜๋Š” ๊ฒฝ์šฐ์—๋Š” vCenter ๋ฆฌ์†Œ์Šค ํ’€์˜ ์ด๋ฆ„์„ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  resourcePool: "MY-POOL"

๊ธฐ๋ณธ ๋ฆฌ์†Œ์Šค ํ’€์„ ์‚ฌ์šฉํ•˜๋Š” ๊ฒฝ์šฐ ๋‹ค์Œ ๊ฐ’์„ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.

vCenter:
  resourcePool: "MY_CLUSTER/Resources"

MY_CLUSTER๋ฅผ vCenter ํด๋Ÿฌ์Šคํ„ฐ์˜ ์ด๋ฆ„์œผ๋กœ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค.

๋…๋ฆฝํ˜• ํ˜ธ์ŠคํŠธ์˜ ๋ฃจํŠธ ๋ฆฌ์†Œ์Šค ํ’€ ์ง€์ •์„ ์ฐธ์กฐํ•˜์„ธ์š”.

vCenter.caCertPath

๋ฌธ์ž์—ด. Google Distributed Cloud์™€ ๊ฐ™์€ ํด๋ผ์ด์–ธํŠธ๊ฐ€ vCenter ์„œ๋ฒ„๋กœ ์š”์ฒญ์„ ์ „์†กํ•  ๋•Œ ์„œ๋ฒ„๋Š” ์ธ์ฆ์„œ ๋˜๋Š” ์ธ์ฆ์„œ ๋ฒˆ๋“ค์„ ์ œ๊ณตํ•˜์—ฌ ํด๋ผ์ด์–ธํŠธ์— ํ•ด๋‹น ID๋ฅผ ์ž…์ฆํ•ด์•ผ ํ•ฉ๋‹ˆ๋‹ค. ์ธ์ฆ์„œ ๋˜๋Š” ๋ฒˆ๋“ค์„ ํ™•์ธํ•˜๋ ค๋ฉด Google Distributed Cloud์˜ ์‹ ๋ขฐ ์ฒด์ธ์— ๋ฃจํŠธ ์ธ์ฆ์„œ๊ฐ€ ์žˆ์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค.

vCenter.caCertPath๋ฅผ ๋ฃจํŠธ ์ธ์ฆ์„œ์˜ ๊ฒฝ๋กœ๋กœ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

vCenter:
  caCertPath: "/usr/local/google/home/me/certs/vcenter-ca-cert.pem"

VMware ์„ค์น˜์—๋Š” vCenter Server์— ์ธ์ฆ์„œ๋ฅผ ๋ฐœ๊ธ‰ํ•˜๋Š” ์ธ์ฆ ๊ธฐ๊ด€(CA)์ด ํฌํ•จ๋ฉ๋‹ˆ๋‹ค. ์‹ ๋ขฐ ์ฒด์ธ์˜ ๋ฃจํŠธ ์ธ์ฆ์„œ๋Š” VMware์—์„œ ์ƒ์„ฑ๋œ ์ž์ฒด ์„œ๋ช… ์ธ์ฆ์„œ์ž…๋‹ˆ๋‹ค.

๊ธฐ๋ณธ๊ฐ’์ธ VMWare CA๋ฅผ ์‚ฌ์šฉํ•˜์ง€ ์•Š์„ ๊ฒฝ์šฐ ๋‹ค๋ฅธ ์ธ์ฆ ๊ธฐ๊ด€์„ ์‚ฌ์šฉํ•˜๋„๋ก VMware๋ฅผ ๊ตฌ์„ฑํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.

์‚ฌ์šฉ์ž์˜ vCenter ์„œ๋ฒ„๊ฐ€ ๊ธฐ๋ณธ VMware CA์—์„œ ๋ฐœ๊ธ‰ํ•œ ์ธ์ฆ์„œ๋ฅผ ์‚ฌ์šฉํ•˜๋Š” ๊ฒฝ์šฐ ๋‹ค์Œ๊ณผ ๊ฐ™์ด ์ธ์ฆ์„œ๋ฅผ ๋‹ค์šด๋กœ๋“œํ•ฉ๋‹ˆ๋‹ค.

curl -k "https://SERVER_ADDRESS/certs/download.zip" > download.zip

SERVER_ADDRESS๋ฅผ vCenter ์„œ๋ฒ„์˜ ์ฃผ์†Œ๋กœ ๋ฐ”๊ฟ‰๋‹ˆ๋‹ค.

unzip ๋ช…๋ น์–ด๋ฅผ ์„ค์น˜ํ•˜๊ณ  ์ธ์ฆ์„œ ํŒŒ์ผ์˜ ์••์ถ•์„ ํ’‰๋‹ˆ๋‹ค.

sudo apt-get install unzip
unzip download.zip

์ฒ˜์Œ์— unzip ๋ช…๋ น์–ด๊ฐ€ ์ž‘๋™ํ•˜์ง€ ์•Š์œผ๋ฉด ๋ช…๋ น์–ด๋ฅผ ๋‹ค์‹œ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค.

certs/lin์—์„œ ์ธ์ฆ์„œ ํŒŒ์ผ์„ ์ฐพ์Šต๋‹ˆ๋‹ค.

proxyUrl

๋ฌธ์ž์—ด: gkeadm์„ ์‹คํ–‰ํ•˜๋Š” ๋ฐ ์‚ฌ์šฉํ•˜๋Š” ๋จธ์‹ ์—์„œ ํ”„๋ก์‹œ ์„œ๋ฒ„๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์ธํ„ฐ๋„ท์— ์•ก์„ธ์Šคํ•˜๋Š” ๊ฒฝ์šฐ ์ด ํ•„๋“œ๋ฅผ ํ”„๋ก์‹œ ์„œ๋ฒ„์˜ URL๋กœ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค. ํฌํŠธ ๋ฒˆํ˜ธ๊ฐ€ ์Šคํ‚ค๋งˆ์˜ ๊ธฐ๋ณธ ํฌํŠธ์™€ ๋™์ผํ•˜๋”๋ผ๋„ ํฌํ•จํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

proxyUrl: "https://my-proxy.example.local:80"

adminWorkstation

์ด ์„น์…˜์—๋Š” ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์— ๋Œ€ํ•œ ์ •๋ณด๊ฐ€ ํฌํ•จ๋˜์–ด ์žˆ์Šต๋‹ˆ๋‹ค.

adminWorkstation.name

๋ฌธ์ž์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์˜ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค. ์ด ํ•„๋“œ๋Š” ์ƒ์„ฑ๋œ ๊ฐ’์œผ๋กœ ์ฑ„์›Œ์ง‘๋‹ˆ๋‹ค. ์ƒ์„ฑ๋œ ๊ฐ’์„ ์œ ์ง€ํ•˜๊ฑฐ๋‚˜ ์›ํ•˜๋Š” ๋‹ค๋ฅธ ์ด๋ฆ„์œผ๋กœ ์ˆ˜์ •ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation
  name: "gke-admin-ws-200617-113711"

adminWorkstation.cpus

์ •์ˆ˜. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์˜ ๊ฐ€์ƒ CPU ์ˆ˜์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  cpus: 4

adminWorkstation.memoryMB

์ •์ˆ˜. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์˜ ๋ฉ”๋ชจ๋ฆฌ ์šฉ๋Ÿ‰ ์ˆ˜(MB)์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminworkstation:
  memoryMB: 8192

adminWorkstation.diskGB

์ •์ˆ˜. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜ ๋ถ€ํŒ… ๋””์Šคํฌ์˜ ํฌ๊ธฐ(GB)์ž…๋‹ˆ๋‹ค. 100GB ์ด์ƒ์ด ๊ถŒ์žฅ๋˜๋ฉฐ ๋ฒ„์ „ 1.28 ์ด์ƒ์—์„œ๋Š” 100GB๊ฐ€ ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  diskGB: 100

adminWorkstation.dataDiskName

๋ฌธ์ž์—ด. ํ™ˆ ๋””๋ ‰ํ„ฐ๋ฆฌ์— ๋งˆ์šดํŠธํ•  ์˜๊ตฌ ๋””์Šคํฌ์˜ ์ด๋ฆ„์ž…๋‹ˆ๋‹ค. ์ด ํ•„๋“œ๋Š” ์ƒ์„ฑ๋œ ๊ฐ’์œผ๋กœ ์ฑ„์›Œ์ง‘๋‹ˆ๋‹ค. ์ƒ์„ฑ๋œ ๊ฐ’์„ ์œ ์ง€ํ•˜๊ฑฐ๋‚˜ ์›ํ•˜๋Š” ์ด๋ฆ„์„ ์ œ๊ณตํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. .vmdk๋กœ ๋๋‚˜์•ผ ํ•ฉ๋‹ˆ๋‹ค. ์ œ๊ณต๋œ ๊ฒฝ๋กœ์˜ ๋ชจ๋“  ๋””๋ ‰ํ„ฐ๋ฆฌ๋Š” ๋ฐฐํฌ ์ „์— ๋งŒ๋“ค์–ด์•ผ ํ•ฉ๋‹ˆ๋‹ค. ์ด ํ•„๋“œ์— ์„ค์ •๋œ ๊ฐ’์ด ์—†์œผ๋ฉด ๊ธฐ๋ณธ๊ฐ’์€ ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

gke-on-prem-admin-workstation-data-disk/ADMIN_WORKSTATION_NAME-data-disk.vmdk

์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  dataDiskName: "gke-on-prem-admin-workstation-data-disk/gke-admin-ws-200617-113711-data-disk.vmdk"

adminWorkstation.dataDiskMB

์ •์ˆ˜. ๋ฐ์ดํ„ฐ ๋””์Šคํฌ์˜ ํฌ๊ธฐ(MB)์ž…๋‹ˆ๋‹ค. ์ด ํ•„๋“œ์— ์„ค์ •๋œ ๊ฐ’์ด ์—†์œผ๋ฉด ๊ธฐ๋ณธ๊ฐ’์€ 512์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  dataDiskMB: 512

adminWorkstation.network.ipAllocationMode

๋ฌธ์ž์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์ด DHCP ์„œ๋ฒ„์—์„œ IP ์ฃผ์†Œ๋ฅผ ๊ฐ€์ ธ์˜ค๊ฒŒ ํ•˜๋ ค๋ฉด "dhcp"๋กœ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์—์„œ ์›ํ•˜๋Š” ๊ณ ์ • IP ์ฃผ์†Œ๋ฅผ ์‚ฌ์šฉํ•˜๋ ค๋ฉด "static"์œผ๋กœ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  network:
    ipAllocationMode: "static"

adminWorkstation.network.hostconfig

ipAllocationMode๋ฅผ "static"์œผ๋กœ ์„ค์ •ํ•œ ๊ฒฝ์šฐ ์ด ์„น์…˜์˜ ํ•„๋“œ๋ฅผ ์ž…๋ ฅํ•ฉ๋‹ˆ๋‹ค.

ipAllocationMode๋ฅผ "dhcp"๋กœ ์„ค์ •ํ•œ ๊ฒฝ์šฐ ์ด ์„น์…˜์„ ์‚ญ์ œํ•˜๊ฑฐ๋‚˜ ์ฝ”๋ฉ˜ํŠธ๋ฅผ ๋‚จ๊น๋‹ˆ๋‹ค.

adminWorkstation.network.hostConfig.ip

๋ฌธ์ž์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์˜ IP ์ฃผ์†Œ์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  network:
    hostconfig:
      ip: "172.16.5.1"

adminWorkstation.network.hostConfig.gateway

๋ฌธ์ž์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์ด ํฌํ•จ๋œ ๋„คํŠธ์›Œํฌ์˜ ๊ธฐ๋ณธ ๊ฒŒ์ดํŠธ์›จ์ด IP ์ฃผ์†Œ์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  network:
    hostconfig:
      gateway: "172.16.6.254"

adminWorkstation.network.hostConfig.netmask

๋ฌธ์ž์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์ด ํฌํ•จ๋œ ๋„คํŠธ์›Œํฌ์˜ ๋„ท๋งˆ์Šคํฌ์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  network:
    hostConfig:
      netmask: "255.255.248.0"

adminWorkstation.network.hostConfig.dns

๋ฌธ์ž์—ด ๋ฐฐ์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์—์„œ ์‚ฌ์šฉํ•  ์ˆ˜ ์žˆ๋Š” DNS ์„œ๋ฒ„์˜ IP ์ฃผ์†Œ ๋ฐฐ์—ด์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  network:
    hostconfig:
      dns:
      - "172.16.255.1"
      - "172.16.255.2"

adminWorkstation.proxyUrl

๋ฌธ์ž์—ด. ๋„คํŠธ์›Œํฌ๊ฐ€ ํ”„๋ก์‹œ ์„œ๋ฒ„๋กœ ๋ณดํ˜ธ๋˜๋Š” ์ƒํƒœ์—์„œ ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜๊ณผ ๊ด€๋ฆฌ์ž ํด๋Ÿฌ์Šคํ„ฐ ๋ชจ๋‘ ๊ฐ™์€ ํ”„๋ก์‹œ ์„œ๋ฒ„๋ฅผ ์‚ฌ์šฉํ•˜๋„๋ก ํ•˜๋ ค๋ฉด adminworkstation.proxyURL์„ ํ”„๋ก์‹œ ์„œ๋ฒ„ URL๋กœ ์„ค์ •ํ•ฉ๋‹ˆ๋‹ค. ํฌํŠธ ๋ฒˆํ˜ธ๊ฐ€ ์Šคํ‚ค๋งˆ์˜ ๊ธฐ๋ณธ ํฌํŠธ์™€ ๋™์ผํ•˜๋”๋ผ๋„ ํฌํ•จํ•ฉ๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminworkstation:
  proxyUrl: "http://aw-proxy.example:80"

adminWorkstation.ntpServer

๋ฌธ์ž์—ด. ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜์—์„œ ์‚ฌ์šฉํ•ด์•ผ ํ•˜๋Š” ๋„คํŠธ์›Œํฌ ์‹œ๊ฐ„ ํ”„๋กœํ† ์ฝœ ์„œ๋ฒ„์˜ ํ˜ธ์ŠคํŠธ ์ด๋ฆ„ ๋˜๋Š” IP ์ฃผ์†Œ์ž…๋‹ˆ๋‹ค. ์˜ˆ๋ฅผ ๋“ค๋ฉด ๋‹ค์Œ๊ณผ ๊ฐ™์Šต๋‹ˆ๋‹ค.

adminWorkstation:
  ntpServer: "216.239.35.0"

์ด ํ•„๋“œ๋ฅผ ๋น„์›Œ๋‘๋ฉด Google Distributed Cloud์—์„œ "ntp.ubuntu.com"์„ ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค.

์™„๋ฃŒ๋œ ๊ตฌ์„ฑ ํŒŒ์ผ์˜ ์˜ˆ์‹œ

๋‹ค์Œ์€ ์™„์„ฑ๋œ ๊ด€๋ฆฌ์ž ์›Œํฌ์Šคํ…Œ์ด์…˜ ๊ตฌ์„ฑ ํŒŒ์ผ์˜ ์˜ˆ์‹œ์ž…๋‹ˆ๋‹ค.

gcp:
  componentAccessServiceAccountKeyPath: "my-key-folder/component-access-key.json"
vCenter:
  credentials:
    address: "203.0.113.1"
    username: "administrator.vsphere.local"
    password: "#STyZ2T#Ko2o"
  datacenter: "MY-DATACENTER"
  datastore: "MY-DATASTORE"
  cluster: "MY-CLUSTER"
  network: "MY-VM-NETWORK"
  resourcePool: "MY-POOL"
  caCertPath: "/usr/local/google/home/me/certs/the-root.cert"
proxyUrl: ""
adminWorkstation:
  name: "my-admin-workstation"
  cpus: 4
  memoryMB: 8192
  diskGB: 50
  dataDiskName: "gke-on-prem-admin-workstation-data-disk/gke-admin-ws-200617-113711-data-disk.vmdk"
  dataDiskMB: 512
  network:
    ipAllocationMode: "static"
    hostConfig:
      ip: "172.16.5.1"
      gateway: "172.16.6.254"
      netmask: "255.255.248.0"
      dns:
      - "172.16.255.1"
      - "172.16.255.2
  proxyUrl: ""
  ntpServer: "216.239.35.0"