StatefulSet.yaml 6.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172
  1. apiVersion: apps/v1
  2. kind: StatefulSet
  3. metadata:
  4. name: {{ include "emqx.fullname" . }}
  5. namespace: {{ .Release.Namespace }}
  6. labels:
  7. app.kubernetes.io/name: {{ include "emqx.name" . }}
  8. helm.sh/chart: {{ include "emqx.chart" . }}
  9. app.kubernetes.io/instance: {{ .Release.Name }}
  10. app.kubernetes.io/managed-by: {{ .Release.Service }}
  11. spec:
  12. serviceName: {{ include "emqx.fullname" . }}-headless
  13. podManagementPolicy: {{ .Values.podManagementPolicy }}
  14. {{- if and .Values.persistence.enabled (not .Values.persistence.existingClaim) }}
  15. volumeClaimTemplates:
  16. - metadata:
  17. name: emqx-data
  18. namespace: {{ .Release.Namespace }}
  19. labels:
  20. app.kubernetes.io/name: {{ include "emqx.name" . }}
  21. app.kubernetes.io/instance: {{ .Release.Name }}
  22. app.kubernetes.io/managed-by: {{ .Release.Service }}
  23. spec:
  24. {{- if .Values.persistence.storageClassName }}
  25. storageClassName: {{ .Values.persistence.storageClassName | quote }}
  26. {{- end }}
  27. accessModes:
  28. - {{ .Values.persistence.accessMode | quote }}
  29. resources:
  30. requests:
  31. storage: {{ .Values.persistence.size | quote }}
  32. {{- end }}
  33. updateStrategy:
  34. type: RollingUpdate
  35. replicas: {{ .Values.replicaCount }}
  36. selector:
  37. matchLabels:
  38. app.kubernetes.io/name: {{ include "emqx.name" . }}
  39. app.kubernetes.io/instance: {{ .Release.Name }}
  40. template:
  41. metadata:
  42. labels:
  43. app: {{ include "emqx.name" . }}
  44. version: {{ .Chart.AppVersion }}
  45. app.kubernetes.io/name: {{ include "emqx.name" . }}
  46. app.kubernetes.io/instance: {{ .Release.Name }}
  47. annotations:
  48. {{- with .Values.podAnnotations }}
  49. {{- toYaml . | nindent 8 }}
  50. {{- end }}
  51. {{- if .Values.recreatePods }}
  52. checksum/config: {{ include (print $.Template.BasePath "/configmap.yaml") . | sha256sum | quote }}
  53. {{- end }}
  54. spec:
  55. serviceAccountName: {{ include "emqx.serviceAccountName" . }}
  56. volumes:
  57. {{- if .Values.ssl.enabled }}
  58. - name: ssl-cert
  59. secret:
  60. secretName: {{ include "emqx.ssl.secretName" . }}
  61. {{- end }}
  62. {{- if not .Values.persistence.enabled }}
  63. - name: emqx-data
  64. emptyDir: {}
  65. {{- else if .Values.persistence.existingClaim }}
  66. - name: emqx-data
  67. persistentVolumeClaim:
  68. {{- with .Values.persistence.existingClaim }}
  69. claimName: {{ tpl . $ }}
  70. {{- end }}
  71. {{- end }}
  72. {{- if .Values.emqxLicenseSecretName }}
  73. - name: emqx-license
  74. secret:
  75. secretName: {{ .Values.emqxLicenseSecretName }}
  76. {{- end }}
  77. {{- if .Values.extraVolumes }}
  78. {{- toYaml .Values.extraVolumes | nindent 6 }}
  79. {{- end }}
  80. {{- if .Values.podSecurityContext.enabled }}
  81. securityContext: {{- omit .Values.podSecurityContext "enabled" | toYaml | nindent 8 }}
  82. {{- end }}
  83. {{- if .Values.initContainers }}
  84. initContainers:
  85. {{- toYaml .Values.initContainers | nindent 8 }}
  86. {{- end }}
  87. {{- if .Values.image.pullSecrets }}
  88. imagePullSecrets:
  89. {{- range .Values.image.pullSecrets }}
  90. - name: {{ . }}
  91. {{- end }}
  92. {{- end }}
  93. containers:
  94. - name: emqx
  95. image: "{{ .Values.image.repository }}:{{ .Values.image.tag | default .Chart.AppVersion }}"
  96. imagePullPolicy: {{ .Values.image.pullPolicy }}
  97. {{- if .Values.containerSecurityContext.enabled }}
  98. securityContext: {{- omit .Values.containerSecurityContext "enabled" | toYaml | nindent 12 }}
  99. {{- end }}
  100. ports:
  101. - name: mqtt
  102. containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__TCP__DEFAULT__BIND | default 1883 }}
  103. - name: mqttssl
  104. containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__SSL__DEFAULT__BIND | default 8883 }}
  105. - name: ws
  106. containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__WS__DEFAULT__BIND | default 8083 }}
  107. - name: wss
  108. containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__WSS__DEFAULT__BIND | default 8084 }}
  109. - name: dashboard
  110. containerPort: {{ .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTP__BIND | default 18083 }}
  111. {{- if not (empty .Values.emqxConfig.EMQX_LISTENERS__TCP__INTERNAL__BIND) }}
  112. - name: internalmqtt
  113. containerPort: {{ .Values.emqxConfig.EMQX_LISTENERS__TCP__INTERNAL__BIND }}
  114. {{- end }}
  115. {{- if not (empty .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTPS__BIND) }}
  116. - name: dashboardtls
  117. containerPort: {{ .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTPS__BIND }}
  118. {{- end }}
  119. - name: ekka
  120. containerPort: 4370
  121. envFrom:
  122. - configMapRef:
  123. name: {{ include "emqx.fullname" . }}-env
  124. {{- if .Values.envFromSecret }}
  125. - secretRef:
  126. name: {{ .Values.envFromSecret }}
  127. {{- end }}
  128. resources:
  129. {{ toYaml .Values.resources | indent 12 }}
  130. volumeMounts:
  131. - name: emqx-data
  132. mountPath: "/opt/emqx/data"
  133. {{- if .Values.ssl.enabled }}
  134. - name: ssl-cert
  135. mountPath: /tmp/ssl
  136. readOnly: true
  137. {{- end}}
  138. {{ if .Values.emqxLicenseSecretName }}
  139. - name: emqx-license
  140. mountPath: "/opt/emqx/etc/emqx.lic"
  141. subPath: "emqx.lic"
  142. readOnly: true
  143. {{- end }}
  144. {{- if .Values.extraVolumeMounts }}
  145. {{- toYaml .Values.extraVolumeMounts | nindent 10 }}
  146. {{- end }}
  147. readinessProbe:
  148. httpGet:
  149. path: /status
  150. port: {{ .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTP__BIND | default 18083 }}
  151. initialDelaySeconds: 10
  152. periodSeconds: 5
  153. failureThreshold: 30
  154. livenessProbe:
  155. httpGet:
  156. path: /status
  157. port: {{ .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTP__BIND | default 18083 }}
  158. initialDelaySeconds: 60
  159. periodSeconds: 30
  160. failureThreshold: 10
  161. {{- with .Values.nodeSelector }}
  162. nodeSelector:
  163. {{- toYaml . | nindent 8 }}
  164. {{- end }}
  165. {{- with .Values.affinity }}
  166. affinity:
  167. {{- toYaml . | nindent 8 }}
  168. {{- end }}
  169. {{- with .Values.tolerations }}
  170. tolerations:
  171. {{- toYaml . | nindent 8 }}
  172. {{- end }}