StatefulSet.yaml 7.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203
  1. apiVersion: apps/v1
  2. kind: StatefulSet
  3. metadata:
  4. name: {{ include "emqx.fullname" . }}
  5. namespace: {{ .Release.Namespace }}
  6. labels:
  7. app.kubernetes.io/name: {{ include "emqx.name" . }}
  8. helm.sh/chart: {{ include "emqx.chart" . }}
  9. app.kubernetes.io/instance: {{ .Release.Name }}
  10. app.kubernetes.io/managed-by: {{ .Release.Service }}
  11. spec:
  12. serviceName: {{ include "emqx.fullname" . }}-headless
  13. podManagementPolicy: {{ .Values.podManagementPolicy }}
  14. {{- if and .Values.persistence.enabled (not .Values.persistence.existingClaim) }}
  15. volumeClaimTemplates:
  16. - metadata:
  17. name: emqx-data
  18. namespace: {{ .Release.Namespace }}
  19. labels:
  20. app.kubernetes.io/name: {{ include "emqx.name" . }}
  21. app.kubernetes.io/instance: {{ .Release.Name }}
  22. app.kubernetes.io/managed-by: {{ .Release.Service }}
  23. spec:
  24. {{- if .Values.persistence.storageClassName }}
  25. storageClassName: {{ .Values.persistence.storageClassName | quote }}
  26. {{- end }}
  27. accessModes:
  28. - {{ .Values.persistence.accessMode | quote }}
  29. resources:
  30. requests:
  31. storage: {{ .Values.persistence.size | quote }}
  32. {{- end }}
  33. updateStrategy:
  34. type: RollingUpdate
  35. {{- if .Values.minReadySeconds }}
  36. minReadySeconds: {{ .Values.minReadySeconds }}
  37. {{- end }}
  38. replicas: {{ .Values.replicaCount }}
  39. selector:
  40. matchLabels:
  41. app.kubernetes.io/name: {{ include "emqx.name" . }}
  42. app.kubernetes.io/instance: {{ .Release.Name }}
  43. template:
  44. metadata:
  45. labels:
  46. app: {{ include "emqx.name" . }}
  47. version: {{ .Chart.AppVersion }}
  48. app.kubernetes.io/name: {{ include "emqx.name" . }}
  49. app.kubernetes.io/instance: {{ .Release.Name }}
  50. annotations:
  51. {{- with .Values.podAnnotations }}
  52. {{- toYaml . | nindent 8 }}
  53. {{- end }}
  54. {{- if .Values.recreatePods }}
  55. checksum/config: {{ include (print $.Template.BasePath "/configmap.yaml") . | sha256sum | quote }}
  56. {{- end }}
  57. spec:
  58. serviceAccountName: {{ include "emqx.serviceAccountName" . }}
  59. {{- if .Values.priorityClassName }}
  60. priorityClassName: {{ .Values.priorityClassName }}
  61. {{- end }}
  62. volumes:
  63. {{- if .Values.ssl.enabled }}
  64. - name: ssl-cert
  65. secret:
  66. secretName: {{ include "emqx.ssl.secretName" . }}
  67. {{- end }}
  68. {{- if not .Values.persistence.enabled }}
  69. - name: emqx-data
  70. emptyDir: {}
  71. {{- else if .Values.persistence.existingClaim }}
  72. - name: emqx-data
  73. persistentVolumeClaim:
  74. {{- with .Values.persistence.existingClaim }}
  75. claimName: {{ tpl . $ }}
  76. {{- end }}
  77. {{- end }}
  78. {{- if .Values.emqxLicenseSecretName }}
  79. - name: emqx-license
  80. secret:
  81. secretName: {{ .Values.emqxLicenseSecretName }}
  82. {{- end }}
  83. {{- if .Values.extraVolumes }}
  84. {{- toYaml .Values.extraVolumes | nindent 6 }}
  85. {{- end }}
  86. {{- if .Values.podSecurityContext.enabled }}
  87. securityContext: {{- omit .Values.podSecurityContext "enabled" | toYaml | nindent 8 }}
  88. {{- end }}
  89. {{- if .Values.initContainers }}
  90. initContainers:
  91. {{- toYaml .Values.initContainers | nindent 8 }}
  92. {{- end }}
  93. {{- if .Values.image.pullSecrets }}
  94. imagePullSecrets:
  95. {{- range .Values.image.pullSecrets }}
  96. - name: {{ . }}
  97. {{- end }}
  98. {{- end }}
  99. containers:
  100. - name: emqx
  101. image: "{{ .Values.image.repository }}:{{ .Values.image.tag | default .Chart.AppVersion }}"
  102. imagePullPolicy: {{ .Values.image.pullPolicy }}
  103. {{- if .Values.containerSecurityContext.enabled }}
  104. securityContext: {{- omit .Values.containerSecurityContext "enabled" | toYaml | nindent 12 }}
  105. {{- end }}
  106. ports:
  107. - name: mqtt
  108. containerPort: {{ splitList ":" ( .Values.emqxConfig.EMQX_LISTENERS__TCP__DEFAULT__BIND | default "1883" ) | last }}
  109. - name: mqttssl
  110. containerPort: {{ splitList ":" ( .Values.emqxConfig.EMQX_LISTENERS__SSL__DEFAULT__BIND | default "8883" ) | last }}
  111. - name: ws
  112. containerPort: {{ splitList ":" ( .Values.emqxConfig.EMQX_LISTENERS__WS__DEFAULT__BIND | default "8083" ) | last }}
  113. - name: wss
  114. containerPort: {{ splitList ":" ( .Values.emqxConfig.EMQX_LISTENERS__WSS__DEFAULT__BIND | default "8084" ) | last }}
  115. - name: dashboard
  116. containerPort: {{ splitList ":" ( .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTP__BIND | default "18083" ) | last }}
  117. {{- if not (empty .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTPS__BIND) }}
  118. - name: dashboardtls
  119. containerPort: {{ splitList ":" .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTPS__BIND | last }}
  120. {{- end }}
  121. - name: ekka
  122. containerPort: 4370
  123. - name: genrpc-manual
  124. containerPort: 5369
  125. envFrom:
  126. - configMapRef:
  127. name: {{ include "emqx.fullname" . }}-env
  128. {{- if .Values.envFromSecret }}
  129. - secretRef:
  130. name: {{ .Values.envFromSecret }}
  131. {{- end }}
  132. resources:
  133. {{ toYaml .Values.resources | indent 12 }}
  134. volumeMounts:
  135. - name: emqx-data
  136. mountPath: "/opt/emqx/data"
  137. {{- if .Values.ssl.enabled }}
  138. - name: ssl-cert
  139. mountPath: /tmp/ssl
  140. readOnly: true
  141. {{- end}}
  142. {{ if .Values.emqxLicenseSecretName }}
  143. - name: emqx-license
  144. mountPath: "/opt/emqx/etc/emqx.lic"
  145. subPath: "emqx.lic"
  146. readOnly: true
  147. {{- end }}
  148. {{- if .Values.extraVolumeMounts }}
  149. {{- toYaml .Values.extraVolumeMounts | nindent 10 }}
  150. {{- end }}
  151. readinessProbe:
  152. httpGet:
  153. path: /status
  154. port: {{ splitList ":" ( .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTP__BIND | default "18083" ) | last }}
  155. initialDelaySeconds: 10
  156. periodSeconds: 5
  157. failureThreshold: 30
  158. livenessProbe:
  159. httpGet:
  160. path: /status
  161. port: {{ splitList ":" ( .Values.emqxConfig.EMQX_DASHBOARD__LISTENERS__HTTP__BIND | default "18083" ) | last }}
  162. initialDelaySeconds: 60
  163. periodSeconds: 30
  164. failureThreshold: 10
  165. {{- with .Values.nodeSelector }}
  166. nodeSelector:
  167. {{- toYaml . | nindent 8 }}
  168. {{- end }}
  169. {{- with .Values.affinity }}
  170. affinity:
  171. {{- toYaml . | nindent 8 }}
  172. {{- end }}
  173. {{- with .Values.tolerations }}
  174. tolerations:
  175. {{- toYaml . | nindent 8 }}
  176. {{- end }}
  177. {{- with .Values.topologySpreadConstraints }}
  178. topologySpreadConstraints:
  179. {{- range . }}
  180. - maxSkew: {{ .maxSkew }}
  181. topologyKey: {{ .topologyKey }}
  182. whenUnsatisfiable: {{ .whenUnsatisfiable }}
  183. labelSelector:
  184. matchLabels:
  185. app.kubernetes.io/name: {{ include "emqx.name" $ }}
  186. app.kubernetes.io/instance: {{ $.Release.Name }}
  187. {{- if .minDomains }}
  188. minDomains: {{ .minDomains }}
  189. {{- end }}
  190. {{- if .matchLabelKeys }}
  191. matchLabelKeys:
  192. {{- range .matchLabelKeys }}
  193. - {{ . }}
  194. {{- end }}
  195. {{- end }}
  196. {{- if .nodeAffinityPolicy }}
  197. nodeAffinityPolicy: {{ .nodeAffinityPolicy }}
  198. {{- end }}
  199. {{- if .nodeTaintsPolicy }}
  200. nodeTaintsPolicy: {{ .nodeTaintsPolicy }}
  201. {{- end }}
  202. {{- end }}
  203. {{- end }}