kubectl -n kube-system create sa kubernetes-dashboard
kubectl create clusterrolebinding kubernetes-dashboard --clusterrole cluster-admin --serviceaccount=kube-system:kubernetes-dashboard
kubectl -n kube-system patch rc/kubernetes-dashboard -p '{"spec": {"template": {"spec": {"serviceAccountName": "kubernetes-dashboard"}}}}'
kubectl -n kube-system delete po -l app=kubernetes-dashboard
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
apiVersion: rbac.authorization.k8s.io/v1beta1 | |
kind: ClusterRole | |
metadata: | |
name: nginx-ingress-controller | |
rules: | |
- apiGroups: | |
- "" | |
resources: | |
- configmaps | |
- endpoints |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
function count-ingress | |
for namespace in (kubectl get ns -o name | cut -d/ -f2) | |
set -l product_name (kubectl get ns $namespace -o json | jq -r '.metadata.annotations."ticketmaster.com/name"') | |
set -l tech_owners (kubectl get ns $namespace -o json | jq -r '.metadata.annotations."ticketmaster.com/tech-owner"') | |
set -l count (kubectl -n $namespace get ing --no-headers --ignore-not-found | wc -l | tr -d ' ') | |
if test $count -ge 5; echo $namespace \($product_name - $tech_owners\): $count; end | |
end | |
end |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
function update-tectonic-license -d 'Updates the Tectonic license secret' -a license_file contexts | |
set -l license_secrets tectonic-license tectonic-license-secret | |
set -l current_context (kubectl config current-context) | |
if test -z "$license_file" | |
echo "usage: update-tectonic-license <path/to/license_file> [<contexts>]" | |
end | |
if test -z "$contexts" | |
set contexts (kubectl config view -o go-template="{{ range .contexts }}{{ .name | println }}{{ end }}") |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
--- | |
apiVersion: rbac.authorization.k8s.io/v1beta1 | |
kind: Role | |
metadata: | |
name: heapster-user | |
rules: | |
- apiGroups: | |
- "" | |
resourceNames: | |
- "http:heapster:" |
kubectl -n kube-system create sa kube-dns
kubectl -n kube-system patch deploy/kube-dns -p '{"spec": {"template": {"spec": {"serviceAccountName": "kube-dns"}}}}'
kubectl -n kube-system create sa tiller
kubectl create clusterrolebinding tiller --clusterrole cluster-admin --serviceaccount=kube-system:tiller
helm init --service-account tiller
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
--- | |
kind: ConfigMap | |
apiVersion: v1 | |
metadata: | |
labels: | |
app: fluentd | |
name: fluentd-cloudwatch-logs | |
namespace: kube-system | |
data: | |
aws-region: us-east-1 |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
#!/usr/bin/env bash | |
k8s_node=$(echo $1 | cut -f2 -d '/') | |
kubectl drain --force --ignore-daemonsets --delete-local-data ${k8s_node} | |
if [[ $? -eq 0 ]]; then | |
kubectl delete node ${k8s_node} | |
fi |